NA - CVE-2025-30154 - reviewdog/action-setup is a GitHub action that...
reviewdog/action-setup is a GitHub action that installs reviewdog. reviewdog/action-setup@v1 was compromised March 11, 2025, between 18:42 and 20:31 UTC, with malicious code added that dumps...
NA - CVE-2025-30196 - Jenkins AnchorChain Plugin 1.0 does not limit...
Jenkins AnchorChain Plugin 1.0 does not limit URL schemes for links it creates based on workspace content, allowing the `javascript:` scheme, resulting in a stored cross-site scripting (XSS)...
NA - CVE-2025-30197 - Jenkins Zoho QEngine Plugin...
Jenkins Zoho QEngine Plugin 1.0.29.vfa_cc23396502 and earlier does not mask the QEngine API Key form field, increasing the potential for attackers to observe and capture it.
Medium - CVE-2024-53967 - Adobe Experience Manager versions 6.5.21 and...
Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited to execute arbitrary code in the context of the...
Medium - CVE-2024-53968 - Adobe Experience Manager versions 6.5.21 and...
Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited to execute arbitrary code in the context of the...
Medium - CVE-2024-53969 - Adobe Experience Manager versions 6.5.21 and...
Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited to execute arbitrary code in the context of the...
Medium - CVE-2024-53970 - Adobe Experience Manager versions 6.5.21 and...
Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts...
NA - CVE-2025-0431 - Enterprise Protection contains a vulnerability...
Enterprise Protection contains a vulnerability in URL rewriting that allows an unauthenticated remote attacker to send an email which bypasses URL protections impacting the integrity of...
Medium - CVE-2024-25132 - A flaw was found in the Hive hibernation...
A flaw was found in the Hive hibernation controller component of OpenShift Dedicated. The ClusterDeployment.hive.openshift.io/v1 resource can be created with the spec.installed field set to true,...