NA - CVE-2025-32465 - A stored XSS vulnerability in RSTickets!...
A stored XSS vulnerability in RSTickets! component 1.9.12 - 3.3.0 for Joomla was discovered. It allows attackers to perform cross-site scripting (XSS) attacks via sending crafted payload.
NA - CVE-2025-32466 - A SQL injection vulnerability in...
A SQL injection vulnerability in RSMediaGallery! component 1.7.4 - 2.1.7 for Joomla was discovered. The issue occurs within the dashboard component, where user-supplied input is not properly...
NA - CVE-2025-0036 - In AMD Versal Adaptive SoC devices, the...
In AMD Versal Adaptive SoC devices, the incorrect configuration of the SSS during runtime (post-boot) cryptographic operations could cause data to be incorrectly written to and read from invalid...
NA - CVE-2025-0037 - In AMD Versal Adaptive SoC devices, the lack of...
In AMD Versal Adaptive SoC devices, the lack of address validation when executing PLM runtime services through the PLM firmware can allow access to isolated or protected memory spaces, resulting in...
High - CVE-2025-5903 - A vulnerability was found in TOTOLINK T10...
A vulnerability was found in TOTOLINK T10 4.1.8cu.5207. It has been classified as critical. Affected is the function setWiFiAclRules of the file /cgi-bin/cstecgi.cgi of the component POST Request...
High - CVE-2025-5904 - A vulnerability was found in TOTOLINK T10...
A vulnerability was found in TOTOLINK T10 4.1.8cu.5207. It has been declared as critical. Affected by this vulnerability is the function setWiFiMeshName of the file /cgi-bin/cstecgi.cgi of the...
High - CVE-2025-5905 - A vulnerability was found in TOTOLINK T10...
A vulnerability was found in TOTOLINK T10 4.1.8cu.5207. It has been rated as critical. Affected by this issue is the function setWiFiRepeaterCfg of the file /cgi-bin/cstecgi.cgi of the component...
High - CVE-2025-23192 - SAP BusinessObjects Business Intelligence (BI...
SAP BusinessObjects Business Intelligence (BI Workspace) allows an unauthenticated attacker to craft and store malicious script within a workspace. When the victim accesses the workspace, the...
Medium - CVE-2025-31325 - Due to a Cross-Site Scripting vulnerability in...
Due to a Cross-Site Scripting vulnerability in SAP NetWeaver (ABAP Keyword Documentation), an unauthenticated attacker could inject malicious JavaScript into a web page through an unprotected...
High - CVE-2025-42977 - SAP NetWeaver Visual Composer contains a...
SAP NetWeaver Visual Composer contains a Directory Traversal vulnerability caused by insufficient validation of input paths provided by a high-privileged user. This allows an attacker to read or...