NA - CVE-2025-48951 - Auth0-PHP is a PHP SDK for Auth0 Authentication...
Auth0-PHP is a PHP SDK for Auth0 Authentication and Management APIs. Versions 8.0.0-BETA3 prior to 8.14.0 contain a vulnerability due to insecure deserialization of cookie data. If exploited, since...
NA - CVE-2025-48999 - DataEase is an open source business...
DataEase is an open source business intelligence and data visualization tool. A bypass of CVE-2025-46566's patch exists in versions prior to 2.10.10. In a malicious payload, `getUrlType()`...
NA - CVE-2025-49000 - InvenTree is an Open Source Inventory...
InvenTree is an Open Source Inventory Management System. Prior to version 0.17.13, the skip field in the built-in `label-sheet` plugin lacks an upper bound, so a large value forces the server to...
NA - CVE-2025-49001 - DataEase is an open source business...
DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.10, secret verification does not take effect successfully, so a user can use any secret to forge...
NA - CVE-2025-49002 - DataEase is an open source business...
DataEase is an open source business intelligence and data visualization tool. Versions prior to version 2.10.10 have a flaw in the patch for CVE-2025-32966 that allow the patch to be bypassed...
High - CVE-2025-5527 - A vulnerability was found in Tenda RX3...
A vulnerability was found in Tenda RX3 16.03.13.11_multi_TDE01. It has been rated as critical. This issue affects the function save_staticroute_data of the file /goform/SetStaticRouteCfg. The...
Low - CVE-2025-5542 - A vulnerability was found in TOTOLINK X2000R...
A vulnerability was found in TOTOLINK X2000R 1.0.0-B20230726.1108. It has been classified as problematic. Affected is an unknown function of the file /boafrm/formPortFw of the component Virtual...
NA - CVE-2025-24015 - Deno is a JavaScript, TypeScript, and...
Deno is a JavaScript, TypeScript, and WebAssembly runtime with secure defaults. Versions 1.46.0 through 2.1.6 have an issue that affects AES-256-GCM and AES-128-GCM in Deno in which the...
Low - CVE-2025-5543 - A vulnerability was found in TOTOLINK X2000R...
A vulnerability was found in TOTOLINK X2000R 1.0.0-B20230726.1108. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Parent Controls...
Medium - CVE-2025-5544 - A vulnerability was found in aaluoxiang...
A vulnerability was found in aaluoxiang oa_system up to 5b445a6227b51cee287bd0c7c33ed94b801a82a5. It has been rated as problematic. Affected by this issue is the function image of the file...