NA - CVE-2025-48996 - HAX open-apis provides microservice apis for...
HAX open-apis provides microservice apis for HAX webcomponents repo that are shared infrastructure calls. An unauthenticated information disclosure vulnerability exists in the Penn State University...
Medium - CVE-2025-3919 - The WordPress Comments Import & Export plugin...
The WordPress Comments Import & Export plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the save_settings function in all versions up to,...
High - CVE-2025-5400 - A vulnerability was found in chaitak-gorai...
A vulnerability was found in chaitak-gorai Blogbook up to 92f5cf90f8a7e6566b576fe0952e14e1c6736513. It has been classified as critical. Affected is an unknown function of the file /user.php of the...
Medium - CVE-2025-1499 - IBM InfoSphere Information Server 11.7 stores...
IBM InfoSphere Information Server 11.7 stores credential information for database authentication in a cleartext parameter file that could be viewed by an authenticated user.
Medium - CVE-2025-25044 - IBM Planning Analytics Local 2.0 and 2.1 is...
IBM Planning Analytics Local 2.0 and 2.1 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the...
Medium - CVE-2025-2896 - IBM Planning Analytics Local 2.0 and 2.1 is...
IBM Planning Analytics Local 2.0 and 2.1 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the...
Medium - CVE-2025-33005 - IBM Planning Analytics Local 2.0 and 2.1 does...
IBM Planning Analytics Local 2.0 and 2.1 does not invalidate session after a logout which could allow an authenticated user to impersonate another user on the system.
High - CVE-2025-5401 - A vulnerability was found in chaitak-gorai...
A vulnerability was found in chaitak-gorai Blogbook up to 92f5cf90f8a7e6566b576fe0952e14e1c6736513. It has been declared as critical. Affected by this vulnerability is an unknown functionality of...