NA - CVE-2025-49146 - pgjdbc is an open source postgresql JDBC...
pgjdbc is an open source postgresql JDBC Driver. From 42.7.4 and until 42.7.7, when the PostgreSQL JDBC driver is configured with channel binding set to required (default value is prefer), the...
NA - CVE-2025-49148 - ClipShare is a lightweight and cross-platform...
ClipShare is a lightweight and cross-platform tool for clipboard sharing. Prior to 3.8.5, ClipShare Server for Windows uses the default Windows DLL search order and loads system libraries like...
NA - CVE-2025-26383 - The iSTAR Configuration Utility (ICU) tool...
The iSTAR Configuration Utility (ICU) tool leaks memory, which could result in the unintended exposure of unauthorized data from the Windows PC that ICU is running on.
NA - CVE-2025-22874 - Calling Verify with a VerifyOptions.KeyUsages...
Calling Verify with a VerifyOptions.KeyUsages that contains ExtKeyUsageAny unintentionally disabledpolicy validation. This only affected certificate chains which contain policy graphs, which are...
NA - CVE-2025-40915 - Mojolicious::Plugin::CSRF 1.03 for Perl uses a...
Mojolicious::Plugin::CSRF 1.03 for Perl uses a weak random number source for generating CSRF tokens. That version of the module generates tokens as an MD5 of the process id, the current time, and...
NA - CVE-2025-6001 - A Cross-Site Request Forgery (CSRF)...
A Cross-Site Request Forgery (CSRF) vulnerability exists in the product image upload function of VirtueMart that bypasses the CSRF protection token. An attacker is able to craft a special CSRF...
NA - CVE-2025-6002 - An unrestricted file upload vulnerability...
An unrestricted file upload vulnerability exists in the Product Image section of the VirtueMart backend. Authenticated attackers can upload files with arbitrary extensions, including executable or...