NA - CVE-2025-29496 - libming v0.4.8 was discovered to contain a...
libming v0.4.8 was discovered to contain a segmentation fault via the decompileDUPLICATECLIP function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted SWF file.
NA - CVE-2025-2516 - The use of a weak cryptographic key pair in the...
The use of a weak cryptographic key pair in the signature verification process in WPS Office (Kingsoft) on Windows allows an attacker who successfully recovered the private key to sign components....
Medium - CVE-2025-2854 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in code-projects Payroll Management System 1.0. Affected by this vulnerability is an unknown functionality of the file update_employee.php. The...
NA - CVE-2025-30067 - Improper Control of Generation of Code...
Improper Control of Generation of Code ('Code Injection') vulnerability in Apache Kylin. If an attacker gets access to Kylin's system or project admin permission, the JDBC...
NA - CVE-2025-30221 - Pitchfork is a preforking HTTP server for Rack...
Pitchfork is a preforking HTTP server for Rack applications. Versions prior to 0.11.0 are vulnerable to HTTP Response Header Injection when used in conjunction with Rack 3. The issue was fixed in...
NA - CVE-2025-30358 - Mesop is a Python-based UI framework that...
Mesop is a Python-based UI framework that allows users to build web applications. A class pollution vulnerability in Mesop prior to version 0.14.1 allows attackers to overwrite global variables and...