NA - CVE-2025-26091 - A Cross Site Scripting (XSS) vulnerability...
A Cross Site Scripting (XSS) vulnerability exists in TeamPasswordManager v12.162.284 and before that could allow a remote attacker to execute arbitrary JavaScript in the web browser of a user, by...
NA - CVE-2025-27150 - Tuleap is an Open Source Suite to improve...
Tuleap is an Open Source Suite to improve management of software developments and collaboration. The password to connect the Redis instance is not purged from the archive generated with tuleap...
NA - CVE-2025-27155 - Pinecone is an experimental overlay routing...
Pinecone is an experimental overlay routing protocol suite which is the foundation of the current P2P Matrix demos. The Pinecone Simulator (pineconesim) included in Pinecone up to commit ea4c337 is...
NA - CVE-2025-27156 - Tuleap is an Open Source Suite to improve...
Tuleap is an Open Source Suite to improve management of software developments and collaboration. The mass emailing features do not sanitize the content of the HTML emails. A malicious user could...
NA - CVE-2025-27401 - Tuleap is an Open Source Suite to improve...
Tuleap is an Open Source Suite to improve management of software developments and collaboration. In a standard usages of Tuleap, the issue has a limited impact, it will mostly leave dangling data....
NA - CVE-2025-27402 - Tuleap is an Open Source Suite to improve...
Tuleap is an Open Source Suite to improve management of software developments and collaboration. Tuleap is missing CSRF protections on tracker fields administrative operations. An attacker could...
NA - CVE-2025-27507 - The open-source identity infrastructure...
The open-source identity infrastructure software Zitadel allows administrators to disable the user self-registration. ZITADEL's Admin API contains Insecure Direct Object Reference (IDOR)...
NA - CVE-2024-10930 - An Uncontrolled Search Path Element...
An Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to perform DLL hijacking and execute arbitrary code with escalated privileges.
NA - CVE-2024-41147 - An out-of-bounds write vulnerability exists in...
An out-of-bounds write vulnerability exists in the ma_dr_flac__decode_samples__lpc functionality of Miniaudio miniaudio v0.11.21. A specially crafted .flac file can lead to memory corruption. An...