NA - CVE-2025-29924 - XWiki Platform is a generic wiki platform....
XWiki Platform is a generic wiki platform. Prior to 15.10.14, 16.4.6, and 16.10.0-rc-1, it's possible for an user to get access to private information through the REST API - but could also be...
NA - CVE-2025-29925 - XWiki Platform is a generic wiki platform....
XWiki Platform is a generic wiki platform. Prior to 15.10.14, 16.4.6, and 16.10.0-rc-1, protected pages are listed when requesting the REST endpoints /rest/wikis/[wikiName]/pages even if the user...
NA - CVE-2025-29926 - XWiki Platform is a generic wiki platform....
XWiki Platform is a generic wiki platform. Prior to 15.10.15, 16.4.6, and 16.10.0, any user can exploit the WikiManager REST API to create a new wiki, where the user could become an administrator...
NA - CVE-2024-57061 - An issue in Termius Version 9.9.0 through...
An issue in Termius Version 9.9.0 through v.9.16.0 allows a physically proximate attacker to execute arbitrary code via the insecure Electron Fuses configuration.
Medium - CVE-2024-7631 - A flaw was found in the OpenShift Console, an...
A flaw was found in the OpenShift Console, an endpoint for plugins to serve resources in multiple languages: /locales/resources.json. This endpoint's lng and ns parameters are used to...
NA - CVE-2025-27415 - Nuxt is an open-source web development...
Nuxt is an open-source web development framework for Vue.js. Prior to 3.16.0, by sending a crafted HTTP request to a server behind an CDN, it is possible in some circumstances to poison the CDN...
NA - CVE-2025-27704 - There is a cross-site scripting vulnerability...
There is a cross-site scripting vulnerability in the Secure Access administrative console of Absolute Secure Access prior to version 13.53. Attackers with system administrator permissions can...
NA - CVE-2025-2476 - Use after free in Lens in Google Chrome prior...
Use after free in Lens in Google Chrome prior to 134.0.6998.117 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
NA - CVE-2025-2536 - Cross-site scripting (XSS) vulnerability on...
Cross-site scripting (XSS) vulnerability on Liferay Portal 7.4.3.82 through 7.4.3.128, and Liferay DXP 2024.Q3.0, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.12, 2023.Q4.0 through...