NA - CVE-2025-26167 - Buffalo LS520D 4.53 is vulnerable to Arbitrary...
Buffalo LS520D 4.53 is vulnerable to Arbitrary file read, which allows unauthenticated attackers to access the NAS web UI and read arbitrary internal files.
NA - CVE-2025-26699 - An issue was discovered in Django 5.1 before...
An issue was discovered in Django 5.1 before 5.1.7, 5.0 before 5.0.13, and 4.2 before 4.2.20. The django.utils.text.wrap() method and wordwrap template filter are subject to a potential...
NA - CVE-2025-27506 - NocoDB is software for building databases as...
NocoDB is software for building databases as spreadsheets. The API endpoint related to the password reset function is vulnerable to Reflected Cross-Site-Scripting. The endpoint...
NA - CVE-2025-27509 - fleetdm/fleet is an open source device...
fleetdm/fleet is an open source device management, built on osquery. In vulnerable versions of Fleet, an attacker could craft a specially-formed SAML response to forge authentication assertions,...
NA - CVE-2025-27600 - FastGPT is a knowledge-based platform built on...
FastGPT is a knowledge-based platform built on the LLMs. Since the web crawling plug-in does not perform intranet IP verification, an attacker can initiate an intranet IP request, causing the...
Medium - CVE-2025-2036 - A vulnerability was found in s-a-zhd...
A vulnerability was found in s-a-zhd Ecommerce-Website-using-PHP 1.0. It has been classified as critical. This affects an unknown part of the file details.php. The manipulation of the argument...
Medium - CVE-2025-2037 - A vulnerability was found in code-projects...
A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file...
NA - CVE-2025-25497 - An issue in account management interface in...
An issue in account management interface in Netsweeper Server v.8.2.6 and earlier (fixed in v.8.2.7) allows unauthorized changes to the "Account Owner" field due to client-side-only restrictions...
High - CVE-2025-2038 - A vulnerability was found in code-projects...
A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /upload/. The manipulation leads...
Medium - CVE-2025-2039 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in code-projects Blood Bank Management System 1.0. Affected is an unknown function of the file /admin/delete_members.php. The manipulation of...