CVE Alert: CVE-2025-2023
Vulnerability Summary: CVE-2025-2023 Ashlar-Vellum Cobalt LI File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to...
Vulnerability Summary: CVE-2025-2023 Ashlar-Vellum Cobalt LI File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to...
Vulnerability Summary: CVE-2025-2022 Ashlar-Vellum Cobalt VS File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to...
Vulnerability Summary: CVE-2025-2019 Ashlar-Vellum Cobalt VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers...
Vulnerability Summary: CVE-2025-2017 Ashlar-Vellum Cobalt CO File Parsing Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to...
Vulnerability Summary: CVE-2025-2208 A vulnerability, which was classified as problematic, has been found in aitangbao springboot-manager 3.0. This issue affects...
Vulnerability Summary: CVE-2025-1707 The Review Schema plugin for WordPress is vulnerable to Local File Inclusion in all versions up to,...
Vulnerability Summary: CVE-2025-2018 Ashlar-Vellum Cobalt VS File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to...
Vulnerability Summary: CVE-2025-2210 A vulnerability has been found in aitangbao springboot-manager 3.0 and classified as problematic. Affected by this vulnerability...
Vulnerability Summary: CVE-2025-2209 A vulnerability, which was classified as problematic, was found in aitangbao springboot-manager 3.0. Affected is an unknown...
Vulnerability Summary: CVE-2025-2211 A vulnerability was found in aitangbao springboot-manager 3.0 and classified as problematic. Affected by this issue is...
Vulnerability Summary: CVE-2025-2233 Samsung SmartThings Improper Verification of Cryptographic Signature Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass...
Vulnerability Summary: CVE-2025-2212 A vulnerability was found in Castlenet CBW383G2N up to 20250301. It has been classified as problematic. This...
Vulnerability Summary: CVE-2025-2213 A vulnerability was found in Castlenet CBW383G2N up to 20250301. It has been declared as problematic. This...
Vulnerability Summary: CVE-2025-2133 A vulnerability classified as problematic was found in ftcms 2.1. Affected by this vulnerability is an unknown...
Vulnerability Summary: CVE-2024-11638 The Gtbabel WordPress plugin before 6.6.9 does not ensure that the URL to perform code analysis upon...
Vulnerability Summary: CVE-2025-1926 The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Cross-Site...
Vulnerability Summary: CVE-2024-43107 Improper Certificate Validation (CWE-295) in the Gallagher Milestone Integration Plugin (MIP) permits unauthenticated messages (e.g. alarm events)...
Vulnerability Summary: CVE-2024-41724 Improper Certificate Validation (CWE-295) in the Gallagher Command Centre SALTO integration allowed an attacker to spoof the...
Vulnerability Summary: CVE-2025-27256 Missing Authentication for Critical Function vulnerability in GE Vernova Enervista UR Setup application allows Authentication Bypass due...
Vulnerability Summary: CVE-2025-27255 Use of Hard-coded Credentials vulnerability in GE Vernova EnerVista UR Setup allows Privilege Escalation. The local user...
Vulnerability Summary: CVE-2025-2150 The C&Cm@il from HGiga has a Stored Cross-Site Scripting (XSS) vulnerability, allowing remote attackers with regular privileges...
Vulnerability Summary: CVE-2025-27257 Insufficient Verification of Data Authenticity vulnerability in GE Vernova UR IED family devices allows an authenticated user...
Vulnerability Summary: CVE-2025-27253 An improper input validation in GE Vernova UR IED family devices from version 7.0 up to 8.60...
Vulnerability Summary: CVE-2025-24387 A vulnerability in OTRS Application Server allows session hijacking due to missing attributes for sensitive cookie settings...