RSS Feeds > Computer & Technik > Internet > Marketing > scip AG [Security - Consulting - Information - Process] | RSS Verzeichnis

scip AG [Security - Consulting - Information - Process]


Anzeigen einer beliebigen Anzahl von Sicherheitsl?cken aus der scip AG Datenbank.

Betreiber-URL: https://www.scip.ch
RSS-Feed-URL: https://www.scip.ch/alertRSS.xml
Die neuesten Einträge aus dem RSS-Feed von scip AG [Security - Consulting - Information - Process]:
CVE-2025-62875 | OpenSMTPD 7.7.0 Unix Domain Socket smtpd.sock memory leak
31.10.2025 23:04
A vulnerability was found in OpenSMTPD 7.7.0. It has been rated as problematic. This vulnerability affects unknown code of the file smtpd.sock of the component Unix Domain Socket Handler. This manipul...
CVE-2025-6988 | Kallyas Plugin up to 4.23.0 on WordPress Shortcode cross site scripting
31.10.2025 23:02
A vulnerability was found in Kallyas Plugin up to 4.23.0 on WordPress. It has been declared as problematic. This affects an unknown part of the component Shortcode Handler. The manipulation results in...
CVE-2025-12137 | Import WP Plugin up to 2.14.16 on WordPress REST API Endpoint attach_file local_url path traversal
31.10.2025 23:02
A vulnerability was found in Import WP Plugin up to 2.14.16 on WordPress. It has been classified as problematic. Affected by this issue is the function attach_file of the component REST API Endpoint. ...
CVE-2025-11502 | Schema & Structured Data for WP & AMP Plugin up to 1.51 on WordPress Shortcode saswp_tiny_multiple_faq cross site scripting
31.10.2025 23:02
A vulnerability was found in Schema & Structured Data for WP & AMP Plugin up to 1.51 on WordPress and classified as problematic. Affected by this vulnerability is the function saswp_tiny_multiple_faq ...
CVE-2025-12090 | RadiusTheme Team Plugin up to 5.1.2 on WordPress cross site scripting
31.10.2025 23:02
A vulnerability has been found in RadiusTheme Team Plugin up to 5.1.2 on WordPress and classified as problematic. Affected is an unknown function. Performing manipulation results in cross site scripti...
CVE-2025-11995 | Community Events Plugin up to 1.5.2 on WordPress Event Detail cross site scripting
31.10.2025 23:01
A vulnerability, which was classified as problematic, was found in Community Events Plugin up to 1.5.2 on WordPress. This impacts an unknown function of the component Event Detail Handler. Such manipu...
CVE-2025-8900 | Doccure Core Plugin up to 1.5.3 on WordPress user_type Remote Code Execution
31.10.2025 23:01
A vulnerability, which was classified as critical, has been found in Doccure Core Plugin up to 1.5.3 on WordPress. This affects an unknown function. This manipulation of the argument user_type causes ...
CVE-2025-6574 | aonetheme Service Finder Bookings Plugin up to 6.0 on WordPress privilege escalation
31.10.2025 23:00
A vulnerability classified as critical was found in aonetheme Service Finder Bookings Plugin up to 6.0 on WordPress. The impacted element is an unknown function of the component Service. The manipulat...
CVE-2025-11740 | wpForo Forum Plugin up to 2.4.9 on WordPress sql injection
31.10.2025 23:00
A vulnerability classified as critical has been found in wpForo Forum Plugin up to 2.4.9 on WordPress. The affected element is an unknown function. The manipulation leads to sql injection. This vulne...
CVE-2025-12038 | Folderly Plugin up to 0.3 on WordPress REST API Endpoint clear-all-data improper authorization
31.10.2025 23:00
A vulnerability described as critical has been identified in Folderly Plugin up to 0.3 on WordPress. Impacted is an unknown function of the file /wp-json/folderly/v1/config/clear-all-data of the compo...
CVE-2025-5949 | aonetheme Service Finder Bookings Plugin up to 6.0 on WordPress change_candidate_password privilege escalation
31.10.2025 23:00
A vulnerability marked as critical has been reported in aonetheme Service Finder Bookings Plugin up to 6.0 on WordPress. This issue affects the function change_candidate_password. Performing manipulat...
CVE-2025-11377 | List Category Posts Plugin up to 0.92.0 on WordPress Shortcode catlist information disclosure
31.10.2025 22:59
A vulnerability labeled as problematic has been found in List Category Posts Plugin up to 0.92.0 on WordPress. This vulnerability affects the function catlist of the component Shortcode Handler. Such ...
CVE-2025-11983 | WP Discourse Plugin up to 2.5.9 on WordPress discourse_permalink information disclosure
31.10.2025 22:59
A vulnerability identified as problematic has been detected in WP Discourse Plugin up to 2.5.9 on WordPress. This affects the function discourse_permalink. This manipulation causes information disclos...
CVE-2025-12180 | Qi Blocks Plugin up to 1.4.3 on WordPress REST API Endpoint update-styles update_global_styles_callback authorization
31.10.2025 22:57
A vulnerability categorized as critical has been discovered in Qi Blocks Plugin up to 1.4.3 on WordPress. Affected by this issue is the function update_global_styles_callback of the file /qi-blocks/v1...
CVE-2025-11499 | Tablesome Table Plugin up to 1.1.32 on WordPress set_featured_image_from_external_url unrestricted upload
31.10.2025 22:57
A vulnerability was found in Tablesome Table Plugin up to 1.1.32 on WordPress. It has been rated as critical. Affected by this vulnerability is the function set_featured_image_from_external_url. The m...
CVE-2025-10487 | Advanced Ads Plugin up to 2.0.12 on WordPress AJAX Endpoint select_one Remote Code Execution
31.10.2025 22:57
A vulnerability was found in Advanced Ads Plugin up to 2.0.12 on WordPress. It has been declared as critical. Affected is the function select_one of the component AJAX Endpoint. Executing manipulation...
CVE-2025-12171 | RESTful Content Syndication Plugin up to 1.1.0/1.5.0 on WordPress Setting ingest_image unrestricted upload
31.10.2025 22:57
A vulnerability was found in RESTful Content Syndication Plugin up to 1.1.0/1.5.0 on WordPress. It has been classified as critical. This impacts the function ingest_image of the component Setting Hand...
CVE-2025-11755 | WP Delicious Plugin up to 1.9.0 on WordPress unrestricted upload
31.10.2025 22:56
A vulnerability was found in WP Delicious Plugin up to 1.9.0 on WordPress and classified as critical. This affects an unknown function. Such manipulation leads to unrestricted upload. This vulnerabil...
CVE-2025-6990 | Kallyas Plugin up to 4.24.0 on WordPress TH_PhpCode privilege escalation
31.10.2025 22:56
A vulnerability has been found in Kallyas Plugin up to 4.24.0 on WordPress and classified as critical. The impacted element is the function TH_PhpCode. This manipulation causes privilege escalation. ...
CVE-2025-6075 | Python CPython up to 3.14.x os.path.expandvars resource consumption (Issue 136065)
31.10.2025 22:54
A vulnerability, which was classified as problematic, was found in Python CPython up to 3.14.x. The affected element is the function os.path.expandvars. The manipulation results in resource consumptio...
CVE-2025-12554 | Azure Access BLU-IC2/BLU-IC4 up to 1.19.5 Security Header protection mechanism
31.10.2025 22:53
A vulnerability, which was classified as critical, has been found in Azure Access BLU-IC2 and BLU-IC4 up to 1.19.5. Impacted is an unknown function of the component Security Header Handler. The manipu...
CVE-2025-12553 | Azure Access BLU-IC2/BLU-IC4 up to 1.19.5 missing validation of openssl certificate
31.10.2025 22:52
A vulnerability classified as very critical was found in Azure Access BLU-IC2 and BLU-IC4 up to 1.19.5. This issue affects some unknown processing. Executing manipulation can lead to missing validatio...
CVE-2025-12509 | Bizerba BRAIN2 up to 3.06 Global_Shipping inclusion of functionality from untrusted control sphere
31.10.2025 22:52
A vulnerability classified as problematic has been found in Bizerba BRAIN2 up to 3.06. This vulnerability affects unknown code of the component Global_Shipping. Performing manipulation results in incl...
CVE-2025-12507 | Bizerba _connect.BRAIN up to 5.01 unquoted search path
31.10.2025 22:52
A vulnerability described as problematic has been identified in Bizerba _connect.BRAIN up to 5.01. This affects an unknown part. Such manipulation leads to unquoted search path. This vulnerability is...
CVE-2025-62267 | Liferay Portal/DXP Web Content Template Select Structure Page First Name/Middle Name/Last Name cross site scripting (EUVD-2025-37402)
31.10.2025 22:51
A vulnerability marked as problematic has been reported in Liferay Portal and DXP. Affected by this issue is some unknown functionality of the component Web Content Template Select Structure Page. Thi...
CVE-2025-62264 | Liferay Portal/DXP Languauge Override cross site scripting
31.10.2025 22:51
A vulnerability labeled as problematic has been found in Liferay Portal and DXP. Affected by this vulnerability is an unknown functionality of the component Languauge Override. The manipulation of the...
CVE-2025-63563 | Summer Pearl Group Vacation Rental Management Platform up to 1.0.1 user session (EUVD-2025-37392)
31.10.2025 22:51
A vulnerability identified as critical has been detected in Summer Pearl Group Vacation Rental Management Platform up to 1.0.1. Affected is an unknown function. The manipulation leads to manage user s...
CVE-2025-63561 | Summer Pearl Group Vacation Rental Management Platform up to 1.0.1 HTTP Connection Slowloris denial of service (EUVD-2025-37393)
31.10.2025 22:50
A vulnerability categorized as problematic has been discovered in Summer Pearl Group Vacation Rental Management Platform up to 1.0.1. This impacts an unknown function of the component HTTP Connection ...
CVE-2025-10693 | Silabs Silicon Labs Z-Wave SDK up to 2025.6.1 SmartStart Inclusion downgrade (EUVD-2025-37394)
31.10.2025 22:50
A vulnerability was found in Silabs Silicon Labs Z-Wave SDK up to 2025.6.1. It has been rated as critical. This affects an unknown function of the component SmartStart Inclusion. Performing manipulati...
CVE-2025-64349 | ELOG authorization (EUVD-2025-37399)
31.10.2025 22:49
A vulnerability was found in ELOG. It has been declared as critical. The impacted element is an unknown function. Such manipulation leads to missing authorization. This vulnerability is traded as CVE...
CVE-2025-64348 | ELOG -x authorization (EUVD-2025-37400)
31.10.2025 22:49
A vulnerability was found in ELOG. It has been classified as problematic. The affected element is an unknown function. This manipulation of the argument -x causes missing authorization. This vulnerab...
CVE-2025-62618 | ELOG 1.0.5/2.5.7/2.6.1/2.7.6/3.1.1 unrestricted upload (EUVD-2025-37401)
31.10.2025 22:49
A vulnerability was found in ELOG 1.0.5/2.5.7/2.6.1/2.7.6/3.1.1 and classified as critical. Impacted is an unknown function. The manipulation results in unrestricted upload. This vulnerability is rep...
CVE-2025-63562 | Summer Pearl Group Vacation Rental Management Platform Vulnerability up to 1.0.1 improper authorization (EUVD-2025-37391)
31.10.2025 22:41
A vulnerability has been found in Summer Pearl Group Vacation Rental Management Platform Vulnerability up to 1.0.1 and classified as critical. This issue affects some unknown processing. The manipulat...
CVE-2025-63454 | Tenda AX-3 16.03.12.10_CN get_parentControl_list_Info deviceId stack-based overflow (EUVD-2025-37398)
31.10.2025 22:41
A vulnerability, which was classified as critical, was found in Tenda AX-3 16.03.12.10_CN. This vulnerability affects the function get_parentControl_list_Info. Executing manipulation of the argument d...
CVE-2025-63458 | Tenda AX-1803 1.0.0.1 form_fast_setting_wifi_set timeZone stack-based overflow (EUVD-2025-37397)
31.10.2025 22:40
A vulnerability, which was classified as critical, has been found in Tenda AX-1803 1.0.0.1. This affects the function form_fast_setting_wifi_set. Performing manipulation of the argument timeZone resul...
CVE-2025-63459 | Totolink A7000R 9.1.0u.6115_B20201022 sub_421CF0 ssid5g stack-based overflow
31.10.2025 22:40
A vulnerability classified as critical was found in Totolink A7000R 9.1.0u.6115_B20201022. Affected by this issue is the function sub_421CF0. Such manipulation of the argument ssid5g leads to stack-ba...
CVE-2025-63460 | Totolink A7000R 9.1.0u.6115_B20201022 sub_4222E0 ssid5g stack-based overflow
31.10.2025 22:40
A vulnerability classified as critical has been found in Totolink A7000R 9.1.0u.6115_B20201022. Affected by this vulnerability is the function sub_4222E0. This manipulation of the argument ssid5g caus...
CVE-2025-63465 | Totolink LR350 9.3.5u.6369_B20220309 sub_422880 ssid stack-based overflow (EUVD-2025-37385)
31.10.2025 22:39
A vulnerability described as critical has been identified in Totolink LR350 9.3.5u.6369_B20220309. Affected is the function sub_422880. The manipulation of the argument ssid results in stack-based buf...
CVE-2025-63464 | Totolink LR350 9.3.5u.6369_B20220309 sub_42396C ssid stack-based overflow (EUVD-2025-37386)
31.10.2025 22:39
A vulnerability marked as critical has been reported in Totolink LR350 9.3.5u.6369_B20220309. This impacts the function sub_42396C. The manipulation of the argument ssid leads to stack-based buffer ov...
CVE-2025-63463 | Totolink LR350 9.3.5u.6369_B20220309 sub_4232EC wifiOff stack-based overflow
31.10.2025 22:39
A vulnerability labeled as critical has been found in Totolink LR350 9.3.5u.6369_B20220309. This affects the function sub_4232EC. Executing manipulation of the argument wifiOff can lead to stack-based...
CVE-2025-63462 | Totolink A7000R 9.1.0u.6115_B20201022 sub_421A04 wifiOff stack-based overflow
31.10.2025 22:39
A vulnerability identified as critical has been detected in Totolink A7000R 9.1.0u.6115_B20201022. The impacted element is the function sub_421A04. Performing manipulation of the argument wifiOff resu...
CVE-2025-63461 | Totolink A7000R 9.1.0u.6115_B20201022 urldecode ssid5g stack-based overflow
31.10.2025 22:38
A vulnerability categorized as critical has been discovered in Totolink A7000R 9.1.0u.6115_B20201022. The affected element is the function urldecode. Such manipulation of the argument ssid5g leads to ...
CVE-2025-63469 | Totolink LR350 9.3.5u.6369_B20220309 sub_421BAC ssid stack-based overflow (EUVD-2025-37368)
31.10.2025 22:38
A vulnerability was found in Totolink LR350 9.3.5u.6369_B20220309. It has been rated as critical. Impacted is the function sub_421BAC. This manipulation of the argument ssid causes stack-based buffer ...
CVE-2025-12508 | Bizerba BRAIN2 up to 3.06 Active Directory Service cleartext transmission
31.10.2025 22:37
A vulnerability was found in Bizerba BRAIN2 up to 3.06. It has been declared as problematic. This issue affects some unknown processing of the component Active Directory Service. The manipulation resu...
CVE-2025-59501 | Microsoft Configuration Manager/Configuration Manager 2409 authentication spoofing
31.10.2025 22:37
A vulnerability was found in Microsoft Configuration Manager and Configuration Manager 2409. It has been classified as critical. This vulnerability affects unknown code. The manipulation leads to auth...
CVE-2025-60711 | Microsoft Edge up to 140.0.3485.81 protection mechanism
31.10.2025 22:36
A vulnerability was found in Microsoft Edge and classified as critical. This affects an unknown part. Executing manipulation can lead to protection mechanism failure. This vulnerability appears as CV...
CVE-2025-11928 | CSS & JavaScript Toolbox Plugin up to 12.0.5 on WordPress Setting cross site scripting
31.10.2025 17:07
A vulnerability has been found in CSS & JavaScript Toolbox Plugin up to 12.0.5 on WordPress and classified as problematic. Affected by this issue is some unknown functionality of the component Setting...
CVE-2025-11927 | Flying Images Plugin up to 2.4.14 on WordPress cross site scripting
31.10.2025 17:07
A vulnerability, which was classified as problematic, was found in Flying Images Plugin up to 2.4.14 on WordPress. Affected by this vulnerability is an unknown functionality. Such manipulation leads t...
CVE-2025-12118 | Schema Scalpel Plugin up to 1.6.1 on WordPress JSON-LD Schema Post Title cross site scripting
31.10.2025 17:07
A vulnerability, which was classified as problematic, has been found in Schema Scalpel Plugin up to 1.6.1 on WordPress. Affected is an unknown function of the component JSON-LD Schema. This manipulati...
CVE-2025-12367 | SiteSEO Plugin up to 1.3.1 on WordPress authorization
31.10.2025 17:07
A vulnerability classified as critical was found in SiteSEO Plugin up to 1.3.1 on WordPress. This impacts an unknown function. The manipulation results in missing authorization. This vulnerability is...
CVE-2025-12552 | Azure Access BLU-IC2/BLU-IC4 up to 1.19.5 weak password (EUVD-2025-37369)
31.10.2025 17:06
A vulnerability classified as critical has been found in Azure Access BLU-IC2 and BLU-IC4 up to 1.19.5. This affects an unknown function. The manipulation leads to weak password requirements. This vu...
CVE-2025-29270 | Deep Sea Electronics DSE855 up to 1.1.26 realtime.cgi access control (EUVD-2025-37375)
31.10.2025 17:06
A vulnerability described as critical has been identified in Deep Sea Electronics DSE855 up to 1.1.26. The impacted element is an unknown function of the file realtime.cgi. Executing manipulation can ...
CVE-2025-63468 | TOTOLINK LR350 9.3.5u.6369_B20220309 sub_426EF8 http_host buffer overflow (EUVD-2025-37373)
31.10.2025 17:05
A vulnerability marked as critical has been reported in TOTOLINK LR350 9.3.5u.6369_B20220309. The affected element is the function sub_426EF8. Performing manipulation of the argument http_host results...
CVE-2025-63466 | TOTOLINK LR350 9.3.5u.6369_B20220309 sub_426EF8 Password buffer overflow (EUVD-2025-37372)
31.10.2025 17:05
A vulnerability labeled as critical has been found in TOTOLINK LR350 9.3.5u.6369_B20220309. Impacted is the function sub_426EF8. Such manipulation of the argument Password leads to buffer overflow. T...
CVE-2025-63467 | Totolink LR350 9.3.5u.6369_B20220309 sub_425400 ssid buffer overflow (EUVD-2025-37374)
31.10.2025 17:03
A vulnerability identified as critical has been detected in Totolink LR350 9.3.5u.6369_B20220309. This issue affects the function sub_425400. This manipulation of the argument ssid causes buffer overf...
CVE-2025-57108 | Kitware VTK up to 9.5.0 GLTF File Parser vtkGLTFDocumentLoader use after free (Issue 19736 / EUVD-2025-37360)
31.10.2025 17:02
A vulnerability categorized as critical has been discovered in Kitware VTK up to 9.5.0. This vulnerability affects the function vtkGLTFDocumentLoader of the component GLTF File Parser. The manipulatio...
CVE-2025-64168 | agno-agi agno up to 2.2.1 session_state race condition (EUVD-2025-37370)
31.10.2025 16:13
A vulnerability was found in agno-agi agno up to 2.2.1. It has been rated as problematic. This affects an unknown part. The manipulation of the argument session_state leads to race condition. This vu...
CVE-2025-57106 | Kitware VTK up to 9.5.0 vtkGLTFDocumentLoader buffer overflow (EUVD-2025-37362)
31.10.2025 16:12
A vulnerability was found in Kitware VTK up to 9.5.0. It has been declared as critical. Affected by this issue is the function vtkGLTFDocumentLoader. Executing manipulation can lead to buffer overflow...
CVE-2025-57107 | Kitware VTK up to 9.5.0 vtkGLTFDocumentLoader heap-based overflow (EUVD-2025-37361)
31.10.2025 16:12
A vulnerability was found in Kitware VTK up to 9.5.0. It has been classified as critical. Affected by this vulnerability is the function vtkGLTFDocumentLoader. Performing manipulation results in heap-...
CVE-2025-11833 | Post SMTP Plugin up to 3.6.0 on WordPress __construct authorization
31.10.2025 16:11
A vulnerability was found in Post SMTP Plugin up to 3.6.0 on WordPress and classified as problematic. Affected is the function __construct. Such manipulation leads to missing authorization. This vuln...
CVE-2025-60749 | Trimble SketchUp Desktop 2025 sketchup_webhelper.exe uncontrolled search path
31.10.2025 16:01
A vulnerability has been found in Trimble SketchUp Desktop 2025 and classified as problematic. This impacts an unknown function in the library libcef.dll of the file sketchup_webhelper.exe. This manip...
CVE-2025-64389 | Circutor TCPRS1plus 1.0.14 Web Server cleartext transmission
31.10.2025 15:45
A vulnerability, which was classified as problematic, was found in Circutor TCPRS1plus 1.0.14. This affects an unknown function of the component Web Server. The manipulation results in cleartext trans...
CVE-2025-61427 | BEO Atlas Einfuhr Ausfuhr 3.0 Password cross site scripting
31.10.2025 15:44
A vulnerability, which was classified as problematic, has been found in BEO Atlas Einfuhr Ausfuhr 3.0. The impacted element is an unknown function. The manipulation of the argument Password leads to c...
CVE-2025-64385 | Circutor TCPRS1plus 1.0.14 input validation
31.10.2025 15:44
A vulnerability classified as critical was found in Circutor TCPRS1plus 1.0.14. The affected element is an unknown function. Executing manipulation can lead to improper input validation. This vulnera...
CVE-2025-12464 | QEMU e1000 Device stack-based overflow
31.10.2025 15:39
A vulnerability classified as critical has been found in QEMU. Impacted is an unknown function of the component e1000 Device. Performing manipulation results in stack-based buffer overflow. This vuln...
CVE-2025-11922 | Inactive Logout Plugin up to 3.5.5 on WordPress ina_redirect_page_individual_user cross site scripting
31.10.2025 15:39
A vulnerability described as problematic has been identified in Inactive Logout Plugin up to 3.5.5 on WordPress. This issue affects some unknown processing. Such manipulation of the argument ina_redir...
CVE-2025-11174 | Document Library Lite Plugin up to 1.1.6 on WordPress dll_load_posts authorization
31.10.2025 15:39
A vulnerability marked as problematic has been reported in Document Library Lite Plugin up to 1.1.6 on WordPress. This vulnerability affects the function dll_load_posts. This manipulation causes missi...
CVE-2025-11816 | WP Legal Pages Policy Generator, Terms & Conditions Generator Plugin disconnect_account_request authorization
31.10.2025 15:39
A vulnerability labeled as critical has been found in WP Legal Pages Policy Generator, Terms & Conditions Generator Plugin and Privacy Policy Generator, Terms & Conditions Generator Plugin up to 3.5.1...
CVE-2025-11920 | WPCOM Member Plugin up to 1.7.14 on WordPress Shortcode action file inclusion
31.10.2025 15:39
A vulnerability identified as critical has been detected in WPCOM Member Plugin up to 1.7.14 on WordPress. Affected by this issue is some unknown functionality of the component Shortcode Handler. The ...
CVE-2025-64388 | Circutor TCPRS1plus 1.0.14 Web Server resource consumption
31.10.2025 15:30
A vulnerability categorized as problematic has been discovered in Circutor TCPRS1plus 1.0.14. Affected by this vulnerability is an unknown functionality of the component Web Server. Executing manipula...
CVE-2025-64387 | Circutor TCPRS1plus 1.0.14 ui layer
31.10.2025 15:30
A vulnerability was found in Circutor TCPRS1plus 1.0.14. It has been rated as problematic. Affected is an unknown function. Performing manipulation results in improper restriction of rendered ui layer...
CVE-2025-12501 | Opera GameMaker IDE prior 2024.14.0 network_create_server denial of service
31.10.2025 15:30
A vulnerability was found in Opera GameMaker IDE. It has been declared as problematic. This impacts the function network_create_server. Such manipulation leads to denial of service. This vulnerabilit...
CVE-2025-12460 | Afterlogic Aurora Webmail up to 9.8.3 HTML E-mail Message HTML injection
31.10.2025 15:14
A vulnerability was found in Afterlogic Aurora Webmail up to 9.8.3. It has been classified as problematic. This affects an unknown function of the component HTML E-mail Message Handler. This manipulat...
CVE-2025-64386 | Circutor TCPRS1plus 1.0.14 denial of service
31.10.2025 15:10
A vulnerability was found in Circutor TCPRS1plus 1.0.14 and classified as problematic. The impacted element is an unknown function. The manipulation results in denial of service. This vulnerability i...
CVE-2025-36249 | IBM Jazz for Service Management up to 1.1.3.25 missing secure attribute
31.10.2025 14:25
A vulnerability has been found in IBM Jazz for Service Management up to 1.1.3.25 and classified as problematic. The affected element is an unknown function. The manipulation leads to sensitive cookie ...
CVE-2025-33003 | IBM InfoSphere Information Server up to 11.7.1.6 unnecessary privileges
31.10.2025 14:25
A vulnerability, which was classified as critical, was found in IBM InfoSphere Information Server up to 11.7.1.6. Impacted is an unknown function. Executing manipulation can lead to execution with unn...
CVE-2024-13992 | Nagios XI up to 2024R1.0 Missing Page page-missing.php cross site scripting
31.10.2025 14:16
A vulnerability, which was classified as problematic, has been found in Nagios XI up to 2024R1.0. This issue affects some unknown processing of the file page-missing.php of the component Missing Page....
CVE-2025-12547 | LogicalDOC Community Edition up to 9.2.1 Admin Login Page /login.jsp excessive authentication (EUVD-2025-37396)
31.10.2025 14:15
A vulnerability classified as problematic was found in LogicalDOC Community Edition up to 9.2.1. This vulnerability affects unknown code of the file /login.jsp of the component Admin Login Page. Such ...
CVE-2025-12546 | LogicalDOC Community Edition up to 9.2.1 API Key creation UI cross site scripting (EUVD-2025-37395)
31.10.2025 14:15
A vulnerability classified as problematic has been found in LogicalDOC Community Edition up to 9.2.1. This affects an unknown part of the component API Key creation UI. This manipulation causes cross ...
CVE-2025-4952 | ESET NOD32 Antivirus prior 1496 Registry Entry permission assignment
31.10.2025 13:43
A vulnerability described as problematic has been identified in ESET NOD32 Antivirus, Internet Security, Smart Security Premium, Security Ultimate, Small Business Security, Safe Server, Endpoint Antiv...
CVE-2025-64368 | Mikado-Themes Bard Plugin up to 1.6 on WordPress cross-site request forgery (EUVD-2025-37325)
31.10.2025 13:41
A vulnerability marked as problematic has been reported in Mikado-Themes Bard Plugin up to 1.6 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross...
CVE-2025-64367 | Adrian Tobey Groundhogg Plugin up to 4.2.6 on WordPress cross site scripting (EUVD-2025-37326)
31.10.2025 13:41
A vulnerability labeled as problematic has been found in Adrian Tobey Groundhogg Plugin up to 4.2.6 on WordPress. Affected is an unknown function. Executing manipulation can lead to cross site scripti...
CVE-2025-64365 | colabrio Ohio Extra Plugin up to 3.6.0 on WordPress cross site scripting (EUVD-2025-37328)
31.10.2025 13:41
A vulnerability identified as problematic has been detected in colabrio Ohio Extra Plugin up to 3.6.0 on WordPress. This impacts an unknown function. Performing manipulation results in cross site scri...
CVE-2025-64362 | SeventhQueen K Elements Plugin up to 5.5.0 on WordPress cross site scripting (EUVD-2025-37331)
31.10.2025 13:41
A vulnerability categorized as problematic has been discovered in SeventhQueen K Elements Plugin up to 5.5.0 on WordPress. This affects an unknown function. Such manipulation leads to cross site scrip...
CVE-2025-64361 | StylemixThemes Consulting Elementor Widgets Plugin up to 1.4.2 on WordPress cross site scripting
31.10.2025 13:41
A vulnerability was found in StylemixThemes Consulting Elementor Widgets Plugin up to 1.4.2 on WordPress. It has been rated as problematic. The impacted element is an unknown function. This manipulati...
CVE-2025-64357 | Younes JFR Advanced Database Cleaner Plugin up to 3.1.6 on WordPress cross-site request forgery
31.10.2025 13:41
A vulnerability was found in Younes JFR Advanced Database Cleaner Plugin up to 3.1.6 on WordPress. It has been declared as problematic. The affected element is an unknown function. The manipulation re...
CVE-2025-64354 | Matias Ventura Gutenberg Plugin up to 21.8.2 on WordPress cross site scripting
31.10.2025 13:41
A vulnerability was found in Matias Ventura Gutenberg Plugin up to 21.8.2 on WordPress. It has been classified as problematic. Impacted is an unknown function. The manipulation leads to cross site scr...
CVE-2025-64353 | Chouby Polylang Plugin up to 3.7.3 on WordPress deserialization
31.10.2025 13:41
A vulnerability was found in Chouby Polylang Plugin up to 3.7.3 on WordPress and classified as critical. This issue affects some unknown processing. Executing manipulation can lead to deserialization....
CVE-2025-64366 | Stylemix MasterStudy LMS Plugin up to 3.6.27 on WordPress sql injection (EUVD-2025-37327)
31.10.2025 13:41
A vulnerability has been found in Stylemix MasterStudy LMS Plugin up to 3.6.27 on WordPress and classified as critical. This vulnerability affects unknown code. Performing manipulation results in sql ...
CVE-2025-64352 | WPDeveloper Essential Addons for Elementor Plugin up to 6.2.4 on WordPress authorization
31.10.2025 13:41
A vulnerability, which was classified as critical, was found in WPDeveloper Essential Addons for Elementor Plugin up to 6.2.4 on WordPress. This affects an unknown part. Such manipulation leads to mis...
CVE-2025-64351 | Rank Math SEO Plugin up to 1.0.252.1 on WordPress insertion of sensitive information into sent data
31.10.2025 13:41
A vulnerability, which was classified as problematic, has been found in Rank Math SEO Plugin up to 1.0.252.1 on WordPress. Affected by this issue is some unknown functionality. This manipulation cause...
CVE-2025-64364 | StylemixThemes Masterstudy Plugin up to 4.8.126 on WordPress filename control (EUVD-2025-37329)
31.10.2025 13:41
A vulnerability classified as critical was found in StylemixThemes Masterstudy Plugin up to 4.8.126 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation results i...
CVE-2025-64350 | Rank Math SEO Plugin up to 1.0.252.1 on WordPress authorization
31.10.2025 13:41
A vulnerability classified as critical has been found in Rank Math SEO Plugin up to 1.0.252.1 on WordPress. Affected is an unknown function. The manipulation leads to missing authorization. This vuln...
CVE-2025-64358 | WebToffee Smart Coupons for WooCommerce Plugin up to 2.2.3 on WordPress authorization
31.10.2025 13:41
A vulnerability described as critical has been identified in WebToffee Smart Coupons for WooCommerce Plugin up to 2.2.3 on WordPress. This impacts an unknown function. Executing manipulation can lead ...
CVE-2025-64363 | SeventhQueen Kleo Plugin up to 5.5.0 on WordPress filename control (EUVD-2025-37330)
31.10.2025 13:40
A vulnerability marked as critical has been reported in SeventhQueen Kleo Plugin up to 5.5.0 on WordPress. This affects an unknown function. Performing manipulation results in improper control of file...
CVE-2025-64360 | StylemixThemes Consulting Elementor Widgets Plugin up to 1.4.2 on WordPress filename control
31.10.2025 13:40
A vulnerability labeled as critical has been found in StylemixThemes Consulting Elementor Widgets Plugin up to 1.4.2 on WordPress. The impacted element is an unknown function. Such manipulation leads ...
CVE-2025-64359 | StylemixThemes Consulting Plugin up to 6.7.5 on WordPress filename control
31.10.2025 13:40
A vulnerability identified as critical has been detected in StylemixThemes Consulting Plugin up to 6.7.5 on WordPress. The affected element is an unknown function. This manipulation causes improper co...
CVE-2025-64356 | f1logic Insert PHP Code Snippet Plugin up to 1.4.3 on WordPress authorization
31.10.2025 13:40
A vulnerability categorized as critical has been discovered in f1logic Insert PHP Code Snippet Plugin up to 1.4.3 on WordPress. Impacted is an unknown function. The manipulation results in missing aut...
CVE-2025-12447 | Google Chrome up to 141.0.7390.122 Omnibox Remote Code Execution
31.10.2025 13:35
A vulnerability was found in Google Chrome. It has been rated as critical. This issue affects some unknown processing of the component Omnibox. The manipulation leads to Remote Code Execution. This v...
CVE-2025-12446 | Google Chrome up to 141.0.7390.122 SplitView Remote Code Execution
31.10.2025 13:35
A vulnerability was found in Google Chrome. It has been declared as critical. This vulnerability affects unknown code of the component SplitView. Executing manipulation can lead to Remote Code Executi...
RSS Feed eintragen

Machen Sie Ihren RSS-Feed bekannt und erhöhen Sie die Sichtbarkeit Ihrer Website!

RSS-Feed eintragen
RSS-Reader
RSS-Reader finden Sie unter unsere Übersicht: RSS-Reader
Die neuesten Feeds
Die Top-Feeds
meist gelesenen Feeds