Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2025-7434

A vulnerability was found in Tenda FH451 up to 1.0.0.9 and classified as critical. Affected by this issue is the function fromAddressNat of the file /goform/addressNat of the component POST Request Handler. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Tenda
Product
FH451
Provider severity
HIGH
Conflicts
2

CVE-2025-7433

A local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device Encryption 2025.1 and older allows arbitrary code execution.

PUBLISHED
Vendor
Sophos
Product
Sophos Intercept X for Windows
Provider severity
HIGH
Conflicts
0

CVE-2025-7432

DPA countermeasures in Silicon Labs' Series 2 devices are not reseeded under certain conditions.  This may allow an attacker to eventually extract secret keys through a DPA attack.

PUBLISHED
Vendor
silabs.com
Product
Simplicity SDK
Provider severity
LOW
Conflicts
0

CVE-2025-7431

The Knowledge Base plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin slug setting in all versions up to, and including, 2.3.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level access, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disa

PUBLISHED
Vendor
ajay
Product
Knowledge Base
Provider severity
MEDIUM
Conflicts
0

CVE-2025-7430

Zohocorp ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to the Stored XSS Vulnerability in the Folder Message Count and Size report.

PUBLISHED
Vendor
Zohocorp
Product
ManageEngine Exchange Reporter Plus
Provider severity
HIGH
Conflicts
0

CVE-2025-7429

Zohocorp ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to the Stored XSS Vulnerability in the Mails Deleted or Moved report.

PUBLISHED
Vendor
Zohocorp
Product
ManageEngine Exchange Reporter Plus
Provider severity
HIGH
Conflicts
0

CVE-2025-7427

Uncontrolled Search Path Element in Arm Development Studio before 2025 may allow an attacker to perform a DLL hijacking attack. Successful exploitation could lead to local arbitrary code execution in the context of the user running Arm Development Studio.

PUBLISHED
Vendor
Arm
Product
Development Studio
Provider severity
MEDIUM
Conflicts
0

CVE-2025-7426

Information disclosure and exposure of authentication FTP credentials over the debug port 1604 in the MINOVA TTA service. This allows unauthenticated remote access to an active FTP account containing sensitive internal data and import structures. In environments where this FTP server is part of automated business processes (e.g. EDI or data integration), this could lead to data manipulation, extraction, or abuse.  Debug ports 1602, 1603 and 1636 also expose service architecture information and s

PUBLISHED
Vendor
MINOVA Information Services GmbH
Product
TTA
Provider severity
CRITICAL
Conflicts
1

CVE-2025-7425

A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragments, this corruption prevents the proper cleanup of ID attributes. As a result, the system may access freed memory, causing crashes or enabling attackers to trigger heap corruption.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Siemens, Red Hat, Red Hat, GNOME, Red Hat, Red Hat, Siemens, Red Hat, Red Hat, Siemens, Siemens, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Siemens, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Siemens, Red Hat, Red Hat, Red Hat, Red Hat, Siemens, Red Hat, Siemens, Red Hat, Red Hat, Red Hat, Siemens, Red Hat, Red Hat, Red Hat, Siemens, Red Hat, Red Hat, Siemens, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Siemens, Red Hat, Red Hat, Red Hat, Red Hat, Siemens, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Siemens, Siemens, Siemens, Red Hat, Red Hat, Red Hat, Red Hat, Siemens, Siemens, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
Red Hat Enterprise Linux 7 Extended Lifecycle Support, Red Hat OpenShift Container Platform 4.16, Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 10, RUGGEDCOM ROX RX1400, Red Hat OpenShift Container Platform 4.19, Red Hat Enterprise Linux 6, libxml2, Red Hat OpenShift distributed tracing 3.5.2, Red Hat Discovery 2, RUGGEDCOM ROX RX1536, RHOSS-1.36-RHEL-8, RHOSS-1.36-RHEL-8, RUGGEDCOM ROX RX5000, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP, Red Hat Web Terminal 1.12 on RHEL 9, Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions, Red Hat OpenShift Container Platform 4.17, Compliance Operator 1, RHOSS-1.36-RHEL-8, SIMATIC CN 4100, Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On, Red Hat OpenShift Container Platform 4.15, Compliance Operator 1, RHOSS-1.36-RHEL-8, RHOSS-1.36-RHEL-8, RUGGEDCOM ROX MX5000, Red Hat OpenShift Container Platform 4.12, Red Hat OpenShift distributed tracing 3.5.2, Red Hat OpenShift distributed tracing 3.5.2, Red Hat OpenShift distributed tracing 3.5.2, SIMATIC S7-1500 TM MFP - GNU/Linux subsystem, Red Hat Enterprise Linux 9, RUGGEDCOM ROX RX1510, RHOSS-1.36-RHEL-8, Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions, RHOSS-1.36-RHEL-8, RUGGEDCOM ROX RX1512, Red Hat OpenShift Container Platform 4.14, Red Hat Enterprise Linux 8.6 Telecommunications Update Service, Red Hat Enterprise Linux 9.4 Extended Update Support, RUGGEDCOM ROX RX1511, Red Hat OpenShift Container Platform 4.18, Red Hat Enterprise Linux 8.8 Telecommunications Update Service, RUGGEDCOM ROX RX1500, RHOSS-1.36-RHEL-8, Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat Web Terminal 1.11 on RHEL 9, Red Hat OpenShift distributed tracing 3.5.2, Red Hat Web Terminal 1.11 on RHEL 9, Red Hat OpenShift distributed tracing 3.5.2, Compliance Operator 1, RUGGEDCOM ROX RX1524, Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions, Red Hat OpenShift Container Platform 4.13, Red Hat Hardened Images, SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP, Red Hat OpenShift distributed tracing 3.5.2, RHOSS-1.36-RHEL-8, cert-manager operator for Red Hat OpenShift 1.16, Red Hat OpenShift distributed tracing 3.5.2, Red Hat Enterprise Linux 10, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP, RUGGEDCOM ROX RX1501, SIPLUS S7-1500 CPU 1518-4 PN/DP MFP, Red Hat Enterprise Linux 8, File Integrity Operator 1, RHOSS-1.36-RHEL-8, Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions, RUGGEDCOM ROX MX5000RE, SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP, Red Hat OpenShift distributed tracing 3.5.2, RHOSS-1.36-RHEL-8, Red Hat Enterprise Linux 8, Red Hat Insights proxy 1.5, Red Hat Enterprise Linux 8.2 Advanced Update Support
Provider severity
HIGH
Conflicts
1

CVE-2025-7424

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lead to denial of service or unexpected behavior.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, GNOME, Red Hat, Red Hat, Red Hat, Red Hat
Product
Red Hat Enterprise Linux 10, Red Hat Hardened Images, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 7, libxslt, Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 10, Red Hat OpenShift Container Platform 4
Provider severity
HIGH
Conflicts
1

CVE-2025-7423

A vulnerability classified as critical was found in Tenda O3V2 1.0.0.12(3880). Affected by this vulnerability is the function formWifiMacFilterSet of the file /goform/setWrlFilterList of the component httpd. The manipulation of the argument macList leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Tenda
Product
O3V2
Provider severity
HIGH
Conflicts
2

CVE-2025-7422

A vulnerability classified as critical has been found in Tenda O3V2 1.0.0.12(3880). Affected is the function setAutoReboot of the file /goform/setNetworkService of the component httpd. The manipulation of the argument week leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Tenda
Product
O3V2
Provider severity
HIGH
Conflicts
2

CVE-2025-7421

A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been rated as critical. This issue affects the function fromMacFilterModify of the file /goform/operateMacFilter of the component httpd. The manipulation of the argument mac leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Tenda
Product
O3V2
Provider severity
HIGH
Conflicts
2

CVE-2025-7420

A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been declared as critical. This vulnerability affects the function formWifiBasicSet of the file /goform/setWrlBasicInfo of the component httpd. The manipulation of the argument extChannel leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Tenda
Product
O3V2
Provider severity
HIGH
Conflicts
2

CVE-2025-7419

A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been classified as critical. This affects the function fromSpeedTestSet of the file /goform/setRateTest of the component httpd. The manipulation of the argument destIP leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Tenda
Product
O3V2
Provider severity
HIGH
Conflicts
2

CVE-2025-7418

A vulnerability was found in Tenda O3V2 1.0.0.12(3880) and classified as critical. Affected by this issue is the function fromPingResultGet of the file /goform/setPing of the component httpd. The manipulation of the argument destIP leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Tenda
Product
O3V2
Provider severity
HIGH
Conflicts
2

CVE-2025-7417

A vulnerability has been found in Tenda O3V2 1.0.0.12(3880) and classified as critical. Affected by this vulnerability is the function fromNetToolGet of the file /goform/setPingInfo of the component httpd. The manipulation of the argument ip leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Tenda
Product
O3V2
Provider severity
HIGH
Conflicts
2

CVE-2025-7416

A vulnerability, which was classified as critical, was found in Tenda O3V2 1.0.0.12(3880). Affected is the function fromSysToolTime of the file /goform/setSysTimeInfo of the component httpd. The manipulation of the argument Time leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Tenda
Product
O3V2
Provider severity
HIGH
Conflicts
2

CVE-2025-7415

A vulnerability, which was classified as critical, has been found in Tenda O3V2 1.0.0.12(3880). This issue affects the function fromTraceroutGet of the file /goform/getTraceroute of the component httpd. The manipulation of the argument dest leads to command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Tenda
Product
O3V2
Provider severity
MEDIUM
Conflicts
2

CVE-2025-7414

A vulnerability classified as critical was found in Tenda O3V2 1.0.0.12(3880). This vulnerability affects the function fromNetToolGet of the file /goform/setPingInfo of the component httpd. The manipulation of the argument domain leads to os command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Tenda
Product
O3V2
Provider severity
MEDIUM
Conflicts
2

CVE-2025-7413

A vulnerability classified as critical has been found in code-projects Library System 1.0. This affects an unknown part of the file /user/teacher/profile.php. The manipulation of the argument image leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
code-projects
Product
Library System
Provider severity
MEDIUM
Conflicts
2

CVE-2025-7412

A vulnerability was found in code-projects Library System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /user/student/profile.php. The manipulation of the argument image leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
code-projects
Product
Library System
Provider severity
MEDIUM
Conflicts
2

CVE-2025-7411

A vulnerability was found in code-projects LifeStyle Store 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /success.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
code-projects
Product
LifeStyle Store
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2025-7410

A vulnerability was found in code-projects LifeStyle Store 1.0. It has been classified as critical. Affected is an unknown function of the file /cart_remove.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
code-projects
Product
LifeStyle Store
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2025-7409

A vulnerability was found in code-projects Mobile Shop 1.0 and classified as critical. This issue affects some unknown processing of the file /LoginAsAdmin.php. The manipulation of the argument email leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
code-projects
Product
Mobile Shop
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2025-7408

A vulnerability has been found in SourceCodester Zoo Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file /admin/templates/animal_form_template.php. The manipulation of the argument msg leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
SourceCodester
Product
Zoo Management System
Provider severity
LOW, MEDIUM
Conflicts
2

CVE-2025-7407

A vulnerability, which was classified as critical, was found in Netgear D6400 1.0.0.114. This affects an unknown part of the file diag.cgi. The manipulation of the argument host_name leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early and confirmed the existence of the vulnerability. They reacted very quickly, professional and kind. This vulnerability only affects products that

PUBLISHED
Vendor
Netgear
Product
D6400
Provider severity
MEDIUM
Conflicts
2

CVE-2025-7406

Nokia MantaRay NM is vulnerable to a sudo privilege escalation vulnerability where a local attacker possessing administrative (local admin) privileges can escalate to full root privileges on the host. Successful exploitation results in root-level access to the filesystem and the ability to execute actions as root. The risk can be temporarily mitigated by restricting the set of commands permitted via sudo for the affected accounts.

PUBLISHED
Vendor
Nokia
Product
MantaRay NM
Provider severity
HIGH
Conflicts
0

CVE-2025-7405

Missing Authentication for Critical Function vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthenticated attacker to read or write the device values of the product and stop the operation of the programs, since MODBUS/TCP in the products does not have authentication features.

PUBLISHED
Vendor
Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation, Mitsubishi Electric Corporation
Product
MELSEC iQ-F Series FX5S-30MR/ES, MELSEC iQ-F Series FX5UC-96MT/D, MELSEC iQ-F Series FX5U-80MT/DS, MELSEC iQ-F Series FX5S-30MT/ES, MELSEC iQ-F Series FX5U-32MR/DS, MELSEC iQ-F Series FX5UJ-24MT/DS, MELSEC iQ-F Series FX5S-80MR/DS, MELSEC iQ-F Series FX5UJ-40MR/DS, MELSEC iQ-F Series FX5S-60MR/ES, MELSEC iQ-F Series FX5S-60MR/DS, MELSEC iQ-F Series FX5UC-64MT/D, MELSEC iQ-F Series FX5S-80MR/ES, MELSEC iQ-F Series FX5S-40MR/DS, MELSEC iQ-F Series FX5S-60MT/DS, MELSEC iQ-F Series FX5UC-32MT/DS-TS, MELSEC iQ-F Series FX5S-40MR/ES, MELSEC iQ-F Series FX5U-80MR/ES, MELSEC iQ-F Series FX5UC-64MT/DSS, MELSEC iQ-F Series FX5S-60MT/ES, MELSEC iQ-F Series FX5UC-32MT/DSS, MELSEC iQ-F Series FX5UJ-24MT/ES, MELSEC iQ-F Series FX5S-80MT/ES, MELSEC iQ-F Series FX5U-80MT/ES, MELSEC iQ-F Series FX5UJ-24MR/DS, MELSEC iQ-F Series FX5UJ-40MR/ES, MELSEC iQ-F Series FX5UC-32MR/DS-TS, MELSEC iQ-F Series FX5UJ-60MT/ES, MELSEC iQ-F Series FX5UJ-24MT/ESS, MELSEC iQ-F Series FX5U-64MR/ES, MELSEC iQ-F Series FX5UC-32MT/DSS-TS, MELSEC iQ-F Series FX5UC-96MT/DSS, MELSEC iQ-F Series FX5UJ-40MT/ES-A, MELSEC iQ-F Series FX5U-64MT/ES, MELSEC iQ-F Series FX5UJ-60MR/DS, MELSEC iQ-F Series FX5UJ-60MT/ESS, MELSEC iQ-F Series FX5UJ-60MT/DSS, MELSEC iQ-F Series FX5S-80MT/ESS, MELSEC iQ-F Series FX5U-80MR/DS, MELSEC iQ-F Series FX5U-32MT/DS, MELSEC iQ-F Series FX5UJ-60MR/ES-A, MELSEC iQ-F Series FX5S-30MT/DSS, MELSEC iQ-F Series FX5U-80MT/DSS, MELSEC iQ-F Series FX5S-60MT/DSS, MELSEC iQ-F Series FX5U-80MT/ESS, MELSEC iQ-F Series FX5S-30MR/DS, MELSEC iQ-F Series FX5S-40MT/ESS, MELSEC iQ-F Series FX5S-30MT/DS, MELSEC iQ-F Series FX5UC-32MT/D, MELSEC iQ-F Series FX5UJ-24MT/DSS, MELSEC iQ-F Series FX5UJ-24MR/ES, MELSEC iQ-F Series FX5U-64MT/ESS, MELSEC iQ-F Series FX5UJ-40MT/ESS, MELSEC iQ-F Series FX5UJ-40MT/DS, MELSEC iQ-F Series FX5S-40MT/DSS, MELSEC iQ-F Series FX5S-40MT/ES, MELSEC iQ-F Series FX5U-32MT/DSS, MELSEC iQ-F Series FX5U-64MT/DSS, MELSEC iQ-F Series FX5S-80MT/DS, MELSEC iQ-F Series FX5UJ-40MT/ES, MELSEC iQ-F Series FX5UJ-24MR/ES-A, MELSEC iQ-F Series FX5UJ-60MR/ES, MELSEC iQ-F Series FX5S-60MT/ESS, MELSEC iQ-F Series FX5S-30MT/ESS, MELSEC iQ-F Series FX5U-32MT/ESS, MELSEC iQ-F Series FX5S-40MT/DS, MELSEC iQ-F Series FX5U-64MR/DS, MELSEC iQ-F Series FX5UJ-40MR/ES-A, MELSEC iQ-F Series FX5S-80MT/DSS, MELSEC iQ-F Series FX5UJ-24MT/ES-A, MELSEC iQ-F Series FX5UJ-60MT/DS, MELSEC iQ-F Series FX5U-32MT/ES, MELSEC iQ-F Series FX5UJ-60MT/ES-A, MELSEC iQ-F Series FX5U-32MR/ES, MELSEC iQ-F Series FX5UJ-40MT/DSS, MELSEC iQ-F Series FX5U-64MT/DS
Provider severity
HIGH
Conflicts
1

CVE-2025-7404

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Calibre Web, Autocaliweb allows Blind OS Command Injection.This issue affects Calibre Web: 0.6.24 (Nicolette); Autocaliweb: from 0.7.0 before 0.7.1.

PUBLISHED
Vendor
Calibre Web, Autocaliweb
Product
Calibre Web, Autocaliweb
Provider severity
MEDIUM
Conflicts
1

CVE-2025-7403

Unsafe handling in bt_conn_tx_processor causes a use-after-free, resulting in a write-before-zero. The written 4 bytes are attacker-controlled, enabling precise memory corruption.

PUBLISHED
Vendor
zephyrproject-rtos
Product
Zephyr
Provider severity
HIGH
Conflicts
0

CVE-2025-7402

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to time-based SQL Injection via the ‘site_id’ parameter in all versions up to, and including, 4.95 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the dat

PUBLISHED
Vendor
scripteo
Product
Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager
Provider severity
HIGH
Conflicts
0

CVE-2025-7401

The Premium Age Verification / Restriction for WordPress plugin for WordPress is vulnerable to arbitrary file read and write due to the existence of an insufficiently protected remote support functionality in remote_tunnel.php in all versions up to, and including, 3.0.2. This makes it possible for unauthenticated attackers to read from or write to arbitrary files on the affected site's server which may make the exposure of sensitive information or remote code execution possible.

PUBLISHED
Vendor
aa-team
Product
Premium Age Verification / Restriction for WordPress
Provider severity
CRITICAL
Conflicts
0

CVE-2025-7400

The Featured Image from URL (FIFU) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via a post's Featured Image custom fields in all versions up to, and including, 5.2.7 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. NOTE: This vulnerability was partially fixed in version 5.

PUBLISHED
Vendor
marceljm
Product
Featured Image from URL (FIFU)
Provider severity
MEDIUM
Conflicts
0

CVE-2025-7399

The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via an Elementor display setting in all versions up to, and including, 28.1.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PUBLISHED
Vendor
MuffinGroup
Product
Betheme
Provider severity
MEDIUM
Conflicts
0

CVE-2025-7398

Brocade ASCG before 3.3.0 allows for the use of medium strength cryptography algorithms on internal ports ports 9000 and 8036.

PUBLISHED
Vendor
Broadcom
Product
Brocade ASCG
Provider severity
HIGH
Conflicts
0

CVE-2025-7397

A vulnerability in the ascgshell, of Brocade ASCG before 3.3.0 stores any command executed in the Command Line Interface (CLI) in plain text within the command history. A local authenticated user that can access sensitive information like passwords within the CLI history leading to unauthorized access and potential data breaches.

PUBLISHED
Vendor
Broadcom
Product
Brocade ASCG
Provider severity
MEDIUM
Conflicts
0

CVE-2025-7396

In wolfSSL release 5.8.2 blinding support is turned on by default for Curve25519 in applicable builds. The blinding configure option is only for the base C implementation of Curve25519. It is not needed, or available with; ARM assembly builds, Intel assembly builds, and the small Curve25519 feature. While the side-channel attack on extracting a private key would be very difficult to execute in practice, enabling blinding provides an additional layer of protection for devices that may be more sus

PUBLISHED
Vendor
wolfSSL
Product
wolfSSL
Provider severity
MEDIUM
Conflicts
0

CVE-2025-7395

A certificate verification error in wolfSSL when building with the WOLFSSL_SYS_CA_CERTS and WOLFSSL_APPLE_NATIVE_CERT_VALIDATION options results in the wolfSSL client failing to properly verify the server certificate's domain name, allowing any certificate issued by a trusted CA to be accepted regardless of the hostname.

PUBLISHED
Vendor
wolfSSL
Product
wolfSSL
Provider severity
CRITICAL
Conflicts
0

CVE-2025-7394

In the OpenSSL compatibility layer implementation, the function RAND_poll() was not behaving as expected and leading to the potential for predictable values returned from RAND_bytes() after fork() is called. This can lead to weak or predictable random numbers generated in applications that are both using RAND_bytes() and doing fork() operations. This only affects applications explicitly calling RAND_bytes() after fork() and does not affect any internal TLS operations. Although RAND_bytes() docum

PUBLISHED
Vendor
wolfSSL
Product
wolfSSL
Provider severity
HIGH
Conflicts
0

CVE-2025-7393

Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Mail Login allows Brute Force.This issue affects Mail Login: from 3.0.0 before 3.2.0, from 4.0.0 before 4.2.0.

PUBLISHED
Vendor
Drupal
Product
Mail Login
Provider severity
CRITICAL
Conflicts
0

CVE-2025-7392

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Cookies Addons allows Cross-Site Scripting (XSS).This issue affects Cookies Addons: from 1.0.0 before 1.2.4.

PUBLISHED
Vendor
Drupal
Product
Cookies Addons
Provider severity
MEDIUM
Conflicts
0

CVE-2025-7390

A malicious client can bypass the client certificate trust check of an opc.https server when the server endpoint is configured to allow only secure communication.

PUBLISHED
Vendor
Softing, Softing, Softing
Product
OPC UA C++ SDK, edgeAggregator, edgeConnector
Provider severity
CRITICAL
Conflicts
1

CVE-2025-7389

A vulnerability in the AdminServer component of OpenEdge on all supported platforms grants its authenticated users OS-level access to the server through the adopted authority of the AdminServer process itself.  The delegated authority of the AdminServer could allow its users the ability to read arbitrary files on the host system through the misuse of the setFile() and openFile() methods exposed through the RMI interface.  Misuse was limited only by OS-level authority of the AdminServer's elevat

PUBLISHED
Vendor
Progress Software Corporation
Product
OpenEdge
Provider severity
HIGH
Conflicts
0

CVE-2025-7388

It was possible to perform Remote Command Execution (RCE) via Java RMI interface in the OpenEdge AdminServer, allowing authenticated users to inject and execute OS commands under the delegated authority of the AdminServer process.  An RMI interface permitted manipulation of a configuration property with inadequate input validation leading to OS command injection.

PUBLISHED
Vendor
Progress Software Corporation
Product
OpenEdge
Provider severity
HIGH
Conflicts
0

CVE-2025-7387

The Lana Downloads Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the endpoint parameters in versions up to, and including, 1.10.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with administrator-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PUBLISHED
Vendor
lanacodes
Product
Lana Downloads Manager
Provider severity
MEDIUM
Conflicts
0

CVE-2025-7386

Information exposure vulnerability in Hitachi Storage Navigator. This issue affects Hitachi Virtual Storage Platform 5100, 5200, 5500, 5600, 5100H, 5200H, 5500H, 5600H, VX8: before DKCMAIN Ver. 90-09-24-00/00, SVP Ver. 90-09-24/00, before DKCMAIN Ver. 90-08-86-00/00, SVP Ver. 90-08-86/00; Hitachi Virtual Storage Platform G1000, G1500, F1500, VX7: before DKCMAIN Ver. 80-06-96-00/00, SVP Ver. 80-06-91/00.

PUBLISHED
Vendor
Hitachi, Hitachi
Product
Hitachi Virtual Storage Platform G1000, G1500, F1500, VX7, Hitachi Virtual Storage Platform 5100, 5200, 5500, 5600, 5100H, 5200H, 5500H, 5600H, VX8
Provider severity
MEDIUM
Conflicts
1

CVE-2025-7385

Input from search query parameter in GOV CMS is not sanitized properly, leading to a Blind SQL injection vulnerability, which might be exploited by an unauthenticated remote attacker. Versions 4.0 and above are not affected.

PUBLISHED
Vendor
Concept Intermedia
Product
GOV CMS
Provider severity
CRITICAL
Conflicts
0

CVE-2025-7384

The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.4.3 via deserialization of untrusted input in the get_lead_detail function. This makes it possible for unauthenticated attackers to inject a PHP Object. The additional presence of a POP chain in the Contact Form 7 plugin, which is likely to be used alongside, allows attackers to delete arbitrary files, leading to a denial of service or remot

PUBLISHED
Vendor
crmperks
Product
Database for Contact Form 7, WPforms, Elementor forms
Provider severity
CRITICAL
Conflicts
0

CVE-2025-7383

Padding oracle attack vulnerability in Oberon microsystem AG’s Oberon PSA Crypto library in all versions since 1.0.0 and prior to 1.5.1 allows an attacker to recover plaintexts via timing measurements of AES-CBC PKCS#7 decrypt operations.

PUBLISHED
Vendor
Oberon microsystems AG
Product
Oberon PSA Crypto
Provider severity
MEDIUM
Conflicts
1