Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2025-62666

Allocation of Resources Without Limits or Throttling vulnerability in The Wikimedia Foundation Mediawiki - CirrusSearch Extension allows HTTP DoS.This issue affects Mediawiki - CirrusSearch Extension: from master before 1.43.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
Mediawiki - CirrusSearch Extension
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62665

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation Mediawiki - Skin:BlueSky allows Stored XSS.This issue affects Mediawiki - Skin:BlueSky: from master before 1.39.

PUBLISHED
Vendor
Wikimedia Foundation
Product
Mediawiki - Skin:BlueSky
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62664

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation Mediawiki - ImageRating Extension allows Stored XSS.This issue affects Mediawiki - ImageRating Extension: from master before 1.39.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
Mediawiki - ImageRating Extension
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62663

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation Mediawiki - UploadWizard Extension allows Stored XSS.This issue affects Mediawiki - UploadWizard Extension: from master before 1.39.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
Mediawiki - UploadWizard Extension
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62662

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation Mediawiki - AdvancedSearch Extension allows Stored XSS.This issue affects Mediawiki - AdvancedSearch Extension: from master before 1.39.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
Mediawiki - AdvancedSearch Extension
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62661

Incorrect Default Permissions vulnerability in The Wikimedia Foundation Mediawiki - Thanks Extension, Mediawiki - Growth Experiments Extension allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Mediawiki - Thanks Extension, Mediawiki - Growth Experiments Extension: from 1.43 before 1.44.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
Mediawiki - Thanks Extension, Mediawiki - Growth Experiments Extension
Provider severity
MEDIUM
Conflicts
0

CVE-2025-6266

A vulnerability was detected in Teledyne FLIR AX8 up to 1.46. Affected by this vulnerability is an unknown functionality of the file /upload.php. Performing manipulation of the argument File results in unrestricted upload. It is possible to initiate the attack remotely. The exploit is now public and may be used. Upgrading to version 1.49.16 addresses this issue. Upgrading the affected component is recommended. The vendor points out: "FLIR AX8 internal web site has been refactored to be able to h

PUBLISHED
Vendor
Teledyne FLIR
Product
AX8
Provider severity
MEDIUM
Conflicts
2

CVE-2025-62659

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation MediaWiki CookieConsent extension allows Cross-Site Scripting (XSS).This issue affects MediaWiki CookieConsent extension: from v0.1.0 before v2.0.0.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
MediaWiki CookieConsent extension
Provider severity
LOW
Conflicts
0

CVE-2025-62658

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foundation MediaWiki WatchAnalytics extension allows SQL Injection.This issue affects MediaWiki WatchAnalytics extension: 1.43, 1.44.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
MediaWiki WatchAnalytics extension
Provider severity
HIGH
Conflicts
0

CVE-2025-62657

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation MediaWiki PageForms extension allows Stored XSS.This issue affects MediaWiki PageForms extension: 1.44.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
MediaWiki PageForms extension
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62656

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation MediaWiki GlobalBlocking extension allows Stored XSS.This issue affects MediaWiki GlobalBlocking extension: 1.43, 1.44.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
MediaWiki GlobalBlocking extension
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62655

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foundation MediaWiki Cargo extension allows SQL Injection.This issue affects MediaWiki Cargo extension: 1.39, 1.43, 1.44.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
MediaWiki Cargo extension
Provider severity
LOW
Conflicts
0

CVE-2025-62654

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation MediaWiki QuizGame extension allows Stored XSS.This issue affects MediaWiki QuizGame extension: 1.39, 1.43, 1.44.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
MediaWiki QuizGame extension
Provider severity
LOW
Conflicts
0

CVE-2025-62653

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation MediaWiki PollNY extension allows Stored XSS.This issue affects MediaWiki PollNY extension: 1.39, 1.43, 1.44.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
MediaWiki PollNY extension
Provider severity
LOW
Conflicts
0

CVE-2025-62652

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation MediaWiki WebAuthn extension allows Stored XSS.This issue affects MediaWiki WebAuthn extension: 1.39, 1.43, 1.44.

PUBLISHED
Vendor
The Wikimedia Foundation
Product
MediaWiki WebAuthn extension
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62651

The Restaurant Brands International (RBI) assistant platform through 2025-09-06 does not implement access control for the bathroom rating interface.

PUBLISHED
Vendor
Restaurant Brands International
Product
assistant platform
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62650

The Restaurant Brands International (RBI) assistant platform through 2025-09-06 relies on client-side authentication for use of the diagnostic screen.

PUBLISHED
Vendor
Restaurant Brands International
Product
assistant platform
Provider severity
HIGH
Conflicts
0

CVE-2025-6265

A path traversal vulnerability in the file_upload-cgi CGI program of Zyxel NWA50AX PRO firmware version 7.10(ACGE.2) and earlier could allow an authenticated attacker with administrator privileges to access specific directories and delete files, such as the configuration file, on the affected device.

PUBLISHED
Vendor
Zyxel
Product
NWA50AX PRO firmware
Provider severity
HIGH
Conflicts
0

CVE-2025-62649

The Restaurant Brands International (RBI) assistant platform through 2025-09-06 relies on client-side authentication for submission of equipment orders.

PUBLISHED
Vendor
Restaurant Brands International
Product
assistant platform
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62648

The Restaurant Brands International (RBI) assistant platform through 2025-09-06 allows remote attackers to adjust Drive Thru speaker audio volume.

PUBLISHED
Vendor
Restaurant Brands International
Product
assistant platform
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62647

The Restaurant Brands International (RBI) assistant platform through 2025-09-06 provides the functionality of returning a JWT that can be used to call an API to return a signed AWS upload URL, for any store's path.

PUBLISHED
Vendor
Restaurant Brands International
Product
assistant platform
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62646

The Restaurant Brands International (RBI) assistant platform through 2025-09-06 allows remote attackers to review the stored audio of conversations between associates and Drive Thru customers.

PUBLISHED
Vendor
Restaurant Brands International
Product
assistant platform
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62645

The Restaurant Brands International (RBI) assistant platform through 2025-09-06 allows a remote authenticated attacker to obtain a token with administrative privileges for the entire platform via the createToken GraphQL mutation.

PUBLISHED
Vendor
Restaurant Brands International
Product
assistant platform
Provider severity
CRITICAL
Conflicts
0

CVE-2025-62644

The Restaurant Brands International (RBI) assistant platform through 2025-09-06 has a Global Store Directory that shares personal information among authenticated users.

PUBLISHED
Vendor
Restaurant Brands International
Product
assistant platform
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62643

The Restaurant Brands International (RBI) assistant platform through 2025-09-06 transmits passwords of user accounts in cleartext e-mail messages.

PUBLISHED
Vendor
Restaurant Brands International
Product
assistant platform
Provider severity
LOW
Conflicts
0

CVE-2025-62642

The Restaurant Brands International (RBI) assistant platform through 2025-09-06 has an "Anyone Can Join This Party" signup API that does not verify user account creation, allowing a remote unauthenticated attacker to create a user account.

PUBLISHED
Vendor
Restaurant Brands International
Product
assistant platform
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62641

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.12 and 7.2.2. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result

PUBLISHED
Vendor
Oracle Corporation
Product
Oracle VM VirtualBox
Provider severity
HIGH
Conflicts
1

CVE-2025-6264

Velociraptor allows collection of VQL queries packaged into Artifacts from endpoints. These artifacts can be used to do anything and usually run with elevated permissions.  To limit access to some dangerous artifact, Velociraptor allows for those to require high permissions like EXECVE to launch. The Admin.Client.UpdateClientConfig is an artifact used to update the client's configuration. This artifact did not enforce an additional required permission, allowing users with COLLECT_CLIENT permiss

PUBLISHED
Vendor
Rapid7
Product
Velociraptor
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62631

An insufficient session expiration vulnerability [CWE-613] vulnerability in Fortinet FortiOS 7.4.0, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions allows attacker to maintain access to network resources via an active SSLVPN session not terminated after a user's password change under particular conditions outside of the attacker's control

PUBLISHED
Vendor
Fortinet
Product
FortiOS
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62630

Due to insufficient sanitization, an attacker can upload a specially crafted configuration file to traverse directories and achieve remote code execution with system-level permissions.

PUBLISHED
Vendor
Advantech
Product
DeviceOn/iEdge
Provider severity
HIGH
Conflicts
2

CVE-2025-62628

Unsafe OpenSSL initialization within some AMD optional tools may allow a local user-privileged attacker to inject a malicious DLL, potentially resulting in arbitrary code execution.

PUBLISHED
Vendor
AMD, AMD, AMD, AMD, AMD, AMD
Product
DASH CLI - Command Line Application, AMD Cloud Manageability Service (ACMS), AMD Management Console (AMC), AMD Manageability API, AIM-T Manageability Service, AMD Management Plug-In for SCCM
Provider severity
HIGH
Conflicts
1

CVE-2025-62627

An untrusted pointer dereference in the ionic cloud driver for VMWare ESXi could allow an attacker with an unprivileged VM to read kernel memory or co-located guest VM memory, potentially resulting in loss of confidentiality or availability.

PUBLISHED
Vendor
AMD
Product
ESXi 8.x and ESXi 9.x hosts using AMD-Pensando DPU products
Provider severity
HIGH
Conflicts
0

CVE-2025-62626

Improper handling of insufficient entropy in the AMD CPUs could allow a local attacker to influence the values returned by the RDSEED instruction, potentially resulting in the consumption of insufficiently random values.

PUBLISHED
Vendor
AMD, AMD
Product
AMD EPYC™ 9005 Series Processors, AMD Ryzen™ 9000HX Series Processors
Provider severity
HIGH
Conflicts
1

CVE-2025-62625

Improper privilege management in the KVM key download component could allow an attacker to swap tokens and download sensitive keys, potentially resulting in unauthorized access to privileged resources and loss of confidentiality.

PUBLISHED
Vendor
AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD
Product
AMD Ryzen™ 7020 Series Processors with Radeon™ Graphics, AMD Ryzen™ 5000 Series Desktop Processors, AMD Ryzen™ 7045 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 8000 Series Desktop Processors, AMD Ryzen™ 9000HX Series Processors, AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 6000 Series Processors with Radeon™ Graphics, AMD Ryzen™ 7035 Series Processors with Radeon™ Graphics, Not public, AMD Ryzen™ 3000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ Threadripper™ PRO 5000 WX-Series Processors, AMD Ryzen™ 3000 Series Desktop Processors, AMD Ryzen™ Threadripper™ PRO 7000 WX-Series Processors, AMD Ryzen™ 5000 Series Desktop Processors with Radeon™ Graphics, AMD Ryzen™ 8000 Series Desktop Processors, AMD Ryzen™ 7000 Series Desktop Processors, AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ Threadripper™ PRO 9000 WX-Series Processors, AMD Ryzen™ AI Max 300 Series Processors, AMD Ryzen™ 7000 Series Desktop Processors, AMD Ryzen™ 7030 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ Threadripper™ 9000 Processors, AMD Ryzen™ Threadripper™ 7000 Processors, AMD Ryzen™ 7040 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ AI 300 Series Processors, AMD Ryzen™ 5000 Series Desktop Processors, AMD Ryzen™ Threadripper™ 3000 Processors, AMD Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics, AMD Device Management Portal (ADMP), AMD Ryzen™ 7000 Series Desktop Processors, AMD Ryzen™ Threadripper™ PRO 3000 WX-Series Processors, AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 4000 Series Desktop Processors, AMD Ryzen™ 3000 Series Desktop Processors, AMD Ryzen™ Threadripper™ PRO 3000 WX-Series Processors, AMD Ryzen™ 8040 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 9000 Series Desktop Processors, AMD Ryzen™ Threadripper™ PRO 7000 WX-Series Processors
Provider severity
MEDIUM
Conflicts
1

CVE-2025-62624

A heap-based buffer overflow in the ionic cloud driver for VMware ESXi could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

PUBLISHED
Vendor
AMD
Product
ESXi 8.x and ESXi 9.x hosts using AMD-Pensando DPU products
Provider severity
HIGH
Conflicts
0

CVE-2025-62623

A heap-based buffer overflow in the ionic cloud driver for VMware ESXi could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

PUBLISHED
Vendor
AMD
Product
ESXi 8.x and ESXi 9.x hosts using AMD-Pensando DPU products
Provider severity
HIGH
Conflicts
0

CVE-2025-6262

The muse.ai video embedding plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's muse-ai shortcode in all versions up to, and including, 0.4 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PUBLISHED
Vendor
museai
Product
skiv video embedding
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62619

Missing authentication in the KVM key download endpoint could allow an unauthenticated attacker with knowledge of the exposed URL to retrieve sensitive keys, potentially leading to loss of confidentiality.

PUBLISHED
Vendor
AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD, AMD
Product
AMD Ryzen™ 9000 Series Desktop Processors, AMD Ryzen™ AI Max 300 Series Processors, AMD Ryzen™ 3000 Series Desktop Processors, AMD Ryzen™ 5000 Series Desktop Processors, AMD Ryzen™ 7000 Series Desktop Processors, AMD Ryzen™ 8000 Series Desktop Processors, AMD Ryzen™ 7030 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 7040 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 7000 Series Desktop Processors, AMD Ryzen™ Threadripper™ 3000 Processors, AMD Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ Threadripper™ PRO 3000 WX-Series Processors, AMD Ryzen™ 5000 Series Desktop Processors with Radeon™ Graphics, AMD Ryzen™ 3000 Series Desktop Processors, Not public, AMD Ryzen™ Threadripper™ PRO 3000 WX-Series Processors, AMD Ryzen™ 7045 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ Threadripper™ PRO 5000 WX-Series Processors, AMD Ryzen™ Threadripper™ PRO 9000 WX-Series Processors, AMD Ryzen™ Threadripper™ PRO 7000 WX-Series Processors, AMD Ryzen™ 8040 Series Mobile Processors with Radeon™ Graphics, AMD Device Management Portal (ADMP), AMD Ryzen™ 7000 Series Desktop Processors, AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ AI 300 Series Processors, AMD Ryzen™ 5000 Series Desktop Processors, AMD Ryzen™ 9000HX Series Processors, AMD Ryzen™ 8000 Series Desktop Processors, AMD Ryzen™ 4000 Series Desktop Processors, AMD Ryzen™ Threadripper™ PRO 7000 WX-Series Processors, AMD Ryzen™ 6000 Series Processors with Radeon™ Graphics, AMD Ryzen™ 7035 Series Processors with Radeon™ Graphics, AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics
Provider severity
MEDIUM
Conflicts
1

CVE-2025-62618

ELOG allows an authenticated user to upload arbitrary HTML files. The HTML content is executed in the context of other users when they open the file. Because ELOG includes usernames and password hashes in certain HTTP requests, an attacker can obtain the target's credentials and replay them or crack the password hash offline. In ELOG 3.1.5-20251014 release, HTML files are rendered as plain text.

PUBLISHED
Vendor
ELOG
Product
ELOG
Provider severity
HIGH
Conflicts
2

CVE-2025-62617

Admidio is an open-source user management solution. Prior to version 4.3.17, an authenticated SQL injection vulnerability exists in the member assignment data retrieval functionality of Admidio. Any authenticated user with permissions to assign members to a role (such as an administrator) can exploit this vulnerability to execute arbitrary SQL commands. This can lead to a full compromise of the application's database, including reading, modifying, or deleting all data. This issue has been patche

PUBLISHED
Vendor
Admidio
Product
admidio
Provider severity
HIGH
Conflicts
0

CVE-2025-62616

AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents that automate complex workflows. Prior to autogpt-platform-beta-v0.6.34, in SendDiscordFileBlock, the third-party library aiohttp.ClientSession().get is used directly to access the URL, but the input URL is not filtered, which will cause SSRF vulnerability. This issue has been patched in autogpt-platform-beta-v0.6.34.

PUBLISHED
Vendor
Significant-Gravitas
Product
AutoGPT
Provider severity
CRITICAL
Conflicts
0

CVE-2025-62615

AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents that automate complex workflows. Prior to autogpt-platform-beta-v0.6.34, in RSSFeedBlock, the third-party library urllib.request.urlopen is used directly to access the URL, but the input URL is not filtered, which will cause SSRF vulnerability. This issue has been patched in autogpt-platform-beta-v0.6.34.

PUBLISHED
Vendor
Significant-Gravitas
Product
AutoGPT
Provider severity
CRITICAL
Conflicts
0

CVE-2025-62614

BookLore is a self-hosted web app for organizing and managing personal book collections. In versions 1.8.1 and prior, an authentication bypass vulnerability in the BookMediaController allows any unauthenticated user to access and download book covers, thumbnails, and complete PDF/CBX page content without authorization. The vulnerability exists because multiple media endpoints lack proper access control annotations, and the CoverJwtFilter continues request processing even when no authentication t

PUBLISHED
Vendor
booklore-app
Product
booklore
Provider severity
HIGH
Conflicts
0

CVE-2025-62613

VDO.Ninja is a tool that brings remote video feeds into OBS or other studio software via WebRTC. From versions 28.0 to before 28.4, a reflected Cross-Site Scripting (XSS) vulnerability exists on examples/control.html through the room parameter, which is improperly sanitized before being rendered in the DOM. The application fails to validate and encode user input, allowing malicious scripts to be injected and executed. This issue has been patched in version 28.4.

PUBLISHED
Vendor
steveseguin
Product
vdo.ninja
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62612

FastGPT is an AI Agent building platform. Prior to version 4.11.1, in the workflow file reading node, the network link is not security-verified, posing a risk of SSRF attacks. This issue has been patched in version 4.11.1.

PUBLISHED
Vendor
labring
Product
FastGPT
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62611

aiomysql is a library for accessing a MySQL database from the asyncio. Prior to version 0.3.0, the client-side settings are not checked before sending local files to MySQL server, which allows obtaining arbitrary files from the client using a rogue server. It is possible to create a rogue MySQL server that emulates authorization, ignores client flags and requests arbitrary files from the client by sending a LOAD_LOCAL instruction packet. This issue has been patched in version 0.3.0.

PUBLISHED
Vendor
aio-libs
Product
aiomysql
Provider severity
HIGH
Conflicts
0

CVE-2025-62610

Hono is a Web application framework that provides support for any JavaScript runtime. In versions from 1.1.0 to before 4.10.2, Hono’s JWT Auth Middleware does not provide a built-in aud (Audience) verification option, which can cause confused-deputy / token-mix-up issues: an API may accept a valid token that was issued for a different audience (e.g., another service) when multiple services share the same issuer/keys. This can lead to unintended cross-service access. Hono’s docs list verification

PUBLISHED
Vendor
honojs
Product
hono
Provider severity
HIGH
Conflicts
0

CVE-2025-6261

The Fleetwire Fleet Management plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's fleetwire_list shortcode in all versions up to, and including, 1.0.19 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PUBLISHED
Vendor
fleetwire
Product
Fleetwire Fleet Management
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62609

MLX is an array framework for machine learning on Apple silicon. Prior to version 0.29.4, there is a segmentation fault in mlx::core::load_gguf() when loading malicious GGUF files. Untrusted pointer from external gguflib library is dereferenced without validation, causing application crash. This issue has been patched in version 0.29.4.

PUBLISHED
Vendor
ml-explore
Product
mlx
Provider severity
MEDIUM
Conflicts
0

CVE-2025-62608

MLX is an array framework for machine learning on Apple silicon. Prior to version 0.29.4, there is a heap buffer overflow in mlx::core::load() when parsing malicious NumPy .npy files. Attacker-controlled file causes 13-byte out-of-bounds read, leading to crash or information disclosure. This issue has been patched in version 0.29.4.

PUBLISHED
Vendor
ml-explore
Product
mlx
Provider severity
MEDIUM
Conflicts
0