Showing 51–100 of 319993 results .
| CVE ID | Title | Severity | CVSS | EPSS | Published |
|---|---|---|---|---|---|
CVE-2025-9939 |
CodeAstro Real Estate Management System propertyview.php cross site scripting | MEDIUM | 5.1 | EPSS | 2025-09-04 00:02:07 |
CVE-2025-9938 |
D-Link DI-8400 yyxz.asp yyxz_dlink_asp stack-based overflow | HIGH | 8.7 | EPSS | 2025-09-03 23:32:11 |
CVE-2025-9937 |
elunez eladmin LocalStorageController deleteFile improper authorization | MEDIUM | 5.3 | EPSS | 2025-09-03 23:32:08 |
CVE-2025-9936 |
fuyang_lipengjun platform queryAll AdController improper authorization | MEDIUM | 5.3 | EPSS | 2025-09-03 23:02:13 |
CVE-2025-9935 |
TOTOLINK N600R cstecgi.cgi sub_4159F8 command injection | MEDIUM | 6.9 | EPSS | 2025-09-03 23:02:10 |
CVE-2025-9934 |
TOTOLINK X5000R cstecgi.cgi sub_410C34 command injection | MEDIUM | 5.3 | EPSS | 2025-09-03 22:32:13 |
CVE-2025-9933 |
PHPGurukul Beauty Parlour Management System view-appointment.php sql injection | MEDIUM | 6.9 | EPSS | 2025-09-03 22:32:08 |
CVE-2025-9932 |
PHPGurukul Beauty Parlour Management System update-image.php sql injection | MEDIUM | 6.9 | EPSS | 2025-09-03 22:02:11 |
CVE-2025-9931 |
Jinher OA POST Request login!changePassWord.action cross site scripting | MEDIUM | 5.3 | EPSS | 2025-09-03 22:02:07 |
CVE-2025-9930 |
1000projects Beauty Parlour Management System contact-us.php sql injection | MEDIUM | 6.9 | EPSS | 2025-09-03 21:32:09 |
CVE-2025-9929 |
code-projects Responsive Blog Site blogs_view.php cross site scripting | MEDIUM | 4.8 | EPSS | 2025-09-03 21:32:07 |
CVE-2025-9928 |
projectworlds Travel Management System viewcategory.php sql injection | MEDIUM | 6.9 | EPSS | 2025-09-03 21:02:06 |
CVE-2025-9927 |
projectworlds Travel Management System viewpackage.php sql injection | MEDIUM | 6.9 | EPSS | 2025-09-03 20:32:07 |
CVE-2025-9926 |
projectworlds Travel Management System viewsubcategory.php sql injection | MEDIUM | 6.9 | EPSS | 2025-09-03 20:02:07 |
CVE-2025-9925 |
projectworlds Travel Management System detail.php sql injection | MEDIUM | 6.9 | EPSS | 2025-09-03 19:32:07 |
CVE-2025-9924 |
projectworlds Travel Management System enquiry.php sql injection | MEDIUM | 6.9 | EPSS | 2025-09-03 18:32:09 |
CVE-2025-9923 |
Campcodes Sales and Inventory System index.php cross site scripting | MEDIUM | 5.3 | EPSS | 2025-09-03 18:32:07 |
CVE-2025-9922 |
Campcodes Sales and Inventory System index.php cross site scripting | MEDIUM | 5.3 | EPSS | 2025-09-03 17:02:10 |
CVE-2025-9921 |
code-projects POS Pharmacy System products.php cross site scripting | MEDIUM | 4.8 | EPSS | 2025-09-03 17:02:07 |
CVE-2025-9920 |
Campcodes Recruitment Management System index.php include file inclusion | MEDIUM | 5.1 | EPSS | 2025-09-03 16:02:12 |
CVE-2025-9919 |
1000projects Beauty Parlour Management System bwdates-reports-details.php sql injection | MEDIUM | 6.9 | EPSS | 2025-09-03 16:02:09 |
CVE-2025-9918 |
Zip Slip in Google SecOps SOAR allows for Remote Code Execution | HIGH | 8.7 | EPSS | 2025-09-11 07:37:50 |
CVE-2025-9914 |
MEDIUM | 4.3 | EPSS | 2025-10-06 06:46:00 | |
CVE-2025-9913 |
Cross Site Scripting: Session Hijacking | MEDIUM | 4.5 | EPSS | 2025-10-06 06:40:50 |
CVE-2025-9910 |
LOW | 2.3 | EPSS | 2025-09-11 05:00:02 | |
CVE-2025-9906 |
Arbitrary Code execution in Keras Safe Mode | HIGH | 8.6 | EPSS | 2025-09-19 08:15:04 |
CVE-2025-9905 |
Arbitary Code execution in Keras load_model() | HIGH | 7.3 | EPSS | 2025-09-19 08:16:45 |
CVE-2025-9904 |
MEDIUM | 5.3 | EPSS | 2025-09-29 00:46:04 | |
CVE-2025-9903 |
MEDIUM | 5.9 | EPSS | 2025-09-29 00:44:56 | |
CVE-2025-9902 |
IDOR in Akınsoft QRMenu | HIGH | 7.5 | EPSS | 2025-10-13 13:06:53 |
CVE-2025-9901 |
Libsoup: improper handling of http vary header in libsoup caching | MEDIUM | 5.9 | EPSS | 2025-09-03 12:32:27 |
CVE-2025-9900 |
Libtiff: libtiff write-what-where | HIGH | 8.8 | EPSS | 2025-09-23 16:26:23 |
CVE-2025-9899 |
Trust Reviews plugin for Google, Tripadvisor, Yelp, Airbnb and other platforms <= 1.0 - Cross-Site Request Forgery | MEDIUM | 6.1 | EPSS | 2025-09-27 06:47:15 |
CVE-2025-9898 |
cForms – Light speed fast Form Builder <= 3.0.0 - Cross-Site Request Forgery | MEDIUM | 4.3 | EPSS | 2025-09-27 06:47:15 |
CVE-2025-9897 |
AP Background <= 3.8.2 - Cross-Site Request Forgery | MEDIUM | 4.3 | EPSS | 2025-10-03 11:17:23 |
CVE-2025-9896 |
HidePost <= 2.3.8 - Cross-Site Request Forgery | MEDIUM | 4.3 | EPSS | 2025-09-27 06:47:13 |
CVE-2025-9895 |
Notification Bar <= 2.2 - Cross-Site Request Forgery | MEDIUM | 4.3 | EPSS | 2025-10-03 11:17:21 |
CVE-2025-9894 |
Sync Feedly <= 1.0.1 - Cross-Site Request Forgery to Sync Trigger | MEDIUM | 4.3 | EPSS | 2025-09-27 06:47:14 |
CVE-2025-9893 |
VM Menu Reorder plugin <= 1.0.0 - Cross-Site Request Forgery to Settings Update | MEDIUM | 4.3 | EPSS | 2025-09-27 06:47:16 |
CVE-2025-9892 |
Restrict User Registration <= 1.0.1 - Cross-Site Request Forgery to Settings Update | MEDIUM | 5.3 | EPSS | 2025-10-03 11:17:17 |
CVE-2025-9891 |
User Sync – Remote User Sync <= 1.0.2 - Cross-Site Request Forgery to Plugin Deactivation | MEDIUM | 4.3 | EPSS | 2025-09-17 01:53:14 |
CVE-2025-9890 |
Theme Editor <= 3.0 - Cross-Site Request Forgery to Remote Code Execution | HIGH | 8.8 | EPSS | 2025-10-18 08:25:36 |
CVE-2025-9889 |
ContentMX Content Publisher <= 1.0.6 - Cross-Site Request Forgery | MEDIUM | 4.3 | EPSS | 2025-10-03 11:17:19 |
CVE-2025-9888 |
Maspik <= 2.5.6 - Cross-Site Request Forgery | MEDIUM | 4.3 | EPSS | 2025-09-10 06:38:50 |
CVE-2025-9887 |
Custom Login And Signup Widget <= 1.0 - Cross-Site Request Forgery | MEDIUM | 4.3 | EPSS | 2025-09-20 06:43:20 |
CVE-2025-9886 |
Trinity Audio <= 5.20.2 - Cross-Site Request Forgery | MEDIUM | 4.3 | EPSS | 2025-10-04 03:33:32 |
CVE-2025-9885 |
MPWizard – Create Mercado Pago Payment Links <= 1.2.1 - Cross-Site Request Forgery to Arbitrary Post Deletion | MEDIUM | 4.3 | EPSS | 2025-10-03 11:17:09 |
CVE-2025-9884 |
Mobile Site Redirect <= 1.2.1 - Cross-Site Request Forgery to Stored Cross-Site Scripting | MEDIUM | 6.1 | EPSS | 2025-10-03 11:17:13 |
CVE-2025-9883 |
Browser Sniff <= 2.3 - Cross-Site Request Forgery to Stored Cross-Site Scripting | MEDIUM | 6.1 | EPSS | 2025-09-20 06:43:20 |
CVE-2025-9882 |
osTicket WP Bridge <= 1.9.2 - Cross-Site Request Forgery to Stored Cross-Site Scripting | MEDIUM | 6.1 | EPSS | 2025-09-20 06:43:19 |