CVE-2021-41349 | MEDIUM | 6.5 | 0.93877 | 58.86 | No | No | 2021-11-10 | 2024-08-04 | euvd | Microsoft Exchange Server Spoofing VulnerabilityMicrosoft Exchange Server Spoofing Vulnerability |
CVE-2024-10400 | HIGH | 7.5 | 0.82464 | 58.86 | No | No | 2024-11-21 | 2026-04-08 | euvd | The Tutor LMS plugin for WordPress is vulnerable to SQL Injection via the ‘rating_filter’ parameter in all versions up to, and including, 2.…The Tutor LMS plugin for WordPress is vulnerable to SQL Injection via the ‘rating_filter’ parameter in all versions up to, and including, 2.7.6 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. |
CVE-2021-27275 | HIGH | 8.3 | 0.73318 | 58.86 | No | No | 2021-03-29 | 2024-08-03 | euvd | This vulnerability allows remote attackers to disclose sensitive information and delete arbitrary files on affected installations of NETGEAR…This vulnerability allows remote attackers to disclose sensitive information and delete arbitrary files on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the ConfigFileController class. When parsing the realName parameter, the process does not properly validate a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to disclose sensitive information or to create a denial-of-service condition on the system. Was ZDI-CAN-12125. |
CVE-2025-1661 | CRITICAL | 9.8 | 0.56082 | 58.83 | No | No | 2025-03-11 | 2026-04-08 | euvd | The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, a…The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.3.6.5 via the 'template' parameter of the woof_text_search AJAX action. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included. |
CVE-2020-13340 | HIGH | 8.7 | 0.68639 | 58.82 | No | No | 2020-10-08 | 2024-08-04 | euvd | An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2: Stored XSS in CI Job LogAn issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2: Stored XSS in CI Job Log |
CVE-2023-32169 | CRITICAL | 9.8 | 0.56064 | 58.82 | No | No | 2024-05-03 | 2024-09-18 | euvd | D-Link D-View Use of Hard-coded Cryptographic Key Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass …D-Link D-View Use of Hard-coded Cryptographic Key Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of D-Link D-View. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the TokenUtils class. The issue results from a hard-coded cryptographic key. An attacker can leverage this vulnerability to bypass authentication on the system.
. Was ZDI-CAN-19659. |
CVE-2021-34486 | HIGH | 7.8 | 0.07428 | 58.8 | Yes | No | 2022-03-28 | 2022-03-28 | cisa.gov, euvd | Microsoft Windows Event Tracing contains an unspecified vulnerability which can allow for privilege escalation.Microsoft Windows Event Tracing contains an unspecified vulnerability which can allow for privilege escalation. |
CVE-2021-41291 | HIGH | 7.5 | 0.82274 | 58.8 | No | No | 2021-09-30 | 2024-09-16 | euvd | ECOA BAS controller suffers from a path traversal content disclosure vulnerability. Using the GET parameter in File Manager, unauthenticated…ECOA BAS controller suffers from a path traversal content disclosure vulnerability. Using the GET parameter in File Manager, unauthenticated attackers can remotely disclose directory content on the affected device. |
CVE-2023-21931 | HIGH | 7.5 | 0.82262 | 58.79 | No | No | 2023-04-18 | 2025-02-13 | euvd | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are…Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebLogic Server accessible data. CVSS 3.1 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). |
CVE-2022-24521 | HIGH | 7.8 | 0.07304 | 58.76 | Yes | No | 2022-04-13 | 2022-04-13 | cisa.gov, euvd | Microsoft Windows Common Log File System (CLFS) Driver contains an unspecified vulnerability that allows for privilege escalation.Microsoft Windows Common Log File System (CLFS) Driver contains an unspecified vulnerability that allows for privilege escalation. |
CVE-2022-22071 | HIGH | 8.4 | 0.00455 | 58.76 | Yes | No | 2023-12-05 | 2023-12-05 | cisa.gov, euvd | Multiple Qualcomm chipsets contain a use-after-free vulnerability when process shell memory is freed using IOCTL munmap call and process ini…Multiple Qualcomm chipsets contain a use-after-free vulnerability when process shell memory is freed using IOCTL munmap call and process initialization is in progress. |
CVE-2021-22900 | HIGH | 7.2 | 0.14146 | 58.75 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | Ivanti Pulse Connect Secure contains an unrestricted file upload vulnerability that allows an authenticated administrator to perform a file …Ivanti Pulse Connect Secure contains an unrestricted file upload vulnerability that allows an authenticated administrator to perform a file write via a maliciously crafted archive upload in the administrator web interface. |
CVE-2021-21402 | HIGH | 7.7 | 0.79855 | 58.75 | No | No | 2021-03-23 | 2024-08-03 | euvd | Jellyfin is a Free Software Media System. In Jellyfin before version 10.7.1, with certain endpoints, well crafted requests will allow arbitr…Jellyfin is a Free Software Media System. In Jellyfin before version 10.7.1, with certain endpoints, well crafted requests will allow arbitrary file read from a Jellyfin server's file system. This issue is more prevalent when Windows is used as the host OS. Servers that are exposed to the public Internet are potentially at risk. This is fixed in version 10.7.1. As a workaround, users may be able to restrict some access by enforcing strict security permissions on their filesystem, however, it is recommended to update as soon as possible. |
CVE-2026-33824 | CRITICAL | 9.8 | 0.5585 | 58.75 | No | Yes | 2026-04-14 | 2026-06-19 | euvd, nvd, packetstorm | Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network. |
CVE-2020-3950 | HIGH | 7.8 | 0.07254 | 58.74 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | VMware Fusion, Remote Console (VMRC) for Mac, and Horizon Client for Mac contain a privilege escalation vulnerability due to improper use of…VMware Fusion, Remote Console (VMRC) for Mac, and Horizon Client for Mac contain a privilege escalation vulnerability due to improper use of setuid binaries that allows attackers to escalate privileges to root. |
CVE-2004-0210 | HIGH | 7.8 | 0.07156 | 58.7 | Yes | No | 2022-03-03 | 2022-03-03 | cisa.gov, euvd | A privilege elevation vulnerability exists in the POSIX subsystem. This vulnerability could allow a logged on user to take complete control …A privilege elevation vulnerability exists in the POSIX subsystem. This vulnerability could allow a logged on user to take complete control of the system. |
CVE-2024-23898 | HIGH | 8.8 | 0.67151 | 58.7 | No | No | 2024-01-24 | 2025-06-20 | euvd | Jenkins 2.217 through 2.441 (both inclusive), LTS 2.222.1 through 2.426.2 (both inclusive) does not perform origin validation of requests ma…Jenkins 2.217 through 2.441 (both inclusive), LTS 2.222.1 through 2.426.2 (both inclusive) does not perform origin validation of requests made through the CLI WebSocket endpoint, resulting in a cross-site WebSocket hijacking (CSWSH) vulnerability, allowing attackers to execute CLI commands on the Jenkins controller. |
CVE-2024-38080 | HIGH | 7.8 | 0.07115 | 58.69 | Yes | No | 2024-07-09 | 2024-07-09 | cisa.gov, euvd | Microsoft Windows Hyper-V contains a privilege escalation vulnerability that allows a local attacker with user permissions to gain SYSTEM pr…Microsoft Windows Hyper-V contains a privilege escalation vulnerability that allows a local attacker with user permissions to gain SYSTEM privileges. |
CVE-2023-26369 | HIGH | 7.8 | 0.07036 | 58.66 | Yes | No | 2023-09-14 | 2023-09-14 | cisa.gov, euvd | Adobe Acrobat and Reader contains an out-of-bounds write vulnerability that allows for code execution.Adobe Acrobat and Reader contains an out-of-bounds write vulnerability that allows for code execution. |
CVE-2025-26319 | CRITICAL | 9.8 | 0.55568 | 58.65 | No | No | 2025-03-04 | 2025-03-05 | euvd | FlowiseAI Flowise v2.2.6 was discovered to contain an arbitrary file upload vulnerability in /api/v1/attachments.FlowiseAI Flowise v2.2.6 was discovered to contain an arbitrary file upload vulnerability in /api/v1/attachments. |
CVE-2024-3922 | CRITICAL | 10.0 | 0.53196 | 58.62 | No | No | 2024-06-13 | 2026-04-08 | euvd | The Dokan Pro plugin for WordPress is vulnerable to SQL Injection via the 'code' parameter in all versions up to, and including, 3.10.3 due …The Dokan Pro plugin for WordPress is vulnerable to SQL Injection via the 'code' parameter in all versions up to, and including, 3.10.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. |
CVE-2021-28560 | HIGH | 8.8 | 0.66918 | 58.62 | No | No | 2021-09-02 | 2024-09-16 | euvd | Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected…Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
CVE-2023-50868 | HIGH | 7.5 | 0.81729 | 58.61 | No | No | 2024-02-14 | 2025-11-04 | euvd | The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a den…The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in a random subdomain attack, aka the "NSEC3" issue. The RFC 5155 specification implies that an algorithm must perform thousands of iterations of a hash function in certain situations. |
CVE-2019-1064 | HIGH | 7.8 | 0.06886 | 58.61 | Yes | No | 2022-03-15 | 2022-03-15 | cisa.gov, euvd | A privilege escalation vulnerability exists when Windows AppXSVC improperly handles hard links. An attacker who successfully exploited this …A privilege escalation vulnerability exists when Windows AppXSVC improperly handles hard links. An attacker who successfully exploited this vulnerability could run processes in an elevated context. |
CVE-2021-45105 | MEDIUM | 5.9 | 0.99999 | 58.6 | No | No | 2021-12-18 | 2026-05-29 | euvd | Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion from self-referent…Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion from self-referential lookups. This allows an attacker with control over Thread Context Map data to cause a denial of service when a crafted string is interpreted. This issue was fixed in Log4j 2.17.0, 2.12.3, and 2.3.1. |
CVE-2025-3935 | HIGH | 8.1 | 0.0342 | 58.6 | Yes | No | 2025-06-02 | 2025-06-02 | cisa.gov, euvd | ConnectWise ScreenConnect contains an improper authentication vulnerability. This vulnerability could allow a ViewState code injection attac…ConnectWise ScreenConnect contains an improper authentication vulnerability. This vulnerability could allow a ViewState code injection attack, which could allow remote code execution if machine keys are compromised. |
CVE-2024-50498 | CRITICAL | 10.0 | 0.53135 | 58.6 | No | No | 2024-10-28 | 2026-04-28 | euvd | Improper Control of Generation of Code ('Code Injection') vulnerability in Ajit Bohra WP Query Console wp-query-console allows Code Injectio…Improper Control of Generation of Code ('Code Injection') vulnerability in Ajit Bohra WP Query Console wp-query-console allows Code Injection.This issue affects WP Query Console: from n/a through <= 1.0. |
CVE-2021-25299 | MEDIUM | 6.1 | 0.97714 | 58.6 | No | No | 2021-02-15 | 2026-07-09 | euvd, nvd | Nagios XI version xi-5.7.5 is affected by cross-site scripting (XSS). The vulnerability exists in the file /usr/local/nagiosxi/html/admin/ss…Nagios XI version xi-5.7.5 is affected by cross-site scripting (XSS). The vulnerability exists in the file /usr/local/nagiosxi/html/admin/sshterm.php due to improper sanitization of user-controlled input. A maliciously crafted URL, when clicked by an admin user, can be used to steal his/her session cookies or it can be chained with the previous bugs to get one-click remote command execution (RCE) on the Nagios XI server. |
CVE-2024-53675 | HIGH | 7.3 | 0.8394 | 58.58 | No | No | 2024-11-26 | 2024-11-27 | euvd | An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain…An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases. |
CVE-2025-24472 | HIGH | 8.1 | 0.03342 | 58.57 | Yes | No | 2025-02-11 | 2026-08-05 | cisa.gov, euvd, nvd | An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS 7.0.0 through 7.0.16 and FortiProxy 7.…An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS 7.0.0 through 7.0.16 and FortiProxy 7.2.0 through 7.2.12, 7.0.0 through 7.0.19 may allow a remote unauthenticated attacker with prior knowledge of upstream and downstream devices serial numbers to gain super-admin privileges on the downstream device, if the Security Fabric is enabled, via crafted CSF proxy requests. |
CVE-2021-45466 | CRITICAL | 9.8 | 0.55338 | 58.57 | No | No | 2022-12-26 | 2025-04-14 | euvd | In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, attackers can make a crafted request to api/?api=add_server&DHCP= to a…In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, attackers can make a crafted request to api/?api=add_server&DHCP= to add an authorized_keys text file in the /resources/ folder. |
CVE-2021-43857 | CRITICAL | 9.8 | 0.55331 | 58.57 | No | No | 2021-12-27 | 2024-08-04 | euvd | Gerapy is a distributed crawler management framework. Gerapy prior to version 0.9.8 is vulnerable to remote code execution, and this issue i…Gerapy is a distributed crawler management framework. Gerapy prior to version 0.9.8 is vulnerable to remote code execution, and this issue is patched in version 0.9.8. |
CVE-2026-33825 | HIGH | 7.8 | 0.06749 | 58.56 | Yes | No | 2026-04-22 | 2026-04-22 | cisa.gov, euvd, nvd | Microsoft Defender contains an insufficient granularity of access control vulnerability that could allow an authorized attacker to escalate …Microsoft Defender contains an insufficient granularity of access control vulnerability that could allow an authorized attacker to escalate privileges locally. |
CVE-2023-51448 | HIGH | 8.8 | 0.66711 | 58.55 | No | No | 2023-12-22 | 2025-02-13 | euvd | Cacti provides an operational monitoring and fault management framework. Version 1.2.25 has a Blind SQL Injection (SQLi) vulnerability withi…Cacti provides an operational monitoring and fault management framework. Version 1.2.25 has a Blind SQL Injection (SQLi) vulnerability within the SNMP Notification Receivers feature in the file `‘managers.php’`. An authenticated attacker with the “Settings/Utilities” permission can send a crafted HTTP GET request to the endpoint `‘/cacti/managers.php’` with an SQLi payload in the `‘selected_graphs_array’` HTTP GET parameter. As of time of publication, no patched versions exist. |
CVE-2019-9513 | HIGH | 7.5 | 0.81556 | 58.54 | No | No | 2019-08-13 | 2024-08-04 | euvd | Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker creates multiple requ…Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker creates multiple request streams and continually shuffles the priority of the streams in a way that causes substantial churn to the priority tree. This can consume excess CPU. |
CVE-2021-29441 | HIGH | 8.6 | 0.68923 | 58.52 | No | No | 2021-04-27 | 2024-08-03 | euvd | Nacos is a platform designed for dynamic service discovery and configuration and service management. In Nacos before version 1.4.1, when con…Nacos is a platform designed for dynamic service discovery and configuration and service management. In Nacos before version 1.4.1, when configured to use authentication (-Dnacos.core.auth.enabled=true) Nacos uses the AuthFilter servlet filter to enforce authentication. This filter has a backdoor that enables Nacos servers to bypass this filter and therefore skip authentication checks. This mechanism relies on the user-agent HTTP header so it can be easily spoofed. This issue may allow any user to carry out any administrative tasks on the Nacos server. |
CVE-2024-29847 | CRITICAL | 10.0 | 0.52913 | 58.52 | No | No | 2024-09-12 | 2024-09-17 | euvd | Deserialization of untrusted data in the agent portal of Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote unauthenti…Deserialization of untrusted data in the agent portal of Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote unauthenticated attacker to achieve remote code execution. |
CVE-2021-30713 | HIGH | 7.8 | 0.0658 | 58.5 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | Apple macOS Transparency, Consent, and Control (TCC) contains an unspecified permissions issue which may allow a malicious application to by…Apple macOS Transparency, Consent, and Control (TCC) contains an unspecified permissions issue which may allow a malicious application to bypass privacy preferences. |
CVE-2022-38111 | HIGH | 7.2 | 0.84803 | 58.48 | No | No | 2023-02-15 | 2025-03-19 | euvd | SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-…SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to SolarWinds Web Console to execute arbitrary commands. |
CVE-2024-34716 | CRITICAL | 9.7 | 0.5617 | 58.46 | No | No | 2024-05-14 | 2024-08-02 | euvd | PrestaShop is an open source e-commerce web application. A cross-site scripting (XSS) vulnerability that only affects PrestaShops with custo…PrestaShop is an open source e-commerce web application. A cross-site scripting (XSS) vulnerability that only affects PrestaShops with customer-thread feature flag enabled is present starting from PrestaShop 8.1.0 and prior to PrestaShop 8.1.6. When the customer thread feature flag is enabled through the front-office contact form, a hacker can upload a malicious file containing an XSS that will be executed when an admin opens the attached file in back office. The script injected can access the session and the security token, which allows it to perform any authenticated action in the scope of the administrator's right. This vulnerability is patched in 8.1.6. A workaround is to disable the customer-thread feature-flag. |
CVE-2024-32896 | HIGH | 8.1 | 0.0301 | 58.45 | Yes | No | 2024-06-13 | 2024-06-13 | cisa.gov, euvd | Android Pixel contains an unspecified vulnerability in the firmware that allows for privilege escalation.Android Pixel contains an unspecified vulnerability in the firmware that allows for privilege escalation. |
CVE-2020-6819 | HIGH | 8.1 | 0.02978 | 58.44 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | Mozilla Firefox and Thunderbird contain a race condition vulnerability when running the nsDocShell destructor under certain conditions. The …Mozilla Firefox and Thunderbird contain a race condition vulnerability when running the nsDocShell destructor under certain conditions. The race condition creates a use-after-free vulnerability, causing unspecified impacts. |
CVE-2023-28128 | HIGH | 7.2 | 0.84697 | 58.44 | No | No | 2023-05-09 | 2025-01-28 | euvd | An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.3.x and below that could allow an attacker t…An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.3.x and below that could allow an attacker to achieve a remove code execution. |
CVE-2023-32166 | HIGH | 8.1 | 0.74302 | 58.41 | No | No | 2024-05-03 | 2024-09-18 | euvd | D-Link D-View uploadFile Directory Traversal Arbitrary File Creation Vulnerability. This vulnerability allows remote attackers to create arb…D-Link D-View uploadFile Directory Traversal Arbitrary File Creation Vulnerability. This vulnerability allows remote attackers to create arbitrary files on affected installations of D-Link D-View. Authentication is required to exploit this vulnerability.
The specific flaw exists within the uploadFile function. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to create files in the context of SYSTEM. Was ZDI-CAN-19527. |
CVE-2021-29447 | HIGH | 7.1 | 0.85719 | 58.4 | No | No | 2021-04-15 | 2024-08-03 | euvd | Wordpress is an open source CMS. A user with the ability to upload files (like an Author) can exploit an XML parsing issue in the Media Libr…Wordpress is an open source CMS. A user with the ability to upload files (like an Author) can exploit an XML parsing issue in the Media Library leading to XXE attacks. This requires WordPress installation to be using PHP 8. Access to internal files is possible in a successful XXE attack. This has been patched in WordPress version 5.7.1, along with the older affected versions via a minor release. We strongly recommend you keep auto-updates enabled. |
CVE-2025-30220 | CRITICAL | 9.9 | 0.53728 | 58.4 | No | No | 2025-06-10 | 2025-06-10 | euvd | GeoServer is an open source server that allows users to share and edit geospatial data. GeoTools Schema class use of Eclipse XSD library to …GeoServer is an open source server that allows users to share and edit geospatial data. GeoTools Schema class use of Eclipse XSD library to represent schema data structure is vulnerable to XML External Entity (XXE) exploit. This impacts whoever exposes XML processing with gt-xsd-core involved in parsing, when the documents carry a reference to an external XML schema. The gt-xsd-core Schemas class is not using the EntityResolver provided by the ParserHandler (if any was configured). This also impacts users of gt-wfs-ng DataStore where the ENTITY_RESOLVER connection parameter was not being used as intended. This vulnerability is fixed in GeoTools 33.1, 32.3, 31.7, and 28.6.1, GeoServer 2.27.1, 2.26.3, and 2.25.7, and GeoNetwork 4.4.8 and 4.2.13. |
CVE-2025-24989 | HIGH | 8.2 | 0.01722 | 58.4 | Yes | No | 2025-02-21 | 2025-02-21 | cisa.gov, euvd | Microsoft Power Pages contains an improper access control vulnerability that allows an unauthorized attacker to elevate privileges over a ne…Microsoft Power Pages contains an improper access control vulnerability that allows an unauthorized attacker to elevate privileges over a network potentially bypassing the user registration control. |
CVE-2023-21715 | HIGH | 7.3 | 0.12011 | 58.4 | Yes | No | 2023-02-14 | 2023-02-14 | cisa.gov, euvd | Microsoft Office Publisher contains a security feature bypass vulnerability that allows for a local, authenticated attack on a targeted syst…Microsoft Office Publisher contains a security feature bypass vulnerability that allows for a local, authenticated attack on a targeted system. |
CVE-2021-4104 | HIGH | 7.5 | 0.81147 | 58.4 | No | No | 2021-12-14 | 2026-05-28 | euvd | JMSAppender in Log4j 1.2 is vulnerable to deserialization of untrusted data when the attacker has write access to the Log4j configuration. T…JMSAppender in Log4j 1.2 is vulnerable to deserialization of untrusted data when the attacker has write access to the Log4j configuration. The attacker can provide TopicBindingName and TopicConnectionFactoryBindingName configurations causing JMSAppender to perform JNDI requests that result in remote code execution in a similar fashion to CVE-2021-44228. Note this issue only affects Log4j 1.2 when specifically configured to use JMSAppender, which is not the default. Apache Log4j 1.2 reached end of life in August 2015. Users should upgrade to Log4j 2 as it addresses numerous other issues from the previous versions. |
CVE-2025-48384 | HIGH | 8.1 | 0.02839 | 58.39 | Yes | No | 2025-08-25 | 2025-08-25 | cisa.gov, euvd | Git contains a link following vulnerability that stems from Git’s inconsistent handling of carriage return characters in configuration files…Git contains a link following vulnerability that stems from Git’s inconsistent handling of carriage return characters in configuration files. |