CVE-2021-36742 | HIGH | 7.8 | 0.01482 | 56.72 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | Trend Micro Apex One, Apex One as a Service, and Worry-Free Business Security contain an improper input validation vulnerability that allows…Trend Micro Apex One, Apex One as a Service, and Worry-Free Business Security contain an improper input validation vulnerability that allows for privilege escalation. |
CVE-2023-20963 | HIGH | 7.8 | 0.01465 | 56.71 | Yes | No | 2023-04-13 | 2023-04-13 | cisa.gov, euvd | Android Framework contains an unspecified vulnerability that allows for privilege escalation after updating an app to a higher Target SDK wi…Android Framework contains an unspecified vulnerability that allows for privilege escalation after updating an app to a higher Target SDK with no additional execution privileges needed. |
CVE-2023-36824 | HIGH | 7.4 | 0.77422 | 56.7 | No | No | 2023-07-11 | 2025-02-13 | euvd | Redis is an in-memory database that persists on disk. In Redit 7.0 prior to 7.0.12, extracting key names from a command and a list of argume…Redis is an in-memory database that persists on disk. In Redit 7.0 prior to 7.0.12, extracting key names from a command and a list of arguments may, in some cases, trigger a heap overflow and result in reading random heap memory, heap corruption and potentially remote code execution. Several scenarios that may lead to authenticated users executing a specially crafted `COMMAND GETKEYS` or `COMMAND GETKEYSANDFLAGS`and authenticated users who were set with ACL rules that match key names, executing a specially crafted command that refers to a variadic list of key names. The vulnerability is patched in Redis 7.0.12. |
CVE-2019-1214 | HIGH | 7.8 | 0.01419 | 56.7 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | Microsoft Windows Common Log File System (CLFS) driver improperly handles objects in memory which can allow for privilege escalation.Microsoft Windows Common Log File System (CLFS) driver improperly handles objects in memory which can allow for privilege escalation. |
CVE-2023-41974 | HIGH | 7.8 | 0.0141 | 56.69 | Yes | No | 2026-03-05 | 2026-03-05 | cisa.gov, euvd | Apple iOS and iPadOS contain a use-after-free vulnerability. An app may be able to execute arbitrary code with kernel privileges.Apple iOS and iPadOS contain a use-after-free vulnerability. An app may be able to execute arbitrary code with kernel privileges. |
CVE-2024-23296 | HIGH | 7.8 | 0.01411 | 56.69 | Yes | No | 2024-03-06 | 2024-03-06 | cisa.gov, euvd | Apple iOS, iPadOS, macOS, tvOS, and watchOS RTKit contain a memory corruption vulnerability that allows an attacker with arbitrary kernel re…Apple iOS, iPadOS, macOS, tvOS, and watchOS RTKit contain a memory corruption vulnerability that allows an attacker with arbitrary kernel read and write capability to bypass kernel memory protections. |
CVE-2025-21335 | HIGH | 7.8 | 0.01363 | 56.68 | Yes | No | 2025-01-14 | 2025-01-14 | cisa.gov, euvd | Microsoft Windows Hyper-V NT Kernel Integration VSP contains a use-after-free vulnerability that allows a local attacker to gain SYSTEM priv…Microsoft Windows Hyper-V NT Kernel Integration VSP contains a use-after-free vulnerability that allows a local attacker to gain SYSTEM privileges. |
CVE-2024-8275 | CRITICAL | 9.8 | 0.49914 | 56.67 | No | No | 2024-09-25 | 2026-04-08 | euvd | The The Events Calendar plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter of the 'tribe_has_next_event' function…The The Events Calendar plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter of the 'tribe_has_next_event' function in all versions up to, and including, 6.6.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. Only sites that have manually added tribe_has_next_event() will be vulnerable to this SQL injection. |
CVE-2023-41990 | HIGH | 7.8 | 0.01347 | 56.67 | Yes | No | 2024-01-08 | 2024-01-08 | cisa.gov, euvd | Apple iOS, iPadOS, macOS, tvOS, and watchOS contain an unspecified vulnerability that allows for code execution when processing a font file.Apple iOS, iPadOS, macOS, tvOS, and watchOS contain an unspecified vulnerability that allows for code execution when processing a font file. |
CVE-2026-20700 | HIGH | 7.8 | 0.01319 | 56.66 | Yes | No | 2026-02-12 | 2026-02-12 | cisa.gov, cnvd, euvd | Apple iOS, macOS, tvOS, watchOS, and visionOS contain an improper restriction of operations within the bounds of a memory buffer vulnerabili…Apple iOS, macOS, tvOS, watchOS, and visionOS contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow an attacker with memory write the capability to execute arbitrary code. |
CVE-2023-6018 | CRITICAL | 10.0 | 0.47594 | 56.66 | No | No | 2023-11-16 | 2024-08-02 | euvd | An attacker can overwrite any file on the server hosting MLflow without any authentication.An attacker can overwrite any file on the server hosting MLflow without any authentication. |
CVE-2023-46347 | CRITICAL | 9.8 | 0.49885 | 56.66 | No | No | 2023-10-25 | 2024-09-11 | euvd | In the module "Step by Step products Pack" (ndk_steppingpack) version 1.5.6 and before from NDK Design for PrestaShop, a guest can perform S…In the module "Step by Step products Pack" (ndk_steppingpack) version 1.5.6 and before from NDK Design for PrestaShop, a guest can perform SQL injection. The method `NdkSpack::getPacks()` has sensitive SQL calls that can be executed with a trivial http call and exploited to forge a SQL injection. |
CVE-2025-32701 | HIGH | 7.8 | 0.01297 | 56.65 | Yes | No | 2025-05-13 | 2025-05-13 | cisa.gov, euvd | Microsoft Windows Common Log File System (CLFS) Driver contains a use-after-free vulnerability that allows an authorized attacker to elevate…Microsoft Windows Common Log File System (CLFS) Driver contains a use-after-free vulnerability that allows an authorized attacker to elevate privileges locally. |
CVE-2020-0069 | HIGH | 7.8 | 0.01299 | 56.65 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | Multiple MediaTek chipsets contain an insufficient input validation vulnerability and have missing SELinux restrictions in the Command Queue…Multiple MediaTek chipsets contain an insufficient input validation vulnerability and have missing SELinux restrictions in the Command Queue drivers ioctl handlers. This causes an out-of-bounds write leading to privilege escalation. This vulnerability was observed chained with CVE-2019-2215 and CVE-2020-0041 under exploit chain "AbstractEmu." |
CVE-2025-38352 | HIGH | 7.8 | 0.0125 | 56.64 | Yes | Yes | 2025-09-04 | 2025-09-04 | cisa.gov, euvd, nvd, packetstorm | Linux kernel contains a time-of-check time-of-use (TOCTOU) race condition vulnerability that has a high impact on confidentiality, integrity…Linux kernel contains a time-of-check time-of-use (TOCTOU) race condition vulnerability that has a high impact on confidentiality, integrity, and availability. |
CVE-2022-41800 | HIGH | 8.7 | 0.62406 | 56.64 | No | No | 2022-12-07 | 2025-04-23 | euvd | In all versions of BIG-IP, when running in Appliance mode, an authenticated user assigned the Administrator role may be able to bypass Appli…In all versions of BIG-IP, when running in Appliance mode, an authenticated user assigned the Administrator role may be able to bypass Appliance mode restrictions, utilizing an undisclosed iControl REST endpoint. A successful exploit can allow the attacker to cross a security boundary.
Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. |
CVE-2025-40552 | CRITICAL | 9.8 | 0.49734 | 56.61 | No | No | 2026-01-28 | 2026-02-27 | euvd | SolarWinds Web Help Desk was found to be susceptible to an authentication bypass vulnerability that if exploited, would allow a malicious ac…SolarWinds Web Help Desk was found to be susceptible to an authentication bypass vulnerability that if exploited, would allow a malicious actor to execute actions and methods that should be protected by authentication. |
CVE-2018-15439 | CRITICAL | 9.8 | 0.49742 | 56.61 | No | No | 2018-11-08 | 2024-11-26 | euvd | A vulnerability in the Cisco Small Business Switches software could allow an unauthenticated, remote attacker to bypass the user authenticat…A vulnerability in the Cisco Small Business Switches software could allow an unauthenticated, remote attacker to bypass the user authentication mechanism of an affected device. The vulnerability exists because under specific circumstances, the affected software enables a privileged user account without notifying administrators of the system. An attacker could exploit this vulnerability by using this account to log in to an affected device and execute commands with full admin rights. Cisco has not released software updates that address this vulnerability. This advisory will be updated with fixed software information once fixed software becomes available. There is a workaround to address this vulnerability. |
CVE-2022-42827 | HIGH | 7.8 | 0.01136 | 56.6 | Yes | No | 2022-10-25 | 2022-10-25 | cisa.gov, euvd | Apple iOS and iPadOS kernel contain an out-of-bounds write vulnerability which can allow an application to perform code execution with kerne…Apple iOS and iPadOS kernel contain an out-of-bounds write vulnerability which can allow an application to perform code execution with kernel privileges. |
CVE-2017-17485 | CRITICAL | 9.8 | 0.49727 | 56.6 | No | No | 2018-01-10 | 2025-08-27 | euvd | FasterXML jackson-databind through 2.8.10 and 2.9.x through 2.9.3 allows unauthenticated remote code execution because of an incomplete fix …FasterXML jackson-databind through 2.8.10 and 2.9.x through 2.9.3 allows unauthenticated remote code execution because of an incomplete fix for the CVE-2017-7525 deserialization flaw. This is exploitable by sending maliciously crafted JSON input to the readValue method of the ObjectMapper, bypassing a blacklist that is ineffective if the Spring libraries are available in the classpath. |
CVE-2022-22706 | HIGH | 7.8 | 0.01095 | 56.58 | Yes | Yes | 2023-03-30 | 2023-03-30 | cisa.gov, euvd, github | Arm Mali GPU Kernel Driver contains an unspecified vulnerability that allows a non-privileged user to achieve write access to read-only memo…Arm Mali GPU Kernel Driver contains an unspecified vulnerability that allows a non-privileged user to achieve write access to read-only memory pages. |
CVE-2026-21385 | HIGH | 7.8 | 0.01069 | 56.57 | Yes | No | 2026-03-03 | 2026-03-03 | cisa.gov, euvd | Multiple Qualcomm chipsets contain a memory corruption vulnerability while using alignments for memory allocation. Multiple Qualcomm chipsets contain a memory corruption vulnerability while using alignments for memory allocation. |
CVE-2023-42824 | HIGH | 7.8 | 0.00943 | 56.53 | Yes | No | 2023-10-05 | 2023-10-05 | cisa.gov, euvd | Apple iOS and iPadOS contain an unspecified vulnerability that allows for local privilege escalation.Apple iOS and iPadOS contain an unspecified vulnerability that allows for local privilege escalation. |
CVE-2022-38421 | HIGH | 7.2 | 0.79218 | 56.53 | No | No | 2022-10-14 | 2025-04-23 | euvd | Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Limitation of a Pathname to a Restr…Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction, but does require administrator privileges. |
CVE-2021-27059 | HIGH | 7.6 | 0.03182 | 56.51 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | Microsoft Office contains an unspecified vulnerability that allows for remote code execution.Microsoft Office contains an unspecified vulnerability that allows for remote code execution. |
CVE-2025-5394 | CRITICAL | 9.8 | 0.49465 | 56.51 | No | No | 2025-07-15 | 2026-04-08 | euvd | The Alone – Charity Multipurpose Non-profit WordPress Theme theme for WordPress is vulnerable to arbitrary file uploads due to a missing cap…The Alone – Charity Multipurpose Non-profit WordPress Theme theme for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the alone_import_pack_install_plugin() function in all versions up to, and including, 7.8.3. This makes it possible for unauthenticated attackers to upload zip files containing webshells disguised as plugins from remote locations to achieve remote code execution. CVE-2025-54019 is likely a duplicate of this. |
CVE-2023-6360 | HIGH | 8.6 | 0.63141 | 56.5 | No | No | 2023-11-30 | 2024-10-10 | euvd | The 'My Calendar' WordPress Plugin, version < 3.4.22 is affected by an unauthenticated SQL injection vulnerability in the 'from' and 'to' pa…The 'My Calendar' WordPress Plugin, version < 3.4.22 is affected by an unauthenticated SQL injection vulnerability in the 'from' and 'to' parameters in the '/my-calendar/v1/events' rest route. |
CVE-2020-9859 | HIGH | 7.8 | 0.00829 | 56.49 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | Apple iOS, iPadOS, macOS, watchOS, and tvOS contain an unspecified vulnerability that may allow an application to execute code with kernel p…Apple iOS, iPadOS, macOS, watchOS, and tvOS contain an unspecified vulnerability that may allow an application to execute code with kernel privileges. |
CVE-2023-2249 | HIGH | 8.8 | 0.60809 | 56.48 | No | No | 2023-06-09 | 2026-04-08 | euvd | The wpForo Forum plugin for WordPress is vulnerable to Local File Include, Server-Side Request Forgery, and PHAR Deserialization in versions…The wpForo Forum plugin for WordPress is vulnerable to Local File Include, Server-Side Request Forgery, and PHAR Deserialization in versions up to, and including, 2.1.7. This is due to the insecure use of file_get_contents without appropriate verification of the data being supplied to the function. This makes it possible for authenticated attackers, with minimal permissions such as a subscriber, to retrieve the contents of files like wp-config.php hosted on the system, perform a deserialization attack and possibly achieve remote code execution, and make requests to internal services. |
CVE-2021-1048 | HIGH | 7.8 | 0.00783 | 56.47 | Yes | No | 2022-05-23 | 2022-05-23 | cisa.gov, euvd | Android kernel contains a use-after-free vulnerability that allows for privilege escalation.Android kernel contains a use-after-free vulnerability that allows for privilege escalation. |
CVE-2021-39793 | HIGH | 7.8 | 0.00738 | 56.46 | Yes | No | 2022-04-11 | 2022-04-11 | cisa.gov, euvd | Google Pixel contains a possible out-of-bounds write due to a logic error in the code that could lead to local escalation of privilege.Google Pixel contains a possible out-of-bounds write due to a logic error in the code that could lead to local escalation of privilege. |
CVE-2023-33063 | HIGH | 7.8 | 0.007 | 56.45 | Yes | No | 2023-12-05 | 2023-12-05 | cisa.gov, euvd | Multiple Qualcomm chipsets contain a use-after-free vulnerability due to memory corruption in DSP Services during a remote call from HLOS to…Multiple Qualcomm chipsets contain a use-after-free vulnerability due to memory corruption in DSP Services during a remote call from HLOS to DSP. |
CVE-2019-8526 | HIGH | 7.8 | 0.00701 | 56.45 | Yes | No | 2023-04-17 | 2023-04-17 | cisa.gov, euvd | Apple macOS contains a use-after-free vulnerability that could allow for privilege escalation.Apple macOS contains a use-after-free vulnerability that could allow for privilege escalation. |
CVE-2022-26904 | HIGH | 7.0 | 0.09817 | 56.44 | Yes | No | 2022-04-25 | 2022-04-25 | cisa.gov, euvd | Microsoft Windows User Profile Service contains an unspecified vulnerability that allows for privilege escalation.Microsoft Windows User Profile Service contains an unspecified vulnerability that allows for privilege escalation. |
CVE-2023-32986 | HIGH | 8.8 | 0.60683 | 56.44 | No | No | 2023-05-16 | 2025-01-23 | euvd | Jenkins File Parameter Plugin 285.v757c5b_67a_c25 and earlier does not restrict the name (and resulting uploaded file name) of Stashed File …Jenkins File Parameter Plugin 285.v757c5b_67a_c25 and earlier does not restrict the name (and resulting uploaded file name) of Stashed File Parameters, allowing attackers with Item/Configure permission to create or replace arbitrary files on the Jenkins controller file system with attacker-specified content. |
CVE-2025-54313 | HIGH | 7.5 | 0.04112 | 56.44 | Yes | No | 2026-01-22 | 2026-01-22 | cisa.gov, euvd | Prettier eslint-config-prettier contains an embedded malicious code vulnerability. Installing an affected package executes an install.js fil…Prettier eslint-config-prettier contains an embedded malicious code vulnerability. Installing an affected package executes an install.js file that launches the node-gyp.dll malware on Windows. |
CVE-2024-43047 | HIGH | 7.8 | 0.00674 | 56.44 | Yes | No | 2024-10-08 | 2024-10-08 | cisa.gov, euvd | Multiple Qualcomm chipsets contain a use-after-free vulnerability due to memory corruption in DSP Services while maintaining memory maps of …Multiple Qualcomm chipsets contain a use-after-free vulnerability due to memory corruption in DSP Services while maintaining memory maps of HLOS memory. |
CVE-2024-29748 | HIGH | 7.8 | 0.0068 | 56.44 | Yes | No | 2024-04-04 | 2024-04-04 | cisa.gov, euvd | Android Pixel contains a privilege escalation vulnerability that allows an attacker to interrupt a factory reset triggered by a device admin…Android Pixel contains a privilege escalation vulnerability that allows an attacker to interrupt a factory reset triggered by a device admin app. |
CVE-2022-25305 | HIGH | 7.2 | 0.78905 | 56.42 | No | No | 2022-02-24 | 2025-02-07 | euvd | The WP Statistics WordPress plugin is vulnerable to Cross-Site Scripting due to insufficient escaping and sanitization of the IP parameter f…The WP Statistics WordPress plugin is vulnerable to Cross-Site Scripting due to insufficient escaping and sanitization of the IP parameter found in the ~/includes/class-wp-statistics-ip.php file which allows attackers to inject arbitrary web scripts onto several pages that execute when site administrators view a sites statistics, in versions up to and including 13.1.5. |
CVE-2022-37109 | CRITICAL | 9.8 | 0.49201 | 56.42 | No | No | 2022-11-14 | 2025-05-01 | euvd | patrickfuller camp up to and including commit bbd53a256ed70e79bd8758080936afbf6d738767 is vulnerable to Incorrect Access Control. Access to …patrickfuller camp up to and including commit bbd53a256ed70e79bd8758080936afbf6d738767 is vulnerable to Incorrect Access Control. Access to the password.txt file is not properly restricted as it is in the root directory served by StaticFileHandler and the Tornado rule to throw a 403 error when password.txt is accessed can be bypassed. Furthermore, it is not necessary to crack the password hash to authenticate with the application because the password hash is also used as the cookie secret, so an attacker can generate his own authentication cookie. |
CVE-2022-36096 | HIGH | 8.9 | 0.5947 | 56.41 | No | No | 2022-09-08 | 2025-04-23 | euvd | The XWiki Platform Index UI is an Index of all pages, attachments, orphans and deleted pages and attachments for XWiki Platform, a generic w…The XWiki Platform Index UI is an Index of all pages, attachments, orphans and deleted pages and attachments for XWiki Platform, a generic wiki platform. Prior to versions 13.10.6 and 14.3, it's possible to store JavaScript which will be executed by anyone viewing the deleted attachments index with an attachment containing javascript in its name. This issue has been patched in XWiki 13.10.6 and 14.3. As a workaround, modify fix the vulnerability by editing the wiki page `XWiki.DeletedAttachments` with the object editor, open the `JavaScriptExtension` object and apply on the content the changes that can be found on the fix commit. |
CVE-2024-46909 | CRITICAL | 9.8 | 0.49171 | 56.41 | No | No | 2024-12-02 | 2024-12-02 | euvd | In WhatsUp Gold versions released before 2024.0.1, a remote unauthenticated attacker could leverage this vulnerability to execute code in th…In WhatsUp Gold versions released before 2024.0.1, a remote unauthenticated attacker could leverage this vulnerability to execute code in the context of the service account. |
CVE-2024-27921 | HIGH | 8.8 | 0.60585 | 56.4 | No | No | 2024-03-21 | 2025-04-10 | euvd | Grav is an open-source, flat-file content management system. A file upload path traversal vulnerability has been identified in the applicati…Grav is an open-source, flat-file content management system. A file upload path traversal vulnerability has been identified in the application prior to version 1.7.45, enabling attackers to replace or create files with extensions like .json, .zip, .css, .gif, etc. This critical security flaw poses severe risks, that can allow attackers to inject arbitrary code on the server, undermine integrity of backup files by overwriting existing files or creating new ones, and exfiltrate sensitive data using CSS exfiltration techniques. Upgrading to patched version 1.7.45 can mitigate the issue. |
CVE-2023-6895 | MEDIUM | 6.3 | 0.89138 | 56.4 | No | No | 2023-12-17 | 2024-11-21 | euvd | A vulnerability was found in Hikvision Intercom Broadcasting System 3.0.3_20201113_RELEASE(HIK). It has been declared as critical. This vuln…A vulnerability was found in Hikvision Intercom Broadcasting System 3.0.3_20201113_RELEASE(HIK). It has been declared as critical. This vulnerability affects unknown code of the file /php/ping.php. The manipulation of the argument jsondata[ip] with the input netstat -ano leads to os command injection. The exploit has been disclosed to the public and may be used. Upgrading to version 4.1.0 is able to address this issue. It is recommended to upgrade the affected component. VDB-248254 is the identifier assigned to this vulnerability. |
CVE-2019-7483 | HIGH | 7.5 | 0.03977 | 56.39 | Yes | No | 2022-03-28 | 2022-03-28 | cisa.gov, euvd | In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user to test for the prese…In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user to test for the presence of a file on the server. |
CVE-2021-29492 | HIGH | 8.1 | 0.68383 | 56.33 | No | No | 2021-05-28 | 2024-08-03 | euvd | Envoy is a cloud-native edge/middle/service proxy. Envoy does not decode escaped slash sequences `%2F` and `%5C` in HTTP URL paths in versio…Envoy is a cloud-native edge/middle/service proxy. Envoy does not decode escaped slash sequences `%2F` and `%5C` in HTTP URL paths in versions 1.18.2 and before. A remote attacker may craft a path with escaped slashes, e.g. `/something%2F..%2Fadmin`, to bypass access control, e.g. a block on `/admin`. A backend server could then decode slash sequences and normalize path and provide an attacker access beyond the scope provided for by the access control policy. ### Impact Escalation of Privileges when using RBAC or JWT filters with enforcement based on URL path. Users with back end servers that interpret `%2F` and `/` and `%5C` and `\` interchangeably are impacted. ### Attack Vector URL paths containing escaped slash characters delivered by untrusted client. Patches in versions 1.18.3, 1.17.3, 1.16.4, 1.15.5 contain new path normalization option to decode escaped slash characters. As a workaround, if back end servers treat `%2F` and `/` and `%5C` and `\` interchangeably and a URL path based access control is configured, one may reconfigure the back end server to not treat `%2F` and `/` and `%5C` and `\` interchangeably. |
CVE-2025-43510 | HIGH | 7.8 | 0.00362 | 56.33 | Yes | No | 2026-03-20 | 2026-03-20 | cisa.gov, euvd | Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain an improper locking vulnerability that could allow a malicious application to …Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain an improper locking vulnerability that could allow a malicious application to cause unexpected changes in memory shared between processes. |
CVE-2022-32174 | CRITICAL | 9.0 | 0.58021 | 56.31 | No | No | 2022-10-11 | 2025-05-16 | euvd | In Gogs, versions v0.6.5 through v0.12.10 are vulnerable to Stored Cross-Site Scripting (XSS) that leads to an account takeover.In Gogs, versions v0.6.5 through v0.12.10 are vulnerable to Stored Cross-Site Scripting (XSS) that leads to an account takeover. |
CVE-2021-31010 | HIGH | 7.5 | 0.03673 | 56.29 | Yes | No | 2022-08-25 | 2022-08-25 | cisa.gov, euvd | In affected versions of Apple iOS, macOS, and watchOS, a sandboxed process may be able to circumvent sandbox restrictions.In affected versions of Apple iOS, macOS, and watchOS, a sandboxed process may be able to circumvent sandbox restrictions. |
CVE-2025-48572 | HIGH | 7.8 | 0.00253 | 56.29 | Yes | No | 2025-12-02 | 2025-12-02 | cisa.gov, cnvd, euvd | Android Framework contains an unspecified vulnerability that allows for privilege escalation.Android Framework contains an unspecified vulnerability that allows for privilege escalation. |