CVE Catalog
Browse the latest Common Vulnerabilities and Exposures (CVEs) with CVSS scores, affected products, and next-gen risk scores.
Cubro EXA48200 Web GUI Privilege Escalation Vulnerability
A broken access control vulnerability has been identified in the web GUI of the Cubro EXA48200 network packet broker, specifically in build 20231025055018. This vulnerability allows remote authenticated users to escalate their privileges to administrator level by sending an HTTP PUT request to the API endpoint used for password changes. The request must include the 'rolename' attribute set to 'Administrator'.
Apache Ranger Improper Neutralization of Formula Elements in CSV Export Vulnerability
A vulnerability exists in the Export to CSV feature of Apache Ranger, in versions prior to 2.6.0, due to improper neutralization of formula elements. This issue could potentially be exploited by manipulating the exported content.
IBM Engineering Requirements Management DOORS Next Reflected File Download Vulnerability
A reflected file download vulnerability has been identified in IBM Engineering Requirements Management DOORS Next versions 7.0.2, 7.0.3, and 7.1. This vulnerability could allow a user to download a malicious file without proper verification of the file's integrity.
IBM Engineering Requirements Management DOORS Next Temporary File Download Vulnerability
A vulnerability in IBM Engineering Requirements Management DOORS Next versions 7.0.2, 7.0.3, and 7.1 allows remote attackers to download temporary files. This could lead to the exposure of application logic or other sensitive information.
IBM Engineering Requirements Management DOORS Next Temporary File Download Vulnerability
A vulnerability in IBM Engineering Requirements Management DOORS Next versions 7.0.2, 7.0.3, and 7.1 allows remote attackers to download temporary files. This could lead to the exposure of application logic or other sensitive information.
Red Hat Ansible Automation Platform aap-gateway Privilege Escalation Vulnerability
A privilege escalation vulnerability has been identified in the Ansible aap-gateway component of Red Hat Ansible Automation Platform. This issue arises from a race condition in the gateway's gRPC service, where concurrent requests can interfere with each other. As a result, a less privileged user, including unauthenticated users, may be able to access the JSON Web Token (JWT) of a more privileged user. This could lead to unauthorized actions on behalf of the privileged user, potentially compromising the server. The vulnerability affects all Ansible Automation Platform 2.5 customers, with the exception of those using the platform on Microsoft Azure or the Ansible Automation Platform Service on AWS, both of which have already been patched.
GNU GRUB HFS Filesystem Module Integer Overflow Vulnerability Leading to Heap-Based Out-of-Bounds Write
A vulnerability exists in the HFS filesystem module of GNU GRUB, where user-controlled metadata is used to calculate buffer sizes without proper validation, allowing for integer overflow. This flaw can be exploited by crafting a malicious filesystem that causes buffer size calculations to overflow, leading to a heap-based out-of-bounds write. Such exploitation could corrupt GRUB's critical internal data and potentially allow arbitrary code execution, bypassing Secure Boot protections.
GNU GRUB UDF Filesystem Module Heap-Based Buffer Overflow Vulnerability Allowing Arbitrary Code Execution
A heap-based buffer overflow vulnerability has been identified in the UDF filesystem module of GNU GRUB. This issue arises when the module reads data from disk and uses user-controlled data length metadata to allocate internal buffers. In some cases, while processing disk sectors, the module incorrectly assumes that the read size will always be smaller than the allocated buffer size, a condition that cannot be guaranteed. A maliciously crafted filesystem image could exploit this flaw, leading to corruption of critical data and creating a risk of arbitrary code execution that bypasses secure boot protections.
Proliz Software OBS Path Traversal Vulnerability
A path traversal vulnerability has been identified in Proliz Software's OBS (Öğrenci İşleri Bilgi Sistemi) application, prior to version 24.0927. This vulnerability allows attackers to traverse directories and access restricted files or directories.
Proliz Software OBS Authorization Bypass Vulnerability Allowing Access Control Misconfiguration
An authorization bypass vulnerability has been identified in Proliz Software's OBS (Öğrenci İşleri Bilgi Sistemi) application, prior to version 24.0927. This vulnerability allows exploitation of incorrectly configured access control security levels, potentially enabling cyber attackers to manipulate access controls and perform unauthorized actions.
GNU GRUB2 Integer Overflow Vulnerability in TAR File Handling Allows Secure Boot Bypass
A vulnerability exists in GNU GRUB2 related to how it processes TAR files. GRUB2 allocates a buffer for file names but does not adequately check the allocation size, leaving it vulnerable to integer overflow. This oversight can be exploited with a specially crafted TAR file, causing a heap-based out-of-bounds write. As a result, an attacker could potentially bypass Secure Boot protections. This vulnerability affects GRUB2 versions prior to the patched release in February 2025.
GNU GRUB2 BFS File System Driver Integer Overflow Vulnerability Leading to Heap Out-of-Bounds Read
A vulnerability exists in the BFS file system driver of GNU GRUB2, where an integer overflow can occur when the software reads files with an indirect extent map. This flaw arises because GRUB2 does not properly validate the number of extent entries before reading them. As a result, a crafted or corrupted BFS file system can cause the integer overflow, leading to a heap-based out-of-bounds read. This vulnerability may allow sensitive data to be leaked or cause GRUB2 to crash.
NotFound Flashfader Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound Flashfader WordPress plugin, affecting versions through 1.1.1. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
AcuGIS Leaflet Maps Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the AcuGIS Leaflet Maps WordPress plugin, affecting versions through 5.1.1.0. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.
WordPress WOO Codice Fiscale Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress WOO Codice Fiscale plugin, affecting versions through 1.6.3. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
WordPress GPX Viewer Path Traversal Vulnerability
A path traversal vulnerability exists in the WordPress GPX Viewer plugin, affecting versions through 2.2.11. This vulnerability allows attackers to manipulate file paths, potentially accessing files outside the intended directory.
Winking Affiliate Links Manager Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Winking Affiliate Links Manager WordPress plugin, affecting versions through 1.0. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
WordPress DB Tables Import/Export Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress DB Tables Import/Export plugin, affecting versions through 1.0.1. This issue arises from improper input neutralization during web page generation, allowing malicious actors to inject and execute harmful scripts on the site.
NotFound Residential Address Detection Privilege Escalation Vulnerability
A missing authorization vulnerability in the NotFound Residential Address Detection WordPress plugin, affecting versions through 2.5.4, allows for privilege escalation. This vulnerability could enable a low-privileged user to gain higher privileges, potentially leading to full control of the website.
WordPress .htaccess Login Block Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress .htaccess Login Block plugin, affecting versions through 0.9a. This issue arises from improper input sanitization during web page generation, allowing malicious actors to inject harmful scripts that could be executed when users visit the affected site.
WordPress Small Package Quotes Worldwide Express Edition SQL Injection Vulnerability
A SQL injection vulnerability has been identified in the WordPress plugin Small Package Quotes – Worldwide Express Edition, affecting versions through 5.2.18. This vulnerability allows for improper neutralization of special elements used in SQL commands, enabling attackers to manipulate database queries and potentially access or modify database information.
NotFound Doctor Appointment Booking Plugin Local File Inclusion Vulnerability
A local file inclusion vulnerability has been identified in the NotFound Doctor Appointment Booking WordPress plugin, affecting versions through 1.0.0. This vulnerability arises from improper control of filenames in include or require statements, allowing PHP remote file inclusion that could be exploited to access local files on the server.
WordPress Doctor Appointment Booking Plugin SQL Injection Vulnerability
A SQL injection vulnerability has been identified in the WordPress Doctor Appointment Booking Plugin, affecting versions through 1.0.0. This vulnerability allows for improper neutralization of special elements used in SQL commands, enabling attackers to manipulate database queries and potentially access or modify database information.
Metagauss ProfileGrid PHP Object Injection Vulnerability
A deserialization vulnerability allowing object injection has been identified in the Metagauss ProfileGrid WordPress plugin, affecting versions through 5.9.4.3. This vulnerability could lead to various types of code injection, including SQL injection, path traversal, and denial-of-service, especially if a suitable property-oriented programming chain is available.
Softdiscover Zigaform Price Calculator Lite Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the Softdiscover Zigaform Price Calculator & Cost Estimation Form Builder Lite plugin, affecting versions through 7.4.2. This vulnerability arises from improper input sanitization during web page generation, allowing malicious scripts to be injected and executed when users visit the site.
Zigaform Form Builder Lite Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the Zigaform - Form Builder Lite WordPress plugin, affecting versions through 7.4.2. This vulnerability allows for the injection of malicious scripts that are executed when users visit the affected site.
Cozy Vision SMS Alert Order Notifications for WooCommerce SQL Injection Vulnerability
A SQL injection vulnerability has been identified in the Cozy Vision SMS Alert Order Notifications – WooCommerce plugin, affecting versions through 3.7.8. This vulnerability allows for improper neutralization of special elements used in SQL commands, potentially enabling attackers to manipulate database queries and interact with the database in unauthorized ways.
Cozy Vision SMS Alert Order Notifications for WooCommerce Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Cozy Vision SMS Alert Order Notifications plugin for WooCommerce, affecting versions through 3.7.8. This vulnerability allows for improper neutralization of input during web page generation, enabling the injection of malicious scripts that could be executed when users visit the affected site.
NotFound Ark Theme Core Code Injection Vulnerability Allowing Remote Code Execution
A code injection vulnerability has been identified in the NotFound Ark Theme Core plugin for WordPress, affecting versions prior to 1.71.0. This vulnerability allows for remote code execution, enabling attackers to execute arbitrary commands on the affected website.
Stiofan Events Calendar for GeoDirectory PHP Object Injection Vulnerability
A deserialization vulnerability allowing object injection has been identified in the Stiofan Events Calendar for GeoDirectory, affecting versions through 2.3.14. This vulnerability arises from the deserialization of untrusted data, which could lead to PHP object injection, potentially allowing a malicious actor to execute code injection, SQL injection, path traversal, denial of service, and more, if a suitable property-oriented programming chain is available.
Eniture Technology Small Package Quotes – Unishippers Edition Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Eniture Technology Small Package Quotes – Unishippers Edition plugin for WordPress, affecting versions through 2.4.9. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
HasThemes WP Templata Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the HasThemes WP Templata plugin, affecting versions through 1.0.7. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.
Bowo Variable Inspector Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Bowo Variable Inspector WordPress plugin, affecting versions through 2.6.2. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.
WordPress Assistant Plugin PHP Object Injection Vulnerability
A PHP object injection vulnerability allowing object injection has been identified in the WordPress Assistant plugin, affecting versions through 1.5.1. This vulnerability arises from the deserialization of untrusted data, which could potentially be exploited to execute code injection, SQL injection, path traversal, or denial-of-service attacks, provided a suitable property-oriented programming chain is available.
WordPress s2Member Pro Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress s2Member Pro plugin, affecting versions through 241216. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
NotFound IE CSS3 Support Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound IE CSS3 Support WordPress plugin, affecting versions through 2.0.1. This issue arises from improper input sanitization during web page generation, allowing malicious actors to inject and execute scripts on the site.
NotFound TTT Crop Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound TTT Crop WordPress plugin, affecting versions through 1.0. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
WordPress sidebarTabs Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress sidebarTabs plugin, specifically in versions through 3.1. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
NotFound Events Planner Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound Events Planner WordPress plugin, affecting versions through 1.3.10. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.
NotFound DL Leadback Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound DL Leadback WordPress plugin, affecting versions through 1.2.1. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.
NotFound Mobile WordPress Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound Mobile WordPress plugin, affecting versions through 1.3.3. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
NotFound ViperBar Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound ViperBar WordPress plugin, affecting versions through 2.0. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.
NotFound Helloprint Path Traversal Vulnerability Allowing Arbitrary File Deletion
A path traversal vulnerability has been identified in the NotFound Helloprint WordPress plugin, specifically in versions through 2.0.7. This vulnerability allows for arbitrary file deletion, which could lead to the removal of critical files from a website, potentially causing the site to malfunction.
NotFound Bitcoin/AltCoin Payment Gateway for WooCommerce SQL Injection Vulnerability
A blind SQL injection vulnerability has been identified in the NotFound Bitcoin/AltCoin Payment Gateway for WooCommerce, affecting versions through 1.7.6. This vulnerability arises from improper neutralization of special elements used in SQL commands, allowing malicious actors to interact with the database in unauthorized ways.
NotFound Helloprint Path Traversal Vulnerability Allowing Arbitrary File Deletion
A path traversal vulnerability has been identified in the NotFound Helloprint WordPress plugin, affecting versions through 2.0.7. This vulnerability allows for arbitrary file deletion, which could disrupt website functionality by removing essential core files.
NotFound Migrate Posts Plugin Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound Migrate Posts WordPress plugin, affecting versions through 1.0. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
WordPress Authors Autocomplete Meta Box Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress Authors Autocomplete Meta Box plugin, affecting versions through 1.2. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected page.
NotFound Staff Directory Plugin Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the NotFound Staff Directory Plugin: Company Directory, affecting versions through 4.3. This issue allows attackers to inject malicious scripts that are executed when users visit the affected page.
NotFound Meta Accelerator Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound Meta Accelerator WordPress plugin, affecting versions through 1.0.4. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
NotFound WordPress Plugin Sports Rankings and Lists Path Traversal Vulnerability
A path traversal vulnerability allowing absolute path traversal has been identified in the NotFound WordPress plugin Sports Rankings and Lists, affecting versions through 1.0.2. This vulnerability arises from improper limitations on pathnames, potentially allowing unauthorized access to files on the server.
