CVE tracker
369 subscribers
5.06K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2025-25274 - Mattermost Command Execution in Archived Channels Vulnerability

CVE ID : CVE-2025-25274
Published : March 21, 2025, 9:15 a.m. | 40 minutes ago
Description : Mattermost versions 10.4.x <= 10.4.2, 10.3.x <= 10.3.3, 9.11.x <= 9.11.8 fail to restrict command execution in archived channels, which allows authenticated users to run commands in archived channels.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-27715 - Mattermost Team Admin Privilege Escalation Vulnerability

CVE ID : CVE-2025-27715
Published : March 21, 2025, 9:15 a.m. | 40 minutes ago
Description : Mattermost versions 9.11.x <= 9.11.8 fail to prompt for explicit approval before adding a team admin to a private channel, which team admins to joining private channels via crafted permalink links without explicit consent from them.
Severity: 3.3 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-27933 - Mattermost Channel Conversion Privilege Escalation Vulnerability

CVE ID : CVE-2025-27933
Published : March 21, 2025, 9:15 a.m. | 40 minutes ago
Description : Mattermost versions 10.4.x <= 10.4.2, 10.3.x <= 10.3.3, 9.11.x <= 9.11.8 fail to fail to enforce channel conversion restrictions, which allows members with permission to convert public channels to private ones to also convert private ones to public
Severity: 5.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-30179 - Mattermost MFA Bypass Vulnerability

CVE ID : CVE-2025-30179
Published : March 21, 2025, 9:15 a.m. | 40 minutes ago
Description : Mattermost versions 10.4.x <= 10.4.2, 10.3.x <= 10.3.3, 9.11.x <= 9.11.8 fail to enforce MFA on certain search APIs, which allows authenticated attackers to bypass MFA protections via user search, channel search, or team search queries.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2587 - Jinher OA SQL Injection Vulnerability

CVE ID : CVE-2025-2587
Published : March 21, 2025, 12:15 p.m. | 1 hour, 40 minutes ago
Description : A vulnerability, which was classified as critical, was found in Jinher OA C6 1.0. This affects an unknown part of the file IncentivePlanFulfillAppprove.aspx. The manipulation of the argument httpOID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Severity: 6.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2588 - Hercules Augeas Null Pointer Dereference Vulnerability

CVE ID : CVE-2025-2588
Published : March 21, 2025, 12:15 p.m. | 1 hour, 40 minutes ago
Description : A vulnerability has been found in Hercules Augeas 1.14.1 and classified as problematic. This vulnerability affects the function re_case_expand of the file src/fa.c. The manipulation of the argument re leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.
Severity: 3.3 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2597 - ITIUM 6050 Reflected Cross-Site Scripting (XSS)

CVE ID : CVE-2025-2597
Published : March 21, 2025, 12:15 p.m. | 1 hour, 40 minutes ago
Description : Reflected Cross-Site Scripting (XSS) in ITIUM 6050 version 5.5.5.2-b3526 from Impact Technologies. This vulnerability could allow an attacker to execute malicious Javascript code via GET and POST requests to the ‘/index.php’ endpoint and injecting code into the ‘id_session.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2589 - Code-projects Human Resource Management System Unauthorized Access Vulnerability

CVE ID : CVE-2025-2589
Published : March 21, 2025, 1:15 p.m. | 40 minutes ago
Description : A vulnerability was found in code-projects Human Resource Management System 1.0.1 and classified as critical. This issue affects the function Index of the file \handler\Account.go. The manipulation of the argument user_cookie leads to improper authorization. The exploit has been disclosed to the public and may be used.
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2590 - Code-projects Human Resource Management System Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-2590
Published : March 21, 2025, 1:15 p.m. | 40 minutes ago
Description : A vulnerability was found in code-projects Human Resource Management System 1.0.1. It has been classified as problematic. Affected is the function UpdateRecruitmentById of the file \handler\recruitment.go. The manipulation of the argument c leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Severity: 2.4 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2024-57490 - Guangzhou Hongfan Technology Co., LTD. iOffice20 Login Authentication Bypass Vulnerability

CVE ID : CVE-2024-57490
Published : March 21, 2025, 2:15 p.m. | 3 hours, 40 minutes ago
Description : Guangzhou Hongfan Technology Co., LTD. iOffice20 has any user login vulnerability. An attacker can log in to any system account including the system administrator through a logical flaw.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2591 - "Open Asset Import Library Assimp Divide By Zero Vulnerability"

CVE ID : CVE-2025-2591
Published : March 21, 2025, 2:15 p.m. | 3 hours, 40 minutes ago
Description : A vulnerability classified as problematic was found in Open Asset Import Library Assimp 5.4.3. This vulnerability affects the function MDLImporter::InternReadFile_Quake1 of the file code/AssetLib/MDL/MDLLoader.cpp. The manipulation of the argument skinwidth/skinheight leads to divide by zero. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The patch is identified as ab66a1674fcfac87aaba4c8b900b315ebc3e7dbd. It is recommended to apply a patch to fix this issue.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2592 - "Open Asset Import Library (Assimp) Heap-Based Buffer Overflow Vulnerability"

CVE ID : CVE-2025-2592
Published : March 21, 2025, 2:15 p.m. | 3 hours, 40 minutes ago
Description : A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp 5.4.3. This issue affects the function CSMImporter::InternReadFile of the file code/AssetLib/CSM/CSMLoader.cpp. The manipulation leads to heap-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The patch is named 2690e354da0c681db000cfd892a55226788f2743. It is recommended to apply a patch to fix this issue.
Severity: 6.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2021-25635 - LibreOffice Improper Certificate Validation Certificate Spoofing Vulnerability

CVE ID : CVE-2021-25635
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to self sign an ODF document, with a signature untrusted by the target, then modify it to change the signature algorithm to an invalid (or unknown to LibreOffice) algorithm and LibreOffice would incorrectly present such a signature with an unknown algorithm as a valid signature issued by a trusted person This issue affects LibreOffice: from 7.0 before 7.0.5, from 7.1 before 7.1.1.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-24915 - Nessus Agent Windows Local Privilege Escalation

CVE ID : CVE-2025-24915
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : When installing Nessus Agent to a non-default location on a Windows host, Nessus Agent versions prior to 10.8.3 did not enforce secure permissions for sub-directories.  This could allow for local privilege escalation if users had not secured the directories in the non-default installation location.
Severity: 7.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-27612 - Libcontainer Capability Elevation Vulnerability

CVE ID : CVE-2025-27612
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : libcontainer is a library for container control. Prior to libcontainer 0.5.3, while creating a tenant container, the tenant builder accepts a list of capabilities to be added in the spec of tenant container. The logic here adds the given capabilities to all capabilities of main container if present in spec, otherwise simply set provided capabilities as capabilities of the tenant container. However, setting inherited caps in any case for tenant container can lead to elevation of capabilities, similar to CVE-2022-29162. This does not affect youki binary itself. This is only applicable if you are using libcontainer directly and using the tenant builder.
Severity: 5.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29640 - "PhpGurukul Testing Management System SQL Injection"

CVE ID : CVE-2025-29640
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : Phpgurukul Human Metapneumovirus (HMPV) – Testing Management System v1.0 is vulnerable to SQL Injection in /patient-report.php via the parameter searchdata..
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29641 - "PhpGurukul Vehicle Record Management System SQL Injection Vulnerability"

CVE ID : CVE-2025-29641
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : Phpgurukul Vehicle Record Management System v1.0 is vulnerable to SQL Injection in /index.php via the 'searchinputdata' parameter.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29927 - Next.js Authorization Bypass in Middleware

CVE ID : CVE-2025-29927
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : Next.js is a React framework for building full-stack web applications. Prior to 14.2.25 and 15.2.3, it is possible to bypass authorization checks within a Next.js application, if the authorization check occurs in middleware. If patching to a safe version is infeasible, it is recommend that you prevent external user requests which contain the x-middleware-subrequest header from reaching your Next.js application. This vulnerability is fixed in 14.2.25 and 15.2.3.
Severity: 9.1 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2593 - FastCMS SQL Injection Vulnerability

CVE ID : CVE-2025-2593
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : A vulnerability has been found in FastCMS up to 0.1.5 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /api/client/article/list. The manipulation of the argument orderBy leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Severity: 6.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2598 - AWS CDK CLI AWS Credentials Information Disclosure

CVE ID : CVE-2025-2598
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : When the AWS Cloud Development Kit (AWS CDK) Command Line Interface (AWS CDK CLI) is used with a credential plugin which returns an expiration property with the retrieved AWS credentials, the credentials are printed to the console output. To mitigate this issue, users should upgrade to version 2.178.2 or later and ensure any forked or derivative code is patched to incorporate the new fixes.
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-30157 - Envoy HTTP Filter Crash Vulnerability

CVE ID : CVE-2025-30157
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : Envoy is a cloud-native high-performance edge/middle/service proxy. Prior to 1.33.1, 1.32.4, 1.31.6, and 1.30.10, Envoy's ext_proc HTTP filter is at risk of crashing if a local reply is sent to the external server due to the filter's life time issue. A known situation is the failure of a websocket handshake will trigger a local reply leading to the crash of Envoy. This vulnerability is fixed in 1.33.1, 1.32.4, 1.31.6, and 1.30.10.
Severity: 6.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...