CVE tracker
306 subscribers
4.34K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2025-1294 - "eForm for WordPress Stored Cross-Site Scripting Vulnerability"

CVE ID : CVE-2025-1294
Published : April 24, 2025, 11:15 p.m. | 1 hour, 27 minutes ago
Description : The eForm - WordPress Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 4.18.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
Severity: 7.2 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-3749 - Breeze Display for WordPress Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-3749
Published : April 24, 2025, 11:15 p.m. | 1 hour, 27 minutes ago
Description : The Breeze Display plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘cal_size’ parameter in all versions up to, and including, 1.2.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
Severity: 6.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-46271 - UNI-NMS-Lite Command Injection Vulnerability

CVE ID : CVE-2025-46271
Published : April 24, 2025, 11:15 p.m. | 1 hour, 27 minutes ago
Description : UNI-NMS-Lite is vulnerable to a command injection attack that could allow an unauthenticated attacker to read or manipulate device data.
Severity: 9.1 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-46272 - D-Link Router Command Injection Vulnerability

CVE ID : CVE-2025-46272
Published : April 24, 2025, 11:15 p.m. | 1 hour, 27 minutes ago
Description : WGS-80HPT-V2 and WGS-4215-8T2S are vulnerable to a command injection attack that could allow an unauthenticated attacker to execute OS commands on the host system.
Severity: 9.1 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-46273 - UNI-NMS-Lite Hard-Coded Credentials Authentication Bypass

CVE ID : CVE-2025-46273
Published : April 24, 2025, 11:15 p.m. | 1 hour, 27 minutes ago
Description : UNI-NMS-Lite uses hard-coded credentials that could allow an unauthenticated attacker to gain administrative privileges to all UNI-NMS managed devices.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-46274 - UNI-NMS-Lite Authentication Bypass

CVE ID : CVE-2025-46274
Published : April 24, 2025, 11:15 p.m. | 1 hour, 27 minutes ago
Description : UNI-NMS-Lite uses hard-coded credentials that could allow an unauthenticated attacker to read, manipulate and create entries in the managed database.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-46275 - Fortinet FortiSwitch Unauthenticated Administrator Account Creation

CVE ID : CVE-2025-46275
Published : April 24, 2025, 11:15 p.m. | 1 hour, 27 minutes ago
Description : WGS-80HPT-V2 and WGS-4215-8T2S are missing authentication that could allow an attacker to create an administrator account without knowing any existing credentials.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2185 - ALBEDO Telecom Net.Time PTP/NTP Clock Authentication Bypass

CVE ID : CVE-2025-2185
Published : April 25, 2025, 12:15 a.m. | 27 minutes ago
Description : ALBEDO Telecom Net.Time - PTP/NTP clock (Serial No. NBC0081P) software release 1.4.4 is vulnerable to an insufficient session expiration vulnerability, which could permit an attacker to transmit passwords over unencrypted connections, resulting in the product becoming vulnerable to interception.
Severity: 8.0 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-3606 - Vestel AC Charger Information Disclosure Vulnerability

CVE ID : CVE-2025-3606
Published : April 25, 2025, 12:15 a.m. | 27 minutes ago
Description : Vestel AC Charger version 3.75.0 contains a vulnerability that could enable an attacker to access files containing sensitive information, such as credentials which could be used to further compromise the device.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-43864 - React Router Cache Poisoning Vulnerability

CVE ID : CVE-2025-43864
Published : April 25, 2025, 1:15 a.m. | 3 hours, 26 minutes ago
Description : React Router is a router for React. Starting in version 7.2.0 and prior to version 7.5.2, it is possible to force an application to switch to SPA mode by adding a header to the request. If the application uses SSR and is forced to switch to SPA, this causes an error that completely corrupts the page. If a cache system is in place, this allows the response containing the error to be cached, resulting in a cache poisoning that strongly impacts the availability of the application. This issue has been patched in version 7.5.2.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-43865 - React Router HTTP Header Injection Vulnerability

CVE ID : CVE-2025-43865
Published : April 25, 2025, 1:15 a.m. | 3 hours, 26 minutes ago
Description : React Router is a router for React. In versions on the 7.0 branch prior to version 7.5.2, it's possible to modify pre-rendered data by adding a header to the request. This allows to completely spoof its contents and modify all the values ​​of the data object passed to the HTML. This issue has been patched in version 7.5.2.
Severity: 8.2 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-46544 - Sherpa Orchestrator Privilege Escalation Vulnerability

CVE ID : CVE-2025-46544
Published : April 25, 2025, 3:15 a.m. | 1 hour, 27 minutes ago
Description : In Sherpa Orchestrator 141851, a low-privileged user can elevate their privileges by creating new users and roles.
Severity: 6.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-46545 - Sherpa Orchestrator Stored Cross-Site Scripting (XSS) Vulnerability

CVE ID : CVE-2025-46545
Published : April 25, 2025, 3:15 a.m. | 1 hour, 27 minutes ago
Description : In Sherpa Orchestrator 141851, the functionality for adding or updating licenses allows for stored XSS attacks by an administrator through the name parameter. The XSS payload can execute when the license expires.
Severity: 4.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-46546 - Sherpa Orchestrator Blind SQL Injection Vulnerability

CVE ID : CVE-2025-46546
Published : April 25, 2025, 3:15 a.m. | 1 hour, 27 minutes ago
Description : In Sherpa Orchestrator 141851, multiple time-based blind SQL injections can be performed by an authenticated user. This affects api/gui/asset/list, /api/gui/files/export/csv/, /api/gui/files/list, /api/gui/process/export/csv, /api/gui/process/export/xlsx, /api/gui/process/listAll, /api/gui/processVersion/export/csv/, /api/gui/processVersion/export/xlsx/, /api/gui/processVersion/list/, /api/gui/robot/list/, /api/gui/task/export/csv/, /api/gui/task/export/xlsx/, and /api/gui/task/list/.
Severity: 3.5 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-46547 - Sherpa Orchestrator Cross-Site Request Forgery (XSS, SQL Injection) Vulnerability

CVE ID : CVE-2025-46547
Published : April 25, 2025, 3:15 a.m. | 1 hour, 27 minutes ago
Description : In Sherpa Orchestrator 141851, the web application lacks protection against CSRF attacks, with resultant effects of an attacker conducting XSS attacks, adding a new user or role, or exploiting a SQL injection issue.
Severity: 5.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-46595 - Backdrop CMS Flag Module Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-46595
Published : April 25, 2025, 3:15 a.m. | 1 hour, 27 minutes ago
Description : An XSS issue was discovered in the Flag module before 1.x-3.6.2 for Backdrop CMS. Flag is a module that allows flags to be added to nodes, comments, users, and any other type of entity. It doesn't verify flag links before performing the flag action, or verify that the response returned was provided by the flag module. This can allow crafted HTML to result in Cross Site Scripting. This is mitigated by the fact that an attacker must have a role with permission to create links on the website, for example: create or edit comments or content with a filtered text format.
Severity: 6.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-3752 - Able Player WordPress Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-3752
Published : April 25, 2025, 5:15 a.m. | 3 hours, 27 minutes ago
Description : The Able Player, accessible HTML5 media player plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘preload’ parameter in all versions up to, and including, 1.2.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
Severity: 6.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-3775 - ShopLentor WooCommerce Builder SSRF Vulnerability

CVE ID : CVE-2025-3775
Published : April 25, 2025, 5:15 a.m. | 3 hours, 27 minutes ago
Description : The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +20 Modules – All in One Solution (formerly WooLentor) plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.1.2 via the woolentor_template_proxy function. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations originating from the web application, and can be used to query and modify information from internal services.
Severity: 6.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-46599 - K3s Kubernetes Kubelet ReadWritePort Remote Authentication Bypass

CVE ID : CVE-2025-46599
Published : April 25, 2025, 5:15 a.m. | 3 hours, 27 minutes ago
Description : CNCF K3s 1.32 before 1.32.4-rc1+k3s1 has a Kubernetes kubelet configuration change with the unintended consequence that, in some situations, ReadOnlyPort is set to 10255. For example, the default behavior of a K3s online installation might allow unauthenticated access to this port, exposing credentials.
Severity: 6.8 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-0671 - Icegram Express WordPress Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-0671
Published : April 25, 2025, 6:15 a.m. | 2 hours, 26 minutes ago
Description : The Icegram Express WordPress plugin before 5.7.50 does not sanitise and escape some of its Template settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2580 - Bit Form WordPress Contact Form Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-2580
Published : April 25, 2025, 6:15 a.m. | 2 hours, 26 minutes ago
Description : The Contact Form by Bit Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.18.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file.
Severity: 4.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...