CVE tracker
312 subscribers
4.42K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2025-10759 - Webkul QloApps CSRF Token Handler Authorization Bypass Vulnerability

CVE ID : CVE-2025-10759
Published : Sept. 21, 2025, 3:26 a.m. | 1 hour, 49 minutes ago
Description : A vulnerability was detected in Webkul QloApps up to 1.7.0. This affects an unknown function of the component CSRF Token Handler. Performing manipulation of the argument token results in authorization bypass. The attack may be initiated remotely. The exploit is now public and may be used. The vendor explains: "As We are already aware about this vulnerability and our Internal team are already working on this issue. (...) We'll implement the fix for this vulnerability in our next major release."
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10762 - Kuaifan DooTask SQL Injection

CVE ID : CVE-2025-10762
Published : Sept. 21, 2025, 7:08 a.m. | 2 hours, 8 minutes ago
Description : A vulnerability was found in kuaifan DooTask up to 1.2.49. Affected by this vulnerability is an unknown functionality of the file app/Http/Controllers/Api/UsersController.php. The manipulation of the argument keys[department] results in sql injection. The attack can be executed remotely. The exploit has been made public and could be used.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10763 - Academico-sis Profile Picture Handler Unrestricted File Upload Vulnerability

CVE ID : CVE-2025-10763
Published : Sept. 21, 2025, 7:08 a.m. | 2 hours, 8 minutes ago
Description : A vulnerability was determined in academico-sis academico up to d9a9e2636fbf7e5845ee086bcb03ca62faceb6ab. Affected by this issue is some unknown functionality of the file /edit-photo of the component Profile Picture Handler. This manipulation causes unrestricted upload. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized. This product adopts a rolling release strategy to maintain continuous delivery The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10764 - SeriaWei ZKEACMS Server-Side Request Forgery (SSRF) Vulnerability

CVE ID : CVE-2025-10764
Published : Sept. 21, 2025, 7:08 a.m. | 2 hours, 8 minutes ago
Description : A vulnerability was identified in SeriaWei ZKEACMS up to 4.3. This affects the function Edit of the file src/ZKEACMS.EventAction/Controllers/PendingTaskController.cs of the component Event Action System. Such manipulation of the argument Data leads to server-side request forgery. The attack may be performed from remote. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10761 - Harness Login Endpoint Authentication Bypass

CVE ID : CVE-2025-10761
Published : Sept. 21, 2025, 7:08 a.m. | 2 hours, 8 minutes ago
Description : A vulnerability has been found in Harness 3.3.0. Affected is an unknown function of the file /api/v1/login of the component Login Endpoint. The manipulation leads to improper restriction of excessive authentication attempts. Remote exploitation of the attack is possible. The attack is considered to have high complexity. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10760 - Harness SSRF

CVE ID : CVE-2025-10760
Published : Sept. 21, 2025, 7:08 a.m. | 2 hours, 8 minutes ago
Description : A flaw has been found in Harness 3.3.0. This impacts the function LookupRepo of the file app/api/controller/gitspace/lookup_repo.go. Executing manipulation of the argument url can lead to server-side request forgery. The attack may be launched remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10766 - SeriaWei ZKEACMS Remote Path Traversal Vulnerability

CVE ID : CVE-2025-10766
Published : Sept. 21, 2025, 9:10 a.m. | 4 hours, 7 minutes ago
Description : A weakness has been identified in SeriaWei ZKEACMS up to 4.3. This issue affects the function Download of the file EventViewerController.cs. Executing manipulation of the argument ID can lead to path traversal. It is possible to launch the attack remotely. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10765 - SeriaWei ZKEACMS Server-Side Request Forgery Vulnerability

CVE ID : CVE-2025-10765
Published : Sept. 21, 2025, 9:10 a.m. | 4 hours, 7 minutes ago
Description : A security flaw has been discovered in SeriaWei ZKEACMS up to 4.3. This vulnerability affects the function CheckPage/Suggestions in the library cms-v4.3\wwwroot\Plugins\ZKEACMS.SEOSuggestions\ZKEACMS.SEOSuggestions.dll of the component SEOSuggestions. Performing manipulation results in server-side request forgery. It is possible to initiate the attack remotely. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-6544 - H2O-3 Deserialization Remote Code Execution

CVE ID : CVE-2025-6544
Published : Sept. 21, 2025, 11:08 a.m. | 2 hours, 9 minutes ago
Description : A deserialization vulnerability exists in h2oai/h2o-3 versions <= 3.46.0.8, allowing attackers to read arbitrary system files and execute arbitrary code. The vulnerability arises from improper handling of JDBC connection parameters, which can be exploited by bypassing regular expression checks and using double URL encoding. This issue impacts all users of the affected versions.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10769 - H2oai H2o-3 Remote Deserialization Vulnerability in H2 JDBC Driver

CVE ID : CVE-2025-10769
Published : Sept. 21, 2025, 11:08 a.m. | 2 hours, 9 minutes ago
Description : A vulnerability has been found in h2oai h2o-3 up to 3.46.08. This affects an unknown function of the file /99/ImportSQLTable of the component H2 JDBC Driver. Such manipulation of the argument connection_url leads to deserialization. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10768 - IBMDB2 JDBC Driver Remote Deserialization Vulnerability

CVE ID : CVE-2025-10768
Published : Sept. 21, 2025, 11:08 a.m. | 2 hours, 9 minutes ago
Description : A flaw has been found in h2oai h2o-3 up to 3.46.08. The impacted element is an unknown function of the file /99/ImportSQLTable of the component IBMDB2 JDBC Driver. This manipulation of the argument connection_url causes deserialization. The attack may be initiated remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-53692 - Sitecore Sitecore Experience Manager/Xperience Platform XSS

CVE ID : CVE-2025-53692
Published : Sept. 21, 2025, 9:10 p.m. | 4 hours, 9 minutes ago
Description : Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Sitecore Sitecore Experience Manager (XM), Sitecore Experience Platform (XP) allows Cross-Site Scripting (XSS).This issue affects Sitecore Experience Manager (XM): from 9.2 through 10.4; Experience Platform (XP): from 9.2 through 10.4.
Severity: 7.1 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10772 - Huggingface LeRobot ZeroMQ Socket Handler Authentication Bypass

CVE ID : CVE-2025-10772
Published : Sept. 22, 2025, 1:08 a.m. | 4 hours, 11 minutes ago
Description : A vulnerability was identified in huggingface LeRobot up to 0.3.3. Affected by this vulnerability is an unknown functionality of the file lerobot/common/robot_devices/robots/lekiwi_remote.py of the component ZeroMQ Socket Handler. The manipulation leads to missing authentication. The attack can only be initiated within the local network. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10771 - "Jeecgboot JimuReport DB2 JDBC Handler Remote Deserialization Vulnerability"

CVE ID : CVE-2025-10771
Published : Sept. 22, 2025, 1:08 a.m. | 4 hours, 11 minutes ago
Description : A vulnerability was determined in jeecgboot JimuReport up to 2.1.2. Affected is an unknown function of the file /drag/onlDragDataSource/testConnection of the component DB2 JDBC Handler. Executing manipulation of the argument clientRerouteServerListJNDIName can lead to deserialization. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10767 - CosmodiumCS OnlyRAT Os Command Injection Vulnerability

CVE ID : CVE-2025-10767
Published : Sept. 22, 2025, 1:08 a.m. | 4 hours, 11 minutes ago
Description : A vulnerability was detected in CosmodiumCS OnlyRAT up to 3.2. The affected element is the function connect/remote_upload/remote_download of the file main.py of the component Configuration File Handler. The manipulation of the argument configuration["PASSWORD"] results in os command injection. The attack requires a local approach. Attacks of this nature are highly complex. The exploitability is described as difficult. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10770 - "Jeecgboot JimuReport MySQL JDBC Handler Deserialization Vulnerability"

CVE ID : CVE-2025-10770
Published : Sept. 22, 2025, 1:08 a.m. | 4 hours, 11 minutes ago
Description : A vulnerability was found in jeecgboot JimuReport up to 2.1.2. This impacts an unknown function of the file /drag/onlDragDataSource/testConnection of the component MySQL JDBC Handler. Performing manipulation results in deserialization. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10776 - LionCoders SalePro POS Insecure Cleartext Transmission Vulnerability

CVE ID : CVE-2025-10776
Published : Sept. 22, 2025, 3:26 a.m. | 1 hour, 53 minutes ago
Description : A vulnerability was detected in LionCoders SalePro POS up to 5.5.0. This issue affects some unknown processing of the component Login. Performing manipulation results in cleartext transmission of sensitive information. The attack can be initiated remotely. The attack is considered to have high complexity. The exploitability is assessed as difficult. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10773 - B-Link BL-AC2100 Web Management Interface Remote Stack Buffer Overflow

CVE ID : CVE-2025-10773
Published : Sept. 22, 2025, 3:26 a.m. | 1 hour, 53 minutes ago
Description : A security flaw has been discovered in B-Link BL-AC2100 up to 1.0.3. Affected by this issue is the function delshrpath of the file /goform/set_delshrpath_cfg of the component Web Management Interface. The manipulation of the argument Type results in stack-based buffer overflow. The attack may be performed from remote. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10774 - Ruijie 6000-E10 Remote OS Command Injection Vulnerability

CVE ID : CVE-2025-10774
Published : Sept. 22, 2025, 3:26 a.m. | 1 hour, 53 minutes ago
Description : A weakness has been identified in Ruijie 6000-E10 up to 2.4.3.6-20171117. This affects an unknown part of the file /view/vpn/autovpn/sub_commit.php. This manipulation of the argument key causes os command injection. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10775 - Wavlink WL-NU516U1 Os Command Injection Vulnerability

CVE ID : CVE-2025-10775
Published : Sept. 22, 2025, 3:26 a.m. | 1 hour, 53 minutes ago
Description : A security vulnerability has been detected in Wavlink WL-NU516U1 240425. This vulnerability affects the function sub_4012A0 of the file /cgi-bin/login.cgi. Such manipulation of the argument ipaddr leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10779 - D-Link DCS-935L Stack-Based Buffer Overflow Vulnerability

CVE ID : CVE-2025-10779
Published : Sept. 22, 2025, 7:10 a.m. | 2 hours, 10 minutes ago
Description : A vulnerability was found in D-Link DCS-935L up to 1.13.01. The impacted element is the function sub_402280 of the file /HNAP1/. The manipulation of the argument HNAP_AUTH/SOAPAction results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been made public and could be used. This vulnerability only affects products that are no longer supported by the maintainer.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...