CVE tracker
312 subscribers
4.41K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2025-57326 - Sassdoc-Extras Prototype Pollution Vulnerability

CVE ID : CVE-2025-57326
Published : Sept. 24, 2025, 8:15 p.m. | 3 hours, 7 minutes ago
Description : A Prototype Pollution vulnerability in the byGroupAndType function of sassdoc-extras v2.5.1 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-57327 - Apache SPM Prototype Pollution Vulnerability

CVE ID : CVE-2025-57327
Published : Sept. 24, 2025, 8:15 p.m. | 3 hours, 7 minutes ago
Description : spmrc is a package that provides the rc manager for spm. A Prototype Pollution vulnerability in the set and config function of spmrc version 1.2.0 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-57328 - Apache toggle-array Prototype Pollution

CVE ID : CVE-2025-57328
Published : Sept. 24, 2025, 8:15 p.m. | 3 hours, 7 minutes ago
Description : toggle-array is a package designed to enables a property on the object at the specified index, while disabling the property on all other objects. A Prototype Pollution vulnerability in the enable and disable function of toggle-array v1.0.1 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-57329 - Web3-core-Method Prototype Pollution Vulnerability

CVE ID : CVE-2025-57329
Published : Sept. 24, 2025, 8:15 p.m. | 3 hours, 7 minutes ago
Description : web3-core-method is a package designed to creates the methods on the web3 modules. A Prototype Pollution vulnerability in the attachToObject function of web3-core-method version 1.10.4 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-59824 - Omni Wireguard SideroLink potential escape

CVE ID : CVE-2025-59824
Published : Sept. 24, 2025, 8:15 p.m. | 3 hours, 7 minutes ago
Description : Omni manages Kubernetes on bare metal, virtual machines, or in a cloud. Prior to version 0.48.0, Omni Wireguard SideroLink has the potential to escape. Omni and each Talos machine establish a peer-to-peer (P2P) SideroLink connection using WireGuard to mutually authenticate and authorize access. The WireGuard interface on Omni is configured to ensure that the source IP address of an incoming packet matches the IPv6 address assigned to the Talos peer. However, it performs no validation on the packet's destination address. The Talos end of the SideroLink connection cannot be considered a trusted environment. Workloads running on Kubernetes, especially those configured with host networking, could gain direct access to this link. Therefore, a malicious workload could theoretically send arbitrary packets over the SideroLink interface. This issue has been patched in version 0.48.0.
Severity: 0.5 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-59828 - Claude Code Vulnerable to Arbitrary Code Execution via Plugin Autoloading with Specific Yarn Versions

CVE ID : CVE-2025-59828
Published : Sept. 24, 2025, 8:15 p.m. | 3 hours, 7 minutes ago
Description : Claude Code is an agentic coding tool. Prior to Claude Code version 1.0.39, when using Claude Code with Yarn versions 2.0+, Yarn plugins are auto-executed when running yarn --version. This could lead to a bypass of the directory trust dialog in Claude Code, as plugins would be executed prior to the user accepting the risks of working in an untrusted directory. Users running Yarn Classic were unaffected by this issue. This issue has been fixed in version 1.0.39. Users on standard Claude Code auto-update will have received this fix automatically. Users performing manual updates are advised to update to the latest version.
Severity: 7.7 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-57318 - Apache csvjson Prototype Pollution Vulnerability

CVE ID : CVE-2025-57318
Published : Sept. 24, 2025, 9:15 p.m. | 2 hours, 7 minutes ago
Description : A Prototype Pollution vulnerability in the toCsv function of csvjson versions thru 5.1.0 allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-57319 - Fast-Redact Prototype Pollution

CVE ID : CVE-2025-57319
Published : Sept. 24, 2025, 9:15 p.m. | 2 hours, 7 minutes ago
Description : fast-redact is a package that provides do very fast object redaction. A Prototype Pollution vulnerability in the nestedRestore function of fast-redact version 3.5.0 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-57320 - Json-Schema-Editor-Visual Prototype Pollution

CVE ID : CVE-2025-57320
Published : Sept. 24, 2025, 9:15 p.m. | 2 hours, 7 minutes ago
Description : json-schema-editor-visual is a package that provides jsonschema editor. A Prototype Pollution vulnerability in the setData and deleteData function of json-schema-editor-visual versions thru 1.1.1 allows attackers to inject or delete properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-57324 - Parse Prototype Pollution Vulnerability

CVE ID : CVE-2025-57324
Published : Sept. 24, 2025, 9:15 p.m. | 2 hours, 7 minutes ago
Description : parse is a package designed to parse JavaScript SDK. A Prototype Pollution vulnerability in the SingleInstanceStateController.initializeState function of parse version 5.3.0 and before allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of service (DoS) as the minimum consequence.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-59827 - FlagForgeCTF is Missing Authorization in main-v2

CVE ID : CVE-2025-59827
Published : Sept. 24, 2025, 9:15 p.m. | 2 hours, 7 minutes ago
Description : Flag Forge is a Capture The Flag (CTF) platform. In version 2.1.0, the /api/admin/assign-badge endpoint lacks proper access control, allowing any authenticated user to assign high-privilege badges (e.g., Staff) to themselves. This could lead to privilege escalation and impersonation of administrative roles. This issue has been patched in version 2.2.0.
Severity: 8.2 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-59833 - FlagForgeCTF Hint Exposure via API

CVE ID : CVE-2025-59833
Published : Sept. 24, 2025, 9:15 p.m. | 2 hours, 7 minutes ago
Description : Flag Forge is a Capture The Flag (CTF) platform. In versions from 2.1.0 to before 2.3.0, the API endpoint GET /api/problems/:id returns challenge hints in plaintext within the question object, regardless of whether the user has unlocked them via point deduction. Users can view all hints for free, undermining the business logic of the platform and reducing the integrity of the challenge system. This issue has been patched in version 2.3.0.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10894 - Nx: nx/devkit: malicious versions of nx and plugins published to npm

CVE ID : CVE-2025-10894
Published : Sept. 24, 2025, 10:15 p.m. | 1 hour, 7 minutes ago
Description : Malicious code was inserted into the Nx (build system) package and several related plugins. The tampered package was published to the npm software registry, via a supply-chain attack. Affected versions contain code that scans the file system, collects credentials, and posts them to GitHub as a repo under user's accounts.
Severity: 9.6 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-54520 - Xilinx FPGA Power Glitch Attack Vulnerability

CVE ID : CVE-2025-54520
Published : Sept. 24, 2025, 10:15 p.m. | 1 hour, 7 minutes ago
Description : Improper Protection Against Voltage and Clock Glitches in FPGA devices, could allow an attacker with physical access to undervolt the platform resulting in a loss of confidentiality.
Severity: 8.6 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-21056 - HP Retail Mode Command Injection Vulnerability

CVE ID : CVE-2025-21056
Published : Sept. 25, 2025, 6:15 a.m. | 1 hour, 8 minutes ago
Description : Improper input validation in Retail Mode prior to version 5.59.4 allows self attackers to execute privileged commands on their own devices.
Severity: 6.6 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10438 - Path Traversal in Yordam BT's Yordam Katalog

CVE ID : CVE-2025-10438
Published : Sept. 25, 2025, 10:15 a.m. | 1 hour, 8 minutes ago
Description : Path Traversal: 'dir/../../filename' vulnerability in Yordam Information Technology Consulting Education and Electrical Systems Industry Trade Inc. Yordam Katalog allows Path Traversal.This issue affects Yordam Katalog: before 21.7.
Severity: 7.1 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10940 - Total.js CMS Layout admin layouts_save cross site scripting

CVE ID : CVE-2025-10940
Published : Sept. 25, 2025, 10:32 a.m. | 51 minutes ago
Description : A vulnerability was found in Total.js CMS 1.0.0. Affected by this vulnerability is the function layouts_save of the file /admin/ of the component Layout Page. Performing manipulation of the argument HTML results in cross site scripting. It is possible to initiate the attack remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10941 - Topaz SERVCore Teller Installer SERVCoreTeller_2.0.40D.msi permission

CVE ID : CVE-2025-10941
Published : Sept. 25, 2025, 11:02 a.m. | 21 minutes ago
Description : A vulnerability was determined in Topaz SERVCore Teller 2.14.0-RC2/2.14.1. Affected by this issue is some unknown functionality of the file SERVCoreTeller_2.0.40D.msi of the component Installer. Executing manipulation can lead to permission issues. The attack needs to be launched locally. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-10942 - H3C Magic B3 aspForm AddMacList buffer overflow

CVE ID : CVE-2025-10942
Published : Sept. 25, 2025, 11:02 a.m. | 21 minutes ago
Description : A vulnerability was identified in H3C Magic B3 up to 100R002. This affects the function AddMacList of the file /goform/aspForm. The manipulation of the argument param leads to buffer overflow. The attack can be initiated remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-26278 - Dref Prototype Pollution Denial of Service

CVE ID : CVE-2025-26278
Published : Sept. 25, 2025, 2:15 p.m. | 1 hour, 8 minutes ago
Description : A prototype pollution in the lib.set function of dref v0.1.2 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-27261 - Ericsson Indoor Connect 8855 - Improper Neutralization of Special Elements used in an SQL Command Vulnerability

CVE ID : CVE-2025-27261
Published : Sept. 25, 2025, 2:15 p.m. | 1 hour, 8 minutes ago
Description : Ericsson Indoor Connect 8855 contains a SQL injection vulnerability which if exploited can lead to unauthorized disclosure and modification of user and configuration data.
Severity: 8.7 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...