Aggregator
CVE-2025-21584 | Oracle MySQL Server up to 8.0.41/8.4.4/9.2.0 DDL denial of service (Nessus ID 240409 / WID-SEC-2025-1850)
4 weeks 2 days ago
A vulnerability was found in Oracle MySQL Server up to 8.0.41/8.4.4/9.2.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the component DDL. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2025-21584. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-21585 | Oracle MySQL Server up to 8.0.41/8.4.4/9.2.0 Optimizer denial of service (Nessus ID 240392 / WID-SEC-2025-1850)
4 weeks 2 days ago
A vulnerability categorized as problematic has been discovered in Oracle MySQL Server up to 8.0.41/8.4.4/9.2.0. This affects an unknown part of the component Optimizer. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2025-21585. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-23048 | Apache HTTP Server up to 2.4.63 mod_ssl access control (EUVD-2025-21018 / Nessus ID 242028)
4 weeks 2 days ago
A vulnerability was found in Apache HTTP Server up to 2.4.63. It has been classified as critical. Affected is an unknown function of the component mod_ssl. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2025-23048. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-21588 | Oracle MySQL Server up to 8.4.4/9.2.0 DML denial of service (WID-SEC-2025-1850)
4 weeks 2 days ago
A vulnerability identified as problematic has been detected in Oracle MySQL Server up to 8.4.4/9.2.0. This vulnerability affects unknown code of the component DML. The manipulation leads to denial of service.
This vulnerability was named CVE-2025-21588. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-21583 | Oracle MySQL Server 8.4.0/9.0.0 DDL denial of service (WID-SEC-2025-1850)
4 weeks 2 days ago
A vulnerability was found in Oracle MySQL Server 8.4.0/9.0.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component DDL. The manipulation leads to denial of service.
This vulnerability is known as CVE-2025-21583. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
New Quantum-Safe Alliance Aims to Accelerate PQC Implementation
4 weeks 2 days ago
The new Quantum-Safe 360 Alliance will provide road maps, technology, and services to help organizations navigate the post-quantum cryptography transition before the 2030 deadline.
Jeffrey Schwartz
INC
4 weeks 2 days ago
You must login to view this content
cohenido
CVE-2023-47716 | IBM Filenet Content Manager 5.5.8.0/5.5.10.0/5.5.11.0 CP4BA access control (XFDB-271656)
4 weeks 2 days ago
A vulnerability marked as critical has been reported in IBM Filenet Content Manager 5.5.8.0/5.5.10.0/5.5.11.0. Affected by this issue is some unknown functionality of the component CP4BA. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2023-47716. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-43043 | IBM Maximo Application Suite 8.10/8.11 Maximo Mobile for EAM log file (XFDB-266875)
4 weeks 2 days ago
A vulnerability was found in IBM Maximo Application Suite 8.10/8.11. It has been classified as problematic. This vulnerability affects unknown code of the component Maximo Mobile for EAM. The manipulation leads to sensitive information in log files.
This vulnerability was named CVE-2023-43043. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-1504 | SecuPress Free Plugin up to 2.2.5.1 on WordPress Banned IP Address cross-site request forgery
4 weeks 2 days ago
A vulnerability categorized as problematic has been discovered in SecuPress Free Plugin up to 2.2.5.1 on WordPress. Affected by this vulnerability is an unknown functionality of the component Banned IP Address. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2024-1504. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-21459 | Qualcomm Snapdragon Auto up to XR2 5G Platform Response Frame buffer over-read
4 weeks 2 days ago
A vulnerability classified as critical was found in Qualcomm Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking. Affected by this vulnerability is an unknown functionality of the component Response Frame Handler. The manipulation leads to buffer over-read.
This vulnerability is known as CVE-2024-21459. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-53989 | rails-html-sanitizer up to 1.6.0 Rails::HTML::Sanitizer cross site scripting (GHSA-rxv5-gxqc-xx8g)
4 weeks 2 days ago
A vulnerability has been found in rails-html-sanitizer up to 1.6.0 and classified as problematic. This vulnerability affects the function Rails::HTML::Sanitizer. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-53989. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-53985 | rails-html-sanitizer up to 1.6.0 Rails::HTML::Sanitizer cross site scripting (GHSA-w8gc-x259-rc7x)
4 weeks 2 days ago
A vulnerability categorized as problematic has been discovered in rails-html-sanitizer up to 1.6.0. This issue affects the function Rails::HTML::Sanitizer. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-53985. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-53988 | rails-html-sanitizer up to 1.6.0 Rails::HTML::Sanitizer cross site scripting (GHSA-cfjx-w229-hgx5)
4 weeks 2 days ago
A vulnerability labeled as problematic has been found in rails-html-sanitizer up to 1.6.0. Affected by this vulnerability is the function Rails::HTML::Sanitizer. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-53988. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-53986 | rails-html-sanitizer up to 1.6.0 Rails::HTML::Sanitizer cross site scripting (GHSA-638j-pmjw-jq48)
4 weeks 2 days ago
A vulnerability, which was classified as problematic, has been found in rails-html-sanitizer up to 1.6.0. Affected is the function Rails::HTML::Sanitizer. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-53986. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-53987 | rails-html-sanitizer up to 1.6.0 Rails::HTML::Sanitizer cross site scripting (GHSA-2x5m-9ch4-qgrr)
4 weeks 2 days ago
A vulnerability, which was classified as problematic, was found in rails-html-sanitizer up to 1.6.0. Affected by this vulnerability is the function Rails::HTML::Sanitizer. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-53987. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-54141 | thorsten phpMyFAQ up to 3.x information exposure (GHSA-vrjr-p3xp-xx2x)
4 weeks 2 days ago
A vulnerability, which was classified as problematic, has been found in thorsten phpMyFAQ up to 3.x. Affected by this issue is some unknown functionality. The manipulation leads to information exposure through error message.
This vulnerability is handled as CVE-2024-54141. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-52586 | eLabFTW up to 5.1.8 authentication bypass
4 weeks 2 days ago
A vulnerability marked as critical has been reported in eLabFTW up to 5.1.8. Affected by this issue is some unknown functionality. The manipulation leads to authentication bypass using alternate channel.
This vulnerability is handled as CVE-2024-52586. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-33322 | Etoile Web Design Front End Users Plugin up to 3.2.24 on WordPress cross site scripting
4 weeks 2 days ago
A vulnerability classified as problematic has been found in Etoile Web Design Front End Users Plugin up to 3.2.24 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2023-33322. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com