A vulnerability, which was classified as problematic, was found in StreamWeasels YouTube Integration Plugin up to 1.4.0 on WordPress. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-7811. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability, which was classified as problematic, has been found in StreamWeasels Twitch Integration Plugin up to 1.9.3 on WordPress. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2025-7809. The attack may be initiated remotely. There is no exploit available.
A vulnerability classified as problematic was found in StreamWeasels Kick Integration Plugin up to 1.1.4 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-7810. The attack can be initiated remotely. There is no exploit available.
A vulnerability classified as problematic has been found in Johnson Controls iSTAR Ultra up to 6.9.2. This affects an unknown part of the component Firmware Handler. The manipulation leads to download of code without integrity check.
This vulnerability is uniquely identified as CVE-2025-53696. The attack needs to be approached locally. There is no exploit available.
A vulnerability was found in CodeIgniter up to 4.6.1. It has been rated as critical. Affected by this issue is some unknown functionality of the component Image Handler. The manipulation leads to os command injection.
This vulnerability is handled as CVE-2025-54418. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A new infostealing malware making the rounds can exfiltrate credentials and other system data even from browsing software considered more privacy-focused than mainstream options.
A vulnerability was found in Apache Parquet up to 1.10.x/1.11.1/1.12.1. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Parquet-MR. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2021-41561. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in HPE ArubaOS up to 8.10.0.9/8.11.2.0/10.4.0.3/10.5.0.1. This vulnerability affects unknown code of the component Command Line Interface. The manipulation leads to os command injection.
This vulnerability was named CVE-2024-25613. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in HPE ArubaOS up to 8.10.0.9/8.11.2.0/10.4.0.3/10.5.0.1 and classified as problematic. Affected by this issue is some unknown functionality of the component IKE_AUTH Negotiation. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2024-25616. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in HPE ArubaOS up to 8.10.0.9/8.11.2.0/10.4.0.3/10.5.0.1. It has been declared as critical. This vulnerability affects unknown code of the component Command Line Interface. The manipulation leads to command injection.
This vulnerability was named CVE-2024-1356. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in HPE ArubaOS up to 8.10.0.9/8.11.2.0/10.4.0.3/10.5.0.1. It has been rated as critical. This issue affects some unknown processing of the component Command Line Interface. The manipulation leads to os command injection.
The identification of this vulnerability is CVE-2024-25611. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical has been found in HPE ArubaOS up to 8.10.0.9/8.11.2.0/10.4.0.3/10.5.0.1. Affected is an unknown function of the component Command Line Interface. The manipulation leads to os command injection.
This vulnerability is traded as CVE-2024-25612. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in h2oai h2o-3 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component S3 Bucket Handler. The manipulation leads to business logic errors.
This vulnerability is known as CVE-2024-1456. An attack has to be approached locally. There is no exploit available.
A vulnerability has been found in scrapy up to 2.11.0 and classified as problematic. This vulnerability affects unknown code of the component Authorization Header Handler. The manipulation leads to information disclosure.
This vulnerability was named CVE-2024-3574. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in scrapy up to 2.11.0. Affected is an unknown function of the component XML Handler. The manipulation leads to xml external entity reference.
This vulnerability is traded as CVE-2024-3572. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Aruba ArubaOS up to 8.10.0.10/8.11.2.1/10.4.1.0/10.5.1.0. Affected is an unknown function of the component AP Management Service. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2024-33513. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Angular. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Cache Handler. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2022-25869. The attack may be launched remotely. There is no exploit available.
A vulnerability, which was classified as problematic, has been found in HPE ArubaOS up to 8.10.0.9/8.11.2.0/10.4.0.3/10.5.0.1. This issue affects some unknown processing of the component CLI. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2024-25614. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.