A vulnerability, which was classified as problematic, was found in GitLab Community Edition and Enterprise Edition up to 18.1.3/18.2.1. This affects an unknown part. Executing manipulation can lead to basic cross site scripting.
The identification of this vulnerability is CVE-2025-6186. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.
A vulnerability was found in markdown-it 14.1.0. It has been declared as problematic. This impacts an unknown function in the library lib/renderer.mjs. Executing manipulation can lead to cross site scripting.
This vulnerability is handled as CVE-2025-7969. The attack can be executed remotely. There is not any exploit available.
A vulnerability described as critical has been identified in Tenda CH22 1.0.0.1. This vulnerability affects the function formexeCommand of the file /goform/exeCommand. Executing manipulation of the argument cmdinput can lead to buffer overflow.
This vulnerability appears as CVE-2025-9812. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability, which was classified as problematic, has been found in Google Android 10.0/11.0/12.0/13.0. The impacted element is an unknown function of the file SettingsState.java. The manipulation leads to resource consumption.
This vulnerability is traded as CVE-2023-20908. An attack has to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability has been found in Google Android 12.0/13.0 and classified as problematic. Affected by this issue is the function getTrampolineIntent of the file SettingsActivity.java. Performing manipulation results in Local Privilege Escalation.
This vulnerability is known as CVE-2023-20904. Attacking locally is a requirement. No exploit is available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Google Android 10.0 and classified as critical. This affects the function Mfc_Transceive of the file phNxpExtns_MifareStd.cpp. Executing manipulation can lead to out-of-bounds write.
This vulnerability is handled as CVE-2023-20905. It is possible to launch the attack on the local host. There is not any exploit available.
Applying a patch is advised to resolve this issue.
A vulnerability was found in Brokenbytes PhotoDB 1.4. It has been declared as critical. This affects an unknown function of the file secure_inc.php of the component Authentication. The manipulation of the argument Time results in improper authentication.
This vulnerability was named CVE-2002-1726. The attack may be performed from remote. There is no available exploit.
A vulnerability identified as problematic has been detected in ASPjar Guestbook 1.0. Affected by this vulnerability is an unknown functionality. Performing manipulation of the argument web site results in basic cross site scripting.
This vulnerability is identified as CVE-2002-1729. The attack can be initiated remotely. There is not any exploit available.
A vulnerability was found in Alt-N MDaemon up to 5.0.5 and classified as critical. This impacts an unknown function. The manipulation of the argument Password with the input MServer results in hard-coded credentials.
This vulnerability is known as CVE-2002-1738. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.