A vulnerability described as critical has been identified in code-projects Blog Site 1.0. Impacted is the function category_exists of the file /resources/functions/blog.php of the component Category Handler. Such manipulation of the argument name/field leads to sql injection.
This vulnerability is listed as CVE-2025-13575. The attack may be performed from remote. In addition, an exploit is available.
Multiple endpoints are affected.
A vulnerability classified as critical has been found in code-projects Blog Site 1.0. The affected element is an unknown function of the file /admin.php. Performing manipulation results in improper authorization.
This vulnerability is cataloged as CVE-2025-13576. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
Multiple endpoints are affected.
A vulnerability classified as critical has been found in Linux Kernel up to 6.16.8. The affected element is the function rfkill_find_type of the component gpio. This manipulation causes uninitialized pointer.
This vulnerability is registered as CVE-2025-39937. The attack requires access to the local network. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability labeled as critical has been found in Linux Kernel up to 6.16.8. This vulnerability affects the function sma1307_setting_loaded of the component ASoC. Executing manipulation can lead to memory corruption.
This vulnerability is tracked as CVE-2025-39935. The attack is only possible within the local network. No exploit exists.
The affected component should be upgraded.