A vulnerability, which was classified as problematic, was found in WP Shortcodes Plugin up to 7.4.2 on WordPress. This affects an unknown part. The manipulation of the argument Image Title/Slide Link leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-8015. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in code-projects Food Ordering Review System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /user/reservation_page.php. The manipulation of the argument reg_Id leads to sql injection.
This vulnerability is known as CVE-2025-8018. The attack can be launched remotely. Furthermore, there is an exploit available.
Other parameters might be affected as well.
A vulnerability classified as problematic was found in Ai2 Playground Web Service LLM Chat up to 2025-06-03. Affected by this vulnerability is an unknown functionality of the component Object Reference Handler. The manipulation of the argument thread leads to improper control of resource identifiers.
This vulnerability is known as CVE-2025-51865. The attack can be launched remotely. There is no exploit available.
A vulnerability classified as problematic has been found in AIBOX LLM Chat up to 2025-05-27. This affects an unknown part of the component chat.aibox365.cn. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-51864. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability classified as problematic was found in TelegAI up to 2025-05-26. This vulnerability affects unknown code. The manipulation leads to improper control of resource identifiers.
This vulnerability was named CVE-2025-51862. The attack can be initiated remotely. There is no exploit available.
A vulnerability, which was classified as problematic, was found in ChatGPT Unli up to 2025-05-26. Affected is an unknown function of the component Chat Interface. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-51863. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability was found in letta 0.7.12 and classified as critical. This issue affects the function letta.server.rest_api.routers.v1.tools.run_tool_from_source of the file /v1/tools/run. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2025-51482. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in AIM 3.28.0. It has been classified as critical. Affected is the function restore_run_backup of the component Backup Handler. The manipulation leads to path traversal.
This vulnerability is traded as CVE-2025-51463. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability, which was classified as critical, was found in Autodesk Revit up to 2026.1. Affected is an unknown function of the component RFA File Parser. The manipulation leads to out-of-bounds read.
This vulnerability is traded as CVE-2025-5042. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in onnx 1.17.0. It has been declared as critical. This vulnerability affects the function onnx.external_data_helper.save_external_data. The manipulation of the argument external_data.location leads to path traversal.
This vulnerability was named CVE-2025-51480. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Okta On-Premises Provisioning Agent up to 2.3.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to sensitive information in log files.
This vulnerability is known as CVE-2025-7371. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Dagster 1.10.14. It has been rated as critical. Affected by this issue is the function dagster._grpc.impl.get_notebook_data of the component ExternalNotebookData Request Handler. The manipulation of the argument notebook_path leads to path traversal.
This vulnerability is handled as CVE-2025-51481. Access to the local network is required for this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Itechscripts iTechClassifieds 3.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file viewcat.php. The manipulation of the argument CatID leads to cross site scripting.
This vulnerability is known as CVE-2008-0684. The attack can be launched remotely. Furthermore, there is an exploit available.
A vulnerability was found in Salesforce Tableau Server on Windows/Linux. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to authorization bypass.
This vulnerability is handled as CVE-2025-52446. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Salesforce Tableau Server on Windows/Linux. This issue affects some unknown processing. The manipulation leads to authorization bypass.
The identification of this vulnerability is CVE-2025-52447. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, was found in Salesforce Tableau Server on Windows/Linux. Affected is an unknown function. The manipulation leads to authorization bypass.
This vulnerability is traded as CVE-2025-52448. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.