CVE ID | Published | Description | Score | Severity | |
---|---|---|---|---|---|
CVE-2025-46579 |
2025-04-27 01h34 +00:00 |
There is a DDE injection vulnerability in the GoldenDB database product. Attackers can inject DDE ex... Code Injection |
8.4 |
High |
|
CVE-2025-2851 |
2025-04-26 08h00 +00:00 |
A vulnerability classified as critical has been found in GL.iNet GL-A1300 Slate Plus, GL-AR300M16 Sh... Overflow |
8.6 |
High |
|
CVE-2025-3906 |
2025-04-26 05h34 +00:00 |
The Integração entre Eduzz e Woocommerce plugin for WordPress is vulnerable to unauthorized modifi... Authorization problems |
8.8 |
High |
|
CVE-2025-3914 |
2025-04-26 05h34 +00:00 |
The Aeropage Sync for Airtable plugin for WordPress is vulnerable to arbitrary file uploads due to m... File Inclusion |
8.8 |
High |
|
CVE-2024-13808 |
2025-04-26 04h22 +00:00 |
The Xpro Elementor Addons - Pro plugin for WordPress is vulnerable to Remote Code Execution in all v... Code Injection |
8.8 |
High |
|
CVE-2025-25775 |
2025-04-25 00h00 +00:00 |
Codeastro Bus Ticket Booking System v1.0 is vulnerable to SQL injection via the kodetiket parameter ... SQL Injection |
9.8 |
Critical |
|
CVE-2025-3928 |
2025-04-25 15h56 +00:00 |
Commvault Web Server has an unspecified vulnerability that can be exploited by a remote, authenticat... |
8.7 |
High |
|
CVE-2025-32432 |
2025-04-25 15h04 +00:00 |
Craft is a flexible, user-friendly CMS for creating custom digital experiences on the web and beyond... Code Injection |
10 |
Critical |
|
CVE-2025-3638 |
2025-04-25 14h42 +00:00 |
A flaw was found in Moodle. The analysis request action in the Brickfield tool did not include the n... Cross-Site Request Forgery - CSRF |
8.8 |
High |
|
CVE-2025-3641 |
2025-04-25 14h43 +00:00 |
A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS Dropbox re... Code Injection |
8.8 |
High |