CVE ID | Publié | Description | Score | Gravité | |
---|---|---|---|---|---|
CVE-2025-48703 |
2025-09-19 00h00 +00:00 |
CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1205 allows unauthenticated remote code... OS Command Injection |
9 |
Critique |
|
CVE-2025-57644 |
2025-09-19 00h00 +00:00 |
Accela Automation Platform 22.2.3.0.230103 contains multiple vulnerabilities in the Test Script feat... Directory TraversalCode InjectionServer-Side Request Forgery - SSRF |
9.1 |
Critique |
|
CVE-2025-10647 |
2025-09-19 08h23 +00:00 |
The Embed PDF for WPForms plugin for WordPress is vulnerable to arbitrary file uploads due to missin... File Inclusion |
8.8 |
Haute |
|
CVE-2025-9906 |
2025-09-19 08h15 +00:00 |
The Keras Model.load_model method can be exploited to achieve arbitrary code execution, even with s... |
8.6 |
Haute |
|
CVE-2025-5948 |
2025-09-19 05h28 +00:00 |
The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account t... Authorization problems |
9.8 |
Critique |
|
CVE-2025-10690 |
2025-09-19 02h27 +00:00 |
The Goza - Nonprofit Charity WordPress Theme theme for WordPress is vulnerable to unauthorized arbit... Authorization problems |
9.8 |
Critique |
|
CVE-2025-10035 |
2025-09-18 22h01 +00:00 |
A deserialization vulnerability in the License Servlet of Fortra's GoAnywhere MFT allows an actor wi... Command Injection |
10 |
Critique |
|
CVE-2025-47698 |
2025-09-18 21h07 +00:00 |
An adjacent attacker without authentication can exploit this vulnerability to retrieve a set of user... |
8.6 |
Haute |
|
CVE-2025-53969 |
2025-09-18 21h30 +00:00 |
Cognex In-Sight Explorer and In-Sight Camera Firmware expose a service implementing a proprietary p... |
8.6 |
Haute |
|
CVE-2025-54754 |
2025-09-18 21h06 +00:00 |
An attacker with adjacent access, without authentication, can exploit this vulnerability to retriev... |
8.6 |
Haute |