CVE-2025-21136 – Substance3D Designer Code Execution Vulnerability

The following table lists the changes that have been made to the CVE-2025-21136 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 14, 2025 Action […]

CVE-2025-21135 – Animate Integer Underflow Arbitary Code Execution Vulnerability

The following table lists the changes that have been made to the CVE-2025-21135 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 14, 2025 Action […]

CVE-2024-5175 – Cisco IOS XE Administrative Distance=set System Configuration Buffer Overwrite

The following table lists the changes that have been made to the CVE-2024-5175 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. CVE Rejected by [email protected] Jan. 14, 2025 Action Type […]

CVE-2024-55945 – TYPO3 CSRF and HTTP Method Enforcement Vulnerability

TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user interface functionality involving deep links. Specifically, this functionality is susceptible to Cross-Site Request Forgery (CSRF). Additionally, state-changing actions in downstream components incorrectly accepted submissions via HTTP GET and did not enforce the appropriate HTTP method. Successful […]

CVE-2024-55923 – TYPO3 Indexed Search Module CSRF Vulnerability

TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user interface functionality involving deep links. Specifically, this functionality is susceptible to Cross-Site Request Forgery (CSRF). Additionally, state-changing actions in downstream components incorrectly accepted submissions via HTTP GET and did not enforce the appropriate HTTP method. Successful […]

CVE-2024-55922 – TYPO3 CSRF Vulnerability in Backend User Interface Deep Links

TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user interface functionality involving deep links. Specifically, this functionality is susceptible to Cross-Site Request Forgery (CSRF). Additionally, state-changing actions in downstream components incorrectly accepted submissions via HTTP GET and did not enforce the appropriate HTTP method. Successful […]

CVE-2024-55924 – “TYPO3 Backend User Interface CSRF Vulnerability”

TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user interface functionality involving deep links. Specifically, this functionality is susceptible to Cross-Site Request Forgery (CSRF). Additionally, state-changing actions in downstream components incorrectly accepted submissions via HTTP GET and did not enforce the appropriate HTTP method. Successful […]

CVE-2024-55921 – “TYPO3 Extension Manager Module CSRF Leading to Remote Code Execution”

TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user interface functionality involving deep links. Specifically, this functionality is susceptible to Cross-Site Request Forgery (CSRF). Additionally, state-changing actions in downstream components incorrectly accepted submissions via HTTP GET and did not enforce the appropriate HTTP method. Successful […]

CVE-2024-55893 – “TYPO3 Cross-Site Request Forgery (CSRF) Vulnerability in Backend User Interface”

TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user interface functionality involving deep links. Specifically, this functionality is susceptible to Cross-Site Request Forgery (CSRF). Additionally, state-changing actions in downstream components incorrectly accepted submissions via HTTP GET and did not enforce the appropriate HTTP method. Successful […]

CVE-2024-55920 – “TYPO3 Backend User Interface CSRF Exploit Through Malicious Links and Unsecured Configuration”

TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user interface functionality involving deep links. Specifically, this functionality is susceptible to Cross-Site Request Forgery (CSRF). Additionally, state-changing actions in downstream components incorrectly accepted submissions via HTTP GET and did not enforce the appropriate HTTP method. Successful […]