CVE-2025-27924 – Nintex Automation Stored Cross-Site Scripting (XSS)

The following table lists the changes that have been made to the CVE-2025-27924 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 10, 2025 Action […]

CVE-2025-27610 – Rack Static Path Traversal Vulnerability

Rack provides an interface for developing web applications in Ruby. Prior to versions 2.2.13, 3.0.14, and 3.1.12, `Rack::Static` can serve files under the specified `root:` even if `urls:` are provided, which may expose other files under the specified `root:` unexpectedly. The vulnerability occurs because `Rack::Static` does not properly sanitize user-supplied paths before serving files. Specifically, […]

CVE-2025-27926 – Nintex Automation K2 SmartForms Designer Unauthenticated Password Disclosure

The following table lists the changes that have been made to the CVE-2025-27926 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 10, 2025 Action […]

CVE-2025-27925 – Nintex Automation Deserialization Vulnerability

The following table lists the changes that have been made to the CVE-2025-27925 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 10, 2025 Action […]

CVE-2025-27910 – Tianti CSRF Vulnerability

The following table lists the changes that have been made to the CVE-2025-27910 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 10, 2025 Action […]

CVE-2025-25908 – Tianti Stored XSS Vulnerability

The following table lists the changes that have been made to the CVE-2025-25908 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 10, 2025 Action […]

CVE-2025-25907 – Tianti Cross-Site Request Forgery (CSRF)

The following table lists the changes that have been made to the CVE-2025-25907 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 10, 2025 Action […]

CVE-2025-2137 – Google Chrome V8 Out-of-Bounds Read Vulnerability

The following table lists the changes that have been made to the CVE-2025-2137 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 10, 2025 Action […]

CVE-2025-2136 – Google Chrome Inspector Use-After-Free Vulnerability

The following table lists the changes that have been made to the CVE-2025-2136 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 10, 2025 Action […]

CVE-2025-2135 – Google Chrome V8 Type Confusion Heap Corruption

The following table lists the changes that have been made to the CVE-2025-2135 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 10, 2025 Action […]