CVE-2025-27774 – Applio Voice Conversion Tool Server-Side Request Forgery and File Write Vulnerability
Applio is a voice conversion tool. Versions 3.2.7 and prior are vulnerable to server-side request forgery (SSRF) and file write in `model_download.py` (line 156 in 3.2.7). The blind SSRF allows for sending requests on behalf of Applio server and can be leveraged to probe for other vulnerabilities on the server itself or on other back-end […]
CVE-2025-27780 – Applio Remote Code Execution Vulnerability
The following table lists the changes that have been made to the CVE-2025-27780 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 19, 2025 Action […]
CVE-2025-27779 – Applio Voice Conversion Tool Remote Code Execution Vulnerability
The following table lists the changes that have been made to the CVE-2025-27779 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 19, 2025 Action […]
CVE-2025-27778 – Applio Voice Conversion Tool Remote Code Execution Vulnerability
The following table lists the changes that have been made to the CVE-2025-27778 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 19, 2025 Action […]
CVE-2025-27777 – Applio Voice Conversion Tool SSRF Vulnerability
Applio is a voice conversion tool. Versions 3.2.7 and prior are vulnerable to server-side request forgery (SSRF) in `model_download.py` (line 195 in 3.2.7). The blind SSRF allows for sending requests on behalf of Applio server and can be leveraged to probe for other vulnerabilities on the server itself or on other back-end systems on the […]
CVE-2025-27775 – Applio Voice Conversion Tool SSRF and Remote File Write Vulnerability
Applio is a voice conversion tool. Versions 3.2.7 and prior are vulnerable to server-side request forgery (SSRF) and file write in `model_download.py` (line 143 in 3.2.7). The blind SSRF allows for sending requests on behalf of Applio server and can be leveraged to probe for other vulnerabilities on the server itself or on other back-end […]
CVE-2025-26816 – Intrexx Portal Server Information Disclosure Vulnerability
The following table lists the changes that have been made to the CVE-2025-26816 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 19, 2025 Action […]
CVE-2024-55009 – AutoBib XSS
The following table lists the changes that have been made to the CVE-2024-55009 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 19, 2025 Action […]
CVE-2025-30258 – GnuPG Certificate Verification Denial of Service
The following table lists the changes that have been made to the CVE-2025-30258 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 19, 2025 Action […]
CVE-2025-27705 – Absolute Secure Access Cross-Site Scripting Vulnerability
There is a cross-site scripting vulnerability in the Secure Access administrative console of Absolute Secure Access prior to version 13.53. Attackers with system administrator permissions can interfere with another system administrator’s use of the management console when the second administrator logs in. Attack complexity is high, attack requirements are present, privileges required are none, user […]