CVE-2025-2749 – Kentico Xperience Remote Code Execution Vulnerability

The following table lists the changes that have been made to the CVE-2025-2749 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 24, 2025 Action […]

CVE-2025-2748 – Kentico Xperience Stored XSS Vulnerability

The following table lists the changes that have been made to the CVE-2025-2748 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 24, 2025 Action […]

CVE-2025-2747 – Kentico Xperience Authentication Bypass

The following table lists the changes that have been made to the CVE-2025-2747 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 24, 2025 Action […]

CVE-2025-2746 – Kentico Xperience Authentication Bypass Vulnerability

The following table lists the changes that have been made to the CVE-2025-2746 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 24, 2025 Action […]

CVE-2025-2707 – “Zhijiantianya Ruoyi-Vue-Pro Front-End Store Interface Remote Path Traversal Vulnerability”

The following table lists the changes that have been made to the CVE-2025-2707 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 24, 2025 Action […]

CVE-2025-2706 – Digiwin ERP Unrestricted File Upload Vulnerability

The following table lists the changes that have been made to the CVE-2025-2706 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 24, 2025 Action […]

CVE-2025-22223 – Spring Security Authorization Bypass in Method Security Annotations

The following table lists the changes that have been made to the CVE-2025-22223 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 24, 2025 Action […]

CVE-2025-30205 – Kanidim-Provision Admin Credential Leakage Vulnerability

The following table lists the changes that have been made to the CVE-2025-30205 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 24, 2025 Action […]

CVE-2025-30112 – “70mai Dash Cam 1S Authorization Bypass”

The following table lists the changes that have been made to the CVE-2025-30112 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 24, 2025 Action […]

CVE-2025-30208 – Vite File Access Bypass Vulnerability

Vite, a provider of frontend development tooling, has a vulnerability in versions prior to 6.2.3, 6.1.2, 6.0.12, 5.4.15, and 4.5.10. `@fs` denies access to files outside of Vite serving allow list. Adding `?raw??` or `?import&raw??` to the URL bypasses this limitation and returns the file content if it exists. This bypass exists because trailing separators […]