CVE-2025-46614 – Snowflake ODBC Driver Information Disclosure

The following table lists the changes that have been made to the CVE-2025-46614 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 28, 2025 Action […]

CVE-2025-43857 – Net::IMAP Denial of Service Memory Exhaustion Vulnerability

Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.5.7, 0.4.20, 0.3.9, and 0.2.5, there is a possibility for denial of service by memory exhaustion when net-imap reads server responses. At any time while the client is connected, a malicious server can send can send a “literal” byte count, which […]

CVE-2025-43854 – DIFY Clickjacking Vulnerability

The following table lists the changes that have been made to the CVE-2025-43854 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 28, 2025 Action […]

CVE-2023-35817 – DevExpress AsyncDownloader SSRF

The following table lists the changes that have been made to the CVE-2023-35817 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 28, 2025 Action […]

CVE-2023-35816 – DevExpress TypeConverter Remote Code Execution Vulnerability

The following table lists the changes that have been made to the CVE-2023-35816 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 28, 2025 Action […]

CVE-2023-35815 – DevExpress XML Deserialization Data-Sourcing Protection Bypass

The following table lists the changes that have been made to the CVE-2023-35815 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 28, 2025 Action […]

CVE-2022-41871 – SEPPmail Root Command Injection Vulnerability

The following table lists the changes that have been made to the CVE-2022-41871 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 28, 2025 Action […]

CVE-2015-4582 – TheCartPress Boot Store WordPress Header PHP TCP Register Error XSS

CVE ID : CVE-2015-4582 Published : April 28, 2025, 4:15 p.m. | 21 minutes ago Description : The TheCartPress boot-store (aka Boot Store) theme 1.6.4 for WordPress allows header.php tcp_register_error XSS. NOTE: CVE-2015-4582 is not assigned to any Oracle product. Severity: 7.2 | HIGH Visit the link for more details, such as CVSS details, affected products, […]

SAP NetWeaver 0-Day Vulnerability Exploited in the Wild to Deploy Webshells

SAP NetWeaver 0-Day Vulnerability Exploited in the Wild to Deploy Webshells SAP released an emergency out-of-band patch addressing CVE-2025-31324, a critical zero-day vulnerability in SAP NetWeaver Visual Composer with the highest possible CVSS score of 10.0. This vulnerabili … Read more Published Date: Apr 28, 2025 (2 hours, 26 minutes ago) Vulnerabilities has been mentioned in this […]