CVE-2024-45516 – Zimbra Collaboration Classic UI Cross-Site Scripting Vulnerability

An issue was discovered in Zimbra Collaboration (ZCS) 9.0.0 before Patch 43, 10.0.x before 10.0.12, 10.1.x before 10.1.4, and 8.8.15 before Patch 47. A Cross-Site Scripting (XSS) vulnerability in the Zimbra Classic UI allows attackers to execute arbitrary JavaScript within the victim’s session, potentially leading to unauthorized access to sensitive information. This issue arises from […]

CVE-2025-4641 – Bonigarcia WebDriverManager XML External Entity Reference Vulnerability

The following table lists the changes that have been made to the CVE-2025-4641 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 14, 2025 Action […]

CVE-2025-4640 – “PCL Zlib Out-of-bounds Write Overflow”

The following table lists the changes that have been made to the CVE-2025-4640 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 14, 2025 Action […]

CVE-2025-33104 – IBM WebSphere Application Server Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-33104 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 14, 2025 Action […]

CVE-2025-2900 – IBM Semeru Runtime Denial of Service Buffer Overflow

The following table lists the changes that have been made to the CVE-2025-2900 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 14, 2025 Action […]

CVE-2025-0138 – Palo Alto Networks Prisma Cloud Web Session Expiration Vulnerability

The following table lists the changes that have been made to the CVE-2025-0138 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 14, 2025 Action […]

CVE-2025-0137 – Palo Alto Networks PAN-OS Authenticated Admin Impersonation

The following table lists the changes that have been made to the CVE-2025-0137 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 14, 2025 Action […]

CVE-2025-0136 – Palo Alto Networks PAN-OS Unencrypted Data Transfer via AES-128-CCM IPSec Vulnerability

Using the AES-128-CCM algorithm for IPSec on certain Palo Alto Networks PAN-OS® firewalls (PA-7500, PA-5400, PA-5400f, PA-3400, PA-1600, PA-1400, and PA-400 Series) leads to unencrypted data transfer to devices that are connected to the PAN-OS firewall through IPSec. This issue does not affect Cloud NGFWs, Prisma® Access instances, or PAN-OS VM-Series firewalls. NOTE: The AES-128-CCM […]

CVE-2025-0135 – Palo Alto Networks GlobalProtect App Privilege Escalation Vulnerability

The following table lists the changes that have been made to the CVE-2025-0135 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 14, 2025 Action […]

CVE-2025-0134 – Palo Alto Networks Cortex XDR Broker VM Code Injection Root Privilege Escalation

The following table lists the changes that have been made to the CVE-2025-0134 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 14, 2025 Action […]