CVE-2025-1308 – Apache PX Backup Sensitive Information Disclosure

The following table lists the changes that have been made to the CVE-2025-1308 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]

CVE-2025-3223 – GE Vernova WorkstationST Path Traversal Vulnerability

The following table lists the changes that have been made to the CVE-2025-3223 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]

CVE-2025-48340 – Danny Vink User Profile Meta Manager CSRF Privilege Escalation

The following table lists the changes that have been made to the CVE-2025-48340 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]

CVE-2025-47949 – Samlify SAML Response Signature Wrapping Vulnerability

The following table lists the changes that have been made to the CVE-2025-47949 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]

CVE-2025-47946 – Symfony UX Twig Component Attribute Injection XSS

Symfony UX is an initiative and set of libraries to integrate JavaScript tools into applications. Prior to version 2.25.1, rendering `{{ attributes }}` or using any method that returns a `ComponentAttributes` instance (e.g. `only()`, `defaults()`, `without()`) ouputs attribute values directly without escaping. If these values are unsafe (e.g. contain user input), this can lead to […]

CVE-2025-47944 – Multer Denial of Service

The following table lists the changes that have been made to the CVE-2025-47944 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]

CVE-2025-47935 – Multer Resource Exhaustion and Memory Leak Vulnerability

Multer is a node.js middleware for handling `multipart/form-data`. Versions prior to 2.0.0 are vulnerable to a resource exhaustion and memory leak issue due to improper stream handling. When the HTTP request stream emits an error, the internal `busboy` stream is not closed, violating Node.js stream safety guidance. This leads to unclosed streams accumulating over time, […]

CVE-2025-46441 – CTLTWP Section Widget Path Traversal Vulnerability

The following table lists the changes that have been made to the CVE-2025-46441 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]

CVE-2025-39393 – Mojoomla Hospital Management System Cross-site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-39393 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]

CVE-2025-39402 – Mojoomla WPAMS Unrestricted File Upload Remote Code Execution

The following table lists the changes that have been made to the CVE-2025-39402 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]