CVE-2025-55291 – Shaarli Reflected Cross-Site Scripting (XSS)

The following table lists the changes that have been made to the CVE-2025-55291 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 18, 2025 Action […]

CVE-2025-55288 – Genealogy PHP Authenticated Reflected Cross-Site Scripting (XSS) Vulnerability

The following table lists the changes that have been made to the CVE-2025-55288 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 18, 2025 Action […]

CVE-2025-55287 – Genealogy Family Tree Authenticated Stored Cross-Site Scripting

The following table lists the changes that have been made to the CVE-2025-55287 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 18, 2025 Action […]

CVE-2025-55283 – Aiven DB Migrate Privilege Escalation Vulnerability

The following table lists the changes that have been made to the CVE-2025-55283 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 18, 2025 Action […]

CVE-2025-55214 – Copier Path Traversal Vulnerability

Copier library and CLI app for rendering project templates. From 7.1.0 to before 9.9.1, Copier suggests that it’s safe to generate a project from a safe template, i.e. one that doesn’t use unsafe features like custom Jinja extensions which would require passing the –UNSAFE,–trust flag. As it turns out, a safe template can currently write […]

CVE-2025-55282 – Aiven Db-Migrate Privilege Escalation Vulnerability

The following table lists the changes that have been made to the CVE-2025-55282 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 18, 2025 Action […]

CVE-2025-55205 – Capsule Kubernetes Namespace Label Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-55205 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 18, 2025 Action […]

CVE-2025-55201 – “Apache Airflow Copier Library and CLI App File Access Vulnerability”

The following table lists the changes that have been made to the CVE-2025-55201 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 18, 2025 Action […]

CVE-2025-3639 – Liferay Portal Authentication Bypass

Liferay Portal 7.3.0 through 7.4.3.132, and Liferay DXP 2025.Q1 through 2025.Q1.6, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.15, 7.4 GA through update 92 and 7.3 GA through update 36 allows unauthenticated users with valid credentials to bypass the login process by changing the POST method to GET, once the site […]

CVE-2025-54234 – ColdFusion SSRF File System Read Vulnerability

The following table lists the changes that have been made to the CVE-2025-54234 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 18, 2025 Action […]