CVE-2025-66223 – OpenObserve’s Invite Token Lifecycle Misconfiguration
The following table lists the changes that have been made to the CVE-2025-66223 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 29, 2025 Action […]
CVE-2025-53939 – Kiteworks Core is vulnerable to Improper Input Validation
The following table lists the changes that have been made to the CVE-2025-53939 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 29, 2025 Action […]
CVE-2025-53900 – Kiteworks MFT has a Privilege Defined With Unsafe Actions
The following table lists the changes that have been made to the CVE-2025-53900 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 29, 2025 Action […]
CVE-2025-53899 – Kiteworks MFT is vulnerable to an Incorrectly Specified Destination in a Communication Channel
The following table lists the changes that have been made to the CVE-2025-53899 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 29, 2025 Action […]
CVE-2025-53897 – Kiteworks MFT has a Cross-Site Request Forgery (CSRF) vulnerability
Affected Products The following products are affected by CVE-2025-53897 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below. No affected product recoded yet
CVE-2025-53896 – Kiteworks MFT is vulnerable to Insufficient Session Expiration
Affected Products The following products are affected by CVE-2025-53896 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below. No affected product recoded yet
CVE-2025-58436 – OpenPrinting CUPS slow client can halt cupsd, leading to a possible DoS attack
OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. Prior to version 2.4.15, a client that connects to cupsd but sends slow messages, e.g. only one byte per second, delays cupsd as a whole, such that it becomes unusable by other clients. This issue has been patched in version […]
CVE-2025-66219 – willitmerge has a command Injection vulnerability
The following table lists the changes that have been made to the CVE-2025-66219 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 29, 2025 Action […]
CVE-2025-66201 – LibreChat is Vulnerable to Server-Side Request Forgery (SSRF) in Actions Capability
The following table lists the changes that have been made to the CVE-2025-66201 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 29, 2025 Action […]
CVE-2025-66036 – Retro is vulnerable to XSS vulnerability in input handling component
The following table lists the changes that have been made to the CVE-2025-66036 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Nov. 29, 2025 Action […]