941
|
8.8 |
HIGH
Network
|
jfinaloa_project
|
jfinaloa
|
JFinalOA before v2025.01.01 was discovered to contain a SQL injection vulnerability via the component borrowmoney/listData?applyUser.
|
CWE-89
SQL Injection
|
CVE-2024-57769
|
2025-01-24 02:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
942
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
block, bfq: fix waker_bfqq UAF after bfq_split_bfqq()
Our syzkaller report a following UAF for v6.6:
BUG: KASAN: slab-use-after-…
|
-
|
CVE-2025-21631
|
2025-01-24 02:15 |
2025-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
943
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in basteln3rk Save & Import Image from URL allows Reflected XSS. This issue affects Save & Import Im…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23960
|
2025-01-24 01:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
944
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tatsuya Fukata, Alexander Ovsov wp-flickr-press allows Reflected XSS. This issue affects wp-flick…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23894
|
2025-01-24 01:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
945
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SuryaBhan Custom Coming Soon allows Reflected XSS. This issue affects Custom Coming Soon: from n/…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23836
|
2025-01-24 01:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
946
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Legal + allows Reflected XSS. This issue affects Legal +: from n/a through 1.0.
|
CWE-79
Cross-site Scripting
|
CVE-2025-23835
|
2025-01-24 01:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
947
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Links/Problem Reporter allows Reflected XSS. This issue affects Links/Problem Reporter: …
|
CWE-79
Cross-site Scripting
|
CVE-2025-23834
|
2025-01-24 01:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
948
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sayocode SC Simple Zazzle allows Reflected XSS. This issue affects SC Simple Zazzle: from n/a thr…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23733
|
2025-01-24 01:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
949
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound FLX Dashboard Groups allows Reflected XSS. This issue affects FLX Dashboard Groups: from…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23730
|
2025-01-24 01:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
950
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in fures XTRA Settings allows Reflected XSS. This issue affects XTRA Settings: from n/a through 2.1.…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23729
|
2025-01-24 01:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|