1811
|
- |
|
-
|
-
|
An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.6 prior to 16.9.7, starting from 16.10 prior to 16.10.5, and starting from 16.11 prior to 16.11.2 in which cross-s…
|
CWE-352
Origin Validation Error
|
CVE-2024-1211
|
2025-01-31 09:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1812
|
- |
|
-
|
-
|
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.5 prior to 16.9.7, starting from 16.10 prior to 16.10.5, and starting from 16.11 prior to 16.11.2. GitLab was vuln…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2023-6195
|
2025-01-31 09:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1813
|
- |
|
-
|
-
|
pwn.college is an education platform to learn about, and practice, core cybersecurity concepts in a hands-on fashion. Incorrect symlink checks on user specified dojos allows for users (admin not requ…
|
CWE-200 CWE-61
Information Exposure UNIX Symbolic Link (Symlink) Following
|
CVE-2025-24886
|
2025-01-31 08:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1814
|
- |
|
-
|
-
|
pwn.college is an education platform to learn about, and practice, core cybersecurity concepts in a hands-on fashion. Missing access control on rendering custom (unprivileged) dojo pages causes abili…
|
CWE-79 CWE-284
Cross-site Scripting Improper Access Control
|
CVE-2025-24885
|
2025-01-31 08:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1815
|
- |
|
-
|
-
|
A vulnerability was found in Codezips Gym Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /dashboard/admin/saveroutine.php. The manipulation of …
|
-
|
CVE-2025-0881
|
2025-01-31 07:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1816
|
- |
|
-
|
-
|
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.3, macOS Ventura 13.7.3, macOS Sonoma 14.7.3. A local attacker may be able to elevate their privileges.
|
-
|
CVE-2025-24099
|
2025-01-31 07:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1817
|
- |
|
-
|
-
|
In Electronic Arts Dragon Age Origins 1.05, the DAUpdaterSVC service contains an unquoted service path vulnerability. This service is configured with insecure permissions, allowing users to modify th…
|
-
|
CVE-2024-57276
|
2025-01-31 07:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1818
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was found in code-projects Chat System up to 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /user/addnewmember.php. The …
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2025-0882
|
2025-01-31 06:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1819
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was found in Codezips Gym Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /dashboard/admin/updateplan.php. The manipulation of…
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2025-0880
|
2025-01-31 06:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1820
|
- |
|
-
|
-
|
Sante PACS Server URL path Memory Corruption Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Sante PAC…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2025-0574
|
2025-01-31 06:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|