811
|
- |
|
-
|
-
|
TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user interface functionality involving deep links. Specifically, this functionality is…
|
CWE-352 CWE-749
Origin Validation Error Exposed Dangerous Method or Function
|
CVE-2024-55894
|
2025-01-15 05:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
812
|
- |
|
-
|
-
|
TYPO3 is a free and open source Content Management Framework. A vulnerability has been identified in the backend user interface functionality involving deep links. Specifically, this functionality is…
|
CWE-352 CWE-749
Origin Validation Error Exposed Dangerous Method or Function
|
CVE-2024-55893
|
2025-01-15 05:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
813
|
- |
|
-
|
-
|
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation Mediawiki - SocialProfile Extension allows Functionality Misuse.This issue affects Mediawiki - SocialP…
|
-
|
CVE-2025-23074
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
814
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation Mediawiki - RefreshSpecial Extension allows Cross-Site Scripting (XSS…
|
-
|
CVE-2025-23072
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
815
|
- |
|
-
|
-
|
Umbraco.Forms is a web form framework written for the nuget ecosystem. Character limits configured by editors for short and long answer fields are validated only client-side, not server-side. This is…
|
CWE-20
Improper Input Validation
|
CVE-2025-23041
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
816
|
- |
|
-
|
-
|
Gradio is an open-source Python package that allows quick building of demos and web application for machine learning models, API, or any arbitrary Python function. Gradio's Access Control List (ACL) …
|
CWE-285
Improper Authorization
|
CVE-2025-23042
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
817
|
7.8 |
HIGH
Local
|
-
|
-
|
Illustrator on iPad versions 3.0.7 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2025-21133
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
818
|
7.8 |
HIGH
Local
|
-
|
-
|
Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could lead to arbitrary code execution. An attacker could manipulate the sear…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2025-21127
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
819
|
7.8 |
HIGH
Local
|
-
|
-
|
Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current …
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2025-21122
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
820
|
- |
|
-
|
-
|
Invoice Ninja is vulnerable to authenticated Server-Side Request Forgery (SSRF) allowing for arbitrary file read and network resource requests as the application user.
This issue affects Invoice Ninj…
|
-
|
CVE-2025-0474
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|