Latest CVE Feed
-
7.3
CVSS31CVE-2025-3185
A vulnerability was found in projectworlds Online Doctor Appointment Booking System 1.0. It has been classified as critical. Affected is an unknown function of the file /patient/patientupdateprofile.php. The manipulation of the argument patientFirstName l... Read more
Affected Products :- Published: Apr. 03, 2025
- Modified: Apr. 04, 2025
-
7.3
CVSS31CVE-2025-3184
A vulnerability was found in projectworlds Online Doctor Appointment Booking System 1.0 and classified as critical. This issue affects some unknown processing of the file /patient/profile.php?patientId=1. The manipulation of the argument patientFirstName ... Read more
Affected Products :- Published: Apr. 03, 2025
- Modified: Apr. 04, 2025
-
0.0
NONECVE-2025-29477
An issue in fluent-bit v.3.7.2 allows a local attacker to cause a denial of service via the function consume_event.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
0.0
NONECVE-2025-29476
Buffer Overflow vulnerability in compress_chunk_fuzzer with oss-fuzz on commit 16450518afddcb3139de627157208e49bfef6987 in c-blosc2 v.2.17.0 and before.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
7.3
CVSS31CVE-2025-3258
A vulnerability classified as critical was found in PHPGurukul Old Age Home Management System 1.0. This vulnerability affects unknown code of the file /search.php. The manipulation of the argument searchdata leads to sql injection. The attack can be initi... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-3257
A vulnerability classified as problematic has been found in xujiangfei admintwo 1.0. This affects an unknown part of the file /user/updateSet. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. The exploi... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
6.3
CVSS31CVE-2025-3256
A vulnerability was found in xujiangfei admintwo 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /user/updateSet. The manipulation of the argument email leads to improper access controls. The attack may... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-3255
A vulnerability was found in xujiangfei admintwo 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /user/home. The manipulation of the argument ID leads to improper access controls. The attack... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
6.3
CVSS31CVE-2025-3254
A vulnerability was found in xujiangfei admintwo 1.0. It has been classified as critical. Affected is an unknown function of the file /resource/add. The manipulation of the argument description leads to server-side request forgery. It is possible to launc... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
6.3
CVSS31CVE-2025-3204
A vulnerability, which was classified as critical, has been found in CodeAstro Car Rental System 1.0. Affected by this issue is some unknown functionality of the file /returncar.php. The manipulation of the argument ID leads to sql injection. The attack m... Read more
Affected Products : car_rental_system- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-3203
A vulnerability classified as problematic was found in Tenda W18E 16.01.0.11. Affected by this vulnerability is the function formSetAccountList of the file /goform/setModules. The manipulation of the argument Password leads to stack-based buffer overflow.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
7.3
CVSS31CVE-2025-3202
A vulnerability classified as critical has been found in ageerle ruoyi-ai up to 2.0.0. Affected is an unknown function of the file ruoyi-modules/ruoyi-system/src/main/java/org/ruoyi/system/controller/system/SysNoticeController.java. The manipulation leads... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32280
Cross-Site Request Forgery (CSRF) vulnerability in weDevs WP Project Manager allows Cross Site Request Forgery. This issue affects WP Project Manager: from n/a through 2.6.22.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32278
Cross-Site Request Forgery (CSRF) vulnerability in wprio Table Block by RioVizual allows Cross Site Request Forgery. This issue affects Table Block by RioVizual: from n/a through 2.1.7.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32277
Missing Authorization vulnerability in Ateeq Rafeeq RepairBuddy allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects RepairBuddy: from n/a through 3.8211.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32276
Cross-Site Request Forgery (CSRF) vulnerability in Quý Lê 91 Administrator Z allows Cross Site Request Forgery. This issue affects Administrator Z: from n/a through 2025.03.04.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32274
Cross-Site Request Forgery (CSRF) vulnerability in axew3 WP w3all phpBB allows Cross Site Request Forgery. This issue affects WP w3all phpBB: from n/a through 2.9.2.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32273
Cross-Site Request Forgery (CSRF) vulnerability in freetobook Freetobook Responsive Widget allows Cross Site Request Forgery. This issue affects Freetobook Responsive Widget: from n/a through 1.1.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32272
Cross-Site Request Forgery (CSRF) vulnerability in PickPlugins Wishlist allows Cross Site Request Forgery. This issue affects Wishlist: from n/a through 1.0.44.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32271
Cross-Site Request Forgery (CSRF) vulnerability in ablancodev Woocommerce Role Pricing allows Cross Site Request Forgery. This issue affects Woocommerce Role Pricing: from n/a through 3.5.5.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025