Latest CVE Feed
-
5.4
MEDIUMCVE-2025-7856
A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file pass-details.php of the component HTTP POST Request Handler. The ... Read more
Affected Products : apartment_visitors_management_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Cross-Site Scripting
-
9.0
HIGHCVE-2025-7855
A vulnerability classified as critical was found in Tenda FH451 1.0.0.9. Affected by this vulnerability is the function fromqossetting of the file /goform/qossetting. The manipulation of the argument page leads to stack-based buffer overflow. The attack c... Read more
- Published: Jul. 19, 2025
- Modified: Jul. 23, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-7854
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function fromVirtualSer of the file /goform/VirtualSer. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to launch the ... Read more
- Published: Jul. 19, 2025
- Modified: Jul. 23, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-7853
A vulnerability was found in Tenda FH451 1.0.0.9. It has been rated as critical. This issue affects the function fromSetIpBind of the file /goform/SetIpBind. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be ini... Read more
- Published: Jul. 19, 2025
- Modified: Jul. 23, 2025
- Vuln Type: Memory Corruption
-
6.1
MEDIUMCVE-2025-7840
A vulnerability was found in Campcodes Online Movie Theater Seat Reservation System 1.0. It has been classified as problematic. This affects an unknown part of the file /index.php?page=reserve of the component Reserve Your Seat Page. The manipulation of t... Read more
Affected Products : online_movie_theater_seat_reservation_system- Published: Jul. 19, 2025
- Modified: Jul. 23, 2025
- Vuln Type: Cross-Site Scripting
-
9.8
CRITICALCVE-2025-7838
A vulnerability has been found in Campcodes Online Movie Theater Seat Reservation System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/manage_seat.php. The manipulation of the argument ID leads to sql injection... Read more
Affected Products : online_movie_theater_seat_reservation_system- Published: Jul. 19, 2025
- Modified: Jul. 23, 2025
- Vuln Type: Injection
-
9.0
HIGHCVE-2025-7837
A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015 and classified as critical. Affected by this issue is the function recvSlaveStaInfo of the component MQTT Service. The manipulation of the argument dest leads to buffer overflow. The attack ma... Read more
- Published: Jul. 19, 2025
- Modified: Jul. 23, 2025
- Vuln Type: Memory Corruption
-
6.5
MEDIUMCVE-2025-7836
A vulnerability has been found in D-Link DIR-816L up to 2.06B01 and classified as critical. Affected by this vulnerability is the function lxmldbc_system of the file /htdocs/cgibin of the component Environment Variable Handler. The manipulation leads to c... Read more
Affected Products :- Published: Jul. 19, 2025
- Modified: Jul. 22, 2025
- Vuln Type: Injection
-
7.5
HIGHCVE-2025-54313
eslint-config-prettier 8.10.1, 9.1.1, 10.1.6, and 10.1.7 has embedded malicious code for a supply chain compromise. Installing an affected package executes an install.js file that launches the node-gyp.dll malware on Windows.... Read more
Affected Products :- Published: Jul. 19, 2025
- Modified: Jul. 23, 2025
- Vuln Type: Supply Chain
-
5.3
MEDIUMCVE-2025-7834
A vulnerability, which was classified as problematic, was found in PHPGurukul Complaint Management System 2.0. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit... Read more
Affected Products : complaint_management_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Cross-Site Request Forgery
-
9.8
CRITICALCVE-2025-7833
A vulnerability, which was classified as critical, has been found in code-projects Church Donation System 1.0. This issue affects some unknown processing of the file /members/giving.php. The manipulation of the argument Amount leads to sql injection. The ... Read more
Affected Products : church_donation_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Injection
-
9.8
CRITICALCVE-2025-7832
A vulnerability classified as critical was found in code-projects Church Donation System 1.0. This vulnerability affects unknown code of the file /members/offering.php. The manipulation of the argument trcode leads to sql injection. The attack can be init... Read more
Affected Products : church_donation_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Injection
-
9.8
CRITICALCVE-2025-7831
A vulnerability classified as critical has been found in code-projects Church Donation System 1.0. This affects an unknown part of the file /members/Tithes.php. The manipulation of the argument trcode leads to sql injection. It is possible to initiate the... Read more
Affected Products : church_donation_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Injection
-
9.8
CRITICALCVE-2025-7830
A vulnerability was found in code-projects Church Donation System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /reg.php. The manipulation of the argument mobile leads to sql injection. The attack may... Read more
Affected Products : church_donation_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Injection
-
9.8
CRITICALCVE-2025-7829
A vulnerability was found in code-projects Church Donation System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /login.php. The manipulation of the argument Username leads to sql injection. T... Read more
Affected Products : church_donation_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Injection
-
9.8
CRITICALCVE-2025-7824
A vulnerability was found in Jinher OA 1.1. It has been rated as problematic. This issue affects some unknown processing of the file XmlHttp.aspx. The manipulation leads to xml external entity reference. The attack may be initiated remotely. The exploit h... Read more
Affected Products : jinher_oa- Published: Jul. 19, 2025
- Modified: Aug. 26, 2025
- Vuln Type: XML External Entity
-
9.8
CRITICALCVE-2025-7823
A vulnerability was found in Jinher OA 1.2. It has been declared as problematic. This vulnerability affects unknown code of the file ProjectScheduleDelete.aspx. The manipulation leads to xml external entity reference. The attack can be initiated remotely.... Read more
Affected Products : jinher_oa- Published: Jul. 19, 2025
- Modified: Aug. 26, 2025
- Vuln Type: XML External Entity
-
5.4
MEDIUMCVE-2025-7819
A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /create-pass.php of the component HTTP POST Request Handler. The manipulation of the argument... Read more
Affected Products : apartment_visitors_management_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Cross-Site Scripting
-
5.4
MEDIUMCVE-2025-7818
A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /category.php of the component HTTP POST Request Handler. The manipulation of ... Read more
Affected Products : apartment_visitors_management_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Cross-Site Scripting
-
5.4
MEDIUMCVE-2025-7817
A vulnerability has been found in PHPGurukul Apartment Visitors Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /bwdates-reports.php of the component HTTP POST Request Handler. Th... Read more
Affected Products : apartment_visitors_management_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Cross-Site Scripting