A vulnerability was found in football-pool Plugin up to 2.6.4 on WordPress. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2017-18524. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Microsoft Visual Studio Code. Affected by this issue is some unknown functionality of the component npm-script Extension. The manipulation leads to Remote Code Execution.
This vulnerability is handled as CVE-2021-26700. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as problematic was found in Anonymous Restricted Content Plugin up to 1.6.2 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to protection mechanism failure.
This vulnerability is known as CVE-2024-0909. Access to the local network is required for this attack. There is no exploit available.
A vulnerability, which was classified as critical, was found in Weblizar School Management Pro Plugin up to 10.3.4 on WordPress. This affects an unknown part. The manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-33911. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability classified as problematic has been found in Fortinet FortiClientEMS up to 7.2.3. This affects an unknown part of the component HTTPS Request Handler. The manipulation leads to improper restriction of excessive authentication attempts.
This vulnerability is uniquely identified as CVE-2024-23106. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability classified as critical was found in Fortinet FortiSOAR up to 7.2.2/7.3.2/7.4.1. This vulnerability affects unknown code. The manipulation leads to csv injection.
This vulnerability was named CVE-2024-47572. The attack can be initiated remotely. There is no exploit available.
A vulnerability was found in ZEXELON ZWX-2000CSW2-HN and ZWX-2000CS2-HN and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to hard-coded credentials.
This vulnerability is handled as CVE-2025-53842. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Alcatel-Lucent OmniAccess Stellar. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to command injection.
The identification of this vulnerability is CVE-2025-52688. The attack may be initiated remotely. There is no exploit available.
A vulnerability classified as problematic was found in Alcatel Lucent OmniAccess Stellar. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-52687. The attack can be launched remotely. There is no exploit available.
A vulnerability was found in ProfileGrid Plugin up to 5.9.5.4 on WordPress. It has been declared as problematic. Affected by this vulnerability is the function pm_get_messenger_notification. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-6977. The attack can be launched remotely. There is no exploit available.
A vulnerability has been found in WP Event Manager Plugin up to 3.1.49 on WordPress and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-2799. The attack can be initiated remotely. There is no exploit available.
The measure aims to prevent compromise of U.S. telecommunications through strengthening network security by establishing “baseline cybersecurity requirements for vendors of telecommunications services” to the country’s 18 intelligence agencies, according to a summary of the bill released by the panel.
A vulnerability, which was classified as critical, has been found in Oreans WinLicense 2.1.8.0. This issue affects some unknown processing. The manipulation leads to code injection.
The identification of this vulnerability is CVE-2012-4864. The attack may be initiated remotely. Furthermore, there is an exploit available.
Episource breach exposed data of 5.4M patients across the US. Linked to UnitedHealth’s Optum, the health tech firm was hit by a ransomware attack in early 2025.
A vulnerability was found in Linux Kernel up to 6.11.7. It has been declared as critical. This vulnerability affects the function dvb_vb2_expbuf of the component dvb-core. The manipulation leads to buffer overflow.
This vulnerability was named CVE-2024-50291. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.1.116/6.6.60/6.11.7. It has been rated as critical. Affected by this issue is the function ksmbd_smb2_session_create. The manipulation leads to use after free.
This vulnerability is handled as CVE-2024-50286. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 6.6.60/6.11.7. Affected by this issue is some unknown functionality of the component ksmbd. The manipulation leads to race condition.
This vulnerability is handled as CVE-2024-50285. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.