Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.3 CVE-2025-11640

Tomofun Furbo 360/Furbo Mini Bluetooth Low Energy cleartext transmission_CVE-2025-11640

A vulnerability was found in Tomofun Furbo 360 and Furbo Mini. This affects an unknown function of the component Bluetooth Low Energy. The manipula...

Tomofun Furbo 360 n/a CVE
LOW 3.5 CVE-2025-2139

IBM Engineering Requirements Management Doors Next security bypass_CVE-2025-2139

IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user on the network to delete reviews from ot...

IBM Engineering Requirements Management Doors Next 7.0.2 CVE
LOW 3.5 CVE-2025-2138

IBM Engineering Requirements Management Doors Next data modification_CVE-2025-2138

IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user on the network to delete comments from...

IBM Engineering Requirements Management Doors Next 7.0.2 CVE
LOW 2.4 CVE-2025-11634

Tomofun Furbo 360/Furbo Mini UART information disclosure_CVE-2025-11634

A security flaw has been discovered in Tomofun Furbo 360 and Furbo Mini. This affects an unknown part of the component UART Interface. The manipula...

Tomofun Furbo 360 n/a CVE
LOW 3.5 CVE-2025-52615

HCL Unica Platform is impacted by misconfigured security related HTTP headers_CVE-2025-52615

HCL Unica Platform is impacted by misconfigured security related HTTP headers. This can lead to less secure browser default treatment for the poli...

HCL Software Unica Platform <= 25.1 CVE
LOW 3.5 CVE-2025-52614

HCL Unica Platform is affected by a Cookie without HTTPOnly Flag Set vulnerability_CVE-2025-52614

HCL Unica Platform is affected by a Cookie without HTTPOnly Flag Set vulnerability. A malicious agent may be able to induce this event by feeding ...

HCL Software Unica Platform <= 25.1 CVE
LOW 3.5 CVE-2025-31993

HCL Unica Centralized Offer Management is vulnerable to a potential Server-Side Request Forgery (SSRF)_CVE-2025-31993

HCL Unica Centralized Offer Management is vulnerable to a potential Server-Side Request Forgery (SSRF). An attacker can exploit improper input vali...

HCL Software Unica Centralized Offer Management <=25.1 CVE
LOW 3.5 CVE-2025-31998

HCL Unica Centralized Offer Management is vulnerable to poor unhandled exceptions which exposes sensitive information_CVE-2025-31998

HCL Unica Centralized Offer Management is vulnerable to poor unhandled exceptions which exposes sensitive information. An attacker can exploit use...

HCL Software Unica Centralized Offer Management <=25.1 CVE
LOW 2.4 CVE-2025-8606

GSheetConnector For Gravity Forms <= 1.3.23 - Cross-Site Request Forgery to Arbitrary Plugin Activation/Deactivation_CVE-2025-8606

The GSheetConnector For Gravity Forms plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions less than, or equal to, 1.3.23. ...

westerndeal GSheetConnector For Gravity Forms * CVE
LOW 3.3 CVE-2025-58286

CVE-2025-58286_CVE-2025-58286

Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.

Huawei HarmonyOS 5.1.0 CVE