Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.8 CVE-2025-61713

CVE-2025-61713_CVE-2025-61713

A Cleartext Storage of Sensitive Information in Memory vulnerability [CWE-316] in Fortinet FortiPAM 1.6.0, FortiPAM 1.5 all versions, FortiPAM 1.4 ...

Fortinet FortiPAM 1.6.0 CVE
LOW 3.9 CVE-2025-54972

CVE-2025-54972_CVE-2025-54972

An improper neutralization of crlf sequences ('crlf injection') in Fortinet FortiMail 7.6.0 through 7.6.3, FortiMail 7.4.0 through 7.4.5, FortiMail...

Fortinet FortiMail 7.6.0 CVE
LOW 3.9 CVE-2025-54971

CVE-2025-54971_CVE-2025-54971

An exposure of sensitive information to an unauthorized actor vulnerability in Fortinet FortiADC 7.4.0, FortiADC 7.2 all versions, FortiADC 7.1 all...

Fortinet FortiADC 7.4.0 CVE
LOW 1.8 CVE-2025-54821

CVE-2025-54821_CVE-2025-54821

An Improper Privilege Management vulnerability [CWE-269] in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4 all versions, FortiOS 7.2 all version...

Fortinet FortiProxy 7.6.0 CVE
LOW 3.7 CVE-2025-13083

Drupal core – Moderately critical – Information disclosure – SA-CORE-2025-008_CVE-2025-13083

Use of Web Browser Cache Containing Sensitive Information vulnerability in Drupal Drupal core allows Exploiting Incorrectly Configured Access Contr...

Drupal Drupal core 8.0.0 CVE
LOW 3.5 CVE-2025-12761

Simple multi step form – Moderately critical – Cross-site Scripting – SA-CONTRIB-2025-116_CVE-2025-12761

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Simple multi step form allows Cross-Si...

Drupal Simple multi step form 0.0.0 CVE
LOW 3.5 CVE-2025-52639

HCL Connections is vulnerable to sensitive information disclosure_CVE-2025-52639

HCL Connections is vulnerable to a sensitive information disclosure vulnerability which could allow a user to obtain sensitive information they are...

HCL Software Connections 8.0 CVE
LOW 3.7 CVE-2025-65014

LibreNMS has Weak Password Policy_CVE-2025-65014

LibreNMS is an auto-discovering PHP/MySQL/SNMP based network monitoring tool. Prior to version 25.11.0, a weak password policy vulnerability was id...

librenms librenms < 25.11.0 CVE
LOW 3.2 CVE-2025-12792

CVE-2025-12792_CVE-2025-12792

The Mac App Store distribution of the Canva for Mac desktop app before 1.117.1 was built without Hardened Runtime. A local threat actor with unpriv...

Canva Canva CVE
LOW 2.4 CVE-2025-64734

CVE-2025-64734_CVE-2025-64734

Missing Release of Resource after Effective Lifetime (CWE-772) in the T21 Reader allows an attacker with physical access to the Reader to perform a...

Gallagher T21 Reader CVE