Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.4 CVE-2025-8606

GSheetConnector For Gravity Forms <= 1.3.23 - Cross-Site Request Forgery to Arbitrary Plugin Activation/Deactivation_CVE-2025-8606

The GSheetConnector For Gravity Forms plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions less than, or equal to, 1.3.23. ...

westerndeal GSheetConnector For Gravity Forms * CVE
LOW 3.3 CVE-2025-58286

CVE-2025-58286_CVE-2025-58286

Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.

Huawei HarmonyOS 5.1.0 CVE
LOW 3.3 CVE-2025-58290

CVE-2025-58290_CVE-2025-58290

Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.

Huawei HarmonyOS 5.1.0 CVE
LOW 3.3 CVE-2025-58291

CVE-2025-58291_CVE-2025-58291

Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.

Huawei HarmonyOS 5.1.0 CVE
LOW 3.3 CVE-2025-58292

CVE-2025-58292_CVE-2025-58292

Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.

Huawei HarmonyOS 5.1.0 CVE
LOW 2.8 CVE-2025-58282

CVE-2025-58282_CVE-2025-58282

Permission control vulnerability in the camera module. Successful exploitation of this vulnerability may affect service confidentiality.

Huawei HarmonyOS 5.1.0 CVE
LOW 2.7 CVE-2025-62158

Frappe had attachments made by students to their assignments of type Text set to public_CVE-2025-62158

Frappe Learning is a learning system that helps users structure their content. In versions prior to 2.38.0, the system did stored the attachments u...

frappe lms < 2.38.0 CVE
LOW 2.7 CVE-2025-61921

Sinatra has ReDoS vulnerability in ETag header value generation_CVE-2025-61921

Sinatra is a domain-specific language for creating web applications in Ruby. In versions prior to 4.2.0, there is a denial of service vulnerability...

sinatra sinatra < 4.2.0 CVE
LOW 3.7 CVE-2025-52635

HCL AION is susceptible to Trusted types in scripts not enforced in CSP_CVE-2025-52635

A rusted types in scripts not enforced in CSP vulnerability has been identified in HCL AION.This issue affects AION: 2.0.

HCL AION 2.0 CVE
LOW 3.7 CVE-2025-52625

HCL AION is susceptible to Cacheable SSL Page Found vulnerability_CVE-2025-52625

A vulnerability  Cacheable SSL Page Found vulnerability has been identified in HCL AION.  Cached data may expose credentials, system identifier...

HCL AION 2.0 CVE