Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.1 CVE-2025-54655

CVE-2025-54655_CVE-2025-54655

Race condition vulnerability in the virtualization base module. Successful exploitation of this vulnerability may affect the confidentiality and in...

Huawei HarmonyOS 5.0.2 CVE
HIGH 8.4 CVE-2025-54653

CVE-2025-54653_CVE-2025-54653

Path traversal vulnerability in the virtualization file module. Successful exploitation of this vulnerability may affect the confidentiality of the...

Huawei HarmonyOS 5.0.2 CVE
HIGH 8.4 CVE-2025-54652

CVE-2025-54652_CVE-2025-54652

Path traversal vulnerability in the virtualization base module. Successful exploitation of this vulnerability may affect the confidentiality of the...

Huawei HarmonyOS 5.0.2 CVE
HIGH 7.5 CVE-2025-7036

CleverReach WP <= 1.5.20 - Unauthenticated SQL Injection via title Parameter_CVE-2025-7036

The CleverReach® WP plugin for WordPress is vulnerable to time-based SQL Injection via the ‘title’ parameter in all versions up to, and including, ...

cleverreach43 CleverReach® WP * CVE
HIGH 8.3 CVE-2025-54622

CVE-2025-54622_CVE-2025-54622

Binding authentication bypass vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may affect service c...

Huawei HarmonyOS 5.1.0 CVE
HIGH 7.3 CVE-2025-54611

CVE-2025-54611_CVE-2025-54611

EXTRA_REFERRER resource read vulnerability in the Gallery module. Impact: Successful exploitation of this vulnerability may affect service confiden...

Huawei HarmonyOS 4.3.1 CVE
HIGH 7.7 CVE-2025-54607

CVE-2025-54607_CVE-2025-54607

Authentication management vulnerability in the ArkWeb module. Impact: Successful exploitation of this vulnerability may affect service confidential...

Huawei HarmonyOS 5.1.0 CVE
HIGH 7.3 CVE-2025-54606

CVE-2025-54606_CVE-2025-54606

Status verification vulnerability in the lock screen module. Impact: Successful exploitation of this vulnerability will affect availability and con...

Huawei HarmonyOS 5.0.1 CVE
HIGH 8.1 CVE-2025-8420

Request a Quote Form Plugin <= 2.5.2 - Unauthenticated Limited Remote Code Execution_CVE-2025-8420

The Request a Quote Form plugin for WordPress is vulnerable to Remote Code Execution in version less than, or equal to, 2.5.2 via the emd_form_buil...

emarket-design Request a Quote Form Plugin – Price Quote Request Management Made Easy * CVE
HIGH 8 CVE-2025-54634

CVE-2025-54634_CVE-2025-54634

Vulnerability of improper processing of abnormal conditions in huge page separation. Impact: Successful exploitation of this vulnerability may affe...

Huawei HarmonyOS 5.1.0 CVE