Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.6 CVE-2025-40920

Catalyst::Authentication::Credential::HTTP versions 1.018 and earlier for Perl use insecurely generated nonces_CVE-2025-40920

Catalyst::Authentication::Credential::HTTP versions 1.018 and earlier for Perl generate nonces using the Perl Data::UUID library. * Data::UUID do...

ETHER Catalyst::Authentication::Credential::HTTP 0.06 CVE
HIGH 8.6 CVE-2025-54878

Heap Buffer Overflow in NASA CryptoLib 1.4.0 `Crypto_TC_Check_IV_Setup`_CVE-2025-54878

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communicati...

nasa CryptoLib < 1.4.1 CVE
HIGH 7.2 CVE-2025-44004

Unauthenticated Channel Subscription Creation in Mattermost Confluence Plugin_CVE-2025-44004

Mattermost Confluence Plugin version

Mattermost Mattermost Confluence Plugin CVE
HIGH 7 CVE-2025-53188

Unauthenticated Credentials Exposure_CVE-2025-53188

Insufficiently Protected Credentials vulnerability in ABB Aspect.This issue affects Aspect: before

ABB Aspect CVE
HIGH 7.5 CVE-2025-52931

Unexpected input to Update Channel Subscription endpoint causes DoS in Mattermost Confluence Plugin_CVE-2025-52931

Mattermost Confluence Plugin version

Mattermost Mattermost Confluence Plugin CVE
HIGH 7 CVE-2025-53189

CVE-2025-53189_CVE-2025-53189

Authorization Bypass Through User-Controlled Key vulnerability in ABB Aspect.This issue affects Aspect: from o before

ABB Aspect o CVE
HIGH 7 CVE-2025-53190

Unauthenticated Time Manipulation_CVE-2025-53190

A vulnerability in ABB Aspect.This issue affects Aspect: before

ABB Aspect CVE
HIGH 7.7 CVE-2025-53191

Unauthenticated Network Manipulation_CVE-2025-53191

Missing Authentication for Critical Function vulnerability in ABB Aspect.This issue affects Aspect: before

ABB Aspect CVE
HIGH 7.2 CVE-2025-54478

Unauthenticated Channel Subscription Edit in Mattermost Confluence Plugin_CVE-2025-54478

Mattermost Confluence Plugin version

Mattermost Mattermost Confluence Plugin CVE
HIGH 7.4 CVE-2025-7679

Session ID Basic Auth Bypass_CVE-2025-7679

Missing Authentication for Critical Function vulnerability in ABB Aspect.This issue affects Aspect: All versions.

ABB Aspect All versions CVE