Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.3 CVE-2025-14953

Open5GS FAR-ID handler.c ogs_pfcp_handle_create_pdr null pointer dereference_CVE-2025-14953

A flaw has been found in Open5GS up to 2.7.5. This impacts the function ogs_pfcp_handle_create_pdr in the library lib/pfcp/handler.c of the compone...

n/a Open5GS 2.7.0 CVE
LOW 2.1 CVE-2025-58052

Galette has groups managers access control bypass on Members_CVE-2025-58052

Galette is a membership management web application for non profit organizations. Starting in version 0.9.6 and prior to version 1.2.0, attackers wi...

galette galette >= 0.9.6, < 1.2.0 CVE
LOW 1.7 CVE-2025-68457

Orejime has executable code in HTML attributes_CVE-2025-68457

Orejime is a consent manager that focuses on accessibility. On HTML elements handled by Orejime prior to version 2.3.2, one could run malicious cod...

boscop-fr orejime < 2.3.2 CVE
LOW 3.8 CVE-2025-14882

Insecure direct object reference_CVE-2025-14882

An API endpoint allowed access to sensitive files from other users by knowing the UUID of the file that were not intended to be accessible by UUID ...

pretix pretix-offlinesales 1.12.0 CVE
LOW 3.8 CVE-2025-14881

Insecure direct object reference_CVE-2025-14881

Multiple API endpoints allowed access to sensitive files from other users by knowing the UUID of the file that were not intended to be accessible b...

pretix pretix 1.0.0 CVE
LOW 3.1 MS:CVE-2025-65046

Microsoft Edge (Chromium-based) Spoofing Vulnerability_MS:CVE-2025-65046

{“lastseen”:”2025-12-18T23:36:40″,”description”:””,”published”:”2025-12-18T08:00:...

N/A N/A MSCVE
LOW 3.1 CVE-2025-65046

Microsoft Edge (Chromium-based) Spoofing Vulnerability_CVE-2025-65046

{“lastseen”:””,”description”:””,”published”:”2025-12-18T22:01:43.462Z”,&#82...

Microsoft Microsoft Edge for Android 1.0.0 CVE
LOW 2 CVE-2025-68469

ImageMagick vulnerable to heap-buffer-overflow_CVE-2025-68469

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.1-14, ImageMagick crashes when ...

ImageMagick ImageMagick < 7.1.1-14 CVE
LOW 2.3 CVE-2025-40891

HTML injection in in Time Machine functionality in Guardian/CMC before 25.5.0_CVE-2025-40891

A Stored HTML Injection vulnerability was discovered in the Time Machine Snapshot Diff functionality due to improper validation of network traffic ...

Nozomi Networks Guardian CVE
LOW 2.3 CVE-2025-65000

Exposure of SSH Private Keys in Remote Alert Handlers (Linux) Rule_CVE-2025-65000

SSH private keys of the "Remote alert handlers (Linux)" rule were exposed in the rule page's HTML source in Checkmk

Checkmk GmbH Checkmk 2.4.0 CVE