Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.5 CVE-2025-50708

CVE-2025-50708_CVE-2025-50708

An issue in Perplexity AI GPT-4 v.2.51.0 allows a remote attacker to obtain sensitive information via the token component in the shared chat URL

n/a n/a n/a CVE
HIGH 7 CVE-2025-7394

CVE-2025-7394_CVE-2025-7394

In the OpenSSL compatibility layer implementation, the function RAND_poll() was not behaving as expected and leading to the potential for predictab...

wolfSSL wolfSSL 3.15.0 CVE
HIGH 8.8 CVE-2025-8714

PostgreSQL pg_dump lets superuser of origin server execute arbitrary code in psql client_CVE-2025-8714

Untrusted data inclusion in pg_dump in PostgreSQL allows a malicious superuser of the origin server to inject arbitrary code for restore-time execu...

n/a PostgreSQL 17 CVE
HIGH 8.5 CVE-2025-7883

Eluktronics Control Center Powershell Script Command command injection_CVE-2025-7883

A vulnerability classified as critical has been found in Eluktronics Control Center 5.23.51.41. Affected is an unknown function of the file \AiSton...

Eluktronics Control Center 5.23.51.41 CVE
HIGH 8.8 CVE-2025-8715

PostgreSQL pg_dump newline in object name executes arbitrary code in psql client and in restore target server_CVE-2025-8715

Improper neutralization of newlines in pg_dump in PostgreSQL allows a user of the origin server to inject arbitrary code for restore-time execution...

n/a PostgreSQL 17 CVE
HIGH 8.6 CVE-2025-46385

CVE-2025-46385_CVE-2025-46385

CWE-918 Server-Side Request Forgery (SSRF)

Emby Windows 4.8 CVE
HIGH 8.8 CVE-2025-46384

CVE-2025-46384_CVE-2025-46384

CWE-434 Unrestricted Upload of File with Dangerous Type

Emby Windows 4.8 CVE
HIGH 8.9 CVE-2025-47917

CVE-2025-47917_CVE-2025-47917

Mbed TLS before 3.6.4 allows a use-after-free in certain situations of applications that are developed in accordance with the documentation. The fu...

Mbed mbedtls CVE
HIGH 8.4 CVE-2025-54317

CVE-2025-54317_CVE-2025-54317

An issue was discovered in Logpoint before 7.6.0. An attacker with operator privileges can exploit a path traversal vulnerability when creating a L...

Logpoint Logpoint CVE
HIGH 8.7 CVE-2025-7908

D-Link DI-8100 jhttpd ddns.asp sprintf stack-based overflow_CVE-2025-7908

A vulnerability was found in D-Link DI-8100 1.0. It has been declared as critical. Affected by this vulnerability is the function sprintf of the fi...

D-Link DI-8100 1.0 CVE