Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 CVE-2025-32486

WordPress Material Dashboard plugin <= 1.4.6 - Privilege Escalation Vulnerability_CVE-2025-32486

Weak Password Recovery Mechanism for Forgotten Password vulnerability in Hossein Material Dashboard. This issue affects Material Dashboard: from n/...

Hossein Material Dashboard n/a CVE
CRITICAL 9.8 CVE-2025-55232

Microsoft High Performance Compute (HPC) Pack Remote Code Execution Vulnerability_CVE-2025-55232

{“lastseen”:””,”description”:””,”published”:”2025-09-09T17:01:04.860Z”,&#82...

Microsoft Microsoft HPC Pack 2019 1.0.0 CVE
CRITICAL 9 CVE-2025-54261

ColdFusion | Improper Limitation of a Pathname to a Restricted Directory (‘Path Traversal’) (CWE-22)_CVE-2025-54261

ColdFusion versions 2025.3, 2023.15, 2021.21 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Trav...

Adobe ColdFusion CVE
CRITICAL 9.8 CVE-2025-55050

CVE-2025-55050_CVE-2025-55050

CWE-1242: Inclusion of Undocumented Features

Baicells NOVA430e/430i, NOVA436Q, NEUTRINO430, NOVA846 BaiBLQ_3.0.12 and older versions. BaiBU_DNB4_2.4.9 and older versions CVE
CRITICAL 10 CVE-2025-55051

CVE-2025-55051_CVE-2025-55051

CWE-1392: Use of Default Credentials

Baicells NOVA430e/430i, NOVA436Q, NEUTRINO430, NOVA846 BaiBLQ_3.0.12 and older versions. BaiBU_DNB4_2.4.9 and older versions CVE
CRITICAL 9.8 CVE-2025-10159

CVE-2025-10159_CVE-2025-10159

An authentication bypass vulnerability allows remote attackers to gain administrative privileges on Sophos AP6 Series Wireless Access Points older ...

Sophos AP6 Series Wireless Access Points CVE
CRITICAL 9.3 CVE-2025-58462

OPEXUS FOIAXpress PAL SQL injection_CVE-2025-58462

OPEXUS FOIAXpress Public Access Link (PAL) before version 11.13.1.0 allows SQL injection via SearchPopularDocs.aspx. A remote, unauthenticated atta...

OPEXUS FOIAXpress Public Access Link (PAL) CVE
CRITICAL 10 THN:CF8A06527D2...

SAP Patches Critical NetWeaver (CVSS Up to 10.0) and Previously Exploited S/4HANA Flaws_THN:CF8A06527D294D06AFB758E69B97534E

![](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=) SAP on Tuesday released se...

N/A N/A THN
CRITICAL 9.1 THN:0B681750FF7...

Adobe Commerce Flaw CVE-2025-54236 Lets Hackers Take Over Customer Accounts_THN:0B681750FF77396D7BB3B365F9136507

![](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=) Adobe has warned of a crit...

N/A N/A THN
CRITICAL 9.8 6526EB29-075D-

Exploit for Authentication Bypass by Primary Weakness in Crushftp_6526EB29-075D-54A5-A2BB-240329A5B7F0

CVE-2025-31161 - CrushFTP Authentication Bypass Exploit PoC CVE-2025-31161 - Authentication Bypass CrushFTP 📌...

N/A N/A GITHUBEXPLOIT