Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.3 CVE-2025-58290

CVE-2025-58290_CVE-2025-58290

Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.

Huawei HarmonyOS 5.1.0 CVE
LOW 3.3 CVE-2025-58291

CVE-2025-58291_CVE-2025-58291

Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.

Huawei HarmonyOS 5.1.0 CVE
LOW 3.3 CVE-2025-58292

CVE-2025-58292_CVE-2025-58292

Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect availability.

Huawei HarmonyOS 5.1.0 CVE
LOW 2.8 CVE-2025-58282

CVE-2025-58282_CVE-2025-58282

Permission control vulnerability in the camera module. Successful exploitation of this vulnerability may affect service confidentiality.

Huawei HarmonyOS 5.1.0 CVE
LOW 2.7 CVE-2025-62158

Frappe had attachments made by students to their assignments of type Text set to public_CVE-2025-62158

Frappe Learning is a learning system that helps users structure their content. In versions prior to 2.38.0, the system did stored the attachments u...

frappe lms < 2.38.0 CVE
LOW 2.7 CVE-2025-61921

Sinatra has ReDoS vulnerability in ETag header value generation_CVE-2025-61921

Sinatra is a domain-specific language for creating web applications in Ruby. In versions prior to 4.2.0, there is a denial of service vulnerability...

sinatra sinatra < 4.2.0 CVE
LOW 3.7 CVE-2025-52635

HCL AION is susceptible to Trusted types in scripts not enforced in CSP_CVE-2025-52635

A rusted types in scripts not enforced in CSP vulnerability has been identified in HCL AION.This issue affects AION: 2.0.

HCL AION 2.0 CVE
LOW 3.7 CVE-2025-52625

HCL AION is susceptible to Cacheable SSL Page Found vulnerability_CVE-2025-52625

A vulnerability  Cacheable SSL Page Found vulnerability has been identified in HCL AION.  Cached data may expose credentials, system identifier...

HCL AION 2.0 CVE
LOW 3.7 CVE-2025-52634

HCL AION is susceptible to Spring Boot Actuator Endpoints Exposed_CVE-2025-52634

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in HCL AION This issue affects HCL AION: 2.0.

HCL HCL AION 2.0 CVE
LOW 3.7 CVE-2025-52630

HCL AION is susceptible to Missing or insecure “X-Content-Type-Options” header vulnerability_CVE-2025-52630

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in HCL AION.This issue affects AION: 2.0.

HCL AION 2.0 CVE