Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.2 CVE-2025-59437

CVE-2025-59437_CVE-2025-59437

The ip (aka node-ip) package through 2.0.1 (in NPM) might allow SSRF because the IP address value 0 is improperly categorized as globally routable ...

fedorindutny ip CVE
LOW 2.1 CVE-2025-43798

CVE-2025-43798_CVE-2025-43798

Liferay DXP 2023.Q4.0, 2023.Q3.1 through 2023.Q3.4, 7.4 GA through update 92 and 7.3 GA through update 35 allows a time-based one-time password (TO...

Liferay DXP 7.3.10 CVE
LOW 3.1 CVE-2025-59399

CVE-2025-59399_CVE-2025-59399

libocpp before 0.28.0 allows a denial of service (EVerest crash) because a secondary exception is thrown during error message generation.

EVerest libocpp CVE
LOW 3.1 CVE-2025-59398

CVE-2025-59398_CVE-2025-59398

The OCPP implementation in libocpp before 0.26.2 allows a denial of service (EVerest crash) via JSON input larger than 255 characters, because a Ci...

EVerest libocpp CVE
LOW 2.3 CVE-2025-43792

CVE-2025-43792_CVE-2025-43792

Remote staging in Liferay Portal 7.4.0 through 7.4.3.105, and older unsupported versions, and Liferay DXP 2023.Q4.0, 2023.Q3.1 through 2023.Q3.4, 7...

Liferay Portal 7.4.0 CVE
LOW 3.7 CVE-2025-59376

CVE-2025-59376_CVE-2025-59376

feiskyer mcp-kubernetes-server through 0.1.11 does not consider chained commands in the implementation of --disable-write and --disable-delete, e.g...

feiskyer mcp-kubernetes-server CVE
LOW 3.7 CVE-2025-59377

CVE-2025-59377_CVE-2025-59377

feiskyer mcp-kubernetes-server through 0.1.11 allows OS command injection, even in read-only mode, via /mcp/kubectl because shell=True is used. NOT...

feiskyer mcp-kubernetes-server CVE
LOW 3.1 CVE-2025-9084

Open redirect in OAuth login_CVE-2025-9084

Mattermost versions 10.5.x

Mattermost Mattermost 10.5.0 CVE
LOW 2.3 CVE-2025-0164

IBM QRadar SIEM information disclosure_CVE-2025-0164

IBM QRadar SIEM 7.5 through 7.5 Update Pack 13 Independent Fix 01 could allow a local privileged user to perform unauthorized actions on configurat...

IBM QRadar SIEM 7.5 CVE
LOW 2 AF9B92A2-4E8A-

Exploit for CVE-2025-3639_AF9B92A2-4E8A-5594-BCB3-3E35DEA6B9CF

CVE-2025-3639 PoC - Liferay Portal/DXP Login Bypass This repository contains...

N/A N/A GITHUBEXPLOIT