Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.6 CVE-2025-64326

Weblate leaks the IP of project members inviting users to assume reviewer roles in Audit log_CVE-2025-64326

Weblate is a web based localization tool. In versions 5.14 and below, Weblate leaks the IP address of the project member inviting the user to the ...

WeblateOrg weblate < 5.14.1 CVE
LOW 2.3 CVE-2025-62719

LinkAce: Limited Server-Side Request Forgery (SSRF) in Keyword Fetching Functionality_CVE-2025-62719

LinkAce is a self-hosted archive to collect website links. In versions 2.3.0 and below, the htmlKeywordsFromUrl function in the FetchController cla...

Kovah LinkAce < 2.4.0 CVE
LOW 3.3 CVE-2025-21077

CVE-2025-21077_CVE-2025-21077

Improper input validation in Samsung Email prior to version 6.2.06.0 allows local attackers to launch arbitrary activity with Samsung Email privilege.

Samsung Mobile Samsung Email 6.2.06.0 CVE
LOW 2 CVE-2025-43423

CVE-2025-43423_CVE-2025-43423

A logging issue was addressed with improved data redaction. This issue is fixed in iOS 26.1 and iPadOS 26.1, macOS Sequoia 15.7.2, visionOS 26.1. A...

Apple visionOS unspecified CVE
LOW 2.4 CVE-2025-43408

CVE-2025-43408_CVE-2025-43408

This issue was addressed by restricting options offered on a locked device. This issue is fixed in macOS Sonoma 14.8.2, macOS Sequoia 15.7.2. An at...

Apple macOS unspecified CVE
LOW 3.3 CVE-2025-43395

CVE-2025-43395_CVE-2025-43395

This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sonoma 14.8.2, macOS Sequoia 15.7.2. An app may be able t...

Apple macOS unspecified CVE
LOW 2.8 CVE-2025-43365

CVE-2025-43365_CVE-2025-43365

A denial-of-service issue was addressed with improved input validation. This issue is fixed in iOS 26 and iPadOS 26. An unprivileged process may be...

Apple iOS and iPadOS unspecified CVE
LOW 2.4 CVE-2025-43309

CVE-2025-43309_CVE-2025-43309

A logic issue was addressed with improved checks. This issue is fixed in iOS 26 and iPadOS 26. An attacker with physical access to an iOS device ma...

Apple iOS and iPadOS unspecified CVE
LOW 2.3 CVE-2025-8558

CVE-2025-8558_CVE-2025-8558

Insider Threat Management (ITM) Server versions prior to 7.17.2 contain an authentication bypass vulnerability that allows unauthenticated users on...

Proofpoint Insider Threat Management (ITM) Server CVE
LOW 2.3 CVE-2025-12615

PHPGurukul News Portal settings.py hard-coded key_CVE-2025-12615

A security vulnerability has been detected in PHPGurukul News Portal 1.0. The affected element is an unknown function of the file /onps/settings.py...

PHPGurukul News Portal 1.0 CVE