Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.5 CVE-2025-55007

Knowage vulnerable to server-side request forgery_CVE-2025-55007

Knowage is an open source analytics and business intelligence suite. Prior to version 8.1.37, Knowage is vulnerable to server-side request forgery....

KnowageLabs Knowage-Server < 8.1.37 CVE
LOW 1.8 CVE-2025-9778

Tenda W12 Administrative shadow hard-coded credentials_CVE-2025-9778

A security vulnerability has been detected in Tenda W12 up to 3.0.0.6(3948). Affected is an unknown function of the file /etc_ro/shadow of the comp...

Tenda W12 1.0.0.1(5411) CVE
LOW 2.4 CVE-2025-9769

D-Link DI-7400G+ mng_platform.asp sub_478D28 command injection_CVE-2025-9769

A security flaw has been discovered in D-Link DI-7400G+ 19.12.25A1. Affected is the function sub_478D28 of the file /mng_platform.asp. The manipula...

D-Link DI-7400G+ 19.12.25A1 CVE
LOW 2 CVE-2025-9731

Tenda AC9 Administrative shadow hard-coded credentials_CVE-2025-9731

A vulnerability was determined in Tenda AC9 15.03.05.19. The impacted element is an unknown function of the file /etc_ro/shadow of the component Ad...

Tenda AC9 15.03.05.19 CVE
LOW 2 CVE-2025-9725

Cudy LT500E Web shadow hard-coded password_CVE-2025-9725

A vulnerability was identified in Cudy LT500E up to 2.3.12. Affected is an unknown function of the file /squashfs-root/etc/shadow of the component ...

Cudy LT500E 2.3.0 CVE
LOW 2.3 CVE-2025-9688

Mupen64Plus is_viewer.c write_is_viewer integer overflow_CVE-2025-9688

A security vulnerability has been detected in Mupen64Plus up to 2.6.0. The affected element is the function write_is_viewer of the file src/device/...

n/a Mupen64Plus 2.0 CVE
LOW 3.4 CVE-2025-48979

CVE-2025-48979_CVE-2025-48979

An Improper Input Validation in UISP Application could allow a Command Injection by a malicious actor with High Privileges and local access.

Ubiquiti Inc UISP Application 2.4.220 CVE
LOW 3.3 CVE-2025-43255

CVE-2025-43255_CVE-2025-43255

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sonoma 14.7.7, macOS Sequoia 15.6, macOS Ventura 13...

Apple macOS unspecified CVE
LOW 2.3 CVE-2025-58160

Tracing logging user input may result in poisoning logs with ANSI escape sequences_CVE-2025-58160

tracing is a framework for instrumenting Rust programs to collect structured, event-based diagnostic information. Prior to version 0.3.20, tracing-...

tokio-rs tracing < 0.3.20 CVE
LOW 1.9 CVE-2025-58156

Centurion ERP users can view hashed authentication tokens that belong to other users_CVE-2025-58156

Centurion ERP is an ERP with a focus on ITSM and automation. In versions starting from 1.12.0 to before 1.21.0, an authenticated user can view all ...

nofusscomputing centurion_erp >= 1.12.0, < 1.21.0 CVE