Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.5 CVE-2025-6945

Improper Neutralization of Special Elements used in a Command (‘Command Injection’) in GitLab_CVE-2025-6945

GitLab has remediated an issue in GitLab EE affecting all versions from 17.8 before 18.3.6, 18.4 before 18.4.4, and 18.5 before 18.5.2 that could h...

GitLab GitLab 17.8 CVE
LOW 3.1 CVE-2025-11990

Improper Handling of URL Encoding (Hex Encoding) in GitLab_CVE-2025-11990

GitLab has remediated an issue in GitLab EE affecting all versions from 18.4 before 18.4.4, and 18.5 before 18.5.2 that could have allowed an authe...

GitLab GitLab 18.4 CVE
LOW 3.5 CVE-2025-12983

Memory Allocation with Excessive Size Value in GitLab_CVE-2025-12983

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.9 before 18.3.6, 18.4 before 18.4.4, and 18.5 before 18.5.2 that coul...

GitLab GitLab 16.9 CVE
LOW 1.1 CVE-2025-4616

Prisma Browser: Insufficient Validation of Untrusted Input Vulnerability in Prisma Browser_CVE-2025-4616

An insufficient validation of an untrusted input vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated non-admin user ...

Palo Alto Networks Prisma Browser 142.15.6.0 CVE
LOW 3.7 CVE-2025-54559

CVE-2025-54559_CVE-2025-54559

An issue was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 which allows remote Path Traversal for loading ...

n/a n/a n/a CVE
LOW 3.3 CVE-2025-54342

CVE-2025-54342_CVE-2025-54342

A vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2. There is Exposure of Sensitive Informat...

n/a n/a n/a CVE
LOW 3.8 CVE-2025-54560

CVE-2025-54560_CVE-2025-54560

A Server-side Request Forgery vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 which allows...

n/a n/a n/a CVE
LOW 1.1 CVE-2025-4617

Prisma Browser: Insufficient Policy Enforcement Vulnerability in Prisma Browser_CVE-2025-4617

An insufficient policy enforcement vulnerability in Palo Alto Networks Prisma® Browser on Windows allows a locally authenticated non-admin user to ...

Palo Alto Networks Prisma Browser 142.15.6.0 CVE
LOW 3.1 CVE-2025-41436

Unauthorized access to archived channel content via threads interface_CVE-2025-41436

Mattermost versions

Mattermost Mattermost <11.0 CVE
LOW 3.4 CVE-2025-13015

Spoofing issue in Firefox_CVE-2025-13015

Spoofing issue in Firefox. This vulnerability affects Firefox < 145, Firefox ESR < 140.5, and Firefox ESR < 115.30.

Mozilla Firefox unspecified CVE