Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 1.7 CVE-2025-62601

FastDDS has heap buffer overflow in readString via Manipulated DATA Submessage when DDS Security is enabled_CVE-2025-62601

Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). Prior to versions 3.4.1, 3....

eProsima Fast-DDS 3.4.0 CVE
LOW 1.7 CVE-2025-62599

FastDDS has Out-of-Memory in readPropertySeq via Manipulated DATA Submessage when DDS Security is enabled_CVE-2025-62599

Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). Prior to versions 3.4.1, 3....

eProsima Fast-DDS 3.4.0 CVE
LOW 3.7 CVE-2025-52629

HCL AION is susceptible to Missing Content-Security-Policy_CVE-2025-52629

HCL AION is susceptible to Missing Content-Security-Policy.  An The absence of a CSP header may increase the risk of cross-site scripting and othe...

HCL AION 2.0 CVE
LOW 3.5 CVE-2025-67852

Moodle: moodle: open redirect vulnerability in oauth login flow allows redirection to malicious sites._CVE-2025-67852

A flaw was found in Moodle. An open redirect vulnerability in the OAuth login flow allows a remote attacker to redirect users to attacker-controlle...

N/A N/A 5.1.0 CVE
LOW 1 CVE-2025-11598

Exposure of Confidential Information in mObywatel application_CVE-2025-11598

In mObywatel iOS application an unauthorized user can use the App Switcher to view the account owner's personal information in the minimized app wi...

Centralny Ośrodek Informatyki mObywatel CVE
LOW 1.7 CVE-2025-67482

Lua segfault in unpack()_CVE-2025-67482

Vulnerability in Wikimedia Foundation Scribunto, Wikimedia Foundation luasandbox. This vulnerability is associated with program files includes/Engi...

Wikimedia Foundation Scribunto * CVE
LOW 0.3 CVE-2025-61647

UserInfoCard: Don’t allow access to information about users who are suppressed if you don’t have suppressor rights_CVE-2025-61647

Vulnerability in Wikimedia Foundation CheckUser. This vulnerability is associated with program files src/Api/Rest/Handler/UserInfoHandler.Php. Thi...

Wikimedia Foundation CheckUser a3dc1bbcc33acbcca6831d6afaccbb1054c93a57, 0584eb2ad564648aa3ce9c555dd044dda02b55f4 CVE
LOW 1.1 CVE-2025-61650

UserInfoCard is vulnerable to message key stored XSS_CVE-2025-61650

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation CheckUser. This v...

Wikimedia Foundation CheckUser * CVE
LOW 1.1 CVE-2025-61649

UserInfoCard: Check that performing user has permission to view log entries for number of past blocks_CVE-2025-61649

Vulnerability in Wikimedia Foundation CheckUser. This vulnerability is associated with program files src/Services/CheckUserUserInfoCardService.Php....

Wikimedia Foundation CheckUser 7cedd58781d261f110651b6af4f41d2d11ae7309 CVE
LOW 1.2 CVE-2025-61646

Watchlist group mode reveals authors of edits with hidden authorship_CVE-2025-61646

Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/RecentChanges/EnhancedChangesList.Php...

Wikimedia Foundation MediaWiki * CVE