Common Vulnerabilities and Exposures (CVE)

CVE-2025-1579

Feb 23, 2025 09:00:14 UTC

A vulnerability was found in code-projects Blood Bank System 1.0 and classified as problematic. This issue affects some unknown processing of the file /admin/user.php. The manipulation of the argument email leads to cross site scripting. Th...

CVE-2025-1578

Feb 23, 2025 08:00:13 UTC

A vulnerability, which was classified as critical, was found in PHPGurukul Online Shopping Portal 2.1. This affects an unknown part of the file /search-result.php. The manipulation of the argument product leads to sql injection. It is possi...

CVE-2025-21655

Feb 23, 2025 07:15:02 UTC

In the Linux kernel, the following vulnerability has been resolved: io_uring/eventfd: ensure io_eventfd_signal() defers another RCU period io_eventfd_do_signal() is invoked from an RCU callback, but when dropping the reference to the io_e...

CVE-2025-1577

Feb 23, 2025 07:00:09 UTC

A vulnerability, which was classified as problematic, has been found in code-projects Blood Bank System 1.0. Affected by this issue is some unknown functionality of the file /prostatus.php. The manipulation of the argument message leads to ...

CVE-2024-13728

Feb 23, 2025 05:22:33 UTC

The Accept Donations with PayPal & Stripe plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the rf parameter in all versions up to, and including, 1.4.4 due to insufficient input sanitization and output escaping. This...

CVE-2025-0161

Feb 23, 2025 04:32:21 UTC

IBM Security Verify Access Appliance 10.0.0.0 through 10.0.0.9 and 11.0.0.0 could allow a local user to execute arbitrary code due to improper restrictions on code generation.

CVE-2025-1576

Feb 23, 2025 04:31:04 UTC

A vulnerability classified as critical was found in code-projects Real Estate Property Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /ajax_state.php. The manipulation of the argument StateName...

CVE-2025-1575

Feb 23, 2025 04:00:08 UTC

A vulnerability classified as problematic has been found in Harpia DiagSystem 12. Affected is an unknown function of the file /diagsystem/PACS/atualatendimento_jpeg.php. The manipulation of the argument cod/codexame leads to improper contro...

CVE-2024-13869

Feb 23, 2025 03:14:37 UTC

The Migration, Backup, Staging – WPvivid Backup & Migration plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'upload_files' function in all versions up to, and including, 0.9.112. This ...

CVE-2025-0799

Feb 22, 2025 22:16:23 UTC

IBM App Connect enterprise 12.0.1.0 through 12.0.12.10 and 13.0.1.0 through 13.0.2.1 could allow an authenticated user to write to an arbitrary file on the system during bar configuration deployment due to improper pathname limitations on r...

CVE-2025-0158

Feb 22, 2025 22:15:35 UTC

IBM EntireX 11.1 could allow a local user to cause a denial of service due to an unhandled error and fault isolation.

CVE-2024-56473

Feb 22, 2025 22:15:04 UTC

IBM Aspera Shares 1.9.0 through 1.10.0 PL6 could allow an attacker to spoof their IP address, which is written to log files, due to improper verification of 'Client-IP' headers.

CVE-2024-56472

Feb 22, 2025 22:14:37 UTC

IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to stored cross-site scripting. This vulnerability allows authenticated users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially le...

CVE-2024-56471

Feb 22, 2025 22:14:07 UTC

IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitat...

CVE-2024-56470

Feb 22, 2025 22:13:38 UTC

IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitat...