Category: CVE

CVE-2024-22349 | IBM UrbanCode Velocity/DevOps Velocity web browser cache containing sensitive information

A vulnerability, which was classified as problematic, has been found in IBM UrbanCode Velocity and DevOps Velocity. This issue affects some unknown processing. The manipulation leads to use of web browser cache containing sensitive information. The identification of this vulnerability is CVE-2024-22349. Local access is required to approach this attack. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2025-23214 | azukaar Cosmos-Server up to 0.17.6 observable response discrepancy (GHSA-5843-2p4f-57fh)

A vulnerability classified as problematic was found in azukaar Cosmos-Server up to 0.17.6. This vulnerability affects unknown code. The manipulation leads to observable response discrepancy. This vulnerability was named CVE-2025-23214. The attack can be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2025-23221 | dahlia fedify up to 1.0.13/1.1.10/1.2.10/1.3.3 infinite loop (GHSA-c59p-wq67-24wx)

A vulnerability classified as problematic has been found in dahlia fedify up to 1.0.13/1.1.10/1.2.10/1.3.3. This affects an unknown part. The manipulation leads to infinite loop. This vulnerability is uniquely identified as CVE-2025-23221. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-22347 | IBM UrbanCode Velocity/DevOps Velocity up to 4.0.25 risky encryption

A vulnerability was found in IBM UrbanCode Velocity and DevOps Velocity up to 4.0.25. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to risky cryptographic algorithm. This vulnerability is handled as CVE-2024-22347. The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-22348 | IBM UrbanCode Velocity/DevOps Velocity Trusted Domain cross-domain policy

A vulnerability was found in IBM UrbanCode Velocity and DevOps Velocity. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Trusted Domain Handler. The manipulation leads to permissive cross-domain policy with untrusted domains. This vulnerability is known as CVE-2024-22348. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2025-24013 | CodeIgniter up to 4.5.7 Header Validation interpretation conflict (GHSA-x5mq-jjr3-vmx6)

A vulnerability was found in CodeIgniter up to 4.5.7. It has been classified as problematic. Affected is an unknown function of the component Header Validation Handler. The manipulation leads to interpretation conflict. This vulnerability is traded as CVE-2025-24013. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2025-23219 | LabRedesCefetRJ WeGIA up to 3.2.9 adicionar_cor.php sql injection

A vulnerability was found in LabRedesCefetRJ WeGIA up to 3.2.9 and classified as critical. This issue affects some unknown processing of the file adicionar_cor.php. The manipulation leads to sql injection. The identification of this vulnerability is CVE-2025-23219. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2025-23219 | LabRedesCefetRJ WeGIA up to 3.2.9 adicionar_cor.php sql injection

A vulnerability was found in LabRedesCefetRJ WeGIA up to 3.2.9 and classified as critical. This issue affects some unknown processing of the file adicionar_cor.php. The manipulation leads to sql injection. The identification of this vulnerability is CVE-2025-23219. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2025-23218 | LabRedesCefetRJ WeGIA up to 3.2.9 adicionar_especie.php sql injection

A vulnerability has been found in LabRedesCefetRJ WeGIA up to 3.2.9 and classified as critical. This vulnerability affects unknown code of the file adicionar_especie.php. The manipulation leads to sql injection. This vulnerability was named CVE-2025-23218. The attack can be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2025-23218 | LabRedesCefetRJ WeGIA up to 3.2.9 adicionar_especie.php sql injection

A vulnerability has been found in LabRedesCefetRJ WeGIA up to 3.2.9 and classified as critical. This vulnerability affects unknown code of the file adicionar_especie.php. The manipulation leads to sql injection. This vulnerability was named CVE-2025-23218. The attack can be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2025-23220 | LabRedesCefetRJ WeGIA up to 3.2.9 adicionar_raca.php sql injection

A vulnerability, which was classified as critical, was found in LabRedesCefetRJ WeGIA up to 3.2.9. This affects an unknown part of the file adicionar_raca.php. The manipulation leads to sql injection. This vulnerability is uniquely identified as CVE-2025-23220. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More
Loading