A vulnerability has been found in LayerBB up to 1.1.2 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file admin/new_user.php. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2018-17996. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Discourse up to 3.3.1/3.4.0.beta1 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument DISCOURSE_DISABLE_ANON_CACHE leads to externally controlled reference.
This vulnerability is known as CVE-2024-47773. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
In the realm of cybersecurity, distributed denial-of-service (DDoS) attacks pose a significant threat to the stability and availability of online services. Among the various forms of DDoS attacks, carpet-bombing stands out due to its ability to overwhelm networks by targeting multiple IP addresses within a specific...
Worried about hackers employing LLMs to write powerful malware? Using targeted reinforcement learning (RL) to train open source models in specific tasks has yielded the capability to do just that.
A vulnerability, which was classified as problematic, has been found in pojome Activity Log Plugin up to 2.11.1 on WordPress. Affected by this issue is some unknown functionality of the component Event Handler. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2024-10788. The attack may be launched remotely. There is no exploit available.
A vulnerability was found in gaizhenbiao ChuanhuChatGPT up to 20240914. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to server-side request forgery.
This vulnerability is known as CVE-2025-0188. The attack can be launched remotely. There is no exploit available.
A vulnerability was found in Microsoft Edge. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to link following.
The identification of this vulnerability is CVE-2025-29795. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in webtoffee Export and Import Users and Customers Plugin up to 2.6.2 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation of the argument form_data leads to deserialization.
This vulnerability is known as CVE-2025-1971. The attack can be launched remotely. There is no exploit available.
A vulnerability classified as problematic has been found in webtoffee Export and Import Users and Customers Plugin up to 2.6.2 on WordPress. This affects the function admin_log_page. The manipulation leads to file inclusion.
This vulnerability is uniquely identified as CVE-2025-1972. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in Product Import Export for WooCommerce Plugin up to 2.5.0 on WordPress. It has been classified as critical. Affected is the function download_file. The manipulation leads to path traversal.
This vulnerability is traded as CVE-2025-1769. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability was found in Product Import Export for WooCommerce Plugin up to 2.5.0 on WordPress. It has been declared as critical. Affected by this vulnerability is the function admin_log_page of the component Log File Handler. The manipulation leads to path traversal.
This vulnerability is known as CVE-2025-1911. The attack can be launched remotely. There is no exploit available.
A vulnerability was found in Product Import Export for WooCommerce Plugin up to 2.5.0 on WordPress. It has been classified as critical. This affects the function validate_file. The manipulation leads to server-side request forgery.
This vulnerability is uniquely identified as CVE-2025-1912. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability classified as critical was found in Microsoft Office. Affected by this vulnerability is an unknown functionality. The manipulation leads to out-of-bounds read.
This vulnerability is known as CVE-2025-26642. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as problematic was found in GitLab Community Edition and Enterprise Edition. Affected by this vulnerability is an unknown functionality of the component Helm Chart Handler. The manipulation leads to unrestricted upload.
This vulnerability is known as CVE-2023-0518. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Mozilla Thunderbird up to 102.9. This affects an unknown part of the component OCSP Revocation Status Handler. The manipulation leads to improper certificate validation.
This vulnerability is uniquely identified as CVE-2023-0547. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in vim up to 9.0.1246. Affected by this vulnerability is an unknown functionality. The manipulation leads to divide by zero.
This vulnerability is known as CVE-2023-0512. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Apple macOS up to 13.2.1 and classified as problematic. This vulnerability affects unknown code of the component Vim. The manipulation leads to divide by zero.
This vulnerability was named CVE-2023-0512. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.