A vulnerability identified as critical has been detected in QNAP QTS and QuTS hero. This vulnerability affects unknown code. This manipulation causes path traversal.
This vulnerability is tracked as CVE-2025-59381. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability labeled as critical has been found in QNAP QTS 5.2.8.3332. This issue affects some unknown processing. Such manipulation leads to stack-based buffer overflow.
This vulnerability is listed as CVE-2025-62852. The attack may be performed from remote. There is no available exploit.
The affected component should be upgraded.
A vulnerability categorized as critical has been discovered in QNAP QTS and QuTS hero. This affects an unknown part. The manipulation results in path traversal.
This vulnerability is identified as CVE-2025-59380. The attack can be executed remotely. There is not any exploit available.
It is advisable to upgrade the affected component.
Users of the "@adonisjs/bodyparser" npm package are being advised to update to the latest version following the disclosure of a critical security vulnerability that, if successfully exploited, could allow a remote attacker to write arbitrary files on the server.
Tracked as CVE-2026-21440 (CVSS score: 9.2), the flaw has been described as a path traversal issue affecting the AdonisJS multipart
A vulnerability marked as problematic has been reported in ruby-rmagick. This issue affects some unknown processing. This manipulation causes memory leak.
This vulnerability is tracked as CVE-2023-5349. The attack is only possible within the local network. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability was found in Download Manager Plugin up to 3.3.40 on WordPress. It has been classified as critical. Affected is the function updatePassword. This manipulation causes missing support for integrity check.
This vulnerability is tracked as CVE-2025-15364. The attack is possible to be carried out remotely. No exploit exists.