2528 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2025-66910
Software Genérico General
6.0
MEDIUM
EPSS
0.2%
2025 1 PoC

Turms Server v0.10.0-SNAPSHOT and earlier contains a plaintext password storage vulnerability in the administrator authentication system. The BaseAdminService class caches administrator passwords in plaintext within AdminInfo objects to optimize authentication performance. Upon successful login, raw passwords are stored unencrypted in memory in the rawPassword field. Attackers with local system access can extract these passwords through memory dumps, heap analysis, or debugger attachment, bypassing bcrypt protection.

CVE-2025-57197
Software Genérico General
6.0
MEDIUM
EPSS
0.0%
2025 2 PoCs

In the Payeer Android application 2.5.0, an improper access control vulnerability exists in the authentication flow for the PIN change feature. A local attacker with root access to the device can dynamically instrument the app to bypass the current PIN verification check and directly modify the authentication PIN. This allows unauthorized users to change PIN without knowing the original/current PIN.

CVE-2025-20907
Samsung Mobile Devices General
6.0
MEDIUM
EPSS
0.1%
2025 1 PoC

Improper privilege management in Samsung Find prior to SMR Feb-2025 Release 1 allows local privileged attackers to disable Samsung Find.

CVE-2025-7954
Shopware General
6.0
MEDIUM
EPSS
0.1%
2025 CWE-362 1 PoC

A race condition vulnerability has been identified in Shopware's voucher system of Shopware v6.6.10.4 that allows attackers to bypass intended voucher restrictions and exceed usage limitations.

CVE-2025-21010
Samsung Mobile Devices General
6.0
MEDIUM
EPSS
0.0%
2025 1 PoC

Improper privilege management in SamsungAccount prior to SMR Aug-2025 Release 1 allows local privileged attackers to deactivate Samsung account.

CVE-2025-9998
PcVue General
6.0
MEDIUM
EPSS
0.0%
2025 CWE-754 1 PoC

The sequence of packets received by a Networking server are not correctly checked. An attacker could exploit this vulnerability to send specially crafted messages to force the application to stop.

CVE-2025-22165
Sourcetree for Mac General
5.9
MEDIUM
EPSS
0.0%
2025 1 PoC

This Medium severity ACE (Arbitrary Code Execution) vulnerability was introduced in version 4.2.8 of Sourcetree for Mac. This ACE (Arbitrary Code Execution) vulnerability, with a CVSS Score of 5.9, allows a locally authenticated attacker to execute arbitrary code which has high impact to confidentiality, high impact to integrity, high impact to availability, and requires user interaction.  Atlassian recommends that Sourcetree for Mac users upgrade to the latest version. If you are unable to do so, upgrade your instance to one of the specified supported fixed versions. See the release notes h

CVE-2025-8353
Server General
5.9
MEDIUM
EPSS
0.1%
2025 CWE-446 1 PoC

UI synchronization issue in the Just-in-Time (JIT) access request approval interface in Devolutions Server 2025.2.4.0 and earlier allows a remote authenticated attacker to gain unauthorized access to deleted JIT Groups via stale UI state during standard checkout request processing.

CVE-2025-1221
Zigbee General
5.9
MEDIUM
EPSS
0.0%
2025 CWE-667 1 PoC

A Zigbee Radio Co-Processor (RCP), which is using SiLabs EmberZNet Zigbee stack, was unable to send messages to the host system (CPCd) due to heavy Zigbee traffic, resulting in a Denial of Service (DoS) attack, Only hard reset will bring the device to normal operation

CVE-2025-9824
Mautic General
5.9
MEDIUM
EPSS
0.1%
2025 CWE-204 1 PoC

ImpactThe attacker can validate if a user exists by checking the time login returns. This timing difference can be used to enumerate valid usernames, after which an attacker could attempt brute force attacks. PatchesThis vulnerability has been patched, implementing a timing-safe form login authenticator that ensures consistent response times regardless of whether a user exists or not. Technical DetailsThe vulnerability was caused by different response times when: * A valid username was provided (password hashing occurred) * An invalid username was provided (no password hashing occurre

CVE-2025-58408
Graphics DDK General
5.9
MEDIUM
EPSS
0.0%
2025 CWE-416 1 PoC

Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger reads of stale data that can lead to kernel exceptions and write use-after-free. The Use After Free common weakness enumeration was chosen as the stale data can include handles to resources in which the reference counts can become unbalanced. This can lead to the premature destruction of a resource while in use.

CVE-2025-53514
Mattermost Confluence Plugin General
5.9
MEDIUM
EPSS
0.1%
2025 CWE-754 1 PoC

Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the plugin via constant hit to server webhook endpoint with an invalid request body.

CVE-2025-22385
Software Genérico General
5.9
MEDIUM
EPSS
0.4%
2025 CWE-862 1 PoC

An issue was discovered in Optimizely Configured Commerce before 5.2.2408. For newly created accounts, the Commerce B2B application does not require email confirmation. This medium-severity issue allows the mass creation of accounts. This could affect database storage; also, non-requested storefront accounts can be created on behalf of visitors.

CVE-2025-20892
Samsung Mobile Devices General
5.9
MEDIUM
EPSS
0.2%
2025 1 PoC

Protection Mechanism Failure in bootloader prior to SMR Jan-2025 Release 1 allows physical attackers to allow to execute fastboot command. User interaction is required for triggering this vulnerability.

CVE-2025-7404
Calibre Web General
5.9
MEDIUM
EPSS
0.5%
2025 CWE-78 2 PoCs

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Calibre Web, Autocaliweb allows Blind OS Command Injection.This issue affects Calibre Web: 0.6.24 (Nicolette); Autocaliweb: from 0.7.0 before 0.7.1.

CVE-2025-12695
Software Genérico General
5.9
MEDIUM
EPSS
0.0%
2025 CWE-653 1 PoC

The overly permissive sandbox configuration in DSPy allows attackers to steal sensitive files in cases when users build an AI agent which consumes user input and uses the “PythonInterpreter” class.

CVE-2025-29036
Software Genérico General
5.9
MEDIUM
EPSS
0.3%
2025 1 PoC

An issue in hackathon-starter v.8.1.0 allows a remote attacker to escalate privileges via the user.js component.

CVE-2025-21032
Samsung Mobile Devices General
5.9
MEDIUM
EPSS
0.0%
2025 1 PoC

Improper access control in One UI Home prior to SMR Sep-2025 Release 1 allows physical attackers to bypass Kiosk mode under limited conditions.

CVE-2025-54463
Mattermost Confluence Plugin General
5.9
MEDIUM
EPSS
0.1%
2025 CWE-754 1 PoC

Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the plugin via constant hit to server webhook endpoint with an invalid request body.

CVE-2025-4082
Firefox General
5.9
MEDIUM
EPSS
0.3%
2025 1 PoC

Modification of specific WebGL shader attributes could trigger an out-of-bounds read, which, when chained with other vulnerabilities, could be used to escalate privileges. *This bug only affects Thunderbird for macOS. Other versions of Thunderbird are unaffected.*. This vulnerability was fixed in Firefox 138, Firefox ESR 128.10, Firefox ESR 115.23, Thunderbird 138, and Thunderbird 128.10.