NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2025-46549 YesWiki is a wiki system written in PHP. Prior to version 4.5.4, an attacker can use a reflected cross-site scripting attack to steal cookies from an ... 2025-04-29 4.3 NETWORK MEDIUM NVD
CVE-2025-46348 YesWiki is a wiki system written in PHP. Prior to version 4.5.4, the request to commence a site backup can be performed and downloaded without authent... 2025-04-29 10.0 NETWORK CRITICAL NVD
CVE-2025-46344 The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. Versions starting from 4.0.1 and prior to 4.5.1, do n... 2025-04-29 4.9 NETWORK MEDIUM NVD
CVE-2025-3910 A flaw was found in Keycloak. The org.keycloak.authorization package may be vulnerable to circumventing required actions, allowing users to circumvent... 2025-04-29 5.4 NETWORK MEDIUM NVD
CVE-2025-3501 A flaw was found in Keycloak. By setting a verification policy to 'ALL', the trust store certificate verification is skipped, which is unintended. 2025-04-29 8.2 NETWORK HIGH NVD
CVE-2025-4080 A vulnerability has been found in PHPGurukul Online Nurse Hiring System 1.0 and classified as critical. Affected by this vulnerability is an unknown f... 2025-04-29 6.3 NETWORK MEDIUM NVD
CVE-2025-4078 A vulnerability, which was classified as problematic, has been found in Wangshen SecGate 3600 2400. This issue affects some unknown processing of the ... 2025-04-29 4.3 NETWORK MEDIUM NVD
CVE-2025-0520 An unrestricted file upload vulnerability in ShowDoc caused by improper validation of file extension allows execution of arbitrary PHP, leading to rem... 2025-04-29 9.4 NETWORK CRITICAL NVD
CVE-2024-57698 An issue in modernwms v.1.0 allows an attacker view the MD5 hash of the administrator password and other attributes without authentication, even after... 2025-04-29 7.5 NETWORK HIGH NVD
CVE-2025-4079 A vulnerability, which was classified as critical, was found in PCMan FTP Server up to 2.0.7. Affected is an unknown function of the component RENAME ... 2025-04-29 7.3 NETWORK HIGH NVD
CVE-2025-4095 Registry Access Management (RAM) is a security feature allowing administrators to restrict access for their developers to only allowed registries. Whe... 2025-04-29 4.3 LOCAL MEDIUM NVD
CVE-2025-4077 A vulnerability classified as critical was found in code-projects School Billing System 1.0. This vulnerability affects the function searchrec. The ma... 2025-04-29 5.3 LOCAL MEDIUM NVD
CVE-2025-4076 A vulnerability classified as critical has been found in LB-LINK BL-AC3600 up to 1.0.22. This affects the function easy_uci_set_option_string_0 of the... 2025-04-29 6.3 NETWORK MEDIUM NVD
CVE-2025-4075 A vulnerability was found in VMSMan up to 20250416. It has been rated as problematic. Affected by this issue is some unknown functionality of the file... 2025-04-29 4.3 NETWORK MEDIUM NVD
CVE-2025-4074 A vulnerability was found in PHPGurukul Curfew e-Pass Management System 1.0. It has been declared as critical. Affected by this vulnerability is an un... 2025-04-29 7.3 NETWORK HIGH NVD