NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2025-4695 A vulnerability was found in PHPGurukul Cyber Cafe Management System 1.0. It has been classified as critical. Affected is an unknown function of the f... 2025-05-15 6.3 NETWORK MEDIUM NVD
CVE-2025-4762 Insecure Direct Object Reference (IDOR) vulnerability in the eSignaViewer component in eSigna product versions 1.0 to 1.5 on all platforms allow an un... 2025-05-15 2.0 NETWORK LOW NVD
CVE-2025-4564 The TicketBAI Facturas para WooCommerce plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation via the... 2025-05-15 9.8 NETWORK CRITICAL NVD
CVE-2025-3446 Mattermost versions 10.6.x <= 10.6.1, 10.5.x <= 10.5.2, 10.4.x <= 10.4.4, 9.11.x <= 9.11.11 fail to check the correct permissions which allows authent... 2025-05-15 4.3 NETWORK MEDIUM NVD
CVE-2025-31947 Mattermost versions 10.6.x <= 10.6.1, 10.5.x <= 10.5.2, 10.4.x <= 10.4.4, 9.11.x <= 9.11.11 fail to lockout LDAP users following repeated login failur... 2025-05-15 5.8 NETWORK MEDIUM NVD
CVE-2025-32738 Missing authentication for critical function issue exists in I-O DATA network attached hard disk 'HDL-T Series' firmware Ver.1.21 and earlier. If expl... 2025-05-15 5.3 NETWORK MEDIUM NVD
CVE-2025-32002 Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in I-O DATA network attached hard disk 'HDL-T ... 2025-05-15 9.8 NETWORK CRITICAL NVD
CVE-2025-4737 Insufficient encryption vulnerability in the mobile application (com.transsion.aivoiceassistant) may lead to the risk of sensitive information leakage... 2025-05-15 6.2 LOCAL MEDIUM NVD
CVE-2025-27525 Information Exposure vulnerability in Hitachi JP1/IT Desktop Management 2 - Smart Device Manager on Windows.This issue affects JP1/IT Desktop Manageme... 2025-05-15 3.9 LOCAL LOW NVD
CVE-2025-27524 Weak encryption vulnerability in Hitachi JP1/IT Desktop Management 2 - Smart Device Manager on Windows.This issue affects JP1/IT Desktop Management 2 ... 2025-05-15 5.3 NETWORK MEDIUM NVD
CVE-2025-27523 XXE vulnerability in Hitachi JP1/IT Desktop Management 2 - Smart Device Manager on Windows.This issue affects JP1/IT Desktop Management 2 - Smart Devi... 2025-05-15 8.7 NETWORK HIGH NVD
CVE-2025-48027 The HttpAuth plugin in pGina.Fork through 3.9.9.12 allows authentication bypass when an adversary controls DNS resolution for pginaloginserver. 2025-05-15 5.4 NETWORK MEDIUM NVD
CVE-2025-3742 The Responsive Lightbox & Gallery WordPress plugin before 2.5.1 does not validate and escape some of its attributes before outputting them back in a p... 2025-05-15 6.8 NETWORK MEDIUM NVD
CVE-2024-13914 The File Manager Advanced Shortcode WordPress plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.5.4 (... 2025-05-15 7.2 NETWORK HIGH NVD
CVE-2025-48024 In BlueWave Checkmate before 2.1, an authenticated regular user can access sensitive application secrets via the /api/v1/settings endpoint. 2025-05-15 5.0 NETWORK MEDIUM NVD