CVE-2025-11000 to CVE-2025-11999
415 CVEs with public proof-of-concept exploits.
- CVE-2025-110001 PoCOpen Babel PQSformat.cpp ReadMolecule null pointer dereference
- CVE-2025-110016 PoCs7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability
- CVE-2025-110021 PoC7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability
- CVE-2025-110051 PoCTOTOLINK X6000R Unauthenticated Command Injection Vulnerability
- CVE-2025-110101 PoCvstakhov libucl ucl_util.c ucl_include_common heap-based overflow
- CVE-2025-110111 PoCBehaviorTree json_export.cpp fromJson null pointer dereference
- CVE-2025-110121 PoCBehaviorTree Diagnostic Message script_parser.cpp ParseScript stack-based overflow
- CVE-2025-110131 PoCBehaviorTree XML Parser xml_parsing.cpp loadDocImpl null pointer dereference
- CVE-2025-110141 PoCOGRECave Ogre Image OgreSTBICodec.cpp encode heap-based overflow
- CVE-2025-110151 PoCOGRECave Ogre OgreSTBICodec.cpp encode mismatched memory management routines
- CVE-2025-110161 PoCkalcaddle kodbox index.class.php fileOut path traversal
- CVE-2025-110171 PoCOGRECave Ogre OgreLogManager.cpp stream null pointer dereference
- CVE-2025-110181 PoCFour-Faith Water Conservancy Informatization Platform download.do;usrlogout.do.do path traversal
- CVE-2025-110261 PoCgivanz Vvveb Configuration File information disclosure
- CVE-2025-110271 PoCgivanz Vvveb SVG File cross site scripting
- CVE-2025-110281 PoCgivanz Vvveb Image information disclosure
- CVE-2025-110291 PoCgivanz Vvveb cross-site request forgery
- CVE-2025-110301 PoCTutorials-Website Employee Management System HTTP Request all-applied-leave.php improper authorization
- CVE-2025-110311 PoCDataTables examples.php path traversal
- CVE-2025-110321 PoCkidaze CourseSelectionSystem COUNT3s6.php sql injection
- CVE-2025-110331 PoCkidaze CourseSelectionSystem COUNT3s7.php sql injection
- CVE-2025-110341 PoCDibo Data Decision Making System common_dep.action.jsp downloadImpTemplet path traversal
- CVE-2025-110351 PoCJinher OA text xml external entity reference
- CVE-2025-110361 PoCcode-projects E-Commerce Website admin_account_update.php sql injection
- CVE-2025-110371 PoCcode-projects E-Commerce Website admin_index_search.php sql injection
- CVE-2025-110381 PoCitsourcecode Online Clinic Management System details.php sql injection
- CVE-2025-110391 PoCCampcodes Computer Sales and Inventory System us_edit1.php sql injection
- CVE-2025-110401 PoCcode-projects Hostel Management System index.php sql injection
- CVE-2025-110411 PoCitsourcecode Open Source Job Portal index.php sql injection
- CVE-2025-110451 PoCWAYOS LQ_04/LQ_05/LQ_06/LQ_07/LQ_09 usb_paswd.asp command injection
- CVE-2025-110461 PoCTencent WeKnora test testEmbeddingModel server-side request forgery
- CVE-2025-110471 PoCPortabilis i-Educar aluno improper authorization
- CVE-2025-110481 PoCPortabilis i-Educar consulta-dispensas improper authorization
- CVE-2025-110491 PoCPortabilis i-Educar unificacao-aluno improper authorization
- CVE-2025-110501 PoCPortabilis i-Educar periodo-lancamento improper authorization
- CVE-2025-110521 PoCkidaze CourseSelectionSystem COUNT3s5.php sql injection
- CVE-2025-110531 PoCPHPGurukul Small CRM forgot-password.php sql injection
- CVE-2025-110541 PoCitsourcecode Open Source Job Portal index.php sql injection
- CVE-2025-110551 PoCSourceCodester Online Hotel Reservation System updateaddress.php sql injection
- CVE-2025-110561 PoCProjectsAndPrograms School Management System select-students.php sql injection
- CVE-2025-110571 PoCSourceCodester Pet Grooming Management Software print_inv.php sql injection
- CVE-2025-110611 PoCCampcodes Online Learning Management System edit_student.php sql injection
- CVE-2025-110621 PoCCampcodes Online Learning Management System save_student.php sql injection
- CVE-2025-110631 PoCCampcodes Online Learning Management System edit_department.php sql injection
- CVE-2025-110641 PoCCampcodes Online Learning Management System teachers.php sql injection
- CVE-2025-110651 PoCGithub.com/go-viper/mapstructure/v2: go-viper's mapstructure may leak sensitive information in logs in github.com/go-viper/mapstructure
- CVE-2025-110661 PoCcode-projects Online Bidding System bidlist.php sql injection
- CVE-2025-110671 PoCProjectworlds Visitor Management System Add Visitor myform.php cross site scripting
- CVE-2025-110681 PoCwestboy CicadasCMS save cross site scripting
- CVE-2025-110691 PoCwestboy CicadasCMS Add Department save cross site scripting
- CVE-2025-110701 PoCProjectworlds Online Shopping System cart_add.php sql injection
- CVE-2025-110711 PoCSeaCMS Cron Task Management admin_cron.php sql injection
- CVE-2025-110721 PoCDownload Counter Button <= 1.8.6.7 - Unauthenticated Arbitrary File Download
- CVE-2025-110731 PoCKeyfactor RG-EW5100BE HTTP POST Request cmd command injection
- CVE-2025-110741 PoCcode-projects Project Monitoring System login.php sql injection
- CVE-2025-110751 PoCCampcodes Online Learning Management System de_activate.php sql injection
- CVE-2025-110761 PoCCampcodes Online Learning Management System edit_teacher.php sql injection
- CVE-2025-110772 PoCsCampcodes Online Learning Management System add_content.php sql injection
- CVE-2025-110781 PoCitsourcecode Open Source Job Portal controller.php unrestricted upload
- CVE-2025-110791 PoCCampcodes Farm Management System file information disclosure
- CVE-2025-110801 PoCzhuimengshaonian wisdom-education ExamInfoController.java selectStudentExamInfoList improper authorization
- CVE-2025-110811 PoCGNU Binutils objdump.c dump_dwarf_section out-of-bounds
- CVE-2025-110821 PoCGNU Binutils Linker elf-eh-frame.c _bfd_elf_parse_eh_frame heap-based overflow
- CVE-2025-110831 PoCGNU Binutils Linker elfcode.h elf_swap_shdr heap-based overflow
- CVE-2025-110881 PoCitsourcecode Open Source Job Portal index.php sql injection
- CVE-2025-110891 PoCkidaze CourseSelectionSystem COUNT3s4.php sql injection
- CVE-2025-110901 PoCitsourcecode Open Source Job Portal index.php sql injection
- CVE-2025-110911 PoCTenda AC21 SetStaticRouteCfg sscanf buffer overflow
- CVE-2025-110921 PoCD-Link DIR-823X set_switch_settings sub_412E7C command injection
- CVE-2025-110941 PoCcode-projects E-Commerce Website admin_product_details.php sql injection
- CVE-2025-110951 PoCD-Link DIR-823X delete_offline_device command injection
- CVE-2025-110961 PoCD-Link DIR-823X diag_traceroute command injection
- CVE-2025-110971 PoCD-Link DIR-823X set_device_name command injection
- CVE-2025-110981 PoCD-Link DIR-823X set_wifi_blacklists command injection
- CVE-2025-110991 PoCD-Link DIR-823X delete_prohibiting uci_del command injection
- CVE-2025-111001 PoCD-Link DIR-823X set_wifi_blacklists uci_set command injection
- CVE-2025-111011 PoCitsourcecode Open Source Job Portal index.php sql injection
- CVE-2025-111021 PoCCampcodes Online Learning Management System edit_content.php sql injection
- CVE-2025-111031 PoCProjectworlds Online Tours and Travels change-image.php unrestricted upload
- CVE-2025-111041 PoCCodeAstro Electricity Billing System bill.php sql injection
- CVE-2025-111051 PoCcode-projects Simple Scheduling System addsubject.php sql injection
- CVE-2025-111061 PoCcode-projects Simple Scheduling System addfaculty.php sql injection
- CVE-2025-111071 PoCcode-projects Simple Scheduling System addcourse.php sql injection
- CVE-2025-111081 PoCcode-projects Simple Scheduling System addroom.php sql injection
- CVE-2025-111091 PoCCampcodes Computer Sales and Inventory System us_edit.php sql injection
- CVE-2025-111101 PoCCampcodes Online Learning Management System school_year.php sql injection
- CVE-2025-111111 PoCCampcodes Advanced Online Voting Management System candidates_edit.php sql injection
- CVE-2025-111121 PoCPHPGurukul Employee Record Management System myprofile.php cross site scripting
- CVE-2025-111131 PoCCodeAstro Online Leave Application signup.php sql injection
- CVE-2025-111141 PoCCodeAstro Online Leave Application leaveAplicationForm.php sql injection
- CVE-2025-111151 PoCcode-projects Simple Scheduling System addtime.php sql injection
- CVE-2025-111161 PoCcode-projects Simple Scheduling System add.home.php sql injection
- CVE-2025-111171 PoCTenda CH22 GstDhcpSetSer formWrlExtraGet buffer overflow
- CVE-2025-111181 PoCCodeAstro Student Grading System adminLogin.php sql injection
- CVE-2025-111191 PoCitsourcecode Hostel Management System POST Request index.php cross site scripting
- CVE-2025-111201 PoCTenda AC8 SetServerConfig formSetServerConfig buffer overflow
- CVE-2025-111211 PoCTenda AC18 AdvSetLanip command injection
- CVE-2025-111221 PoCTenda AC18 WizardHandle stack-based overflow
- CVE-2025-111231 PoCTenda AC18 saveAutoQos stack-based overflow
- CVE-2025-111241 PoCcode-projects Project Monitoring System postjob.php cross site scripting
- CVE-2025-111251 PoClangleyfcu Online Banking System Error Message connection_error.php cross site scripting
- CVE-2025-111271 PoCMstoreapp Mobile (App <= 2.08, Multivendor <= 9.0.1) - Unauthenticated Privilege Escalation
- CVE-2025-111301 PoCiHongRen pptp-vpn XPC Service HelperTool.m shouldAcceptNewConnection missing authentication
- CVE-2025-111341 PoCCudy TR1200 Wireless Settings config cross site scripting
- CVE-2025-111351 PoCpmTicket Project-Management-Software Cookie class.database.php loadLanguage deserialization
- CVE-2025-111361 PoCYiFang CMS Backend File.php webUploader unrestricted upload
- CVE-2025-111371 PoCGstarsoft GstarCAD File Renaming cross site scripting
- CVE-2025-111381 PoCmirweiye wenkucms common.php createPathOne os command injection
- CVE-2025-111391 PoCBjskzy Zhiyou ERP com.artery.form.services.FormStudioUpdater uploadStudioFile path traversal
- CVE-2025-111401 PoCBjskzy Zhiyou ERP com.artery.richclient.RichClientService openForm xml external entity reference
- CVE-2025-111411 PoCRuijie NBR2100G-E branch_passw.php listAction os command injection
- CVE-2025-111421 PoCThe VAPIX API mediaclip.cgi that did not have a sufficient input validation allowing for a possible remote code execution. This flaw can…
- CVE-2025-111541 PoCIDonate < 2.1.13 - Unauthenticated User Deletion
- CVE-2025-111701 PoCWP移行専用プラグイン for CPI <= 1.0.2 - Unauthenticated Arbitrary File Upload
- CVE-2025-111711 PoCChartify – WordPress Chart Plugin <= 3.5.9 - Missing Authentication for Administrative Function
- CVE-2025-111741 PoCDocument Library Lite <= 1.1.6 - Missing Authorization to Sensitive Information Exposure
- CVE-2025-111911 PoCRealPress < 1.1.0 - Unauthenticated Content Creation/Email Sending via REST
- CVE-2025-112031 PoCLiteLLM Information health API_KEY Information Disclosure Vulnerability
- CVE-2025-112241 PoCImproper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab
- CVE-2025-112371 PoCMake Email Customizer for WooCommerce <= 1.0.6 - Subscriber+ Arbitrary Options Update
- CVE-2025-112461 PoCInsufficient Granularity of Access Control in GitLab
- CVE-2025-112471 PoCAuthorization Bypass Through User-Controlled Key in GitLab
- CVE-2025-112721 PoCSeriaWei ZKEACMS POST Request UrlRedirectionController.cs Delete improper authorization
- CVE-2025-112731 PoCLaChatterie Verger provider.ts redirectToAuthorization deserialization
- CVE-2025-112741 PoCOpen Asset Import Library Assimp Q3DLoader.cpp InternReadFile allocation of resources
- CVE-2025-112751 PoCOpen Asset Import Library Assimp OpenDDLParserUtils.h getNextSeparator heap-based overflow
- CVE-2025-112771 PoCOpen Asset Import Library Assimp Q3DLoader.cpp InternReadFile heap-based overflow
- CVE-2025-112791 PoCAxosoft Scrum and Bug Tracking Add Work Item csv injection
- CVE-2025-112801 PoCFrappe LMS Assignment Picture files direct request
- CVE-2025-112811 PoCFrappe LMS Unpublished Course courses access control
- CVE-2025-112821 PoCFrappe LMS Incomplete Fix CVE-2025-55006 cross site scripting
- CVE-2025-112831 PoCFrappe LMS Course cross site scripting
- CVE-2025-112841 PoCZytec Dalian Zhuoyun Technology Central Authentication Service HTTP Header git hard-coded password
- CVE-2025-112851 PoCsamanhappy MCPHub serverController.ts os command injection
- CVE-2025-112861 PoCsamanhappy MCPHub MCPRouter Service serverController.ts server-side request forgery
- CVE-2025-112871 PoCsamanhappy MCPHub sseService.ts handleSseConnectionfunction improper authentication
- CVE-2025-112881 PoCCRMEB GET Parameter product sql injection
- CVE-2025-112891 PoCwestboy CicadasCMS Template Management TemplateFileServiceImpl.java save cross site scripting
- CVE-2025-112911 PoCixmaps website2017 HTTP GET Request map.php cross site scripting
- CVE-2025-112921 PoCBelkin F9K1015 formBSSetSitesurvey command injection
- CVE-2025-112931 PoCBelkin F9K1015 formConnectionSetting buffer overflow
- CVE-2025-112941 PoCBelkin F9K1015 formL2TPSetup buffer overflow
- CVE-2025-112951 PoCBelkin F9K1015 formPPPoESetup buffer overflow
- CVE-2025-112961 PoCBelkin F9K1015 formPPTPSetup buffer overflow
- CVE-2025-112971 PoCBelkin F9K1015 formSetLanguage buffer overflow
- CVE-2025-112981 PoCBelkin F9K1015 formSetWanStatic command injection
- CVE-2025-112991 PoCBelkin F9K1015 formWanTcpipSetup buffer overflow
- CVE-2025-113001 PoCBelkin F9K1015 formWlanMP buffer overflow
- CVE-2025-113011 PoCBelkin F9K1015 formWlanSetupWPS buffer overflow
- CVE-2025-113021 PoCBelkin F9K1015 formWpsStart buffer overflow
- CVE-2025-113031 PoCBelkin F9K1015 mp command injection
- CVE-2025-113041 PoCCodeCanyon/ui-lib Mentor LMS API cross-domain policy
- CVE-2025-113051 PoCUTT HiPER 840G formTaskEdit strcpy buffer overflow
- CVE-2025-113061 PoCqianfox FoxCMS Search cross site scripting
- CVE-2025-113072 PoCsWP Google Maps < 9.0.48 - Unauthenticated Stored XSS
- CVE-2025-113081 PoCVanderlande Baggage 360 messages cross site scripting
- CVE-2025-113091 PoCTipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 findDeptPage.do doFilter sql injection
- CVE-2025-113101 PoCTipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 findFileServerPage.do findFileServerPage sql injection
- CVE-2025-113111 PoCTipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 findTenantPage.do findTenantPage sql injection
- CVE-2025-113121 PoCTipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 findModulePage.do findModulePage sql injection
- CVE-2025-113131 PoCTipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 findRolePage.do findRolePage sql injection
- CVE-2025-113141 PoCTipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 findSingConfigPage.do findRolePage sql injection
- CVE-2025-113151 PoCTipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 findUserPage.do findUserPage sql injection
- CVE-2025-113161 PoCTipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 findCategoryPage.do findCategoryPage sql injection
- CVE-2025-113171 PoCTipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 findSingConfigPage.do findRolePage sql injection
- CVE-2025-113181 PoCTipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 uploadWxFile.do unrestricted upload
- CVE-2025-113191 PoCnahiduddinahammed Hospital-Management-System-Website delete.php sql injection
- CVE-2025-113201 PoCzhuimengshaonian wisdom-education UploadController.java uploadFile unrestricted upload
- CVE-2025-113211 PoCzhuimengshaonian wisdom-education WrongBookController.java authorization
- CVE-2025-113221 PoCMangati NovoSGA User Creation new weak password
- CVE-2025-113231 PoCUTT 1250GW formUserStatusRemark strcpy buffer overflow
- CVE-2025-113241 PoCTenda AC18 setNotUpgrade stack-based overflow
- CVE-2025-113251 PoCTenda AC18 fast_setting_pppoe_set stack-based overflow
- CVE-2025-113261 PoCTenda AC18 WifiMacFilterSet stack-based overflow
- CVE-2025-113271 PoCTenda AC18 SetUpnpCfg stack-based overflow
- CVE-2025-113281 PoCTenda AC18 SetDDNSCfg stack-based overflow
- CVE-2025-113291 PoCcode-projects Online Course Registration manage-students.php sql injection
- CVE-2025-113301 PoCPHPGurukul Beauty Parlour Management System sales-reports-detail.php sql injection
- CVE-2025-113311 PoCIdeaCMS Website Name Config.php command injection
- CVE-2025-113321 PoCCmsEasy URL view.php cross site scripting
- CVE-2025-113331 PoClangleyfcu Online Banking System Add Customer customer_add_action.php cross site scripting
- CVE-2025-113341 PoCCampcodes Online Apartment Visitor Management System visitor-detail.php sql injection
- CVE-2025-113351 PoCD-Link DI-7100G C1 jhttpd msp_info.htm sub_46409C command injection
- CVE-2025-113361 PoCFour-Faith Water Conservancy Informatization Platform download.do;otherlogout.do path traversal
- CVE-2025-113371 PoCFour-Faith Water Conservancy Informatization Platform download.do;othersusrlogout.do path traversal
- CVE-2025-113381 PoCD-Link DI-7100G C1 jhttpd login.cgi sub_4C0990 buffer overflow
- CVE-2025-113391 PoCD-Link DI-7100G C1 jhttpd hi_block.asp sub_4BD4F8 buffer overflow
- CVE-2025-113411 PoCJinher OA type xml external entity reference
- CVE-2025-113421 PoCcode-projects Online Course Registration edit-course.php sql injection
- CVE-2025-113431 PoCcode-projects Student Crud Operation delete.php sql injection
- CVE-2025-113471 PoCcode-projects Student Crud Operation Add Student Page/Edit Student add.php move_uploaded_file unrestricted upload
- CVE-2025-113481 PoCCampcodes Online Apartment Visitor Management System index.php sql injection
- CVE-2025-113491 PoCCampcodes Online Apartment Visitor Management System search-visitor.php sql injection
- CVE-2025-113501 PoCCampcodes Online Apartment Visitor Management System bwdates-reports-details.php sql injection
- CVE-2025-113511 PoCcode-projects Online Hotel Reservation System editpicexec.php unrestricted upload
- CVE-2025-113521 PoCcode-projects Online Hotel Reservation System addexec.php unrestricted upload
- CVE-2025-113531 PoCcode-projects Online Hotel Reservation System addgalleryexec.php unrestricted upload
- CVE-2025-113541 PoCcode-projects Online Hotel Reservation System addslideexec.php unrestricted upload
- CVE-2025-113551 PoCUTT 1250GW aspChangeChannel strcpy buffer overflow
- CVE-2025-113561 PoCTenda AC23 SetStaticRouteCfg sscanf buffer overflow
- CVE-2025-113571 PoCcode-projects Simple Banking System createuser.php sql injection
- CVE-2025-113581 PoCcode-projects Simple Banking System removeuser.php sql injection
- CVE-2025-113591 PoCcode-projects Simple Banking System transfermoney.php sql injection
- CVE-2025-113631 PoCRoyal Elementor Addons and Templates < 1.7.1037 - Unauthenticated Media File Upload
- CVE-2025-113681 PoCLearnPress – WordPress LMS Plugin <= 4.2.9.4 - Missing Authorization to Unauthenticated Arbitrary Callback Execution to Information Exposure
- CVE-2025-113701 PoCDepicter <= 4.0.7 - Missing Authorization to Unauthenticated Display Rule Updates
- CVE-2025-113713 PoCsKEVGladinet CentreStack and TrioFox Local File Inclusion Flaw
- CVE-2025-113801 PoCEverest Backup <= 2.3.5 - Missing Authorization to Unauthenticated Information Exposure
- CVE-2025-113851 PoCTenda AC20 fast_setting_wifi_set sscanf buffer overflow
- CVE-2025-113861 PoCTenda AC15 POST Parameter SetDDNSCfg stack-based overflow
- CVE-2025-113871 PoCTenda AC15 fast_setting_pppoe_set stack-based overflow
- CVE-2025-113881 PoCTenda AC15 setNotUpgrade stack-based overflow
- CVE-2025-113891 PoCTenda AC15 saveAutoQos stack-based overflow
- CVE-2025-113901 PoCPHPGurukul Cyber Cafe Management System POST Parameter search.php cross site scripting
- CVE-2025-113912 PoCsPPOM – Product Addons & Custom Fields for WooCommerce <= 33.0.15 - Unauthenticated Arbitrary File Upload
- CVE-2025-113961 PoCcode-projects Simple Food Ordering System product.php sql injection
- CVE-2025-113971 PoCSourceCodester Hotel and Lodge Management System login.php sql injection
- CVE-2025-113981 PoCSourceCodester Hotel and Lodge Management System Profile profile.php unrestricted upload
- CVE-2025-113991 PoCSourceCodester Hotel and Lodge Management System save_room.php sql injection
- CVE-2025-114001 PoCSourceCodester Hotel and Lodge Management System del_room.php sql injection
- CVE-2025-114011 PoCSourceCodester Hotel and Lodge Management System save_curr.php sql injection
- CVE-2025-114021 PoCSourceCodester Hotel and Lodge Management System del_curr.php sql injection
- CVE-2025-114031 PoCSourceCodester Hotel and Lodge Management System del_booking.php sql injection
- CVE-2025-114041 PoCSourceCodester Hotel and Lodge Management System save_tax.php sql injection
- CVE-2025-114051 PoCSourceCodester Hotel and Lodge Management System del_tax.php sql injection
- CVE-2025-114061 PoCkaifangqian kaifangqian-base SysUserController.java getAllUsers information disclosure
- CVE-2025-114071 PoCD-Link DI-7001 MINI upgrade_filter.asp os command injection
- CVE-2025-114081 PoCD-Link DI-7001 MINI dbsrv.asp buffer overflow
- CVE-2025-114091 PoCCampcodes Advanced Online Voting Management System index.php sql injection
- CVE-2025-114101 PoCCampcodes Advanced Online Voting Management System voters_add.php sql injection
- CVE-2025-114121 PoCGNU Binutils Linker elflink.c bfd_elf_gc_record_vtentry out-of-bounds
- CVE-2025-114131 PoCGNU Binutils Linker elflink.c elf_link_add_object_symbols out-of-bounds
- CVE-2025-114141 PoCGNU Binutils Linker elflink.c get_link_hash_entry out-of-bounds
- CVE-2025-114151 PoCPHPGurukul Beauty Parlour Management System customer-list.php sql injection
- CVE-2025-114161 PoCPHPGurukul Beauty Parlour Management System invoices.php sql injection
- CVE-2025-114171 PoCCampcodes Advanced Online Voting Management System voters_add.php unrestricted upload
- CVE-2025-114181 PoCTenda CH22 HTTP Request AdvSetWrlsafeset formWrlsafeset stack-based overflow
- CVE-2025-114201 PoCcode-projects E-Commerce Website edit_order_details.php sql injection
- CVE-2025-114211 PoCcode-projects Voting System candidates_edit.php cross site scripting
- CVE-2025-114221 PoCCampcodes Advanced Online Voting Management System login.php sql injection
- CVE-2025-114231 PoCTenda CH22 SafeEmailFilter formSafeEmailFilter memory corruption
- CVE-2025-114241 PoCcode-projects Web-Based Inventory and POS System login.php sql injection
- CVE-2025-114251 PoCprojectworlds Advanced Library Management System edit_admin.php cross site scripting
- CVE-2025-114261 PoCprojectworlds Advanced Library Management System edit_book.php unrestricted upload
- CVE-2025-114301 PoCSourceCodester Simple E-Commerce Bookstore cart.php sql injection
- CVE-2025-114311 PoCcode-projects Web-Based Inventory and POS System transaction.php sql injection
- CVE-2025-114321 PoCitsourcecode Leave Management System reset.php sql injection
- CVE-2025-114331 PoCitsourcecode Leave Management System Query Parameter controller.php redirect cross site scripting
- CVE-2025-114341 PoCitsourcecode Student Transcript Processing System login.php sql injection
- CVE-2025-114351 PoCJhumanJ OpnForm submissions cross site scripting
- CVE-2025-114361 PoCJhumanJ OpnForm answer unrestricted upload
- CVE-2025-114371 PoCJhumanJ OpnForm Form Editor forms cross site scripting
- CVE-2025-114381 PoCJhumanJ OpnForm API Endpoint custom-domains authorization
- CVE-2025-114391 PoCJhumanJ OpnForm integrations authorization
- CVE-2025-114401 PoCJhumanJ OpnForm edit access control
- CVE-2025-114411 PoCJhumanJ OpnForm HTTP Header excessive authentication
- CVE-2025-114421 PoCJhumanJ OpnForm API Endpoint cross-site request forgery
- CVE-2025-114431 PoCJhumanJ OpnForm Forgotten Password email information exposure
- CVE-2025-114441 PoCTOTOLINK N600R HTTP Request cstecgi.cgi setWiFiBasicConfig buffer overflow
- CVE-2025-114451 PoCKilo Code Prompt ClineProvider.ts ClineProvider injection
- CVE-2025-114471 PoCAllocation of Resources Without Limits or Throttling in GitLab
- CVE-2025-114691 PoCSourceCodester Hotel and Lodge Management System save_customer.php sql injection
- CVE-2025-114701 PoCSourceCodester Hotel and Lodge Management System manage_website.php unrestricted upload
- CVE-2025-114711 PoCSourceCodester Hotel and Lodge Management System edit_customer.php sql injection
- CVE-2025-114721 PoCSourceCodester Hotel and Lodge Management System edit_room.php sql injection
- CVE-2025-114731 PoCSourceCodester Hotel and Lodge Management System edit_curr.php sql injection
- CVE-2025-114741 PoCSourceCodester Hotel and Lodge Management System edit_booking.php sql injection
- CVE-2025-114751 PoCprojectworlds Advanced Library Management System view_member.php sql injection
- CVE-2025-114761 PoCSourceCodester Simple E-Commerce Bookstore index.php sql injection
- CVE-2025-114771 PoCSourceCodester Wedding Reservation Management System global.php sql injection
- CVE-2025-114781 PoCSourceCodester Farm Management System myCart.php sql injection
- CVE-2025-114791 PoCSourceCodester Wedding Reservation Management System function.php insertReservation sql injection
- CVE-2025-114801 PoCSourceCodester Simple E-Commerce Bookstore register.php sql injection
- CVE-2025-114811 PoCvarunsardana004 Blood-Bank-And-Donation-Management-System donate_blood.php sql injection
- CVE-2025-114851 PoCSourceCodester Student Grades Management System Manage Users admin.php add_user cross site scripting
- CVE-2025-114861 PoCSourceCodester Farm Management System buyNow.php sql injection
- CVE-2025-114871 PoCSourceCodester Farm Management System uploadProduct.php sql injection
- CVE-2025-114881 PoCD-Link DIR-852 HNAP1 command injection
- CVE-2025-114891 PoCwonderwhy-er DesktopCommanderMCP filesystem.ts isPathAllowed symlink
- CVE-2025-114901 PoCwonderwhy-er DesktopCommanderMCP Absolute Path command-manager.ts extractBaseCommand os command injection
- CVE-2025-114911 PoCwonderwhy-er DesktopCommanderMCP command-manager.ts CommandManager os command injection
- CVE-2025-114941 PoCGNU Binutils Linker elfxx-x86.c _bfd_x86_elf_late_size_sections out-of-bounds
- CVE-2025-114951 PoCGNU Binutils Linker elf64-x86-64.c elf_x86_64_relocate_section heap-based overflow
- CVE-2025-115031 PoCPHPGurukul Beauty Parlour Management System manage-services.php sql injection
- CVE-2025-115051 PoCPHPGurukul Beauty Parlour Management System new-appointment.php sql injection
- CVE-2025-115061 PoCPHPGurukul Beauty Parlour Management System search-appointment.php sql injection
- CVE-2025-115071 PoCPHPGurukul Beauty Parlour Management System search-invoices.php sql injection
- CVE-2025-115081 PoCcode-projects Voting System voters_add.php unrestricted upload
- CVE-2025-115091 PoCcode-projects E-Commerce Website product_add.php sql injection
- CVE-2025-115111 PoCcode-projects E-Commerce Website supplier_add.php sql injection
- CVE-2025-115121 PoCcode-projects Voting System voters_add.php cross site scripting
- CVE-2025-115141 PoCcode-projects Online Complaint Site index.php sql injection
- CVE-2025-115151 PoCcode-projects Online Complaint Site register-complaint.php sql injection
- CVE-2025-115161 PoCcode-projects Online Complaint Site complaint-details.php sql injection
- CVE-2025-115231 PoCTenda AC7 AdvSetLanip command injection
- CVE-2025-115241 PoCTenda AC7 SetDDNSCfg stack-based overflow
- CVE-2025-115251 PoCTenda AC7 SetUpnpCfg stack-based overflow
- CVE-2025-115261 PoCTenda AC7 WifiMacFilterSet stack-based overflow
- CVE-2025-115271 PoCTenda AC7 fast_setting_pppoe_set stack-based overflow
- CVE-2025-115281 PoCTenda AC7 saveAutoQos stack-based overflow
- CVE-2025-115291 PoCChurchCRM API Endpoint AuthMiddleware.php AuthMiddleware missing authentication
- CVE-2025-115301 PoCcode-projects Online Complaint Site state.php sql injection
- CVE-2025-115491 PoCTenda W12 HTTP Request modules wifiMacFilterSet stack-based overflow
- CVE-2025-115501 PoCTenda W12 HTTP Request modules wifiScheduledSet null pointer dereference
- CVE-2025-115511 PoCcode-projects Student Result Manager Database.java sql injection
- CVE-2025-115521 PoCcode-projects Online Complaint Site category.php sql injection
- CVE-2025-115531 PoCcode-projects Courier Management System add-courier.php sql injection
- CVE-2025-115541 PoCPortabilis i-Educar User Type AccessLevelController.php insecure inherited permissions
- CVE-2025-115551 PoCCampcodes Online Learning Management System calendar_of_events.php sql injection
- CVE-2025-115561 PoCcode-projects Simple Leave Manager user.php sql injection
- CVE-2025-115571 PoCprojectworlds Gate Pass Management System add-pass.php sql injection
- CVE-2025-115581 PoCcode-projects E-Commerce Website user_index_search.php sql injection
- CVE-2025-115601 PoCTeam Members Showcase < 3.5.0 - Reflected XSS
- CVE-2025-115791 PoCDoS via Out Of Memory Crash
- CVE-2025-115802 PoCsPowerJob list authorization
- CVE-2025-115811 PoCPowerJob OpenAPIController runJob authorization
- CVE-2025-115821 PoCcode-projects Online Job Search Engine registration.php sql injection
- CVE-2025-115831 PoCcode-projects Online Job Search Engine postjob.php sql injection
- CVE-2025-115841 PoCcode-projects Online Job Search Engine searchjob.php sql injection
- CVE-2025-115851 PoCcode-projects Project Monitoring System useredit.php sql injection
- CVE-2025-115861 PoCTenda AC7 setNotUpgrade stack-based overflow
- CVE-2025-115881 PoCCodeAstro Gym Management System index.php sql injection
- CVE-2025-115891 PoCCodeAstro Gym Management System user-payment.php sql injection
- CVE-2025-115901 PoCCodeAstro Gym Management System equipment-entry.php sql injection
- CVE-2025-115911 PoCCodeAstro Gym Management System delete-member.php sql injection
- CVE-2025-115921 PoCCodeAstro Gym Management System edit-equipmentform.php sql injection
- CVE-2025-115931 PoCCodeAstro Gym Management System delete-equipment.php sql injection
- CVE-2025-115941 PoCywxbear PHP-Bookstore-Website-Example Quantity index.php improper validation of specified quantity in input
- CVE-2025-115951 PoCCampcodes Online Apartment Visitor Management System admin-profile.php sql injection
- CVE-2025-115961 PoCcode-projects E-Commerce Website delete_order_details.php sql injection
- CVE-2025-115971 PoCcode-projects E-Commerce Website product_add_qty.php sql injection
- CVE-2025-115991 PoCCampcodes Online Apartment Visitor Management System forgot-password.php sql injection
- CVE-2025-116001 PoCcode-projects Simple Food Ordering System editcategory.php sql injection
- CVE-2025-116011 PoCSourceCodester Online Student Result System login.php sql injection
- CVE-2025-116031 PoCcode-projects Simple Food Ordering System editproduct.php sql injection
- CVE-2025-116041 PoCprojectworlds Online Ordering Food System all-orders.php sql injection
- CVE-2025-116051 PoCcode-projects Client Details System update-profile.php sql injection
- CVE-2025-116061 PoCiPynch Social Network Website Search sql injection
- CVE-2025-116071 PoCharry0703 MoneyPrinterTurbo API Endpoint music.py upload_music path traversal
- CVE-2025-116081 PoCcode-projects E-Banking System POST Parameter register.php sql injection
- CVE-2025-116091 PoCcode-projects Hospital Management System express-session hard-coded key
- CVE-2025-116101 PoCSourceCodester Simple Inventory System brand.php sql injection
- CVE-2025-116111 PoCSourceCodester Simple Inventory System user.php sql injection
- CVE-2025-116121 PoCcode-projects Simple Food Ordering System addproduct.php sql injection
- CVE-2025-116131 PoCcode-projects Simple Food Ordering System addcategory.php sql injection
- CVE-2025-116141 PoCSourceCodester Best Salon Management System edit-appointment.php sql injection
- CVE-2025-116151 PoCSourceCodester Best Salon Management System add_invoice.php sql injection
- CVE-2025-116281 PoCjimit105 Project-Online-Shopping-Website Product Inventory delete.php sql injection
- CVE-2025-116291 PoCRainyGao DocSys getUserList.do getUserList sql injection
- CVE-2025-116301 PoCRainyGao DocSys File Upload uploadDoc.do updateRealDoc path traversal
- CVE-2025-116311 PoCRainyGao DocSys deleteDoc.do path traversal
- CVE-2025-116391 PoCTomofun Furbo 360/Furbo Mini Debug Log S3 Bucket collect_logs.sh sensitive information
- CVE-2025-116441 PoCTomofun Furbo 360/Furbo Mini UART sensitive information
- CVE-2025-116451 PoCTomofun Furbo Mobile App Authentication Token sensitive information
- CVE-2025-116461 PoCTomofun Furbo 360/Furbo Mini GATT Service access control
- CVE-2025-116471 PoCTomofun Furbo 360/Furbo Mini GATT Service information disclosure
- CVE-2025-116481 PoCTomofun Furbo 360/Furbo Mini GATT Interface URL TF_FQDN.json server-side request forgery
- CVE-2025-116491 PoCTomofun Furbo 360/Furbo Mini Root Account hard-coded password
- CVE-2025-116501 PoCTomofun Furbo 360/Furbo Mini Password shadow weak hash
- CVE-2025-116511 PoCUTT 进取 518G formRemoteControl sub_4247AC buffer overflow
- CVE-2025-116521 PoCUTT 进取 518G formTaskEdit_ap buffer overflow
- CVE-2025-116531 PoCUTT HiPER 2620G fNTP strcpy buffer overflow
- CVE-2025-116541 PoCyousaf530 Inferno Online Clothing Store log.php sql injection
- CVE-2025-116561 PoCProjectsAndPrograms School Management System editNotes.php unrestricted upload
- CVE-2025-116571 PoCProjectsAndPrograms School Management System createNotice.php unrestricted upload
- CVE-2025-116581 PoCProjectsAndPrograms School Management System changeSllyabus.php unrestricted upload
- CVE-2025-116591 PoCProjectsAndPrograms School Management System uploadNotes.php unrestricted upload
- CVE-2025-116601 PoCProjectsAndPrograms School Management System uploadSllyabus.php unrestricted upload
- CVE-2025-116611 PoCProjectsAndPrograms School Management System missing authentication
- CVE-2025-116621 PoCSourceCodester Best Salon Management System booking.php sql injection
- CVE-2025-116631 PoCCampcodes Online Beauty Parlor Management System manage-services.php sql injection
- CVE-2025-116641 PoCCampcodes Online Beauty Parlor Management System search-appointment.php sql injection
- CVE-2025-116661 PoCTenda RP3 Pro Firmware Update force_upgrade.sh hard-coded password
- CVE-2025-116671 PoCcode-projects Automated Voting System add_candidate_modal.php. sql injection
- CVE-2025-116681 PoCcode-projects Automated Voting System update_user.php sql injection
- CVE-2025-116931 PoCExport WP Page to Static HTML & PDF <= 4.3.4 - Unauthenticated Cookie Exposure via Log File
- CVE-2025-117002 PoCsN-central Multiple XXE Injection Vulnerabilities
- CVE-2025-117021 PoCMissing Authorization in GitLab
- CVE-2025-117361 PoCitsourcecode Online Examination System index.php sql injection
- CVE-2025-117401 PoCwpForo Forum <= 2.4.9 - Authenticated (Susbscriber+) SQL Injection
- CVE-2025-117493 PoCsAI Engine <= 3.1.3 - Unauthenticated Sensitive Information Exposure to Privilege Escalation
- CVE-2025-117501 PoCUser Enumeration via Distinct Error Messages in langgenius/dify-web
- CVE-2025-118332 PoCsPost SMTP – Complete SMTP Solution with Logs, Alerts, Backup SMTP & Mobile App <= 3.6.0 - Missing Authorization to Account Takeover via…
- CVE-2025-118391 PoCGNU Binutils prdbg.c tg_tag_type return value
- CVE-2025-118401 PoCGNU Binutils ldmisc.c vfinfo out-of-bounds
- CVE-2025-118441 PoCXPath Injection in Hugging Face Smolagents search_item_ctrl_f Function
- CVE-2025-118511 PoCApeman ID71 set_alias.cgi cross site scripting
- CVE-2025-118521 PoCApeman ID71 ONVIF Service device_service missing authentication
- CVE-2025-118531 PoCSismics Teedy API Endpoint file access control
- CVE-2025-118551 PoCAge Restriction <= 3.0.2 - Subscriber+ Privilege Escalation
- CVE-2025-119021 PoCyanyutao0402 ChanCMS findField sql injection
- CVE-2025-119031 PoCyanyutao0402 ChanCMS update sql injection
- CVE-2025-119041 PoCyanyutao0402 ChanCMS hasUse sql injection
- CVE-2025-119051 PoCyanyutao0402 ChanCMS gather.js getArticle code injection
- CVE-2025-119081 PoCShenzhen Ruiming Technology Streamax Crocus FileDir.do uploadFile unrestricted upload
- CVE-2025-119091 PoCShenzhen Ruiming Technology Streamax Crocus RepairRecord.do queryLast sql injection
- CVE-2025-119101 PoCShenzhen Ruiming Technology Streamax Crocus MemoryState.do query sql injection
- CVE-2025-119111 PoCShenzhen Ruiming Technology Streamax Crocus DeviceFault.do Query sql injection
- CVE-2025-119121 PoCShenzhen Ruiming Technology Streamax Crocus DeviceState.do Query sql injection
- CVE-2025-119131 PoCShenzhen Ruiming Technology Streamax Crocus Service.do download path traversal
- CVE-2025-119141 PoCShenzhen Ruiming Technology Streamax Crocus DeviceFileReport.do download path traversal
- CVE-2025-119262 PoCsRelated Posts Lite <= 1.12 - Authenticated (Admin+) Stored Cross-Site Scripting
- CVE-2025-119381 PoCChurchCRM setup.php deserialization
- CVE-2025-119391 PoCChurchCRM Backup Restore RestoreJob.php path traversal
- CVE-2025-119411 PoCe107 CMS Avatar image.php path traversal
- CVE-2025-119421 PoC70mai X200 Pairing missing authentication
- CVE-2025-119431 PoC70mai X200 HTTP Web Server default credentials
- CVE-2025-119441 PoCgivanz Vvveb Raw SQL import.php import sql injection
- CVE-2025-119451 PoCtoeverything AFFiNE Avatar Upload Image Endpoint cross site scripting
- CVE-2025-119461 PoCLogicalDOC Community Edition Add Contact frontend.jsp cross site scripting
- CVE-2025-119471 PoCbftpd Configuration File options.c expand_groups heap-based overflow
- CVE-2025-119534 PoCsKEVCommand injection in React Native Community CLI allows remote attackers to perform remote code execution by sending HTTP requests
- CVE-2025-119661 PoCIn Eclipse Vert.x versions [4.0.0, 4.5.21] and [5.0.0, 5.0.4], when "directory listing" is enabled, file and directory names are inserted…
- CVE-2025-119841 PoCAuthentication Bypass Using an Alternate Path or Channel in GitLab
- CVE-2025-119901 PoCImproper Handling of URL Encoding (Hex Encoding) in GitLab