CVE-2025-27000 to CVE-2025-27999
61 CVEs with public proof-of-concept exploits.
- CVE-2025-270074 PoCsWordPress SureTriggers <= 1.0.82 - Privilege Escalation Vulnerability
- CVE-2025-270882 PoCsReflected Cross-site Scripting (XSS) in template implementation in oxyno-zeta/s3-proxy
- CVE-2025-270902 PoCsServer-Side Request Forgery (SSRF) in sliver teamserver
- CVE-2025-270931 PoCSliver does not restricted traffic between Wireguard clients.
- CVE-2025-270961 PoCSQL Injection endpoint 'html/personalizacao_upload.php' parameter 'id_campo' in WeGIA
- CVE-2025-271051 PoCAugAssign evaluation order causing OOB write within the object in Vyper
- CVE-2025-271123 PoCsNavidrome has authentication bypass in Subsonic API with non-existent username
- CVE-2025-271331 PoCWeGIA has SQL Injection endpoint at 'dao/pet/adicionar_tipo_exame.php' parameter 'tipo_exame'
- CVE-2025-271342 PoCsPrivilege escalation in Joplin server via user patch endpoint
- CVE-2025-271363 PoCsLocalS3 CreateBucketConfiguration Endpoint XML External Entity (XXE) Injection
- CVE-2025-271401 PoCWeGIA vulnerable to OS Command Injection at endpoint 'importar_dump.php' parameter 'import' (RCE)
- CVE-2025-271451 PoCcopyparty renders unsanitized filenames as HTML when user uploads empty files
- CVE-2025-271524 PoCsPossible SSRF and Credential Leakage via Absolute URL in axios Requests
- CVE-2025-271542 PoCsSpotipy's cache file, containing spotify auth token, is created with overly broad permissions
- CVE-2025-272103 PoCsAn incomplete fix has been identified for CVE-2025-23084 in Node.js, specifically affecting Windows device names like CON, PRN, and AUX.…
- CVE-2025-272183 PoCsSitecore Experience Manager (XM) and Experience Platform (XP) 10.4 before KB1002844 allow remote code execution through insecure…
- CVE-2025-272221 PoCTRUfusion Enterprise through 7.10.4.0 uses the /trufusionPortal/getCobrandingData endpoint to retrieve files. However, the application…
- CVE-2025-272231 PoCTRUfusion Enterprise through 7.10.4.0 exposes the encrypted COOKIEID as an authentication mechanism for some endpoints such as…
- CVE-2025-272251 PoCTRUfusion Enterprise through 7.10.4.0 exposes the /trufusionPortal/jsp/internal_admin_contact_login.jsp endpoint to unauthenticated users.…
- CVE-2025-272371 PoCDLL injection in Zabbix Agent and Agent 2 via OpenSSL configuration
- CVE-2025-273635 PoCsKEVAn out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when attempting to…
- CVE-2025-274071 PoCRemote code execution when loading a crafted GraphQL schema
- CVE-2025-274091 PoCJoplin Server Vulnerable to Path Traversal
- CVE-2025-274102 PoCsPwnDoc Arbitrary File Write to RCE using Path Traversal in backup restore as admin
- CVE-2025-274112 PoCsREDAXO allows Arbitrary File Upload in the mediapool page
- CVE-2025-274121 PoCREDAXO allows Authenticated Reflected Cross Site Scripting - packages installation
- CVE-2025-274131 PoCPwnDoc Arbitrary File Write to RCE using Path Traversal in template update from backup templates.json
- CVE-2025-274151 PoCNuxt allows DOS via cache poisoning with payload rendering response
- CVE-2025-274171 PoCWeGIA Contains a Stored Cross-Site Scripting (XSS) in 'adicionar_status_atendido.php' via the 'status' parameter
- CVE-2025-274181 PoCWeGIA contains a Stored Cross-Site Scripting (XSS) in 'adicionar_tipo_atendido.php' via the 'tipo' parameter
- CVE-2025-274191 PoCDenial of Service (DoS) in WeGIA due to Recursive Crawling of Dynamic URLs
- CVE-2025-274201 PoCWeGIA contains a Stored Cross-Site Scripting (XSS) in 'atendido_parentesco_adicionar.php' via the 'descricao' parameter
- CVE-2025-274802 PoCsWindows Remote Desktop Services Remote Code Execution Vulnerability
- CVE-2025-274971 PoCOpenDJ Denial of Service (Dos) using alias loop
- CVE-2025-274991 PoCWeGIA has a stored Cross-Site Scripting (XSS) in 'processa_edicao_socio.php' via the 'socio_nome' parameter
- CVE-2025-275051 PoCGeoServer Missing Authorization on REST API Index
- CVE-2025-275062 PoCsNocoDB Vulnerable to Reflected Cross-Site Scripting on Reset Password Page
- CVE-2025-275152 PoCsLaravel has a File Validation Bypass
- CVE-2025-275191 PoCCognita Arbitrary File Write
- CVE-2025-275205 PoCsBentoML Allows Remote Code Execution (RCE) via Insecure Deserialization
- CVE-2025-275332 PoCsApache ActiveMQ: Unchecked buffer length can cause excessive memory allocation
- CVE-2025-275581 PoCIEEE P802.11-REVme D1.1 through D7.0 allows FragAttacks against mesh networks. In mesh networks using Wi-Fi Protected Access (WPA, WPA2,…
- CVE-2025-275801 PoCNIH BRICS (aka Biomedical Research Informatics Computing System) through 14.0.0-67 generates predictable tokens (that depend on username,…
- CVE-2025-275811 PoCNIH BRICS (aka Biomedical Research Informatics Computing System) through 14.0.0-67 allows users who lack the InET role to access the InET…
- CVE-2025-275901 PoCIn oxidized-web (aka Oxidized Web) before 0.15.0, the RANCID migration page allows an unauthenticated user to gain control over the Linux…
- CVE-2025-2759120 PoCsA privilege escalation vulnerability existed in the Below service prior to v0.9.0 due to the creation of a world-writable directory at…
- CVE-2025-275971 PoCVue I18n Prototype Pollution in `handleFlatJson`
- CVE-2025-276071 PoCPython JSON Logger has a Potential RCE via missing `msgspec-python313-pre` dependency
- CVE-2025-276361 PoCApache Camel: Camel Message Header Injection via Improper Filtering
- CVE-2025-277511 PoCMicrosoft Excel Remote Code Execution Vulnerability
- CVE-2025-277931 PoCVega vulnerable to Cross-site Scripting via RegExp.prototype[@@replace]
- CVE-2025-278174 PoCsApache Kafka Client: Arbitrary file read and SSRF vulnerability
- CVE-2025-278403 PoCsEspressif ESP32 chips allow 29 hidden HCI commands, such as 0xFC02 (Write memory).
- CVE-2025-278881 PoCApache Druid: Server-Side Request Forgery and Cross-Site Scripting
- CVE-2025-278892 PoCsWing FTP Server before 7.4.4 does not properly validate and sanitize the url parameter of the downloadpass.html endpoint, allowing…
- CVE-2025-278921 PoCShopware prior to version 6.5.8.13 is affected by a SQL injection vulnerability in the /api/search/order endpoint. NOTE: this issue exists…
- CVE-2025-278931 PoCIn Archer Platform 6 through 6.14.00202.10024, an authenticated user with record creation privileges can manipulate immutable fields, such…
- CVE-2025-279101 PoCtianti v2.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /user/ajax/upd/status. This vulnerability…
- CVE-2025-279152 PoCsKEVAn issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0 and 10.1. A stored cross-site scripting (XSS) vulnerability exists in…
- CVE-2025-279561 PoCDirectory Traversal vulnerability in WebLaudos 24.2 (04) allows a remote attacker to obtain sensitive information via the id parameter.
- CVE-2025-279801 PoCcashbook v4.0.3 has an arbitrary file read vulnerability in /api/entry/flow/invoice/show?invoice=.