| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-11065 | Github.com/go-viper/mapstructure/v2: go-viper's mapstructure may leak sensitive information in logs in github.com/go-viper/mapstructure | - | - | Medium | 5.3 | 2026-01-26 19:36:29 | Deep Dive |
| CVE-2025-13703 | VIPRE Advanced Security Incorrect Permission Assignment Local Privilege Escalation Vulnerability | VIPRE | Advanced Security | - | - | 2025-12-23 21:30:26 | Deep Dive |
| CVE-2025-7195 | Operator-sdk: privilege escalation due to incorrect permissions of /etc/passwd | operator-framework | operator-sdk | Medium | 6.4 | 2025-08-07 19:05:09 | Deep Dive |
| CVE-2025-8556 | Github.com/cloudflare/circl: circl-fourq: missing and wrong validation can lead to incorrect results | - | - | Low | 3.7 | 2025-08-06 08:48:18 | Deep Dive |
| CVE-2025-5198 | Stackrox: xss in stackrox | - | - | Medium | 5.0 | 2025-05-27 20:51:34 | Deep Dive |
| CVE-2024-11831 | Npm-serialize-javascript: cross-site scripting (xss) in serialize-javascript | - | - | Medium | 5.4 | 2025-02-10 15:27:47 | Deep Dive |
| CVE-2022-4975 | Rhacs: cross-site scripting in portal | Red Hat | Red Hat Advanced Cluster Security 3 | High | 8.9 | 2025-01-27 13:47:56 | Deep Dive |
| CVE-2024-7238 | VIPRE Advanced Security SBAMSvc Link Following Local Privilege Escalation Vulnerability | VIPRE | Advanced Security | 高危 | - | 2024-11-22 21:12:22 | Deep Dive |
| CVE-2024-7239 | VIPRE Advanced Security Link Following Local Privilege Escalation Vulnerability | VIPRE | Advanced Security | 高危 | - | 2024-11-22 21:12:18 | Deep Dive |
| CVE-2019-25213 | Advanced Access Manager <= 5.9.8.1 - Unauthenticated Arbitrary File Read | vasyltech | Advanced Access Manager – Access Governance for WordPress | Critical | 9.8 | 2024-10-16 06:43:32 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2021-4451 | NinjaFirewall <= 4.3.3 - Authenticated PHAR Deserialization | nintechnet | NinjaFirewall (WP Edition) – Advanced Security Plugin and Firewall | Medium | 6.6 | 2024-10-16 06:43:25 | Deep Dive |
| CVE-2024-5930 | VIPRE Advanced Security Incorrect Permission Assignment Local Privilege Escalation Vulnerability | VIPRE | Advanced Security | - | - | 2024-08-21 16:12:21 | Deep Dive |
| CVE-2024-5929 | VIPRE Advanced Security PMAgent Uncontrolled Search Path Element Local Privilege Escalation Vulnerability | VIPRE | Advanced Security | - | - | 2024-08-21 16:12:17 | Deep Dive |
| CVE-2024-5928 | VIPRE Advanced Security PMAgent Link Following Local Privilege Escalation Vulnerability | VIPRE | Advanced Security | - | - | 2024-08-21 16:12:12 | Deep Dive |
| CVE-2024-3727 | Containers/image: digest type does not guarantee valid type | - | - | High | 8.3 | 2024-05-09 14:57:21 | Deep Dive |
| CVE-2024-0406 | Mholt/archiver: path traversal vulnerability | - | - | Medium | 6.1 | 2024-04-06 16:11:03 | Deep Dive |
| CVE-2023-51674 | WordPress Advanced Access Manager Plugin <= 6.9.18 is vulnerable to Cross Site Scripting (XSS) | AAM | Advanced Access Manager – Restricted Content, Users & Roles, Enhanced Security and More | Medium | 6.5 | 2024-02-01 10:22:56 | Deep Dive |
| CVE-2023-51675 | WordPress Advanced Access Manager Plugin <= 6.9.18 is vulnerable to Open Redirection | AAM | Advanced Access Manager – Restricted Content, Users & Roles, Enhanced Security and More | Medium | 4.7 | 2023-12-29 13:57:17 | Deep Dive |
| CVE-2023-50881 | WordPress Advanced Access Manager Plugin <= 6.9.15 is vulnerable to Cross Site Scripting (XSS) | AAM | Advanced Access Manager – Restricted Content, Users & Roles, Enhanced Security and More | Medium | 6.5 | 2023-12-29 11:26:12 | Deep Dive |