| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-40899 | Stored Cross-Site Scripting (XSS) in Assets and Nodes in Guardian/CMC before 26.0.0 | Nozomi Networks | Guardian | High | 8.9 | 2026-04-15 08:18:36 | Deep Dive |
| CVE-2025-40897 | Incorrect authorization for Threat Intelligence in Guardian/CMC before 26.0.0 | Nozomi Networks | Guardian | High | 8.1 | 2026-04-15 08:18:05 | Deep Dive |
| CVE-2025-40895 | HTML injection in Sensor Map in CMC before 25.6.0 | Nozomi Networks | CMC | Medium | 4.8 | 2026-03-04 13:52:14 | Deep Dive |
| CVE-2025-40894 | HTML injection in Alerted Nodes Dashboard in Guardian/CMC before 25.6.0 | Nozomi Networks | Guardian | Medium | 4.4 | 2026-03-04 13:51:14 | Deep Dive |
| CVE-2025-40898 | Path traversal in Import Arc data archive functionality in Guardian/CMC before 25.5.0 | Nozomi Networks | Guardian | High | 8.1 | 2025-12-18 13:19:22 | Deep Dive |
| CVE-2025-40893 | HTML injection in Asset List in Guardian/CMC before 25.5.0 | Nozomi Networks | Guardian | Medium | 6.1 | 2025-12-18 13:17:54 | Deep Dive |
| CVE-2025-40892 | Stored Cross-Site Scripting (XSS) in Reports in Guardian/CMC before 25.5.0 | Nozomi Networks | Guardian | High | 8.9 | 2025-12-18 13:16:25 | Deep Dive |
| CVE-2025-40891 | HTML injection in in Time Machine functionality in Guardian/CMC before 25.5.0 | Nozomi Networks | Guardian | Medium | 4.7 | 2025-12-18 13:14:35 | Deep Dive |
| CVE-2025-40890 | Stored Cross-Site Scripting (XSS) in Dashboards in Guardian/CMC before 25.4.0 | Nozomi Networks | Guardian | High | 7.9 | 2025-11-25 15:30:34 | Deep Dive |
| CVE-2025-40888 | Authenticated SQL Injection on CLI functionality in Guardian/CMC before 25.3.0 | Nozomi Networks | Guardian | Medium | 5.3 | 2025-10-07 12:38:39 | Deep Dive |
| CVE-2025-40889 | Path traversal in Time Machine functionality in Guardian/CMC before 25.2.0 | Nozomi Networks | Guardian | High | 8.1 | 2025-10-07 12:37:59 | Deep Dive |
| CVE-2025-40887 | Authenticated SQL Injection on Alert functionality in Guardian/CMC before 25.2.0 | Nozomi Networks | Guardian | Medium | 5.3 | 2025-10-07 12:37:10 | Deep Dive |
| CVE-2025-40886 | Authenticated SQL Injection on Alert functionality in Guardian/CMC before 25.2.0 | Nozomi Networks | Guardian | High | 7.5 | 2025-10-07 12:36:34 | Deep Dive |
| CVE-2025-40885 | Authenticated SQL Injection on Smart Polling functionality in Guardian/CMC before 25.2.0 | Nozomi Networks | Guardian | Medium | 5.3 | 2025-10-07 12:35:58 | Deep Dive |
| CVE-2025-3719 | Incorrect authorization for CLI in Guardian/CMC before 25.2.0 | Nozomi Networks | Guardian | High | 8.1 | 2025-10-07 12:34:47 | Deep Dive |
| CVE-2025-3718 | Client-side path traversal in Guardian/CMC before 25.2.0 | Nozomi Networks | Guardian | High | 7.9 | 2025-10-07 12:33:18 | Deep Dive |
| CVE-2025-1501 | Incorrect authorization for traces request/download in CMC before 25.1.0 | Nozomi Networks | CMC | Medium | 4.3 | 2025-08-26 10:25:47 | Deep Dive |
| CVE-2025-30033 | Siemens多款产品 代码问题漏洞 | Siemens | Automation License Manager V6.0 | High | 7.8 | 2025-08-12 11:16:57 | Deep Dive |
| CVE-2024-13090 | Privilege escalation in Guardian/CMC before 24.6.0 | Nozomi Networks | Guardian | High | 7.0 | 2025-06-10 10:31:02 | Deep Dive |
| CVE-2024-13089 | Authenticated RCE in update functionality in Guardian/CMC before 24.6.0 | Nozomi Networks | Guardian | High | 7.2 | 2025-06-10 10:29:40 | Deep Dive |