| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2019-25239 | V-SOL GPON/EPON OLT Platform 2.03 Unauthenticated Configuration Download | Guangzhou V-SOLUTION Electronic Technology | GPON/EPON OLT Platform | High | 7.5 | 2025-12-24 19:27:57 | Deep Dive |
| CVE-2019-25238 | V-SOL GPON/EPON OLT Platform 2.03 Cross-Site Request Forgery Vulnerability | Guangzhou V-SOLUTION Electronic Technology Co., Ltd. | SOL GPON/EPON OLT Platform | Medium | 4.3 | 2025-12-24 19:27:57 | Deep Dive |
| CVE-2019-25237 | V-SOL GPON/EPON OLT Platform 2.03 Privilege Escalation via User Role Parameter | Guangzhou V-SOLUTION Electronic Technology Co., Ltd. | SOL GPON/EPON OLT Platform | Critical | 9.8 | 2025-12-24 19:27:56 | Deep Dive |
| CVE-2025-67846 | Mintlify 安全漏洞 | Mintlify | Mintlify Platform | Medium | 4.9 | 2025-12-19 00:00:00 | Deep Dive |
| CVE-2025-67845 | Mintlify 安全漏洞 | Mintlify | Mintlify Platform | Medium | 6.4 | 2025-12-19 00:00:00 | Deep Dive |
| CVE-2025-67844 | Mintlify 安全漏洞 | Mintlify | Mintlify Platform | Medium | 5.0 | 2025-12-19 00:00:00 | Deep Dive |
| CVE-2025-67843 | Mintlify 安全漏洞 | Mintlify | Mintlify Platform | High | 8.3 | 2025-12-19 00:00:00 | Deep Dive |
| CVE-2025-67842 | Mintlify 安全漏洞 | Mintlify | Mintlify Platform | Medium | 6.4 | 2025-12-19 00:00:00 | Deep Dive |
| CVE-2025-68270 | CourseLimitedStaff Role Allows Studio Access | openedx | edx-platform | Critical | 9.9 | 2025-12-16 18:26:31 | Deep Dive |
| CVE-2025-14780 | Xiongwei Smart Catering Cloud Platform dish_trade_detail_get sql injection | Xiongwei | Smart Catering Cloud Platform | Medium | 6.3 | 2025-12-16 13:02:06 | Deep Dive |
| CVE-2025-14443 | Ose-openshift-apiserver: openshift api server: server-side request forgery (ssrf) vulnerability in imagestreamimport mechanism | Red Hat | Red Hat OpenShift Container Platform 4 | Medium | 6.4 | 2025-12-16 12:14:48 | Deep Dive |
| CVE-2025-36746 | SolarEdge Monitoring Platform contains a XSS upon report deletion | SolarEdge | SolarEdge Monitoring platform (SaaS) | - | - | 2025-12-12 15:05:40 | Deep Dive |
| CVE-2025-14512 | Glib: integer overflow in glib gio attribute escaping causes heap buffer overflow | GNOME | glib | Medium | 6.5 | 2025-12-11 07:11:02 | Deep Dive |
| CVE-2025-66473 | XWiki's REST APIs don't enforce any limits, leading to unavailability and OOM in large wikis | xwiki | xwiki-platform | - | - | 2025-12-10 21:51:56 | Deep Dive |
| CVE-2025-66472 | XWiki vulnerable to a reflected XSS via xredirect parameter in DeleteApplication | xwiki | xwiki-platform | - | - | 2025-12-10 21:34:47 | Deep Dive |
| CVE-2025-42896 | Server-Side Request Forgery (SSRF) in SAP BusinessObjects Business Intelligence Platform | SAP_SE | SAP BusinessObjects Business Intelligence Platform | Medium | 5.4 | 2025-12-09 02:15:28 | Deep Dive |
| CVE-2025-14104 | Util-linux: util-linux: heap buffer overread in setpwnam() when processing 256-byte usernames | util-linux | util-linux | Medium | 6.1 | 2025-12-05 16:22:09 | Deep Dive |
| CVE-2025-13932 | SolisCloud Monitoring Platform 安全漏洞 | SolisCloud | Monitoring Platform (Cloud API & Device Control API) | - | - | 2025-12-04 21:17:03 | Deep Dive |
| CVE-2025-14010 | Ansible-collection-community-general: ansible-collection-community-general: keycloak user module leaks credentials in verbose output | ansible-collections | Ansible Community General Collection | Medium | 5.5 | 2025-12-04 09:51:56 | Deep Dive |
| CVE-2024-3884 | Undertow: outofmemory when parsing form data encoding with application/x-www-form-urlencoded | Red Hat | Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7 | High | 7.5 | 2025-12-03 18:40:26 | Deep Dive |