| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-24318 | Dario Health USB-C Blood Glucose Monitoring System Starter Kit Android Application Sensitive Cookie Without 'HttpOnly' Flag | Dario Health | Dario Application Database and Internet-based Server Infrastructure | Medium | 6.8 | 2025-02-28 17:09:06 | Deep Dive |
| CVE-2025-20049 | Dario Health USB-C Blood Glucose Monitoring System Starter Kit Android Application Cross-site Scripting | Dario Health | Dario Application Database and Internet-based Server Infrastructure | Medium | 5.8 | 2025-02-28 17:04:11 | Deep Dive |
| CVE-2025-24849 | Dario Health USB-C Blood Glucose Monitoring System Starter Kit Android Application Cleartext Transmission of Sensitive Information | Dario Health | USB-C Blood Glucose Monitoring System Starter Kit Android Applications | High | 7.1 | 2025-02-28 16:58:55 | Deep Dive |
| CVE-2025-24843 | Dario Health USB-C Blood Glucose Monitoring System Starter Kit Android Application Storage of Sensitive Data in a Mechanism without Access Control | Dario Health | USB-C Blood Glucose Monitoring System Starter Kit Android Applications | Medium | 5.1 | 2025-02-28 16:56:12 | Deep Dive |
| CVE-2025-23405 | Dario Health USB-C Blood Glucose Monitoring System Starter Kit Android Application Improper Output Neutralization For Logs | Dario Health | USB-C Blood Glucose Monitoring System Starter Kit Android Applications | Medium | 5.3 | 2025-02-28 16:54:02 | Deep Dive |
| CVE-2025-20060 | Dario Health USB-C Blood Glucose Monitoring System Starter Kit Android Application Exposure of Private Personal Information to an Unauthorized Actor | Dario Health | USB-C Blood Glucose Monitoring System Starter Kit Android Applications | High | 7.5 | 2025-02-28 16:51:20 | Deep Dive |
| CVE-2025-20119 | Cisco Application Policy Infrastructure Controller Authenticated Local Denial of Service Vulnerability | Cisco | Cisco Application Policy Infrastructure Controller (APIC) | Medium | 6.0 | 2025-02-26 16:23:37 | Deep Dive |
| CVE-2025-20118 | Cisco Application Policy Infrastructure Controller Authenticated Command Injection Due to Sensitive Disclosure Vulnerability | Cisco | Cisco Application Policy Infrastructure Controller (APIC) | Medium | 4.4 | 2025-02-26 16:23:28 | Deep Dive |
| CVE-2025-20117 | Cisco Application Policy Infrastructure Controller Authenticated Command Injection Vulnerability | Cisco | Cisco Application Policy Infrastructure Controller (APIC) | Medium | 5.1 | 2025-02-26 16:11:26 | Deep Dive |
| CVE-2025-20116 | Cisco Application Policy Infrastructure Controller Stored Cross-Site Scripting Vulnerability | Cisco | Cisco Application Policy Infrastructure Controller (APIC) | Medium | 4.8 | 2025-02-26 16:11:17 | Deep Dive |
| CVE-2024-51539 | Dell Secure Connect Gateway SQL注入漏洞 | Dell | Secure Connect Gateway - Application | Low | 2.3 | 2025-02-25 13:45:04 | Deep Dive |
| CVE-2025-24836 | Qardio Heart Health IOS and Android Application and QardioARM A100 Uncaught Exception | Qardio | Heart Health IOS Mobile Application | High | 7.1 | 2025-02-13 21:55:12 | Deep Dive |
| CVE-2025-23421 | Qardio iOS and Android applications Files or Directories Accessible to External Parties | Qardio | Heart Health IOS Mobile Application | Medium | 6.4 | 2025-02-13 21:50:44 | Deep Dive |
| CVE-2025-20615 | Qardio Heart Health IOS Mobile Application Exposure of Private Personal Information to an Unauthorized Actor | Qardio | Heart Health IOS Mobile Application | Medium | 6.2 | 2025-02-13 21:47:13 | Deep Dive |
| CVE-2024-11771 | Ivanti CSA 路径遍历漏洞 | Ivanti | Cloud Services Application | Medium | 5.3 | 2025-02-11 15:19:12 | Deep Dive |
| CVE-2024-47908 | Ivanti CSA 操作系统命令注入漏洞 | Ivanti | Cloud Services Application | Critical | 9.1 | 2025-02-11 15:18:49 | Deep Dive |
| CVE-2025-24869 | Information Disclosure vulnerability in SAP NetWeaver Application Server Java | SAP_SE | SAP NetWeaver Application Server Java | Medium | 4.3 | 2025-02-11 00:36:52 | Deep Dive |
| CVE-2025-24868 | Open Redirect Vulnerability in SAP HANA extended application services, advanced model (User Account and Authentication Services) | SAP_SE | SAP HANA extended application services, advanced model (User Account and Authentication Services) | High | 7.1 | 2025-02-11 00:35:43 | Deep Dive |
| CVE-2025-0054 | Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server Java | SAP_SE | SAP NetWeaver Application Server Java | Medium | 5.4 | 2025-02-11 00:32:57 | Deep Dive |
| CVE-2024-11831 | Npm-serialize-javascript: cross-site scripting (xss) in serialize-javascript | - | - | Medium | 5.4 | 2025-02-10 15:27:47 | Deep Dive |