| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-5325 | zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 testService special elements used in a template engine | zhilink 智互联(深圳)科技有限公司 | ADP Application Developer Platform 应用开发者平台 | Medium | 6.3 | 2025-05-29 19:31:04 | Deep Dive |
| CVE-2025-5278 | Coreutils: heap buffer under-read in gnu coreutils sort via key specification | - | - | Medium | 4.4 | 2025-05-27 20:52:59 | Deep Dive |
| CVE-2025-5222 | Icu: stack buffer overflow in the srbroot::addtag function | - | - | High | 7.0 | 2025-05-27 20:51:51 | Deep Dive |
| CVE-2025-5214 | Kashipara Responsive Online Learing Platform course_detail_user_new.php sql injection | Kashipara | Responsive Online Learing Platform | High | 7.3 | 2025-05-26 23:31:06 | Deep Dive |
| CVE-2025-5185 | Summer Pearl Group Vacation Rental Management Platform cross-site request forgery | Summer Pearl Group | Vacation Rental Management Platform | Medium | 4.3 | 2025-05-26 12:31:04 | Deep Dive |
| CVE-2025-5184 | Summer Pearl Group Vacation Rental Management Platform HTTP Response Header information disclosure | Summer Pearl Group | Vacation Rental Management Platform | Medium | 4.3 | 2025-05-26 12:00:12 | Deep Dive |
| CVE-2025-5183 | Summer Pearl Group Vacation Rental Management Platform Header redirect | Summer Pearl Group | Vacation Rental Management Platform | Low | 3.5 | 2025-05-26 11:31:04 | Deep Dive |
| CVE-2025-5182 | Summer Pearl Group Vacation Rental Management Platform Listing authorization | Summer Pearl Group | Vacation Rental Management Platform | Medium | 4.3 | 2025-05-26 11:00:08 | Deep Dive |
| CVE-2025-5181 | Summer Pearl Group Vacation Rental Management Platform updateListing cross site scripting | Summer Pearl Group | Vacation Rental Management Platform | Low | 3.5 | 2025-05-26 10:31:05 | Deep Dive |
| CVE-2025-48377 | Dnn.Platform vulnerable to Reflected Cross-Site Scripting (XSS) in module actions in edit mode | dnnsoftware | Dnn.Platform | - | - | 2025-05-23 15:39:40 | Deep Dive |
| CVE-2025-48378 | Dnn.Platform vulnerable to Stored Cross-Site Scripting (XSS) with svg files rendered inline | dnnsoftware | Dnn.Platform | - | - | 2025-05-23 15:39:04 | Deep Dive |
| CVE-2025-48376 | Dnn.Platform's Site Import could use an external source with a crafted request | dnnsoftware | Dnn.Platform | Low | 3.5 | 2025-05-23 15:37:04 | Deep Dive |
| CVE-2025-4692 | ABUP IoT Cloud Platform Incorrect Privilege Assignment | ABUP | ABUP IoT Cloud Platform | Medium | 6.8 | 2025-05-22 23:12:39 | Deep Dive |
| CVE-2025-47942 | Learners on edX Platform can download python_lib.zip | openedx | edx-platform | Medium | 5.3 | 2025-05-21 21:15:06 | Deep Dive |
| CVE-2025-48063 | XWiki Platform Security Authorization Bridge allows users with just edit right can enforce required rights with programming right | xwiki | xwiki-platform | - | - | 2025-05-21 17:38:37 | Deep Dive |
| CVE-2025-41228 | VMware ESXi and vCenter Server Reflected Cross Site Scripting (XSS) Vulnerability | VMware | vCenter Server | Medium | 4.3 | 2025-05-20 14:24:34 | Deep Dive |
| CVE-2025-41227 | Denial-of-Service Vulnerability | VMware | ESXi | Medium | 5.5 | 2025-05-20 14:24:29 | Deep Dive |
| CVE-2025-41226 | Guest Operations Denial-of-Service Vulnerability | VMware | ESXi | Medium | 6.8 | 2025-05-20 14:24:25 | Deep Dive |
| CVE-2025-41225 | VMware vCenter Server authenticated command-execution vulnerability | VMware | vCenter Server | High | 8.8 | 2025-05-20 14:24:17 | Deep Dive |
| CVE-2025-26621 | OpenCTI vulnerable to Denial of Service through web hook | OpenCTI-Platform | opencti | High | 7.6 | 2025-05-19 16:01:50 | Deep Dive |