| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-58580 | Injection via log file | SICK AG | Enterprise Analytics | Medium | 6.5 | 2025-10-06 06:49:28 | Deep Dive |
| CVE-2025-58578 | Unlimited user creation by authorized users | SICK AG | Enterprise Analytics | Low | 3.8 | 2025-10-06 06:47:31 | Deep Dive |
| CVE-2025-9914 | SICK AG Baggage Analytics 安全漏洞 | SICK AG | Baggage Analytics | Medium | 4.3 | 2025-10-06 06:46:00 | Deep Dive |
| CVE-2025-9913 | Cross Site Scripting: Session Hijacking | SICK AG | Baggage Analytics | Medium | 4.5 | 2025-10-06 06:40:50 | Deep Dive |
| CVE-2025-36262 | IBM Planning Analytics Local information disclosure | IBM | Planning Analytics Local | Medium | 4.9 | 2025-09-30 19:42:37 | Deep Dive |
| CVE-2025-36132 | IBM Planning Analytics Local cross-site scripting | IBM | Planning Analytics Local | Medium | 5.4 | 2025-09-30 19:41:20 | Deep Dive |
| CVE-2025-9816 | WP Statistics <= 14.5.4 - Unauthenticated Stored Cross-Site Scripting via User-Agent Header | veronalabs | WP Statistics – Simple, privacy-friendly Google Analytics alternative | High | 7.2 | 2025-09-27 04:26:58 | Deep Dive |
| CVE-2025-57935 | WordPress Bot Block – Stop Spam Referrals in Google Analytics Plugin <= 2.6 - Cross Site Scripting (XSS) Vulnerability | Ricky Dawn | Bot Block – Stop Spam Referrals in Google Analytics | Medium | 5.9 | 2025-09-22 18:25:03 | Deep Dive |
| CVE-2025-59397 | Open Web Analytics Server SQL注入漏洞 | openwebanalytics | Open Web Analytics | Medium | 5.0 | 2025-09-15 00:00:00 | Deep Dive |
| CVE-2025-9635 | Analytics Reduce Bounce Rate <= 2.3 - Cross-Site Request Forgery | ishan001 | Analytics Reduce Bounce Rate | Medium | 4.3 | 2025-09-11 07:24:55 | Deep Dive |
| CVE-2025-9364 | Rockwell Automation FactoryTalk® Analytics™ LogixAI® Exposed Redis DB | Rockwell Automation | FactoryTalk® Analytics™ LogixAI® | - | - | 2025-09-09 12:41:23 | Deep Dive |
| CVE-2025-36174 | IBM Integrated Analytics System file upload | IBM | Integrated Analytics System | High | 8.0 | 2025-08-24 01:21:42 | Deep Dive |
| CVE-2025-52767 | WordPress NetInsight Analytics Implementation Plugin <= 1.0.3 - Cross Site Request Forgery (CSRF) Vulnerability | lisensee | NetInsight Analytics Implementation Plugin | Medium | 4.3 | 2025-08-14 18:22:06 | Deep Dive |
| CVE-2025-52765 | WordPress NetInsight Analytics Implementation Plugin <= 1.0.3 - Cross Site Request Forgery (CSRF) Vulnerability | lisensee | NetInsight Analytics Implementation Plugin | High | 7.1 | 2025-08-14 18:22:06 | Deep Dive |
| CVE-2025-28962 | WordPress Advanced Google Universal Analytics plugin <= 1.0.3 - Broken Access Control to Sensitive Data Exposure vulnerability | stefanoai | Advanced Google Universal Analytics | Medium | 6.5 | 2025-08-14 10:34:35 | Deep Dive |
| CVE-2024-41750 | IBM SmartCloud Analytics - Log Analysis security bypass | IBM | SmartCloud Analytics Log Analysis | Medium | 5.5 | 2025-07-23 11:15:12 | Deep Dive |
| CVE-2024-40682 | IBM SmartCloud Analytics - Log Analysis denial of service | IBM | SmartCloud Analytics Log Analysis | Medium | 6.2 | 2025-07-23 11:14:19 | Deep Dive |
| CVE-2024-40686 | IBM SmartCloud Analytics - Log Analysis HOST header injection | IBM | SmartCloud Analytics Log Analysis | Medium | 5.4 | 2025-07-23 11:12:24 | Deep Dive |
| CVE-2024-41751 | IBM SmartCloud Analytics - Log Analysis security bypass | IBM | SmartCloud Analytics Log Analysis | Medium | 5.5 | 2025-07-23 11:09:44 | Deep Dive |
| CVE-2024-38335 | IBM Security QRadar Network Threat Analytics denial of service | IBM | Security QRadar Network Threat Analytics | Medium | 4.5 | 2025-07-22 17:13:15 | Deep Dive |