| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-49187 | User enumeration | SICK AG | SICK Field Analytics | Medium | 5.3 | 2025-06-12 13:29:46 | Deep Dive |
| CVE-2025-49186 | No brute-force protection | SICK AG | Field Analytics | Medium | 5.3 | 2025-06-12 13:27:43 | Deep Dive |
| CVE-2025-49185 | Stored Cross-Site-Script | SICK AG | SICK Field Analytics | Medium | 5.5 | 2025-06-12 13:25:43 | Deep Dive |
| CVE-2025-49184 | Information disclosure to unauthorized user | SICK AG | Field Analytics | High | 7.5 | 2025-06-12 13:24:07 | Deep Dive |
| CVE-2025-0923 | IBM Cognos Analytics information disclosure | IBM | Cognos Analytics | Medium | 5.3 | 2025-06-11 17:28:58 | Deep Dive |
| CVE-2025-0917 | IBM Cognos Analytics cross-site scripting | IBM | Cognos Analytics | Medium | 5.5 | 2025-06-11 17:27:50 | Deep Dive |
| CVE-2025-25032 | IBM Cognos Analytics denial of service | IBM | Cognos Analytics | High | 7.5 | 2025-06-11 17:26:36 | Deep Dive |
| CVE-2025-33005 | IBM Planning Analytics Local session fixation | IBM | Planning Analytics Local | Medium | 6.3 | 2025-06-01 11:39:07 | Deep Dive |
| CVE-2025-33004 | IBM Planning Analytics Local path traversal | IBM | Planning Analytics Local | Medium | 6.5 | 2025-06-01 11:37:51 | Deep Dive |
| CVE-2025-2896 | IBM Planning Analytics Local cross-site scripting | IBM | Planning Analytics Local | Medium | 4.8 | 2025-06-01 11:36:20 | Deep Dive |
| CVE-2025-25044 | IBM Planning Analytics Local cross-site scripting | IBM | Planning Analytics Local | Medium | 5.4 | 2025-06-01 11:35:22 | Deep Dive |
| CVE-2025-20257 | Cisco Secure Network Analytics API Authorization Vulnerability | Cisco | Cisco Secure Network Analytics | Medium | 6.5 | 2025-05-21 16:20:06 | Deep Dive |
| CVE-2025-20256 | Cisco Secure Network Analytics Manager Server-Side Template Injection Vulnerability | Cisco | Cisco Secure Network Analytics | Medium | 6.5 | 2025-05-21 16:19:58 | Deep Dive |
| CVE-2024-12561 | Affiliate Sales in Google Analytics and other tools <= 2.0.0 - Open Redirect | wecantrack | Affiliate Sales in Google Analytics and other tools | Medium | 6.1 | 2025-05-21 09:21:52 | Deep Dive |
| CVE-2025-1245 | Bypass Connection Restriction Vulnerability in Hitachi Ops Center Analyzer | Hitachi | Hitachi Infrastructure Analytics Advisor | Medium | 6.5 | 2025-05-16 06:08:03 | Deep Dive |
| CVE-2025-3953 | WP Statistics – The Most Popular Privacy-Friendly Analytics Plugin <= 14.13.3 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Settings Update | veronalabs | WP Statistics – Simple, privacy-friendly Google Analytics alternative | Medium | 5.4 | 2025-04-30 05:23:09 | Deep Dive |
| CVE-2025-46497 | WordPress Navegg Analytics plugin <= 3.3.3 - Cross Site Request Forgery (CSRF) vulnerability | Navegg | Navegg Analytics | High | 7.1 | 2025-04-24 16:08:52 | Deep Dive |
| CVE-2025-1697 | HP Touchpoint Analytics Service – Potential Escalation of Privilege | HP, Inc. | HP Touchpoint Analytics Service | 中危 | - | 2025-04-18 17:43:54 | Deep Dive |
| CVE-2025-24907 | Hitachi Vantara Pentaho Data Integration & Analytics – Path Traversal | Hitachi Vantara | Pentaho Data Integration & Analytics | Medium | 6.8 | 2025-04-16 22:39:16 | Deep Dive |
| CVE-2025-24911 | Hitachi Vantara Pentaho Business Analytics Server - Improper Restriction of XML External Entity Reference | Hitachi Vantara | Pentaho Business Analytics Server | Medium | 4.9 | 2025-04-16 22:35:11 | Deep Dive |