A vulnerability classified as critical was found in pdfme up to 5.4.0. Affected by this vulnerability is an unknown functionality. The manipulation leads to code injection.
This vulnerability is known as CVE-2025-53626. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Gallagher Command Centre Server. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to privilege context switching error.
This vulnerability is handled as CVE-2025-46406. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in code-projects LifeStyle Store 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /success.php. The manipulation of the argument ID leads to sql injection.
This vulnerability is known as CVE-2025-7411. The attack can be launched remotely. Furthermore, there is an exploit available.
A vulnerability has been found in SourceCodester Zoo Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file /admin/templates/animal_form_template.php. The manipulation of the argument msg leads to cross site scripting.
This vulnerability was named CVE-2025-7408. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability has been found in protocolbuffers Python-Protobuf up to 4.25.7/5.29.4/6.31.0 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to uncontrolled recursion.
This vulnerability is known as CVE-2025-4565. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical has been found in code-projects Library System 1.0. This affects an unknown part of the file /user/teacher/profile.php. The manipulation of the argument image leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2025-7413. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in code-projects Library System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /user/student/profile.php. The manipulation of the argument image leads to unrestricted upload.
This vulnerability is handled as CVE-2025-7412. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in Tenda O3V2 1.0.0.12(3880). This vulnerability affects the function fromNetToolGet of the file /goform/setPingInfo of the component httpd. The manipulation of the argument domain leads to os command injection.
This vulnerability was named CVE-2025-7414. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in Tenda O3V2 1.0.0.12(3880). This issue affects the function fromTraceroutGet of the file /goform/getTraceroute of the component httpd. The manipulation of the argument dest leads to command injection.
The identification of this vulnerability is CVE-2025-7415. The attack may be initiated remotely. Furthermore, there is an exploit available.