A vulnerability described as problematic has been identified in Sanluan PublicCMS up to 5.202506.a. Affected by this issue is some unknown functionality of the file publiccms-parent/publiccms/src/main/webapp/resource/plugins/pdfjs/viewer.html. Executing manipulation of the argument File can lead to open redirect.
This vulnerability appears as CVE-2025-7953. The attack may be performed from a remote location. In addition, an exploit is available.
A patch should be applied to remediate this issue.
A vulnerability was found in Huawei HarmonyOS 5.0.1/5.0.2. It has been classified as critical. The impacted element is an unknown function of the component Virtualization Base Module. Performing manipulation results in time-of-check time-of-use.
This vulnerability is reported as CVE-2025-54655. The attack requires a local approach. No exploit exists.
A vulnerability described as problematic has been identified in Huawei HarmonyOS 5.0.1. Affected by this issue is some unknown functionality of the component Lock Screen Module. Executing manipulation can lead to business logic errors.
This vulnerability is handled as CVE-2025-54606. The physical device can be targeted for the attack. There is not any exploit available.
A vulnerability was found in Huawei HarmonyOS 5.0.1/5.1.0. It has been rated as critical. Affected is an unknown function of the component Screen Management Module. This manipulation causes improper access controls.
This vulnerability is registered as CVE-2025-54608. The attack needs to be launched locally. No exploit is available.
A vulnerability was found in Huawei HarmonyOS 5.0.1/5.1.0. It has been classified as critical. This vulnerability affects unknown code of the component ArkWeb Module. Performing manipulation results in improper certificate validation.
This vulnerability is identified as CVE-2025-54607. The attack can be initiated remotely. There is not any exploit available.
A vulnerability marked as critical has been reported in MaterialX. Affected by this vulnerability is an unknown functionality of the component MTLX XML Parser. Performing manipulation results in stack-based buffer overflow.
This vulnerability was named CVE-2025-53009. The attack may be initiated remotely. In addition, an exploit is available.
A vulnerability described as problematic has been identified in MaterialX. Affected by this issue is the function implGraphOutput of the component MaterialXCore Shader Generation. Executing manipulation can lead to null pointer dereference.
The identification of this vulnerability is CVE-2025-53011. The attack may be launched remotely. Furthermore, there is an exploit available.
Upgrading the affected component is recommended.
A vulnerability classified as problematic has been found in MaterialX. This affects the function getShaderNodes of the file src/MaterialXCore/Material.cpp. The manipulation leads to null pointer dereference.
This vulnerability is referenced as CVE-2025-53010. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
It is recommended to upgrade the affected component.
A vulnerability identified as problematic has been detected in AcademySoftwareFoundation MaterialX up to 1.39.2. Affected is an unknown function of the component MaterialX File Parser. Performing manipulation results in resource consumption.
This vulnerability is reported as CVE-2025-53012. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability was found in grav 1.7.46/1.7.47/1.7.48 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component img Element Handler. The manipulation of the argument onerror results in cross site scripting.
This vulnerability is known as CVE-2025-46198. It is possible to launch the attack remotely. No exploit is available.
A vulnerability categorized as problematic has been discovered in Sanluan PublicCMS up to 5.202506.a. This affects an unknown function of the file publiccms-parent/publiccms/src/main/resources/templates/admin/cmsDiy/preview.html. The manipulation of the argument url results in open redirect.
This vulnerability is cataloged as CVE-2025-7949. The attack may be launched remotely. Furthermore, there is an exploit available.
It is best practice to apply a patch to resolve this issue.