Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-04-29 CVE-2025-4058 Unspecified vulnerability in Projectworlds Online Examination System 1.0
A vulnerability classified as critical has been found in Projectworlds Online Examination System 1.0.
network
low complexity
projectworlds
critical
9.8
2025-04-29 CVE-2025-4059 Stack-based Buffer Overflow vulnerability in Code-Projects Prison Management System 1.0
A vulnerability classified as critical was found in code-projects Prison Management System 1.0.
local
low complexity
code-projects CWE-121
7.8
2025-04-29 CVE-2025-3452 Missing Authorization vulnerability in Secupress
The SecuPress Free — WordPress Security plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'secupress_reinstall_plugins_admin_ajax_cb' function in all versions up to, and including, 2.3.9.
network
low complexity
secupress CWE-862
4.3
2025-04-29 CVE-2025-2893 Cross-site Scripting vulnerability in Jegstudio Gutenverse
The Gutenverse – Ultimate Block Addons and Page Builder for Site Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's countdown Block in all versions up to, and including, 2.2.1 due to insufficient input sanitization and output escaping on user supplied attributes.
network
low complexity
jegstudio CWE-79
5.4
2025-04-29 CVE-2025-46329 Information Exposure Through Log Files vulnerability in Snowflake Connector for C/C++
libsnowflakeclient is the Snowflake Connector for C/C++.
local
low complexity
snowflake CWE-532
3.3
2025-04-29 CVE-2025-46330 Improper Following of Specification by Caller vulnerability in Snowflake Connector for C/C++
libsnowflakeclient is the Snowflake Connector for C/C++.
local
low complexity
snowflake CWE-573
3.3
2025-04-29 CVE-2025-46338 Cross-site Scripting vulnerability in Audiobookshelf
Audiobookshelf is a self-hosted audiobook and podcast server.
network
low complexity
audiobookshelf CWE-79
6.1
2025-04-29 CVE-2025-46343 Cross-site Scripting vulnerability in N8N
n8n is a workflow automation platform.
network
low complexity
n8n CWE-79
5.4
2025-04-28 CVE-2025-46326 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Snowflake Connector
snowflake-connector-net is the Snowflake Connector for .NET.
local
high complexity
snowflake CWE-367
7.0
2025-04-28 CVE-2025-46327 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Snowflake Gosnowflake
gosnowflake is the Snowflake Golang driver.
local
high complexity
snowflake CWE-367
7.0