Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-03-12 CVE-2025-2219 Unrestricted Upload of File with Dangerous Type vulnerability in Lovecards
A vulnerability was found in LoveCards LoveCardsV2 up to 2.3.2 and classified as critical.
network
low complexity
lovecards CWE-434
critical
9.8
2025-03-12 CVE-2025-2215 A vulnerability classified as critical was found in Doufox up to 0.2.0.
network
low complexity
CWE-22
4.7
2025-03-12 CVE-2025-2216 Unrestricted Upload of File with Dangerous Type vulnerability in Zzskzy Warehouse Refinement Management System 1.3
A vulnerability, which was classified as critical, has been found in zzskzy Warehouse Refinement Management System 1.3.
network
low complexity
zzskzy CWE-434
critical
9.8
2025-03-12 CVE-2025-2217 Injection vulnerability in Zzskzy Warehouse Refinement Management System 1.3
A vulnerability, which was classified as critical, was found in zzskzy Warehouse Refinement Management System 1.3.
network
low complexity
zzskzy CWE-74
critical
9.8
2025-03-11 CVE-2025-2212 A vulnerability was found in Castlenet CBW383G2N up to 20250301.
network
low complexity
CWE-94
2.4
2025-03-11 CVE-2025-2213 A vulnerability was found in Castlenet CBW383G2N up to 20250301.
network
low complexity
CWE-94
2.4
2025-03-11 CVE-2025-1707 The Review Schema plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.2.4 via post meta.
network
low complexity
CWE-98
8.8
2025-03-11 CVE-2025-21170 NULL Pointer Dereference vulnerability in Adobe Substance 3D Modeler
Substance3D - Modeler versions 1.15.0 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service.
local
low complexity
adobe CWE-476
5.5
2025-03-11 CVE-2025-27173 Heap-based Buffer Overflow vulnerability in Adobe Substance 3D Modeler
Substance3D - Modeler versions 1.15.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-122
7.8
2025-03-11 CVE-2025-27180 Out-of-bounds Read vulnerability in Adobe Substance 3D Modeler
Substance3D - Modeler versions 1.15.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe CWE-125
5.5