Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-03-03 CVE-2024-41770 Insufficiently Protected Credentials vulnerability in IBM Engineering Requirements Management Doors Next 7.0.2/7.0.3/7.1
IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote attacker to download temporary files which could expose application logic or other sensitive information.
network
low complexity
ibm CWE-522
7.5
2025-03-03 CVE-2024-41771 Insufficiently Protected Credentials vulnerability in IBM Engineering Requirements Management Doors Next 7.0.2/7.0.3/7.1
IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote attacker to download temporary files which could expose application logic or other sensitive information.
network
low complexity
ibm CWE-522
7.5
2025-03-03 CVE-2024-43169 Download of Code Without Integrity Check vulnerability in IBM Engineering Requirements Management Doors Next 7.0.2/7.0.3/7.1
IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a user to download a malicious file without verifying the integrity of the code.
network
low complexity
ibm CWE-494
6.5
2025-03-03 CVE-2025-0555 Cross-site Scripting vulnerability in Gitlab
A Cross Site Scripting (XSS) vulnerability in GitLab-EE affecting all versions from 16.6 prior to 17.7.6, 17.8 prior to 17.8.4, and 17.9 prior to 17.9.1 allows an attacker to bypass security controls and execute arbitrary scripts in a users browser under specific conditions.
network
low complexity
gitlab CWE-79
6.1
2025-03-03 CVE-2025-24023 Response Discrepancy Information Exposure vulnerability in Dpgaspar Flask-Appbuilder
Flask-AppBuilder is an application development framework.
network
low complexity
dpgaspar CWE-204
5.3
2025-03-03 CVE-2025-25185 Link Following vulnerability in Binary-Husky GPT Academic
GPT Academic provides interactive interfaces for large language models.
network
low complexity
binary-husky CWE-59
7.5
2025-03-03 CVE-2025-27417 Unspecified vulnerability in Wegia
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users.
network
low complexity
wegia
6.1
2025-03-03 CVE-2025-27418 Unspecified vulnerability in Wegia
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users.
network
low complexity
wegia
5.4
2025-03-03 CVE-2025-27419 Allocation of Resources Without Limits or Throttling vulnerability in Wegia
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users.
network
low complexity
wegia CWE-770
7.5
2025-03-03 CVE-2025-27420 Unspecified vulnerability in Wegia
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users.
network
low complexity
wegia
5.4