VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
> Medium
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2025-01-21
CVE-2025-21550
Vulnerability in the Oracle Financial Services Behavior Detection Platform product of Oracle Financial Services Applications (component: Web UI).
network
low complexity
6.1
6.1
2025-01-21
CVE-2025-21551
Vulnerability in the Oracle Solaris product of Oracle Systems (component: File system).
local
low complexity
6.0
6.0
2025-01-21
CVE-2025-21552
Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator Security).
network
low complexity
6.5
6.5
2025-01-21
CVE-2025-24020
Open Redirect vulnerability in Wegia
WeGIA is a Web manager for charitable institutions.
network
low complexity
wegia
CWE-601
6.1
6.1
2025-01-21
CVE-2025-24457
Information Exposure Through Log Files vulnerability in Jetbrains Youtrack
In JetBrains YouTrack before 2024.3.55417 permanent tokens could be exposed in logs
local
low complexity
jetbrains
CWE-532
5.5
5.5
2025-01-21
CVE-2025-24459
Cross-site Scripting vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2024.12.1 reflected XSS was possible on the Vault Connection page
network
low complexity
jetbrains
CWE-79
6.1
6.1
2025-01-21
CVE-2025-24460
Incorrect Authorization vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2024.12.1 improper access control allowed to see Projects’ names in the agent pool
network
low complexity
jetbrains
CWE-863
4.3
4.3
2025-01-21
CVE-2025-24461
Missing Authorization vulnerability in Jetbrains Teamcity 2024.12.1
In JetBrains TeamCity before 2024.12.1 decryption of connection secrets without proper permissions was possible via Test Connection endpoint
network
low complexity
jetbrains
CWE-862
6.5
6.5
2025-01-21
CVE-2025-24011
Information Exposure Through Discrepancy vulnerability in Umbraco CMS
Umbraco is a free and open source .NET content management system.
network
low complexity
umbraco
CWE-203
5.3
5.3
2025-01-21
CVE-2025-24012
Cross-site Scripting vulnerability in Umbraco CMS
Umbraco is a free and open source .NET content management system.
network
low complexity
umbraco
CWE-79
5.4
5.4
«
Previous
1
2
...
74
75
76
(current)
77
78
...
6972
6973
»
Next