Weekly Vulnerabilities Reports > March 17 to 23, 2025
Overview
288 new vulnerabilities reported during this period, including 62 critical vulnerabilities and 92 high severity vulnerabilities. This weekly summary report vulnerabilities in 90 products from 70 vendors including Phpgurukul, Lunary, Mattermost, Nasa, and Ollama. Vulnerabilities are notably categorized as "Injection", "SQL Injection", "Cross-site Scripting", "Code Injection", and "Incorrect Privilege Assignment".
- 267 reported vulnerabilities are remotely exploitables.
- 87 reported vulnerabilities are related to weaknesses in OWASP Top Ten.
- 180 reported vulnerabilities are exploitable by an anonymous user.
- Phpgurukul has the most reported vulnerabilities, with 24 reported vulnerabilities.
- Phpgurukul has the most reported critical vulnerabilities, with 18 reported vulnerabilities.
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
EXPLOITABLE
EXPLOITABLE
AVAILABLE
ANONYMOUSLY
WEB APPLICATION
Vulnerability Details
The following table list reported vulnerabilities for the period covered by this report:
62 Critical Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2025-03-18 | CVE-2024-56346 | IBM AIX 7.2 and 7.3 nimesis NIM master service could allow a remote attacker to execute arbitrary commands due to improper process controls. | 10.0 | |
2025-03-23 | CVE-2025-2654 | Oretnom23 | Unspecified vulnerability in Oretnom23 AC Repair and Services System 1.0 A vulnerability was found in SourceCodester AC Repair and Services System 1.0. | 9.8 |
2025-03-23 | CVE-2025-2648 | Phpgurukul | SQL Injection vulnerability in PHPgurukul ART Gallery Management System 1.0 A vulnerability classified as critical has been found in PHPGurukul Art Gallery Management System 1.0. | 9.8 |
2025-03-23 | CVE-2025-2649 | Phpgurukul | SQL Injection vulnerability in PHPgurukul Doctor Appointment Management System 1.0.0 A vulnerability classified as critical was found in PHPGurukul Doctor Appointment Management System 1.0. | 9.8 |
2025-03-23 | CVE-2025-2647 | Phpgurukul | SQL Injection vulnerability in PHPgurukul ART Gallery Management System 1.0 A vulnerability was found in PHPGurukul Art Gallery Management System 1.0. | 9.8 |
2025-03-23 | CVE-2025-2646 | Phpgurukul | SQL Injection vulnerability in PHPgurukul ART Gallery Management System 1.0 A vulnerability was found in PHPGurukul Art Gallery Management System 1.0. | 9.8 |
2025-03-23 | CVE-2025-2643 | Phpgurukul | SQL Injection vulnerability in PHPgurukul ART Gallery Management System 1.0 A vulnerability has been found in PHPGurukul Art Gallery Management System 1.0 and classified as critical. | 9.8 |
2025-03-23 | CVE-2025-2644 | Phpgurukul | SQL Injection vulnerability in PHPgurukul ART Gallery Management System 1.0 A vulnerability was found in PHPGurukul Art Gallery Management System 1.0 and classified as critical. | 9.8 |
2025-03-23 | CVE-2025-2642 | Phpgurukul | SQL Injection vulnerability in PHPgurukul ART Gallery Management System 1.0 A vulnerability, which was classified as critical, was found in PHPGurukul Art Gallery Management System 1.0. | 9.8 |
2025-03-23 | CVE-2025-1446 | Podsfoundation | SQL Injection vulnerability in Podsfoundation Pods The Pods WordPress plugin before 3.2.8.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks | 9.8 |
2025-03-23 | CVE-2025-2641 | Phpgurukul | SQL Injection vulnerability in PHPgurukul ART Gallery Management System 1.0 A vulnerability, which was classified as critical, has been found in PHPGurukul Art Gallery Management System 1.0. | 9.8 |
2025-03-23 | CVE-2025-2640 | Phpgurukul | SQL Injection vulnerability in PHPgurukul Doctor Appointment Management System 1.0.0 A vulnerability was found in PHPGurukul Doctor Appointment Management System 1.0 and classified as critical. | 9.8 |
2025-03-22 | CVE-2025-2628 | Phpgurukul | SQL Injection vulnerability in PHPgurukul ART Gallery Management System 1.1 A vulnerability, which was classified as critical, was found in PHPGurukul Art Gallery Management System 1.1. | 9.8 |
2025-03-22 | CVE-2025-2626 | Mayurik | SQL Injection vulnerability in Mayurik Advocate Office Management System 1.0 A vulnerability classified as critical was found in SourceCodester Kortex Lite Advocate Office Management System 1.0. | 9.8 |
2025-03-22 | CVE-2025-2627 | Phpgurukul | SQL Injection vulnerability in PHPgurukul ART Gallery Management System 1.0 A vulnerability, which was classified as critical, has been found in PHPGurukul Art Gallery Management System 1.0. | 9.8 |
2025-03-22 | CVE-2025-2621 | Dlink | Out-of-bounds Write vulnerability in Dlink Dap-1620 Firmware 1.03 A vulnerability was found in D-Link DAP-1620 1.03 and classified as critical. | 9.8 |
2025-03-22 | CVE-2025-30472 | Corosync | Out-of-bounds Write vulnerability in Corosync Corosync through 3.1.9, if encryption is disabled or the attacker knows the encryption key, has a stack-based buffer overflow in orf_token_endian_convert in exec/totemsrp.c via a large UDP packet. | 9.8 |
2025-03-21 | CVE-2025-2589 | Code Projects | Missing Authorization vulnerability in Code-Projects Human Resource Management 1.0.1 A vulnerability was found in code-projects Human Resource Management System 1.0.1 and classified as critical. | 9.8 |
2025-03-21 | CVE-2025-26336 | Dell | Stack-based Buffer Overflow vulnerability in Dell products Dell Chassis Management Controller Firmware for Dell PowerEdge FX2, version(s) prior to 2.40.200.202101130302, and Dell Chassis Management Controller Firmware for Dell PowerEdge VRTX version(s) prior to 3.41.200.202209300499, contain(s) a Stack-based Buffer Overflow vulnerability. | 9.8 |
2025-03-20 | CVE-2025-26852 | Descor | Unspecified vulnerability in Descor Infocad 3.5.1.0 DESCOR INFOCAD 3.5.1 and before and fixed in v.3.5.2.0 allows SQL Injection. | 9.8 |
2025-03-20 | CVE-2025-26853 | Descor | Unspecified vulnerability in Descor Infocad 3.5.1.0 DESCOR INFOCAD 3.5.1 and before and fixed in v.3.5.2.0 has a broken authorization schema. | 9.8 |
2025-03-20 | CVE-2024-12450 | Infiniflow | Server-Side Request Forgery (SSRF) vulnerability in Infiniflow Ragflow 0.12.0 In infiniflow/ragflow versions 0.12.0, the `web_crawl` function in `document_app.py` contains multiple vulnerabilities. | 9.8 |
2025-03-20 | CVE-2024-7773 | Ollama | Unspecified vulnerability in Ollama 0.1.37 A vulnerability in ollama/ollama version 0.1.37 allows for remote code execution (RCE) due to improper input validation in the handling of zip files. | 9.8 |
2025-03-20 | CVE-2024-8156 | Agpt | Unspecified vulnerability in Agpt Autogpt A command injection vulnerability exists in the workflow-checker.yml workflow of significant-gravitas/autogpt. | 9.8 |
2025-03-20 | CVE-2024-8487 | Modelscope | Unspecified vulnerability in Modelscope Agentscope 0.0.4 A Cross-Origin Resource Sharing (CORS) vulnerability exists in modelscope/agentscope version v0.0.4. | 9.8 |
2025-03-20 | CVE-2024-8898 | Lollms | Unspecified vulnerability in Lollms web UI 12 A path traversal vulnerability exists in the `install` and `uninstall` API endpoints of parisneo/lollms-webui version V12 (Strawberry). | 9.8 |
2025-03-20 | CVE-2024-8953 | Composio | Improper Control of Dynamically-Managed Code Resources vulnerability in Composio 0.4.3 In composiohq/composio version 0.4.3, the mathematical_calculator endpoint uses the unsafe eval() function to perform mathematical operations. | 9.8 |
2025-03-20 | CVE-2024-8958 | Composio | Unspecified vulnerability in Composio 0.4.3 In composiohq/composio version 0.4.3, there is an unrestricted file write and read vulnerability in the filetools actions. | 9.8 |
2025-03-20 | CVE-2024-9053 | Vllm Project | OS Command Injection vulnerability in Vllm-Project Vllm 0.6.0 vllm-project vllm version 0.6.0 contains a vulnerability in the AsyncEngineRPCServer() RPC server entrypoints. | 9.8 |
2025-03-20 | CVE-2024-9095 | Lunary | Improper Authorization vulnerability in Lunary 1.4.28 In lunary-ai/lunary version v1.4.28, the /bigquery API route lacks proper access control, allowing any logged-in user to create a Datastream to Google BigQuery and export the entire database. | 9.8 |
2025-03-20 | CVE-2025-0655 | MAN | OS Command Injection vulnerability in MAN D-Tale 3.15.1 A vulnerability in man-group/dtale versions 3.15.1 allows an attacker to override global state settings to enable the `enable_custom_filters` feature, which is typically restricted to trusted environments. | 9.8 |
2025-03-20 | CVE-2024-12016 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CM Informatics CM News allows SQL Injection.This issue affects CM News: through 6.0. NOTE: The vendor was contacted and it was learned that the product is not supported. | 9.8 | |
2025-03-20 | CVE-2025-2505 | The Age Gate plugin for WordPress is vulnerable to Local PHP File Inclusion in all versions up to, and including, 3.5.3 via the 'lang' parameter. | 9.8 | |
2025-03-19 | CVE-2024-13442 | The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 5.0. | 9.8 | |
2025-03-19 | CVE-2025-2512 | The File Away plugin for WordPress is vulnerable to arbitrary file uploads due to a missing capability check and missing file type validation in the upload() function in all versions up to, and including, 3.9.9.0.1. | 9.8 | |
2025-03-19 | CVE-2024-13790 | The MinimogWP – The High Converting eCommerce WordPress Theme theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.7.0 via the 'template' parameter. | 9.8 | |
2025-03-19 | CVE-2024-13410 | The CozyStay and TinySalt plugins for WordPress are vulnerable to PHP Object Injection in all versions up to, and including, 1.7.0, and in all versions up to, and including 3.9.0, respectively, via deserialization of untrusted input in the 'ajax_handler' function. | 9.8 | |
2025-03-19 | CVE-2024-12922 | The Altair theme for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check within functions.php in all versions up to, and including, 5.2.4. | 9.8 | |
2025-03-18 | CVE-2024-8997 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Vestel EVC04 Configuration Interface allows SQL Injection.This issue affects EVC04 Configuration Interface: through 18.03.2025. | 9.8 | |
2025-03-17 | CVE-2025-29911 | Nasa | Out-of-bounds Write vulnerability in Nasa Cryptolib CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. | 9.8 |
2025-03-17 | CVE-2025-29912 | Nasa | Heap-based Buffer Overflow vulnerability in Nasa Cryptolib CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. | 9.8 |
2025-03-17 | CVE-2025-29913 | Nasa | Integer Underflow (Wrap or Wraparound) vulnerability in Nasa Cryptolib CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. | 9.8 |
2025-03-17 | CVE-2025-29909 | Nasa | Unspecified vulnerability in Nasa Cryptolib CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. | 9.8 |
2025-03-17 | CVE-2025-2385 | Code Projects | SQL Injection vulnerability in Code-Projects Modern BAG 1.0 A vulnerability has been found in code-projects Modern Bag 1.0 and classified as critical. | 9.8 |
2025-03-17 | CVE-2025-2386 | Phpgurukul | SQL Injection vulnerability in PHPgurukul Local Services Search Engine Management System 1.0 A vulnerability was found in PHPGurukul Local Services Search Engine Management System 1.0 and classified as critical. | 9.8 |
2025-03-17 | CVE-2025-2383 | Phpgurukul | SQL Injection vulnerability in PHPgurukul Doctor Appointment Management System 1.0.0 A vulnerability, which was classified as critical, has been found in PHPGurukul Doctor Appointment Management System 1.0. | 9.8 |
2025-03-17 | CVE-2025-2381 | Phpgurukul | Injection vulnerability in PHPgurukul Curfew E-Pass Management System 1.0 A vulnerability classified as critical has been found in PHPGurukul Curfew e-Pass Management System 1.0. | 9.8 |
2025-03-17 | CVE-2025-2379 | Phpgurukul | Injection vulnerability in PHPgurukul Apartment Visitors Management System 1.0 A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. | 9.8 |
2025-03-17 | CVE-2025-2380 | Phpgurukul | Injection vulnerability in PHPgurukul Apartment Visitors Management System 1.0 A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. | 9.8 |
2025-03-17 | CVE-2025-2372 | Phpgurukul | Injection vulnerability in PHPgurukul Human Metapneumovirus Testing Management System 1.0 A vulnerability classified as critical has been found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. | 9.8 |
2025-03-17 | CVE-2025-2369 | Totolink | Stack-based Buffer Overflow vulnerability in Totolink Ex1800T Firmware 9.1.0Cu.2112B20220316 A vulnerability was found in TOTOLINK EX1800T up to 9.1.0cu.2112_B20220316. | 9.8 |
2025-03-17 | CVE-2025-2370 | Totolink | Stack-based Buffer Overflow vulnerability in Totolink Ex1800T Firmware 9.1.0Cu.2112B20220316 A vulnerability was found in TOTOLINK EX1800T up to 9.1.0cu.2112_B20220316. | 9.8 |
2025-03-17 | CVE-2025-2395 | The U-Office Force from e-Excellence has an Improper Authentication vulnerability, allowing unauthenticated remote attackers to use a particular API and alter cookies to log in as an administrator. | 9.8 | |
2025-03-17 | CVE-2025-2362 | Phpgurukul | Injection vulnerability in PHPgurukul Pre-School Enrollment System 1.0 A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0. | 9.8 |
2025-03-18 | CVE-2024-56347 | IBM AIX 7.2 and 7.3 nimsh service SSL/TLS protection mechanisms could allow a remote attacker to execute arbitrary commands due to improper process controls. | 9.6 | |
2025-03-21 | CVE-2025-29814 | Improper authorization in Microsoft Partner Center allows an authorized attacker to elevate privileges over a network. | 9.3 | |
2025-03-23 | CVE-2025-2691 | Nossrf Project | Unspecified vulnerability in Nossrf Project Nossrf Versions of the package nossrf before 1.0.4 are vulnerable to Server-Side Request Forgery (SSRF) where an attacker can provide a hostname that resolves to a local or reserved IP address space and bypass the SSRF protection mechanism. | 9.1 |
2025-03-20 | CVE-2024-4990 | Yiiframework | Unspecified vulnerability in Yiiframework YII 2.0.48 In yiisoft/yii2 version 2.0.48, the base Component class contains a vulnerability where the `__set()` magic method does not validate that the value passed is a valid Behavior class name or configuration. | 9.1 |
2025-03-20 | CVE-2024-7776 | Onnx | Unspecified vulnerability in Onnx A vulnerability in the `download_model` function of the onnx/onnx framework, before and including version 1.16.1, allows for arbitrary file overwrite due to inadequate prevention of path traversal attacks in malicious tar files. | 9.1 |
2025-03-20 | CVE-2024-8769 | Aimstack | Path Traversal vulnerability in Aimstack AIM A vulnerability in the `LockManager.release_locks` function in aimhubio/aim (commit bb76afe) allows for arbitrary file deletion through relative path traversal. | 9.1 |
2025-03-18 | CVE-2024-23943 | An unauthenticated remote attacker can gain access to the cloud API due to a lack of authentication for a critical function in the affected devices. | 9.1 | |
2025-03-20 | CVE-2024-7053 | Openwebui | Unspecified vulnerability in Openwebui Open Webui 0.3.8 A vulnerability in open-webui/open-webui version 0.3.8 allows an attacker with a user-level account to perform a session fixation attack. | 9.0 |