Return to the home page
8 new CVEs published on 2025-04-21 (CVSS: 7.3-8.6)

8 new CVEs published on 2025-04-21 (CVSS: 7.3-8.6)

VulnerabilitiesExploitsCybersecuritySoftwareSecurity

CVE IDCVSSDescription
CVE-2025-324088.5In Soffid Console 3.5.38 before 3.5.39, necessary checks were not applied to some Java objects. A malicious agent could possibly execute arbitrary code.
CVE-2025-38277.3A vulnerability has been found in PHPGurukul Men Salon Management System 1.0 and classified as critical.

This vulnerability affects unknown code of the component User Controller.

CVE-2025-38287.3A vulnerability was found in PHPGurukul Men Salon Management System 1.0 and classified as critical. This issue affects some unknown processing of the component User Controller.
CVE-2025-38297.3A vulnerability was found in PHPGurukul Men Salon Management System 1.0.

It has been classified as critical. Affected is an unknown function of the file User Controller.

CVE-2025-439718.6An issue was discovered in GoBGP before 3.35.0. pkg/packet/bgp/bgp.go allows attackers to cause a panic via a zero value for softwareVersionLen.