EUVD-2025-21447

DSpace open source software is a repository application which provides durable access to digital resources. Two related XML External Entity (XXE) injection possibilities impact all versions of DSpace ...

Continue Reading
CVE-2025-53895 ZITADEL has broken authN and authZ in session API and resulting session tokens

ZITADEL is an open source identity management system. Starting in version 2.53.0 and prior to versions 4.0.0-rc.2, 3.3.2, 2.71.13, and 2.70.14, vulnerability in ZITADEL's session management API a ...

Continue Reading
EUVD-2025-21448

DSpace open source software is a repository application which provides durable access to digital resources. Prior to versions 7.6.4, 8.2, and 9.1, a path traversal vulnerability is possible during the ...

Continue Reading
CVE-2025-53959

In JetBrains YouTrack before 2025.2.86069, 2024.3.85077, 2025.1.86199 email spoofing via an administrative API was...Read More ...

Continue Reading
CVE-2025-53959

In JetBrains YouTrack before 2025.2.86069, 2024.3.85077, 2025.1.86199 email spoofing via an administrative API was...Read More ...

Continue Reading
CVE-2025-53622 DSpace has path traversal vulnerability in Simple Archive Format (SAF) package import via contents file

DSpace open source software is a repository application which provides durable access to digital resources. Prior to versions 7.6.4, 8.2, and 9.1, a path traversal vulnerability is possible during the ...

Continue Reading
GHSA-XQG6-5WFV-4855

creation_timestamp| type| source ---|---|--- 2025-07-15 15:28:38+00:00| seen|...Read More ...

Continue Reading
CVE-2025-52377

creation_timestamp| type| source ---|---|--- 2025-07-15 14:15:37+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: