Vulnerabilities
Vulnerable Software
Security Vulnerabilities
Improper session invalidation in the component /library/change-password.php of PHPGurukul Online Library Management System v3.0 allows attackers to execute a session hijacking attack.
CVSS Score
7.1
EPSS Score
0.0
Published
2025-07-28
Improper session invalidation in the component /srms/change-password.php of PHPGurukul Student Result Management System v2.0 allows attackers to execute a session hijacking attack.
CVSS Score
7.5
EPSS Score
0.001
Published
2025-07-28
In JetBrains TeamCity before 2025.07 password exposure was possible via command line in the "hg pull" command
CVSS Score
5.5
EPSS Score
0.0
Published
2025-07-28
In JetBrains TeamCity before 2025.07 improper access control allowed disclosure of build settings via VCS configuration
CVSS Score
4.3
EPSS Score
0.0
Published
2025-07-28
In JetBrains TeamCity before 2025.07 reflected XSS was possible on the agentpushPreset page
CVSS Score
4.8
EPSS Score
0.0
Published
2025-07-28
In JetBrains TeamCity before 2025.07 password reset and email verification tokens were using weak hashing algorithms
CVSS Score
5.8
EPSS Score
0.0
Published
2025-07-28
In JetBrains TeamCity before 2025.07 a CSRF was possible on GraphQL endpoint
CVSS Score
5.4
EPSS Score
0.0
Published
2025-07-28
In JetBrains TeamCity before 2025.07 user credentials were stored in plain text in memory snapshots
CVSS Score
5.5
EPSS Score
0.0
Published
2025-07-28
In JetBrains TeamCity before 2025.07 a CSRF was possible in external OAuth login integration
CVSS Score
3.7
EPSS Score
0.0
Published
2025-07-28
In JetBrains TeamCity before 2025.07 privilege escalation was possible due to incorrect directory permissions
CVSS Score
7.5
EPSS Score
0.0
Published
2025-07-28


Contact Us

Shodan ® - All rights reserved