Complete feed
Security advisories & CVEs
7 advisories across 32 monitored vendors.
Android app · Google Play
Take your CVE monitoring with you.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Medium [CVE-2025-57788] Unauthorized API Access Risk
A vulnerability in a known login mechanism allows unauthenticated attackers to execute API calls without requiring user credentials. RBAC helps limit the exposure but does not eliminate risk.CVSS Score: 6.9 Medium Commvault Software The following versions are impacted. Versions that are not listed are either out of support or unaffected. To view version support lifecyle, see Platform Release Schedule and Lifecycles. Product Platforms Affected Versions Resolved Version Status Commvault Linux, Windows 11.32.0 - 11.32.101 11.32.102 Resolved Commvault Linux, Windows 11.36.0 - 11.36.59 11.36.60 Resolved
Medium [CVE-2025-57791] Argument Injection Vulnerability in CommServe
Argument Injection Vulnerability in CommServe
Medium [CVE-2025-57789] Vulnerability in Initial Administrator Login Process
Vulnerability in Initial Administrator Login Process
Medium SQL Injection Vulnerability
Save as PDF A security vulnerability has been identified in the CommServe and Web Server installation that allows a remote SQL Injection attack without authentication. Other installations in the same system are not compromised by this vulnerability.CVSS Score: 5.5
Medium DLL Injection Vulnerability in the Software Installation Path
DLL Injection Vulnerability in the Software Installation Path
Medium Security vulnerability in Windows access nodes that are used for file server data protection
Security vulnerability in Windows access nodes that are used for file server data protection
Medium Authentication Bypass Vulnerabilities on CVWebService Endpoint
Authentication Bypass Vulnerabilities on CVWebService Endpoint