Skip to content

Commit eb5b8eb

Browse files
Sync EUVD catalog: Wed Jul 15 00:32:32 UTC 2026
Signed-off-by: AboutCode Automation <automation@aboutcode.org>
1 parent 1b758e4 commit eb5b8eb

1,080 files changed

Lines changed: 100726 additions & 136 deletions

File tree

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
Lines changed: 44 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,44 @@
1+
{
2+
"id": "EUVD-2024-55651",
3+
"enisaUuid": "392fb60b-dfe2-323c-a71a-dd2a2afcb266",
4+
"description": "For requests that have a body, but reading the body may end up in reading 0 bytes, there is a buffer leak.\nThis is particularly the case for 100-Continue, but any request where the network is slow can leak.",
5+
"datePublished": "Jul 14, 2026, 9:01:53 AM",
6+
"dateUpdated": "Jul 14, 2026, 12:17:11 PM",
7+
"baseScore": 7.5,
8+
"baseScoreVersion": "3.1",
9+
"baseScoreVector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
10+
"references": "https://gitlab.eclipse.org/security/cve-assignment/-/work_items/29\n",
11+
"aliases": "CVE-2024-7708\n",
12+
"assigner": "eclipse",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "66100fe0-5ae8-3047-a7c3-f613bc3bda38",
17+
"product": {
18+
"name": "Eclipse Jetty",
19+
"vendor": {
20+
"name": "Eclipse Foundation"
21+
}
22+
},
23+
"product_version": "11.0.7 <11.0.23"
24+
},
25+
{
26+
"id": "7b7d576a-3f50-3eb3-831d-6961d919da4c",
27+
"product": {
28+
"name": "Eclipse Jetty",
29+
"vendor": {
30+
"name": "Eclipse Foundation"
31+
}
32+
},
33+
"product_version": "10.0.7 <10.0.23"
34+
}
35+
],
36+
"enisaIdVendor": [
37+
{
38+
"id": "15cda752-bea4-3356-8d25-76355a62c68e",
39+
"vendor": {
40+
"name": "Eclipse Foundation"
41+
}
42+
}
43+
]
44+
}
Lines changed: 34 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,34 @@
1+
{
2+
"id": "EUVD-2025-210458",
3+
"enisaUuid": "a6828c48-1747-35e6-9db3-c55495e9ee10",
4+
"description": "The Ultimate Before After Image Slider & Gallery WordPress plugin before 4.7.1 does not escape the value of the BEAF Slider widget's shortcode field before outputting it on the front end (the value is passed through do_shortcode, which echoes non-shortcode content verbatim), allowing users with administrator-level access to store a script that executes in the browser of any visitor who loads a page displaying the widget.",
5+
"datePublished": "Jul 14, 2026, 6:00:01 AM",
6+
"dateUpdated": "Jul 14, 2026, 12:47:58 PM",
7+
"baseScore": 5.4,
8+
"baseScoreVersion": "3.1",
9+
"baseScoreVector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N",
10+
"references": "https://wpscan.com/vulnerability/754f0960-efc8-426f-bb1d-7cceec920910/\n",
11+
"aliases": "GHSA-h7cp-867p-67hq\nCVE-2025-15665\n",
12+
"assigner": "WPScan",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "6b02a319-0294-3e24-985e-4925a7d60414",
17+
"product": {
18+
"name": "Ultimate Before After Image Slider & Gallery",
19+
"vendor": {
20+
"name": "Unknown"
21+
}
22+
},
23+
"product_version": "0 <4.7.1"
24+
}
25+
],
26+
"enisaIdVendor": [
27+
{
28+
"id": "158924f9-4bb4-3e9e-a200-ac1bd4bc6088",
29+
"vendor": {
30+
"name": "Unknown"
31+
}
32+
}
33+
]
34+
}
Lines changed: 34 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,34 @@
1+
{
2+
"id": "EUVD-2025-210459",
3+
"enisaUuid": "77c8d4d2-6314-3749-a162-c530abc7e188",
4+
"description": "A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in SUSE Virtual Machine Driver Pack allows an attacker with the ability to modify the registry to affect the integrity of the driver. We're not aware of a feasible way to exploit this currently.\n\n\n\n\n\n\nThis issue affects Virtual Machine Driver Pack: before e7a602ec232756ead019bdf19d6d3b9d010cc94b.",
5+
"datePublished": "Jul 14, 2026, 7:42:47 AM",
6+
"dateUpdated": "Jul 14, 2026, 12:31:14 PM",
7+
"baseScore": 2.0,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N",
10+
"references": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2025-8412\n",
11+
"aliases": "CVE-2025-8412\nGHSA-5827-wp8x-c8xh\n",
12+
"assigner": "suse",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "219c3df5-f080-3619-a8e2-f8756929f976",
17+
"product": {
18+
"name": "Virtual Machine Driver Pack",
19+
"vendor": {
20+
"name": "SUSE"
21+
}
22+
},
23+
"product_version": "0 <e7a602ec232756ead019bdf19d6d3b9d010cc94b"
24+
}
25+
],
26+
"enisaIdVendor": [
27+
{
28+
"id": "eee912b3-07d4-3eda-8707-13e0261f1d66",
29+
"vendor": {
30+
"name": "SUSE"
31+
}
32+
}
33+
]
34+
}
Lines changed: 184 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,184 @@
1+
{
2+
"id": "EUVD-2025-210460",
3+
"enisaUuid": "e15a568d-dd10-3069-ab18-05789d007d56",
4+
"description": "A vulnerability has been identified in COMOS V10.4.5 (All versions < V10.4.5.0.2), COMOS V10.6 (All versions < V10.6.1), Designcenter NX (All versions < V2512.7000), Simcenter 3D (All versions < V2512.7000), Simcenter Femap V2506 (All versions < V2506.0003), Simcenter Femap V2512 (All versions < V2512.0002), Simcenter Nastran (All versions < V2606), Simcenter STAR-CCM+ (All versions < V2606), Solid Edge SE2025 (All versions < V225.0 Update 13), Solid Edge SE2026 (All versions < V226.0 Update 04), Teamcenter Visualization V2412 (All versions < V2412.0012), Teamcenter Visualization V2506 (All versions < V2506.0009), Teamcenter Visualization V2512 (All versions < V2512.2605), Tecnomatix Plant Simulation V2404 (All versions < V2404.0022), Tecnomatix Plant Simulation V2504 (All versions < V2504.0010), Tecnomatix Process Simulate (All versions < V2606). Untrusted search path in IAM Client SDK may allow an authenticated user to potentially enable escalation of privilege via local access.",
5+
"datePublished": "Jul 14, 2026, 9:19:08 AM",
6+
"dateUpdated": "Jul 14, 2026, 12:16:59 PM",
7+
"baseScore": 8.5,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N",
10+
"references": "https://cert-portal.siemens.com/productcert/html/ssa-288252.html\n",
11+
"aliases": "CVE-2025-40945\nGHSA-fh68-jj27-gphg\n",
12+
"assigner": "siemens",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "0d9ef2fa-d0d7-3532-af10-e3868b9b7bbd",
17+
"product": {
18+
"name": "COMOS V10.6",
19+
"vendor": {
20+
"name": "Siemens"
21+
}
22+
},
23+
"product_version": "0 <V10.6.1"
24+
},
25+
{
26+
"id": "248269c1-2468-358c-b207-8a81d02866c2",
27+
"product": {
28+
"name": "Designcenter NX",
29+
"vendor": {
30+
"name": "Siemens"
31+
}
32+
},
33+
"product_version": "0 <V2512.7000"
34+
},
35+
{
36+
"id": "286d08cc-ce06-390b-a7d3-f063a6006dbf",
37+
"product": {
38+
"name": "Simcenter Femap V2506",
39+
"vendor": {
40+
"name": "Siemens"
41+
}
42+
},
43+
"product_version": "0 <V2506.0003"
44+
},
45+
{
46+
"id": "517fad90-079f-3972-9c07-347d4fedaa2f",
47+
"product": {
48+
"name": "Simcenter 3D",
49+
"vendor": {
50+
"name": "Siemens"
51+
}
52+
},
53+
"product_version": "0 <V2512.7000"
54+
},
55+
{
56+
"id": "6be053cb-4822-3e88-a77d-42c9e9a8a328",
57+
"product": {
58+
"name": "Solid Edge SE2026",
59+
"vendor": {
60+
"name": "Siemens"
61+
}
62+
},
63+
"product_version": "0 <V226.0 Update 04"
64+
},
65+
{
66+
"id": "6dffe250-1e34-3100-bc5d-8984df70957b",
67+
"product": {
68+
"name": "Simcenter STAR-CCM+",
69+
"vendor": {
70+
"name": "Siemens"
71+
}
72+
},
73+
"product_version": "0 <V2606"
74+
},
75+
{
76+
"id": "77417cc5-a799-36c8-97c9-4d484f50c4a8",
77+
"product": {
78+
"name": "Solid Edge SE2025",
79+
"vendor": {
80+
"name": "Siemens"
81+
}
82+
},
83+
"product_version": "0 <V225.0 Update 13"
84+
},
85+
{
86+
"id": "921d5b4a-cca4-3921-8b32-282283c8aaa8",
87+
"product": {
88+
"name": "COMOS V10.4.5",
89+
"vendor": {
90+
"name": "Siemens"
91+
}
92+
},
93+
"product_version": "0 <V10.4.5.0.2"
94+
},
95+
{
96+
"id": "9d0e9a79-f1df-3067-9b28-ff512dea896a",
97+
"product": {
98+
"name": "Simcenter Femap V2512",
99+
"vendor": {
100+
"name": "Siemens"
101+
}
102+
},
103+
"product_version": "0 <V2512.0002"
104+
},
105+
{
106+
"id": "a5991256-261b-31b2-ada9-4796cb060fee",
107+
"product": {
108+
"name": "Teamcenter Visualization V2412",
109+
"vendor": {
110+
"name": "Siemens"
111+
}
112+
},
113+
"product_version": "0 <V2412.0012"
114+
},
115+
{
116+
"id": "a95d8113-d626-38ff-b766-3e2d202a219a",
117+
"product": {
118+
"name": "Tecnomatix Process Simulate",
119+
"vendor": {
120+
"name": "Siemens"
121+
}
122+
},
123+
"product_version": "0 <V2606"
124+
},
125+
{
126+
"id": "b30b9cde-457a-30b5-93b3-85db48ba296d",
127+
"product": {
128+
"name": "Simcenter Nastran",
129+
"vendor": {
130+
"name": "Siemens"
131+
}
132+
},
133+
"product_version": "0 <V2606"
134+
},
135+
{
136+
"id": "daf66035-e8d0-3235-8009-dec7ff452cab",
137+
"product": {
138+
"name": "Tecnomatix Plant Simulation V2404",
139+
"vendor": {
140+
"name": "Siemens"
141+
}
142+
},
143+
"product_version": "0 <V2404.0022"
144+
},
145+
{
146+
"id": "e02531a8-5f11-3a4f-a083-645088ccab19",
147+
"product": {
148+
"name": "Teamcenter Visualization V2506",
149+
"vendor": {
150+
"name": "Siemens"
151+
}
152+
},
153+
"product_version": "0 <V2506.0009"
154+
},
155+
{
156+
"id": "e4adb336-65fd-3c4b-8d8c-ae2947bca3ae",
157+
"product": {
158+
"name": "Tecnomatix Plant Simulation V2504",
159+
"vendor": {
160+
"name": "Siemens"
161+
}
162+
},
163+
"product_version": "0 <V2504.0010"
164+
},
165+
{
166+
"id": "f0ee3c4f-d35d-3d74-86a0-746db5011a44",
167+
"product": {
168+
"name": "Teamcenter Visualization V2512",
169+
"vendor": {
170+
"name": "Siemens"
171+
}
172+
},
173+
"product_version": "0 <V2512.2605"
174+
}
175+
],
176+
"enisaIdVendor": [
177+
{
178+
"id": "96bfede0-1515-37cb-b24d-119ec32336d9",
179+
"vendor": {
180+
"name": "Siemens"
181+
}
182+
}
183+
]
184+
}
Lines changed: 34 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,34 @@
1+
{
2+
"id": "EUVD-2025-210461",
3+
"enisaUuid": "3618bdaa-cd9a-316d-987d-427163ef46b3",
4+
"description": "A denial-of-service issue exists\u00a0in\u00a0\u00a05370/5570\u00a0controllers. This vulnerability could potentially allow a\u00a0remote\u00a0user to\u00a0load an invalid project, causing the device to\u00a0enter\u00a0a\u00a0major non-recoverable fault (MNRF).",
5+
"datePublished": "Jul 14, 2026, 3:03:11 PM",
6+
"dateUpdated": "Jul 14, 2026, 3:26:29 PM",
7+
"baseScore": 9.2,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H",
10+
"references": "https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1781.html\n",
11+
"aliases": "CVE-2025-12011\nGHSA-m6r3-j7p8-mpv6\n",
12+
"assigner": "Rockwell",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "7e0095ab-d241-3179-abe0-1e3d6ad3bcf8",
17+
"product": {
18+
"name": "CompactLogix\u00ae 5370 Compact GuardLogix\u00ae 5370 ControlLogix\u00ae 5570 GuardLogix\u00ae 5570",
19+
"vendor": {
20+
"name": "Rockwell Automation"
21+
}
22+
},
23+
"product_version": "35.015 and earlier"
24+
}
25+
],
26+
"enisaIdVendor": [
27+
{
28+
"id": "a33b2afd-3442-31e3-8478-5083f161636f",
29+
"vendor": {
30+
"name": "Rockwell Automation"
31+
}
32+
}
33+
]
34+
}
Lines changed: 34 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,34 @@
1+
{
2+
"id": "EUVD-2025-210462",
3+
"enisaUuid": "6e4f15f8-cc17-31b2-aa86-1faa19532f6f",
4+
"description": "A denial-of-service issue exists in\u00a05380/5480/5580\u00a0controllers.\u00a0This vulnerability could potentially allow a malicious user to write invalid file data to the controller, causing the device to\u00a0enter a major non-recoverable fault (MNRF).",
5+
"datePublished": "Jul 14, 2026, 3:04:18 PM",
6+
"dateUpdated": "Jul 14, 2026, 3:26:00 PM",
7+
"baseScore": 9.2,
8+
"baseScoreVersion": "4.0",
9+
"baseScoreVector": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H",
10+
"references": "https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1781.html\n",
11+
"aliases": "CVE-2025-12012\nGHSA-3cv6-265j-3gwv\n",
12+
"assigner": "Rockwell",
13+
"epss": 0.0,
14+
"enisaIdProduct": [
15+
{
16+
"id": "69cdc9c7-615e-3070-9ff5-80145873f2e4",
17+
"product": {
18+
"name": "CompactLogix\u00ae 5370 Compact GuardLogix\u00ae 5370 ControlLogix\u00ae 5570 GuardLogix\u00ae 5570",
19+
"vendor": {
20+
"name": "Rockwell Automation"
21+
}
22+
},
23+
"product_version": "V34.012 and earlier V35.011 and earlier"
24+
}
25+
],
26+
"enisaIdVendor": [
27+
{
28+
"id": "85ae0587-e2d1-3c3d-b164-5a30798e768f",
29+
"vendor": {
30+
"name": "Rockwell Automation"
31+
}
32+
}
33+
]
34+
}

0 commit comments

Comments
 (0)