An API endpoint allowed access to sensitive files from other users by knowing the UUID of the file that were not intended to be accessible by UUID only.
Publication date: Fri, 19 Dec 2025 12:24:00 +0000
Cyber News related to CVE-2025-14882
CVE-2025-14882 - An API endpoint allowed access to sensitive files from other users by knowing the UUID of the file that were not intended to be accessible by UUID only. ...
5 days ago
CVE-2021-34909 - This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.75. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious ...
3 years ago
CVE-2017-14882 - In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing VENDOR specific action frame in the function lim_process_action_vendor_specific(), a comparison is performed with the ...
7 years ago
CVE-2019-14882 - A vulnerability was found in Moodle 3.7 to 3.7.3, 3.6 to 3.6.7, 3.5 to 3.5.9 and earlier where an open redirect existed in the Lesson edit page. ...
5 years ago
CVE-2020-14882 - Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows ...
10 months ago
CVE-2018-14882 - The ICMPv6 parser in tcpdump before 4.9.3 has a buffer over-read in print-icmp6.c. ...
2 years ago