ZeroHour

Vulnerabilities

2 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2025-70821
renren-secuity before v5.5.0 is vulnerable to SQL Injection in the BaseServiceImpl.java component

renren-secuity before v5.5.0 is vulnerable to SQL Injection in the BaseServiceImpl.java component

NVD description · AI analysis pending
9.8<1% PoC ×2
  • renren renren-security
CVE-2025-3387
A vulnerability classified as problematic has been found in renrenio renren-security up to 5.4.0.

A vulnerability classified as problematic has been found in renrenio renren-security up to 5.4.0. This affects an unknown part of the component JSON Handler. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

NVD description · AI analysis pending
5.1<1% PoC
  • renrenio renren-security