Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jubilian Ho Hong Yi

Researcher fromEnsign InfoSecurity
#21333of 53,639
11.5Total CVSS
Vulnerabilities · 2
Medium
2
PT-2025-39409
5.4
2025-09-25
Ibm · Ibm Watson Studio · CVE-2025-33116
**Name of the Vulnerable Software and Affected Versions** IBM Watson Studio versions 4.0 through 5.2.0 on Cloud Pak for Data **Description** An authenticated user can embed arbitrary JavaScript code in the Web UI, potentially altering intended functionality and leading to credentials disclosure within a trusted session. **Recommendations** Update to a version later than 5.2.0.
PT-2024-22025
6.1
2024-03-17
Unknown · Flusity-Cms · CVE-2024-27757
**Name of the Vulnerable Software and Affected Versions** flusity CMS versions through 2.45 **Description** The issue allows for XSS in the Gallery Name through the tools/addons model.php file. The product has ceased its development as of February 2024. **Recommendations** For versions through 2.45, as a temporary workaround, consider restricting access to the tools/addons model.php file until a resolution is determined, however, since the product has ceased development, there is no information about a newer version that contains a fix for this issue.