Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
CVE-2025-4428 vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2025-4428
Remote Code Execution in API component in Ivanti Endpoint Manager Mobile 12.5.0.0 and prior on unspecified platforms allows authenticated malicious users to execute arbitrary code via crafted API requests.
Ivanti Endpoint Manager Mobile
Ivanti Endpoint Manager Mobile 12.5.0.0
2 Github repositories
6 Articles
7.3
CVSSv3
CVE-2025-35036
Hibernate Validator prior to 6.2.0 and 7.0.0, by default and depending how it is used, may interpolate user-supplied input in a constraint violation message with Expression Language. This could allow an malicious user to access sensitive information or execute arbitrary Java code...
Hibernate Hibernate Validator
7.5
CVSSv3
CVE-2025-4427
An authentication bypass in the API component of Ivanti Endpoint Manager Mobile 12.5.0.0 and prior allows malicious users to access protected resources without proper credentials via the API.
Ivanti Endpoint Manager Mobile
Ivanti Endpoint Manager Mobile 12.5.0.0
2 Github repositories
5 Articles
Preferred Score:
CVSSv3
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
CVE-2025-4278
updatenavi
fujitsu client computing limited
CVE-2025-32465
CVE-2025-49184
ibm
CVE-2025-4275
file upload
CVE-2025-33073
sick ag
file inclusion
CVE-2025-26383
unspecified
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started