Pentaho BA Server EE version 9.3.0.0-428 suffers from a remote code execution vulnerability via a server-side template injection flaw.
Bus Pass Management System version 1.0 suffers persistent cross site scripting vulnerabilities.
Citrix versions 22.2.1.103 and 23.1.1.11 suffer from a local privilege escalation vulnerability.
http://tskhos.moph.go.th/web/images/images/xx.jpg notified by B1G0D1N
craftercms 4.x.x – CORS
Purchase Order Management-1.0 – Local File Inclusion
WIMAX SWC-5100W Firmware V(1.11.0.1 :1.9.9.4) – Authenticated RCE
HospitalRun 1.0.0-beta – Local Root Exploit for macOS
Unified Remote 3.13.0 – Remote Code Execution (RCE)
Agilebio Lab Collector Electronic Lab Notebook v4.234 – Remote Code Execution (RCE)