Post

2026-02-10 Daily Vulns

NEW:

CVEvendor-productdescriptionmetricReferenceurltitleGithubURL 
CVE-2025-6830Xpoda Türkiye Information Technology Inc. - Xpoda StudioImproper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in Xpoda Türkiye Information Technology Inc. Xpoda Studio allows SQL Injection.This issue affects Xpoda Studio: through 09022026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.CVSS3.1: 9.8 - CRITICAL0Exploitation: noneAutomatable: yesTechnical Impact: totalSQLi in Xpoda Türkiye Information Technology’s Xpoda Studiogithub
CVE-2025-10463Birtech Information Technologies Industry and Trade Ltd. Co. - SensewayImproper Authentication vulnerability in Birtech Information Technologies Industry and Trade Ltd. Co. Senseway allows Authentication Abuse.This issue affects Senseway: through 09022026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.CVSS3.1: 7.3 - HIGH0Exploitation: noneAutomatable: yesTechnical Impact: partialImproper Authentication in Birtech Information Technologies’ Sensawaygithub
This post is licensed under CC BY 4.0 by the author.