0.0

CVE-2025-67168 -

RiteCMS v3.1.0 was discovered to use insecure encryption to store passwords.

πŸ“… Published: Dec. 17, 2025, midnight πŸ”„ Last Modified: Dec. 17, 2025, 6:18 p.m.

6.1

CVSS3.1

CVE-2025-67170 -

A reflected cross-site scripting (XSS) vulnerability in RiteCMS v3.1.0 allows attackers to execute arbitrary code in the context of a user's browser via a crafted payload.

πŸ“… Published: Dec. 17, 2025, midnight πŸ”„ Last Modified: Dec. 17, 2025, 7:36 p.m.

0.0

CVE-2025-67171 -

Incorrect access control in the /templates/ component of RiteCMS v3.1.0 allows attackers to access sensitive files via directory traversal.

πŸ“… Published: Dec. 17, 2025, midnight πŸ”„ Last Modified: Dec. 17, 2025, 6:21 p.m.

0.0

CVE-2024-46062 -

Miniconda3 macOS installers before 23.11.0-1 contain a local privilege escalation vulnerability when installed outside the user's home directory. During installation, world-writable files are created and executed with root privileges. This flaw allows a local low-privileged user to inject arbitrary…

πŸ“… Published: Dec. 17, 2025, midnight πŸ”„ Last Modified: Dec. 17, 2025, 6:48 p.m.

0.0

CVE-2025-53398 -

The Portrait Dell Color Management application 3.3.8 for Dell monitors has Insecure Permissions,

πŸ“… Published: Dec. 17, 2025, midnight πŸ”„ Last Modified: Dec. 17, 2025, 4:22 p.m.

0.0

CVE-2025-65855 -

The OTA firmware update mechanism in Netun Solutions HelpFlash IoT (firmware v18_178_221102_ASCII_PRO_1R5_50) uses hard-coded WiFi credentials identical across all devices and does not authenticate update servers or validate firmware signatures. An attacker with brief physical access can activate O…

πŸ“… Published: Dec. 17, 2025, midnight πŸ”„ Last Modified: Dec. 17, 2025, 4:11 p.m.

9.9

CVSS3.1

CVE-2025-67164 -

An authenticated arbitrary file upload vulnerability in the /storage/poc.php component of Pagekit CMS v1.0.18 allows attackers to execute arbitrary code via uploading a crafted PHP file.

πŸ“… Published: Dec. 17, 2025, midnight πŸ”„ Last Modified: Dec. 17, 2025, 9:18 p.m.

0.0

CVE-2025-67165 -

An Insecure Direct Object Reference (IDOR) in Pagekit CMS v1.0.18 allows attackers to escalate privileges.

πŸ“… Published: Dec. 17, 2025, midnight πŸ”„ Last Modified: Dec. 17, 2025, 4:41 p.m.

8.8

CVSS3.1

CVE-2025-14766 - chromium-browser: Google Chrome V8: Out-of-bounds read and write leads to heap corruption

Out of bounds read and write in V8 in Google Chrome prior to 143.0.7499.147 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: Dec. 16, 2025, 10:54 p.m. πŸ”„ Last Modified: Dec. 18, 2025, 4:55 a.m.

8.8

CVSS3.1

CVE-2025-14765 - chromium-browser: Chromium: Use after free in WebGPU allows remote attacker to exploit heap corrupt…

Use after free in WebGPU in Google Chrome prior to 143.0.7499.147 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: Dec. 16, 2025, 10:54 p.m. πŸ”„ Last Modified: Dec. 18, 2025, 4:55 a.m.
Total resulsts: 322987
Page 21 of 32,299
Β« previous page Β» next page
Filters