5.4

CVSS3.1

CVE-2025-63645 -

A stored cross-site scripting (XSS) vulnerability exists in pH7Software pH7-Social-Dating-CMS 17.9.1 in the application's message system. Unsanitized message content submitted by one user is persisted by the server and later rendered in another user's Inbox view without appropriate context-aware en…

πŸ“… Published: Nov. 12, 2025, midnight πŸ”„ Last Modified: Feb. 13, 2026, 4:42 p.m.

5.5

CVSS3.1

CVE-2025-13193 - Libvirt: information disclosure via world-readable vm snapshots

A flaw was found in libvirt. External inactive snapshots for shut-down VMs are incorrectly created as world-readable, making it possible for unprivileged users to inspect the guest OS contents. This results in an information disclosure vulnerability.

πŸ“… Published: Nov. 12, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 2:06 p.m.

9.8

CVSS3.1

CVE-2025-56385 -

A SQL injection vulnerability exists in the login functionality of WellSky Harmony version 4.1.0.2.83 within the 'xmHarmony.asp' endpoint. User-supplied input to the 'TXTUSERID' parameter is not properly sanitized before being incorporated into a SQL query. Successful authentication may lead to aut…

πŸ“… Published: Nov. 12, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 4:23 p.m.

9.8

CVSS3.1

CVE-2025-64280 -

A SQL Injection Vulnerability in CentralSquare Community Development 19.5.7 allows attackers to inject SQL via the permit_no field.

πŸ“… Published: Nov. 12, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 4:44 p.m.

5.5

CVSS3.1

CVE-2025-40163 - sched/deadline: Stop dl_server before CPU goes offline

In the Linux kernel, the following vulnerability has been resolved: sched/deadline: Stop dl_server before CPU goes offline IBM CI tool reported kernel warning[1] when running a CPU removal operation through drmgr[2]. i.e "drmgr -c cpu -r -q 1" WARNING: CPU: 0 PID: 0 at kernel/sched/cpudeadline.c…

πŸ“… Published: Nov. 12, 2025, midnight πŸ”„ Last Modified: Dec. 1, 2025, 6:19 a.m.

9.8

CVSS3.1

CVE-2025-64281 -

An Authentication Bypass issue in CentralSquare Community Development 19.5.7 allows attackers to access the admin panel without admin credentials.

πŸ“… Published: Nov. 12, 2025, midnight πŸ”„ Last Modified: Dec. 31, 2025, 4:42 p.m.

5.5

CVSS3.1

CVE-2025-40131 - wifi: ath12k: Fix peer lookup in ath12k_dp_mon_rx_deliver_msdu()

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix peer lookup in ath12k_dp_mon_rx_deliver_msdu() In ath12k_dp_mon_rx_deliver_msdu(), peer lookup fails because rxcb->peer_id is not updated with a valid value. This is expected in monitor mode, where RX frames byp…

πŸ“… Published: Nov. 12, 2025, midnight πŸ”„ Last Modified: Dec. 1, 2025, 6:18 a.m.

7.0

CVSS3.1

CVE-2025-40113 - remoteproc: qcom: pas: Shutdown lite ADSP DTB on X1E

In the Linux kernel, the following vulnerability has been resolved: remoteproc: qcom: pas: Shutdown lite ADSP DTB on X1E The ADSP firmware on X1E has separate firmware binaries for the main firmware and the DTB. The same applies for the "lite" firmware loaded by the boot firmware. When preparing…

πŸ“… Published: Nov. 12, 2025, midnight πŸ”„ Last Modified: Dec. 1, 2025, 6:18 a.m.

7.0

CVSS3.1

CVE-2025-40206 - netfilter: nft_objref: validate objref and objrefmap expressions

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_objref: validate objref and objrefmap expressions Referencing a synproxy stateful object from OUTPUT hook causes kernel crash due to infinite recursive calls: BUG: TASK stack guard page was hit at 000000008bda5b8c…

πŸ“… Published: Nov. 12, 2025, midnight πŸ”„ Last Modified: Dec. 1, 2025, 6:20 a.m.

7.0

CVSS3.1

CVE-2025-40204 - sctp: Fix MAC comparison to be constant-time

In the Linux kernel, the following vulnerability has been resolved: sctp: Fix MAC comparison to be constant-time To prevent timing attacks, MACs need to be compared in constant time. Use the appropriate helper function for this.

πŸ“… Published: Nov. 12, 2025, midnight πŸ”„ Last Modified: Dec. 1, 2025, 6:20 a.m.
Total resulsts: 342316
Page 2365 of 34,232
Β« previous page Β» next page
Filters