9.8

CVSS3.1

CVE-2025-65741 -

Sublime Text 3 Build 3208 or prior for MacOS is vulnerable to Dylib Injection. An attacker could compile a .dylib file and force the execution of this library in the context of the Sublime Text application.

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 9:29 p.m.

5.5

CVSS3.1

CVE-2023-53779 - kernel: mfd: dln2: Fix memory leak in dln2_probe()

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:07 a.m.

5.5

CVSS3.1

CVE-2022-50639 - io-wq: Fix memory leak in worker creation

In the Linux kernel, the following vulnerability has been resolved: io-wq: Fix memory leak in worker creation If the CPU mask allocation for a node fails, then the memory allocated for the 'io_wqe' struct of the current node doesn't get freed on the error handling path, since it has not yet been …

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.3

CVSS3.1

CVE-2025-63740 -

SQL Injection vulnerability in function getselectdataAjax in file inputAction.php in Xinhu Rainrock RockOA 2.7.0 allowing attackers gain sensitive information, including administrator accounts, password hashes, database structure, and other critical data via the actstr parameter.

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 12, 2025, 12:28 p.m.

7.0

CVSS3.1

CVE-2022-50677 - ipmi: fix use after free in _ipmi_destroy_user()

In the Linux kernel, the following vulnerability has been resolved: ipmi: fix use after free in _ipmi_destroy_user() The intf_free() function frees the "intf" pointer so we cannot dereference it again on the next line.

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.0

CVSS3.1

CVE-2023-53795 - iommufd: IOMMUFD_DESTROY should not increase the refcount

In the Linux kernel, the following vulnerability has been resolved: iommufd: IOMMUFD_DESTROY should not increase the refcount syzkaller found a race where IOMMUFD_DESTROY increments the refcount: obj = iommufd_get_object(ucmd->ictx, cmd->id, IOMMUFD_OBJ_ANY); if (IS_ERR(obj)) …

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2025-65287 -

An unauthenticated directory traversal vulnerability in cgi-bin/upload.cgi in SNMP Web Pro 1.1 allows a remote attacker to read arbitrary files. The CGI concatenates the user-supplied params directly onto the base path (/var/www/files/userScript/) using memcpy + strcat without validation or canonic…

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 15, 2025, 8:15 p.m.

5.5

CVSS3.1

CVE-2023-53859 - s390/idle: mark arch_cpu_idle() noinstr

In the Linux kernel, the following vulnerability has been resolved: s390/idle: mark arch_cpu_idle() noinstr linux-next commit ("cpuidle: tracing: Warn about !rcu_is_watching()") adds a new warning which hits on s390's arch_cpu_idle() function: RCU not on for: arch_cpu_idle+0x0/0x28 WARNING: CPU:…

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2025-63742 -

SQL Injection vulnerability in function setwxqyAction in file webmain/task/api/loginAction.php in Xinhu Rainrock RockOA 2.7.0 allowing attackers gain sensitive information, including administrator accounts, password hashes, database structure, and other critical data via the shouji and userid param…

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 12, 2025, 12:27 p.m.

8.1

CVSS3.1

CVE-2025-61075 -

Multiple Incorrect Access Control vulnerabilities in adata Software GmbH Mitarbeiterportal 2.15.2.0 allow remote authenticated, low-privileged users to carry out administrative functions and manipulate data of other users via unauthorized API calls.

πŸ“… Published: Dec. 9, 2025, midnight πŸ”„ Last Modified: Dec. 12, 2025, 2:43 p.m.
Total resulsts: 346536
Page 2498 of 34,654
Β« previous page Β» next page
Filters