5.5

CVSS3.1

CVE-2025-40005 - spi: cadence-quadspi: Implement refcount to handle unbind during busy

In the Linux kernel, the following vulnerability has been resolved: spi: cadence-quadspi: Implement refcount to handle unbind during busy driver support indirect read and indirect write operation with assumption no force device removal(unbind) operation. However force device removal(removal) is s…

πŸ“… Published: Oct. 20, 2025, midnight πŸ”„ Last Modified: March 25, 2026, 11:16 a.m.

6.1

CVSS3.1

CVE-2025-61454 -

A Cross-Site Scripting (XSS) vulnerability exists in Bhabishya-123 E-commerce 1.0, specifically within the search endpoint. Unsanitized input in the /search parameter is directly reflected back into the response HTML, allowing attackers to execute arbitrary JavaScript in the browser of a user who v…

πŸ“… Published: Oct. 20, 2025, midnight πŸ”„ Last Modified: Oct. 28, 2025, 10:24 a.m.

5.5

CVSS3.1

CVE-2025-40015 - media: stm32-csi: Fix dereference before NULL check

In the Linux kernel, the following vulnerability has been resolved: media: stm32-csi: Fix dereference before NULL check In 'stm32_csi_start', 'csidev->s_subdev' is dereferenced directly while assigning a value to the 'src_pad'. However the same value is being checked against NULL at a later point…

πŸ“… Published: Oct. 20, 2025, midnight πŸ”„ Last Modified: Dec. 1, 2025, 6:16 a.m.

6.8

CVSS3.1

CVE-2025-60856 -

Reolink Video Doorbell WiFi DB_566128M5MP_W allows root shell access through an unsecured UART/serial console. An attacker with physical access can connect to the exposed interface and execute arbitrary commands with root privileges. NOTE: this is disputed by the Supplier because of "certain restri…

πŸ“… Published: Oct. 20, 2025, midnight πŸ”„ Last Modified: Oct. 21, 2025, 7:31 p.m.

7.0

CVSS3.1

CVE-2025-40009 - fs/proc/task_mmu: check p->vec_buf for NULL

In the Linux kernel, the following vulnerability has been resolved: fs/proc/task_mmu: check p->vec_buf for NULL When the PAGEMAP_SCAN ioctl is invoked with vec_len = 0 reaches pagemap_scan_backout_range(), kernel panics with null-ptr-deref: [ 44.936808] Oops: general protection fault, probably…

πŸ“… Published: Oct. 20, 2025, midnight πŸ”„ Last Modified: Oct. 21, 2025, 7:31 p.m.

9.8

CVSS3.1

CVE-2025-54957 -

An issue was discovered in Dolby UDC 4.5 through 4.13. A crash of the DD+ decoder process can occur when a malformed DD+ bitstream is processed. When Evolution data is processed by evo_priv.c from the DD+ bitstream, the decoder writes that data into a buffer. The length calculation for a write can …

πŸ“… Published: Oct. 20, 2025, midnight πŸ”„ Last Modified: Feb. 26, 2026, 4:57 p.m.

8.8

CVSS3.1

CVE-2025-61417 -

Cross-Site Scripting (XSS) vulnerability exists in TastyIgniter 3.7.7, affecting the /admin/media_manager component. Attackers can upload a malicious SVG file containing JavaScript code. When an administrator previews the file, the code executes in their browser context, allowing the attacker to pe…

πŸ“… Published: Oct. 20, 2025, midnight πŸ”„ Last Modified: Nov. 12, 2025, 5:32 p.m.

6.2

CVSS3.1

CVE-2025-54764 -

Mbed TLS before 3.6.5 allows a local timing attack against certain RSA operations, and direct calls to mbedtls_mpi_mod_inv or mbedtls_mpi_gcd.

πŸ“… Published: Oct. 20, 2025, midnight πŸ”„ Last Modified: Oct. 31, 2025, 3:09 p.m.

7.5

CVSS3.1

CVE-2025-26782 -

An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 9110, W920, W930, Modem 5123, and Modem 5300. Incorrect handling of RLC AM PDUs leads to a Denial of Service.

πŸ“… Published: Oct. 20, 2025, midnight πŸ”„ Last Modified: Oct. 28, 2025, 7:35 p.m.

5.5

CVSS3.1

CVE-2025-40012 - net/smc: fix warning in smc_rx_splice() when calling get_page()

In the Linux kernel, the following vulnerability has been resolved: net/smc: fix warning in smc_rx_splice() when calling get_page() smc_lo_register_dmb() allocates DMB buffers with kzalloc(), which are later passed to get_page() in smc_rx_splice(). Since kmalloc memory is not page-backed, this tr…

πŸ“… Published: Oct. 20, 2025, midnight πŸ”„ Last Modified: Oct. 21, 2025, 7:31 p.m.
Total resulsts: 343932
Page 2846 of 34,394
Β« previous page Β» next page
Filters