0.0

CVE-2025-61716 -

Not used

πŸ“… Published: Sept. 30, 2025, 2:50 p.m. πŸ”„ Last Modified: Oct. 1, 2025, 2:55 a.m.

0.0

CVE-2025-61717 -

Not used

πŸ“… Published: Sept. 30, 2025, 2:50 p.m. πŸ”„ Last Modified: Oct. 1, 2025, 2:55 a.m.

0.0

CVE-2025-61714 -

Not used

πŸ“… Published: Sept. 30, 2025, 2:50 p.m. πŸ”„ Last Modified: Oct. 1, 2025, 2:55 a.m.

5.2

CVSS3.1

CVE-2025-57852 - Openshift-ai: privilege escalation via excessive /etc/passwd permissions

A container privilege escalation flaw was found in KServe ModelMesh container images. This issue stems from the /etc/passwd file being created with group-writable permissions during build time. In certain conditions, an attacker who can execute commands within an affected container, even as a non-r…

πŸ“… Published: Sept. 30, 2025, 2:37 p.m. πŸ”„ Last Modified: Sept. 30, 2025, 2:37 p.m.

0.0

CVE-2025-9232 - Out-of-bounds read in HTTP client no_proxy handling

Issue summary: An application using the OpenSSL HTTP client API functions may trigger an out-of-bounds read if the 'no_proxy' environment variable is set and the host portion of the authority component of the HTTP URL is an IPv6 address. Impact summary: An out-of-bounds read can trigger a crash wh…

πŸ“… Published: Sept. 30, 2025, 1:17 p.m. πŸ”„ Last Modified: Sept. 30, 2025, 2:15 p.m.

0.0

CVE-2025-9231 - Timing side-channel in SM2 algorithm on 64 bit ARM

Issue summary: A timing side-channel which could potentially allow remote recovery of the private key exists in the SM2 algorithm implementation on 64 bit ARM platforms. Impact summary: A timing side-channel in SM2 signature computations on 64 bit ARM platforms could allow recovering the private k…

πŸ“… Published: Sept. 30, 2025, 1:17 p.m. πŸ”„ Last Modified: Sept. 30, 2025, 2:15 p.m.

0.0

CVE-2025-9230 - Out-of-bounds read & write in RFC 3211 KEK Unwrap

Issue summary: An application trying to decrypt CMS messages encrypted using password based encryption can trigger an out-of-bounds read and write. Impact summary: This out-of-bounds read may trigger a crash which leads to Denial of Service for an application. The out-of-bounds write can cause a m…

πŸ“… Published: Sept. 30, 2025, 1:17 p.m. πŸ”„ Last Modified: Sept. 30, 2025, 2:15 p.m.

10

CVSS4.0

CVE-2025-34217 - Vasion Print (formerly PrinterLogic) Undocumented Hardcoded SSH Key

Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA/SaaS deployments) contain an undocumented 'printerlogic' user with a hardcoded SSH public key in '~/.ssh/authorized_keys' and a sudoers rule granting the printerlogic_ssh group 'NOPASSWD: ALL'. Possession of the matchin…

πŸ“… Published: Sept. 30, 2025, 1:03 p.m. πŸ”„ Last Modified: Sept. 30, 2025, 1:41 p.m.

0.0

CVE-2025-10859 -

Cookie storage for non-HTML temporary documents was being shared incorrectly with normal browsing content, allowing information from private tabs to escape Incognito mode even after the user closed all tabs This vulnerability affects Firefox for iOS < 143.1.

πŸ“… Published: Sept. 30, 2025, 12:49 p.m. πŸ”„ Last Modified: Sept. 30, 2025, 1:38 p.m.

0.0

CVE-2025-11153 - firefox: From CVEorg collector

This vulnerability affects Firefox < 143.0.3.

πŸ“… Published: Sept. 30, 2025, 12:49 p.m. πŸ”„ Last Modified: Sept. 30, 2025, 1:15 p.m.
Total resulsts: 312428
Page 30 of 31,243
Β« previous page Β» next page
Filters