7.8

CVSS3.1

CVE-2025-10934 - GIMP XWD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

GIMP XWD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or …

πŸ“… Published: Oct. 29, 2025, 7:58 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:56 p.m.

7.8

CVSS3.1

CVE-2025-11465 - Ashlar-Vellum Cobalt CO File Parsing Use-After-Free Remote Code Execution Vulnerability

Ashlar-Vellum Cobalt CO File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this vulnerability in that the target must visit a…

πŸ“… Published: Oct. 29, 2025, 7:44 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 9:28 p.m.

7.8

CVSS3.1

CVE-2025-11464 - Ashlar-Vellum Cobalt CO File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

Ashlar-Vellum Cobalt CO File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this vulnerability in that the target …

πŸ“… Published: Oct. 29, 2025, 7:43 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 9:27 p.m.

7.8

CVSS3.1

CVE-2025-11463 - Ashlar-Vellum Cobalt XE File Parsing Integer Overflow Remote Code Execution Vulnerability

Ashlar-Vellum Cobalt XE File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this vulnerability in that the target must visit…

πŸ“… Published: Oct. 29, 2025, 7:43 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 9:25 p.m.

4.9

CVSS3.0

CVE-2025-11466 - Allegra DatabaseBackupBL Directory Traversal Information Disclosure Vulnerability

Allegra DatabaseBackupBL Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Allegra. Authentication is required to exploit this vulnerability. The specific flaw exists within the Databa…

πŸ“… Published: Oct. 29, 2025, 7:42 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2025-11200 - MLflow Weak Password Requirements Authentication Bypass Vulnerability

MLflow Weak Password Requirements Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of MLflow. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of passwords. T…

πŸ“… Published: Oct. 29, 2025, 7:42 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:56 p.m.

9.8

CVSS3.1

CVE-2025-11201 - MLflow Tracking Server Model Creation Directory Traversal Remote Code Execution Vulnerability

MLflow Tracking Server Model Creation Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MLflow Tracking Server. Authentication is not required to exploit this vulnerability. The specific flaw e…

πŸ“… Published: Oct. 29, 2025, 7:37 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:56 p.m.

9.8

CVSS3.0

CVE-2025-11202 - win-cli-mcp-server resolveCommandPath Command Injection Remote Code Execution Vulnerability

win-cli-mcp-server resolveCommandPath Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of win-cli-mcp-server. Authentication is not required to exploit this vulnerability. The specific flaw exists …

πŸ“… Published: Oct. 29, 2025, 7:36 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.0

CVE-2025-9870 - Razer Synapse 3 RazerPhilipsHueUninstall Link Following Local Privilege Escalation Vulnerability

Razer Synapse 3 RazerPhilipsHueUninstall Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Razer Synapse 3. An attacker must first obtain the ability to execute low-privileged code on the target sys…

πŸ“… Published: Oct. 29, 2025, 7:34 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:56 p.m.

7.8

CVSS3.0

CVE-2025-9871 - Razer Synapse 3 Chroma Connect Link Following Local Privilege Escalation Vulnerability

Razer Synapse 3 Chroma Connect Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Razer Synapse 3. An attacker must first obtain the ability to execute low-privileged code on the target system in ord…

πŸ“… Published: Oct. 29, 2025, 7:33 p.m. πŸ”„ Last Modified: Nov. 6, 2025, 7:34 p.m.
Total resulsts: 349182
Page 3221 of 34,919
Β« previous page Β» next page
Filters