9.3

CVSS4.0

CVE-2023-7311 - BYTEVALUE Intelligent Flow Control Router Command Injection

BYTEVALUE Intelligent Flow Control Router contains a command injection vulnerability via the /goform/webRead/open endpoint.Β The `path` parameter is not properly validated and is echoed into a shell context, allowing an attacker to inject and execute arbitrary shell commands on the device. Successfu…

πŸ“… Published: Oct. 15, 2025, 1:19 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2025-54268 - Bridge | Heap-based Buffer Overflow (CWE-122)

Bridge versions 14.1.8, 15.1.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: Oct. 15, 2025, 1:07 a.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:57 p.m.

5.5

CVSS3.1

CVE-2025-54278 - Bridge | Heap-based Buffer Overflow (CWE-122)

Bridge versions 14.1.8, 15.1.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a …

πŸ“… Published: Oct. 15, 2025, 1:07 a.m. πŸ”„ Last Modified: Oct. 20, 2025, 1:27 p.m.

7.8

CVSS3.1

CVE-2025-61804 - Animate | Heap-based Buffer Overflow (CWE-122)

Animate versions 23.0.13, 24.0.10 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: Oct. 15, 2025, 12:18 a.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:57 p.m.

7.8

CVSS3.1

CVE-2025-54279 - Animate | Use After Free (CWE-416)

Animate versions 23.0.13, 24.0.10 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: Oct. 15, 2025, 12:18 a.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:57 p.m.

5.5

CVSS3.1

CVE-2025-54269 - Animate | Out-of-bounds Read (CWE-125)

Animate versions 23.0.13, 24.0.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction in that a vict…

πŸ“… Published: Oct. 15, 2025, 12:18 a.m. πŸ”„ Last Modified: Oct. 20, 2025, 1:29 p.m.

5.5

CVSS3.1

CVE-2025-54270 - Animate | NULL Pointer Dereference (CWE-476)

Animate versions 23.0.13, 24.0.10 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive memory information. Exploitation of this issue requires user interaction in that a victim mu…

πŸ“… Published: Oct. 15, 2025, 12:18 a.m. πŸ”„ Last Modified: Oct. 20, 2025, 1:29 p.m.

7.0

CVSS3.1

CVE-2025-39979 - net/mlx5: fs, fix UAF in flow counter release

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: fs, fix UAF in flow counter release Fix a kernel trace [1] caused by releasing an HWS action of a local flow counter in mlx5_cmd_hws_delete_fte(), where the HWS action refcount and mutex were not initialized and the cou…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.0

CVSS3.1

CVE-2025-39992 - mm: swap: check for stable address space before operating on the VMA

In the Linux kernel, the following vulnerability has been resolved: mm: swap: check for stable address space before operating on the VMA It is possible to hit a zero entry while traversing the vmas in unuse_mm() called from swapoff path and accessing it causes the OOPS: Unable to handle kernel N…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2025-39990 - bpf: Check the helper function is valid in get_helper_proto

In the Linux kernel, the following vulnerability has been resolved: bpf: Check the helper function is valid in get_helper_proto kernel test robot reported verifier bug [1] where the helper func pointer could be NULL due to disabled config option. As Alexei suggested we could check on that in get…

πŸ“… Published: Oct. 15, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 3413 of 34,919
Β« previous page Β» next page
Filters