4.3

CVSS3.1

CVE-2026-25530 - Kanboard is missing authorization check in getSwimlane API allows cross-project data access

Kanboard is project management software focused on Kanban methodology. Prior to 1.2.50, the getSwimlane API method lacks project-level authorization, allowing authenticated users to access swimlane data from projects they cannot access. This vulnerability is fixed in 1.2.50.

πŸ“… Published: Feb. 10, 2026, 4:47 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 9:42 p.m.

5.7

CVSS3.1

CVE-2026-24885 - Kanboard Affected by Cross-Site Request Forgery (CSRF) via Content-Type Misconfiguration in Project…

Kanboard is project management software focused on Kanban methodology. Prior to 1.2.50, a Cross-Site Request Forgery (CSRF) vulnerability exists in the ProjectPermissionController within the Kanboard application. The application fails to strictly enforce the application/json Content-Type for the ch…

πŸ“… Published: Feb. 10, 2026, 4:40 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 9:42 p.m.

5.4

CVSS4.0

CVE-2025-36522 -

Incorrect default permissions for some Intel(R) Chipset Software before version 10.1.20266.8668 or later. within Ring 3: User Applications may allow an escalation of privilege. System software adversary with an authenticated user combined with a high complexity attack may enable escalation of privi…

πŸ“… Published: Feb. 10, 2026, 4:26 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 9:51 p.m.

5.4

CVSS4.0

CVE-2025-36511 -

Incorrect default permissions for some Intel(R) Memory and Storage Tool before version 2.5.2 within Ring 3: User Applications may allow an escalation of privilege. System software adversary with an authenticated user combined with a high complexity attack may enable escalation of privilege. This re…

πŸ“… Published: Feb. 10, 2026, 4:26 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 9:51 p.m.

5.4

CVSS4.0

CVE-2025-35999 -

Incorrect permission assignment for critical resource for some System Firmware Update Utility (SysFwUpdt) for Intel(R) Server Boards and Intel(R) Server Systems Based before version 16.0.12. within Ring 3: User Applications may allow an escalation of privilege. System software adversary with a priv…

πŸ“… Published: Feb. 10, 2026, 4:26 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 9:51 p.m.

7

CVSS4.0

CVE-2025-35998 -

Missing protection mechanism for alternate hardware interface in the Intel(R) Quick Assist Technology for some Intel(R) Platforms within Ring 0: Kernel may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable escalation …

πŸ“… Published: Feb. 10, 2026, 4:26 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 9:51 p.m.

5.7

CVSS4.0

CVE-2025-35992 -

Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable denial of service. This result may potentially occur via…

πŸ“… Published: Feb. 10, 2026, 4:25 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 9:51 p.m.

2

CVSS4.0

CVE-2025-33030 -

Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable data corruption. This result may potentially oc…

πŸ“… Published: Feb. 10, 2026, 4:25 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 9:51 p.m.

2

CVSS4.0

CVE-2025-32739 -

Improper conditions check in some firmware for some Intel(R) Graphics Drivers and Intel LTS kernels within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable denial of service. This resul…

πŸ“… Published: Feb. 10, 2026, 4:25 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 9:51 p.m.

6.8

CVSS4.0

CVE-2025-32735 -

Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via …

πŸ“… Published: Feb. 10, 2026, 4:25 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 9:51 p.m.
Total resulsts: 332265
Page 35 of 33,227
Β« previous page Β» next page
Filters