7.5

CVSS3.1

CVE-2025-57632 -

libsmb2 6.2+ is vulnerable to Buffer Overflow. When processing SMB2 chained PDUs (NextCommand), libsmb2 repeatedly calls smb2_add_iovector() to append to a fixed-size iovec array without checking the upper bound of v->niov (SMB2_MAX_VECTORS=256). An attacker can craft responses with many chained PD…

πŸ“… Published: Sept. 25, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2025-56769 -

An issue was discovered in chinabugotech hutool before 5.8.4 allowing attackers to execute arbitrary expressions that lead to arbitrary method invocation and potentially remote code execution (RCE) via the QLExpressEngine class.

πŸ“… Published: Sept. 25, 2025, midnight πŸ”„ Last Modified: Oct. 3, 2025, 6:37 p.m.

6.5

CVSS3.1

CVE-2025-55556 - tensorflow: Tensorflow inconsistent results

TensorFlow v2.18.0 was discovered to output random results when compiling Embedding, leading to unexpected behavior in the application.

πŸ“… Published: Sept. 25, 2025, midnight πŸ”„ Last Modified: Oct. 3, 2025, 6:08 p.m.

5.3

CVSS3.1

CVE-2025-46149 - torch: PyTorch reachable assertion

In PyTorch before 2.7.0, when inductor is used, nn.Fold has an assertion error.

πŸ“… Published: Sept. 25, 2025, midnight πŸ”„ Last Modified: Oct. 3, 2025, 5:58 p.m.

7.5

CVSS3.1

CVE-2025-57446 -

An issue in O-RAN Near Realtime RIC ric-plt-submgr in the J-Release environment, allows remote attackers to cause a denial of service (DoS) via a crafted request to the Subscription Manager API component.

πŸ“… Published: Sept. 25, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2025-55558 - torch: PyTorch buffer overflow

A buffer overflow occurs in pytorch v2.7.0 when a PyTorch model consists of torch.nn.Conv2d, torch.nn.functional.hardshrink, and torch.Tensor.view-torch.mv() and is compiled by Inductor, leading to a Denial of Service (DoS).

πŸ“… Published: Sept. 25, 2025, midnight πŸ”„ Last Modified: Oct. 3, 2025, 6:06 p.m.

7.5

CVSS3.1

CVE-2025-57317 -

apidoc-core is the core parser library to generate apidoc result following the apidoc-spec. A Prototype Pollution vulnerability in the preProcess function of apidoc-core versions thru 0.15.0 allows attackers to inject properties on Object.prototype via supplying a crafted payload, causing denial of…

πŸ“… Published: Sept. 25, 2025, midnight πŸ”„ Last Modified: Oct. 16, 2025, 3:49 p.m.

5.3

CVSS3.1

CVE-2025-46153 - torch: PyTorch inconsistent results

PyTorch before 3.7.0 has a bernoulli_p decompose function in decompositions.py even though it lacks full consistency with the eager CPU implementation, negatively affecting nn.Dropout1d, nn.Dropout2d, and nn.Dropout3d for fallback_random=True.

πŸ“… Published: Sept. 25, 2025, midnight πŸ”„ Last Modified: Oct. 3, 2025, 5:56 p.m.

7.5

CVSS3.1

CVE-2025-10990 - Rexml: rexml: denial of service via inefficient regex parsing

A flaw was found in REXML. A remote attacker could exploit inefficient regular expression (regex) parsing when processing hex numeric character references (&#x...;) in XML documents. This could lead to a Regular Expression Denial of Service (ReDoS), impacting the availability of the affected compon…

πŸ“… Published: Sept. 25, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.3

CVSS3.1

CVE-2025-59408 -

Flock Safety Bravo Edge AI Compute Device BRAVO_00.00_local_20241017 ships with Secure Boot disabled. This allows an attacker to flash modified firmware with no cryptographic protections.

πŸ“… Published: Sept. 25, 2025, midnight πŸ”„ Last Modified: Oct. 23, 2025, 6:13 p.m.
Total resulsts: 349182
Page 3689 of 34,919
Β« previous page Β» next page
Filters