7.5

CVSS3.1

CVE-2025-55559 - tensorflow: From CVEorg collector

An issue was discovered TensorFlow v2.18.0. A Denial of Service (DoS) occurs when padding is set to 'valid' in tf.keras.layers.Conv2D.

๐Ÿ“… Published: Sept. 25, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 3, 2025, 6:05 p.m.

5.3

CVSS3.1

CVE-2025-55552 - torch: PyTorch inconsistent results

pytorch v2.8.0 was discovered to display unexpected behavior when the components torch.rot90 and torch.randn_like are used together.

๐Ÿ“… Published: Sept. 25, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 3, 2025, 6:10 p.m.

7.5

CVSS3.1

CVE-2025-55551 - torch: PyTorch denial of service

An issue in the component torch.linalg.lu of pytorch v2.8.0 allows attackers to cause a Denial of Service (DoS) when performing a slice operation.

๐Ÿ“… Published: Sept. 25, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 3, 2025, 5:56 p.m.

6.1

CVSS3.1

CVE-2025-29156 -

Cross Site Scripting vulnerability in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via a crafted script to the /api/v3/pet

๐Ÿ“… Published: Sept. 25, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 14, 2025, 7:42 p.m.

6.5

CVSS3.1

CVE-2025-29155 -

An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via the DELETE endpoint

๐Ÿ“… Published: Sept. 25, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 3, 2025, 6:36 p.m.

5.3

CVSS3.1

CVE-2025-46152 - torch: PyTorch logic error

In PyTorch before 2.7.0, bitwise_right_shift produces incorrect output for certain out-of-bounds values of the "other" argument.

๐Ÿ“… Published: Sept. 25, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 3, 2025, 5:57 p.m.

6.5

CVSS3.1

CVE-2025-29157 -

An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via accessing a non-existent endpoint/cart, the server returns a 404-error page exposing sensitive information including the Servlet name (default) and server version

๐Ÿ“… Published: Sept. 25, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 14, 2025, 7:42 p.m.

5.4

CVSS3.1

CVE-2025-59402 -

Flock Safety Bravo Edge AI Compute Device BRAVO_00.00_local_20241017 accepts the default Thundercomm TurboX 6490 Firehose loader in EDL/QDL mode. This enables attackers with physical access to flash arbitrary firmware, dump partitions, and bypass bootloader and OS security controls.

๐Ÿ“… Published: Sept. 25, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 23, 2025, 6:07 p.m.

8.6

CVSS4.0

CVE-2025-54520 -

Improper Protection Against Voltage and Clock Glitches in FPGA devices, could allow an attacker with physical access to undervolt the platform resulting in a loss of confidentiality.

๐Ÿ“… Published: Sept. 24, 2025, 9:29 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2025-59833 - FlagForgeCTF Hint Exposure via API

Flag Forge is a Capture The Flag (CTF) platform. In versions from 2.1.0 to before 2.3.0, the API endpoint GET /api/problems/:id returns challenge hints in plaintext within the question object, regardless of whether the user has unlocked them via point deduction. Users can view all hints for free, uโ€ฆ

๐Ÿ“… Published: Sept. 24, 2025, 8:25 p.m. ๐Ÿ”„ Last Modified: Oct. 8, 2025, 4:34 p.m.
Total resulsts: 349182
Page 3690 of 34,919
ยซ previous page ยป next page
Filters