9.8

CVSS3.1

CVE-2025-57118 -

An issue in PHPGurukul Online-Library-Management-System v3.0 allows an attacker to escalate privileges via the index.php

πŸ“… Published: Sept. 15, 2025, midnight πŸ”„ Last Modified: Sept. 18, 2025, 4:48 p.m.

7.1

CVSS3.1

CVE-2022-50333 - fs: jfs: fix shift-out-of-bounds in dbDiscardAG

In the Linux kernel, the following vulnerability has been resolved: fs: jfs: fix shift-out-of-bounds in dbDiscardAG This should be applied to most URSAN bugs found recently by syzbot, by guarding the dbMount. As syzbot feeding rubbish into the bmap descriptor.

πŸ“… Published: Sept. 15, 2025, midnight πŸ”„ Last Modified: Dec. 23, 2025, 1:28 p.m.

7.8

CVSS3.1

CVE-2022-50283 - mtd: core: add missing of_node_get() in dynamic partitions code

In the Linux kernel, the following vulnerability has been resolved: mtd: core: add missing of_node_get() in dynamic partitions code This fixes unbalanced of_node_put(): [ 1.078910] 6 cmdlinepart partitions found on MTD device gpmi-nand [ 1.085116] Creating 6 MTD partitions on "gpmi-nand": […

πŸ“… Published: Sept. 15, 2025, midnight πŸ”„ Last Modified: Dec. 4, 2025, 6:55 p.m.

5.5

CVSS3.1

CVE-2023-53169 - x86/resctrl: Clear staged_config[] before and after it is used

In the Linux kernel, the following vulnerability has been resolved: x86/resctrl: Clear staged_config[] before and after it is used As a temporary storage, staged_config[] in rdt_domain should be cleared before and after it is used. The stale value in staged_config[] could cause an MSR access erro…

πŸ“… Published: Sept. 15, 2025, midnight πŸ”„ Last Modified: Dec. 2, 2025, 7:06 p.m.

7.3

CVSS3.1

CVE-2025-56710 -

A Cross-Site Request Forgery (CSRF) vulnerability was identified in the Profile Page of the PHPGurukul Student-Result-Management-System-Using-PHP-V2.0. This flaw allows an attacker to trick authenticated users into unintentionally modifying their account details. By crafting a malicious HTML page, …

πŸ“… Published: Sept. 15, 2025, midnight πŸ”„ Last Modified: Sept. 20, 2025, 2:51 a.m.

5.5

CVSS3.1

CVE-2023-53183 - kernel: btrfs: exit gracefully if reloc roots don't match

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Sept. 15, 2025, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:43 a.m.

6.1

CVSS3.1

CVE-2025-52344 -

Multiple Cross Site Scripting (XSS) vulnerabilities in input fields in Explorance Blue 8.1.2 allows attackers to inject arbitrary JavaScript code on the user's browser via the Group name and Project Description input fields.

πŸ“… Published: Sept. 15, 2025, midnight πŸ”„ Last Modified: Feb. 5, 2026, 5:03 p.m.

9.8

CVSS3.1

CVE-2025-46408 -

An issue was discovered in the methods push.lite.avtech.com.AvtechLib.GetHttpsResponse and push.lite.avtech.com.Push_HttpService.getNewHttpClient in AVTECH EagleEyes 2.0.0. The methods set ALLOW_ALL_HOSTNAME_VERIFIER, bypassing domain validation.

πŸ“… Published: Sept. 15, 2025, midnight πŸ”„ Last Modified: Oct. 17, 2025, 2:51 p.m.

7.8

CVSS3.1

CVE-2022-50248 - wifi: iwlwifi: mvm: fix double free on tx path.

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix double free on tx path. We see kernel crashes and lockups and KASAN errors related to ax210 firmware crashes. One of the KASAN dumps pointed at the tx path, and it appears there is indeed a way to double-…

πŸ“… Published: Sept. 15, 2025, midnight πŸ”„ Last Modified: Nov. 25, 2025, 2:41 p.m.

5.5

CVSS3.1

CVE-2023-53243 - btrfs: add handling for RAID1C23/DUP to btrfs_reduce_alloc_profile

In the Linux kernel, the following vulnerability has been resolved: btrfs: add handling for RAID1C23/DUP to btrfs_reduce_alloc_profile Callers of `btrfs_reduce_alloc_profile` expect it to return exactly one allocation profile flag, and failing to do so may ultimately result in a WARN_ON and remou…

πŸ“… Published: Sept. 15, 2025, midnight πŸ”„ Last Modified: Jan. 14, 2026, 6:16 p.m.
Total resulsts: 349182
Page 3874 of 34,919
Β« previous page Β» next page
Filters