8.8

CVSS3.1

CVE-2025-46407 -

A memory corruption vulnerability exists in the BMPv3 Palette Decoding functionality of the SAIL Image Decoding Library v0.9.8. When loading a specially crafted .bmp file, an integer overflow can be made to occur which will cause a heap-based buffer to overflow when reading the palette from the imaโ€ฆ

๐Ÿ“… Published: Aug. 25, 2025, 2:17 p.m. ๐Ÿ”„ Last Modified: Nov. 3, 2025, 7:16 p.m.

8.8

CVSS3.1

CVE-2025-32468 -

A memory corruption vulnerability exists in the BMPv3 Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When loading a specially crafted .bmp file, an integer overflow can be made to occur when calculating the stride for decoding. Afterwards, this will cause a heap-based buffeโ€ฆ

๐Ÿ“… Published: Aug. 25, 2025, 2:17 p.m. ๐Ÿ”„ Last Modified: Nov. 3, 2025, 7:15 p.m.

8.8

CVSS3.1

CVE-2025-35984 -

A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decoding the image data from a specially crafted .pcx file, a heap-based buffer overflow can occur which allows for remote code execution. An attacker will need to convinโ€ฆ

๐Ÿ“… Published: Aug. 25, 2025, 2:17 p.m. ๐Ÿ”„ Last Modified: Nov. 3, 2025, 7:15 p.m.

8.8

CVSS3.1

CVE-2025-53510 -

A memory corruption vulnerability exists in the PSD Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When loading a specially crafted .psd file, an integer overflow can be made to occur when calculating the stride for decoding. Afterwards, this will cause a heap-based buffer โ€ฆ

๐Ÿ“… Published: Aug. 25, 2025, 2:17 p.m. ๐Ÿ”„ Last Modified: Nov. 3, 2025, 7:16 p.m.

8.8

CVSS3.1

CVE-2025-53085 -

A memory corruption vulnerability exists in the PSD RLE Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decompressing the image data from a specially crafted .psd file, a heap-based buffer overflow can occur which allows for remote code execution. An attacker will need to conโ€ฆ

๐Ÿ“… Published: Aug. 25, 2025, 2:17 p.m. ๐Ÿ”„ Last Modified: Nov. 3, 2025, 7:16 p.m.

8.8

CVSS3.1

CVE-2025-50129 -

A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decoding the image data from a specially crafted .tga file, a heap-based buffer overflow can occur which allows for remote code execution. An attacker will need to convinโ€ฆ

๐Ÿ“… Published: Aug. 25, 2025, 2:17 p.m. ๐Ÿ”„ Last Modified: Nov. 3, 2025, 7:16 p.m.

8.8

CVSS3.1

CVE-2025-52930 -

A memory corruption vulnerability exists in the BMPv3 RLE Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decompressing the image data from a specially crafted .bmp file, a heap-based buffer overflow can occur which allows for remote code execution. An attacker will need to cโ€ฆ

๐Ÿ“… Published: Aug. 25, 2025, 2:17 p.m. ๐Ÿ”„ Last Modified: Nov. 3, 2025, 7:16 p.m.

8.8

CVSS3.1

CVE-2025-52456 -

A memory corruption vulnerability exists in the WebP Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When loading a specially crafted .webp animation an integer overflow can be made to occur when calculating the stride for decoding. Afterwards, this will cause a heap-based bโ€ฆ

๐Ÿ“… Published: Aug. 25, 2025, 2:17 p.m. ๐Ÿ”„ Last Modified: Nov. 3, 2025, 7:16 p.m.

8.7

CVSS4.0

CVE-2025-54370 - PhpSpreadsheet vulnerable to SSRF when reading and displaying a processed HTML document in the browโ€ฆ

PhpOffice/PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet files. Prior to versions 1.30.0, 2.1.12, 2.4.0, 3.10.0, and 5.0.0, SSRF can occur when a processed HTML document is read and displayed in the browser. The vulnerability lies in the setPath method of the PhpOffice\Phpโ€ฆ

๐Ÿ“… Published: Aug. 25, 2025, 2:08 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2025-26467 - Apache Cassandra: User with MODIFY permission on ALL KEYSPACES can escalate privileges to superuserโ€ฆ

Privilege Defined With Unsafe Actions vulnerability in Apache Cassandra. An user with MODIFY permission ON ALL KEYSPACES can escalate privileges to superuser within a targeted Cassandra cluster via unsafe actions to a system resource. Operators granting data MODIFY permission on all keyspaces on afโ€ฆ

๐Ÿ“… Published: Aug. 25, 2025, 2:06 p.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 5:48 p.m.
Total resulsts: 349182
Page 4146 of 34,919
ยซ previous page ยป next page
Filters