7.8

CVSS3.1

CVE-2025-38091 - drm/amd/display: check stream id dml21 wrapper to get plane_id

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: check stream id dml21 wrapper to get plane_id [Why & How] Fix a false positive warning which occurs due to lack of correct checks when querying plane_id in DML21. This fixes the warning when performing a mode1 re…

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: Nov. 20, 2025, 10:07 p.m.

9.8

CVSS3.1

CVE-2025-45814 -

Missing authentication checks in the query.fcgi endpoint of NS3000 v8.1.1.125110 , v7.2.8.124852 , and v7.x and NS2000 v7.02.08 allows attackers to execute a session hijacking attack.

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: Oct. 10, 2025, 7:45 p.m.

6.5

CVSS3.1

CVE-2025-45029 -

WINSTAR WN572HP3 v230525 was discovered to contain a heap overflow via the CONTENT_LENGTH variable at /cgi-bin/upload.cgi.

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.

5

CVSS3.1

CVE-2025-52925 -

In One Identity OneLogin Active Directory Connector before 6.1.5, encryption of the DirectoryToken was mishandled, aka ST-812.

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 3:13 p.m.

5.3

CVSS3.1

CVE-2025-45424 -

Incorrect access control in Xinference before v1.4.0 allows attackers to access the Web GUI without authentication.

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: Oct. 18, 2025, 1:40 a.m.

9.8

CVSS3.1

CVE-2025-45813 -

ENENSYS IPGuard v2 2.10.0 was discovered to contain hardcoded credentials.

πŸ“… Published: July 2, 2025, midnight πŸ”„ Last Modified: Oct. 10, 2025, 7:41 p.m.

8.4

CVSS3.1

CVE-2025-36630 - Local Privilege Escalation

In Tenable Nessus versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could overwrite arbitrary local system files with log content at SYSTEM privilege.

πŸ“… Published: July 1, 2025, 11:11 p.m. πŸ”„ Last Modified: Oct. 15, 2025, 7:52 p.m.

7.4

CVSS3.1

CVE-2025-49741 - Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

No cwe for this issue in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.

πŸ“… Published: July 1, 2025, 10:22 p.m. πŸ”„ Last Modified: Feb. 13, 2026, 7:07 p.m.

0.0

CVE-2025-6992 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: July 1, 2025, 9:30 p.m. πŸ”„ Last Modified: Aug. 30, 2025, 10:19 p.m.

5.4

CVSS3.1

CVE-2025-46259 - WordPress The Plus Addons for Elementor - Pro Plugin < 6.3.7 - Broken Access Control vulnerability

Missing Authorization vulnerability in POSIMYTH Innovation The Plus Addons for Elementor Pro allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects The Plus Addons for Elementor Pro: from n/a before 6.3.7.

πŸ“… Published: July 1, 2025, 7:10 p.m. πŸ”„ Last Modified: July 3, 2025, 3:14 p.m.
Total resulsts: 344055
Page 4310 of 34,406
Β« previous page Β» next page
Filters