4.3

CVSS3.1

CVE-2025-8579 -

Inappropriate implementation in Picture In Picture in Google Chrome prior to 139.0.7258.66 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

πŸ“… Published: Aug. 7, 2025, 1:30 a.m. πŸ”„ Last Modified: Aug. 8, 2025, 6:24 p.m.

8.8

CVSS3.1

CVE-2025-8578 -

Use after free in Cast in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

πŸ“… Published: Aug. 7, 2025, 1:30 a.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:49 p.m.

4.3

CVSS3.1

CVE-2025-8577 -

Inappropriate implementation in Picture In Picture in Google Chrome prior to 139.0.7258.66 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

πŸ“… Published: Aug. 7, 2025, 1:30 a.m. πŸ”„ Last Modified: Aug. 8, 2025, 6:24 p.m.

8.8

CVSS3.1

CVE-2025-8576 -

Use after free in Extensions in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: Medium)

πŸ“… Published: Aug. 7, 2025, 1:30 a.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:49 p.m.

8.7

CVSS4.0

CVE-2025-29865 -

: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in TAGFREE X-Free Uploader XFU allows Path Traversal.This issue affects X-Free Uploader: from 1.0.1.0084 before 1.0.1.0085, from 2.0.1.0034 before 2.0.1.0035.

πŸ“… Published: Aug. 7, 2025, 1:30 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7

CVSS3.1

CVE-2025-3770 - SMM IDT Privilege Escalation Vulnerability

EDK2 contains a vulnerability in BIOS where an attacker may cause β€œProtection Mechanism Failure” by local access. Successful exploitation of this vulnerability will lead to arbitrary code execution and impact Confidentiality, Integrity, and Availability.

πŸ“… Published: Aug. 7, 2025, 12:42 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.6

CVSS4.0

CVE-2025-54784 - SuiteCRM is vulnerable to Cross Site Scripting (XSS) through its email viewer

SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. There is a Cross Site Scripting (XSS) vulnerability in the email viewer in versions 7.14.0 through 7.14.6. An external attacker could send a prepared message to the inbox of the SuiteCRM-instan…

πŸ“… Published: Aug. 7, 2025, 12:07 a.m. πŸ”„ Last Modified: Aug. 12, 2025, 8:55 p.m.

5.1

CVSS4.0

CVE-2025-54783 - SuiteCRM: Reflected Cross Site Scripting (XSS) through HTTP Referrer header

SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Versions 7.14.6 and below have a Reflected Cross-Site Scripting (XSS) vulnerability. This vulnerability allows an attacker to execute JavaScript code by modifying the HTTP Referer header to inc…

πŸ“… Published: Aug. 7, 2025, 12:05 a.m. πŸ”„ Last Modified: Aug. 12, 2025, 8:56 p.m.

2.5

CVSS3.1

CVE-2025-54798 - tmp does not restrict arbitrary temporary file / directory write via symbolic link `dir` parameter

tmp is a temporary file and directory creator for node.js. In versions 0.2.3 and below, tmp is vulnerable to an arbitrary temporary file / directory write via symbolic link dir parameter. This is fixed in version 0.2.4.

πŸ“… Published: Aug. 7, 2025, 12:04 a.m. πŸ”„ Last Modified: Nov. 3, 2025, 8:19 p.m.

2.3

CVSS4.0

CVE-2025-54799 - Lego does not enforce HTTPS

Let's Encrypt client and ACME library written in Go (Lego). In versions 4.25.1 and below, the github.com/go-acme/lego/v4/acme/api package (thus the lego library and the lego cli as well) don't enforce HTTPS when talking to CAs as an ACME client. Unlike the http-01 challenge which solves an ACME cha…

πŸ“… Published: Aug. 7, 2025, 12:04 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 4376 of 34,919
Β« previous page Β» next page
Filters