5.5

CVSS3.1

CVE-2025-38356 - drm/xe/guc: Explicitly exit CT safe mode on unwind

In the Linux kernel, the following vulnerability has been resolved: drm/xe/guc: Explicitly exit CT safe mode on unwind During driver probe we might be briefly using CT safe mode, which is based on a delayed work, but usually we are able to stop this once we have IRQ fully operational. However, i…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 12:50 p.m.

6.1

CVSS3.1

CVE-2025-45892 -

OpenCart version 4.1.0.4 is vulnerable to a Stored Cross-Site Scripting (XSS) attack via the blog editor. The vulnerability arises because input in the blog's editor is not properly sanitized or escaped before being rendered. This allows attackers to inject malicious JavaScript code

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Aug. 7, 2025, 2:19 p.m.

6.1

CVSS3.1

CVE-2025-51411 -

A reflected cross-site scripting (XSS) vulnerability exists in Institute-of-Current-Students v1.0 via the email parameter in the /postquerypublic endpoint. The application fails to properly sanitize user input before reflecting it in the HTML response. This allows unauthenticated attackers to injec…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Oct. 9, 2025, 7:42 p.m.

5.5

CVSS3.1

CVE-2025-38379 - smb: client: fix warning when reconnecting channel

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix warning when reconnecting channel When reconnecting a channel in smb2_reconnect_server(), a dummy tcon is passed down to smb2_reconnect() with ->query_interface uninitialized, so we can't call queue_delayed_work(…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 8:05 p.m.

7.8

CVSS3.1

CVE-2025-38378 - HID: appletb-kbd: fix slab use-after-free bug in appletb_kbd_probe

In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: fix slab use-after-free bug in appletb_kbd_probe In probe appletb_kbd_probe() a "struct appletb_kbd *kbd" is allocated via devm_kzalloc() to store touch bar keyboard related data. Later on if backlight_device_ge…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 8:05 p.m.

5.5

CVSS3.1

CVE-2025-38373 - IB/mlx5: Fix potential deadlock in MR deregistration

In the Linux kernel, the following vulnerability has been resolved: IB/mlx5: Fix potential deadlock in MR deregistration The issue arises when kzalloc() is invoked while holding umem_mutex or any other lock acquired under umem_mutex. This is problematic because kzalloc() can trigger fs_reclaim_aq…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 7:34 p.m.

5.5

CVSS3.1

CVE-2025-38370 - btrfs: fix failure to rebuild free space tree using multiple transactions

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix failure to rebuild free space tree using multiple transactions If we are rebuilding a free space tree, while modifying the free space tree we may need to allocate a new metadata block group. If we end up using multiple…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Nov. 18, 2025, 7:27 p.m.

5.5

CVSS3.1

CVE-2025-38408 - genirq/irq_sim: Initialize work context pointers properly

In the Linux kernel, the following vulnerability has been resolved: genirq/irq_sim: Initialize work context pointers properly Initialize `ops` member's pointers properly by using kzalloc() instead of kmalloc() when allocating the simulation work context. Otherwise the pointers contain random cont…

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: March 17, 2026, 1:42 p.m.

6.5

CVSS3.1

CVE-2025-45939 -

Apwide Golive 10.2.0 Jira plugin allows Server-Side Request Forgery (SSRF) via the test webhook function.

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: Oct. 10, 2025, 9:43 p.m.

5.5

CVSS3.1

CVE-2025-38426 - drm/amdgpu: Add basic validation for RAS header

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Add basic validation for RAS header If RAS header read from EEPROM is corrupted, it could result in trying to allocate huge memory for reading the records. Add some validation to header fields.

πŸ“… Published: July 25, 2025, midnight πŸ”„ Last Modified: March 25, 2026, 11:16 a.m.
Total resulsts: 349182
Page 4517 of 34,919
Β« previous page Β» next page
Filters