8.1

CVSS3.1

CVE-2025-30743 -

Vulnerability in the Oracle Lease and Finance Management product of Oracle E-Business Suite (component: Internal Operations). The supported version that is affected is 12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Lease …

📅 Published: July 15, 2025, 7:27 p.m. 🔄 Last Modified: July 29, 2025, 5:29 p.m.

9.1

CVSS4.0

CVE-2025-49827 - Conjur OSS and Secrets Manager, Self-Hosted (formerly Conjur Enterprise) Vulnerable to Bypass of IA…

Conjur provides secrets management and application identity for infrastructure. Conjur OSS versions 1.19.5 through 1.22.0 and Secrets Manager, Self-Hosted (formerly known as Conjur Enterprise) 13.1 through 13.5 and 13.6 are vulnerable to bypass of the IAM authenticator. An attacker who can manipula…

📅 Published: July 15, 2025, 7:26 p.m. 🔄 Last Modified: Nov. 4, 2025, 10:16 p.m.

5.5

CVSS3.1

CVE-2025-30739 -

Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.2.11-12.2.13. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle CRM Technic…

📅 Published: July 15, 2025, 7:25 p.m. 🔄 Last Modified: July 29, 2025, 5:29 p.m.

7.1

CVSS3.1

CVE-2025-41239 - vSockets information-disclosure vulnerability

VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of an uninitialised memory in vSockets. A malicious actor with local administrative privileges on a virtual machine may be able to exploit this issue to leak memory from processes co…

📅 Published: July 15, 2025, 6:35 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

9.3

CVSS3.1

CVE-2025-41238 - PVSCSI heap-overflow vulnerability

VMware ESXi, Workstation, and Fusion contain a heap-overflow vulnerability in the PVSCSI (Paravirtualized SCSI) controller that leads to an out of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine'…

📅 Published: July 15, 2025, 6:34 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

9.3

CVSS3.1

CVE-2025-41237 - VMCI integer-underflow vulnerability

VMware ESXi, Workstation, and Fusion contain an integer-underflow in VMCI (Virtual Machine Communication Interface) that leads to an out-of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX p…

📅 Published: July 15, 2025, 6:34 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

9.3

CVSS3.1

CVE-2025-41236 - VMXNET3 integer-overflow vulnerability

VMware ESXi, Workstation, and Fusion contain an integer-overflow vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on a virtual machine with VMXNET3 virtual network adapter may exploit this issue to execute code on the host. Non VMXNET3 vir…

📅 Published: July 15, 2025, 6:34 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

1.3

CVSS4.0

CVE-2025-53903 - The Scratch Channel Has Potential Cross-Site Scripting (XSS) Vulnerability

The Scratch Channel is a news website that is under development as of time of this writing. The file `/api/users.js` doesn't properly sanitize text box inputs, leading to a potential vulnerability to cross-site scripting attacks. Commit 90b39eb56b27b2bac29001abb1a3cac0964b8ddb addresses this issue.

📅 Published: July 15, 2025, 6:22 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2025-7657 -

Use after free in WebRTC in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

📅 Published: July 15, 2025, 6:12 p.m. 🔄 Last Modified: Feb. 26, 2026, 5:50 p.m.

8.8

CVSS3.1

CVE-2025-7656 -

Integer overflow in V8 in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

📅 Published: July 15, 2025, 6:12 p.m. 🔄 Last Modified: Feb. 26, 2026, 5:50 p.m.
Total resulsts: 349182
Page 4640 of 34,919
« previous page » next page
Filters