9.1

CVSS3.1

CVE-2025-45006 -

Improper mstatus.SUM bit retention (non-zero) in Open-Source RISC-V Processor commit f517abb violates privileged spec constraints, enabling potential physical memory access attacks.

๐Ÿ“… Published: July 1, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.7

CVSS3.1

CVE-2025-52294 -

Insufficient validation of the screen lock mechanism in Trust Wallet v8.45 allows physically proximate attackers to bypass the lock screen and view the wallet balance.

๐Ÿ“… Published: July 1, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2025-45081 -

Misconfigured settings in IITB SSO v1.1.0 allow attackers to access sensitive application data.

๐Ÿ“… Published: July 1, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2025-50641 - Buffer Overflow in Tenda AC6 WiFi MAC Filter Function

Tenda AC6 15.03.05.16_multi is vulnerable to Buffer Overflow in the addWifiMacFilter function via the parameter deviceId.

๐Ÿ“… Published: July 1, 2025, midnight ๐Ÿ”„ Last Modified: April 20, 2026, 10:30 p.m.

5.3

CVSS3.1

CVE-2025-50404 -

Intelbras RX1500 Router v2.2.17 and before is vulnerable to Integer Overflow. The websReadEvent function incorrectly uses the int type when processing the "command" field of the http header, causing the array to cross the boundary and overwrite other fields in the array.

๐Ÿ“… Published: July 1, 2025, midnight ๐Ÿ”„ Last Modified: Aug. 20, 2025, 5:05 p.m.

9.8

CVSS3.1

CVE-2025-45872 -

zrlog v3.1.5 was discovered to contain a Server-Side Request Forgery (SSRF) via the downloadUrl parameter.

๐Ÿ“… Published: July 1, 2025, midnight ๐Ÿ”„ Last Modified: Aug. 14, 2025, 8:52 p.m.

8.8

CVSS3.1

CVE-2025-45080 -

DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

๐Ÿ“… Published: July 1, 2025, midnight ๐Ÿ”„ Last Modified: July 10, 2025, 8:39 p.m.

6.5

CVSS3.1

CVE-2025-50405 -

Intelbras RX1500 Router v2.2.17 and before is vulnerable to Incorrect Access Control in the FirmwareUpload function and GetFirmwareValidation function.

๐Ÿ“… Published: July 1, 2025, midnight ๐Ÿ”„ Last Modified: Aug. 20, 2025, 5:05 p.m.

9.8

CVSS3.1

CVE-2025-52101 -

linjiashop <=0.9 is vulnerable to Incorrect Access Control. When using the default-generated JWT authentication, attackers can bypass the authentication and retrieve the encrypted "password" and "salt". The password can then be obtained through brute-force cracking.

๐Ÿ“… Published: July 1, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.1

CVSS3.1

CVE-2025-45083 -

Incorrect access control in Ullu (Android version v2.9.929 and IOS version v2.8.0) allows attackers to bypass parental pin feature via unspecified vectors.

๐Ÿ“… Published: July 1, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 4831 of 34,919
ยซ previous page ยป next page
Filters