6.5

CVSS3.1

CVE-2023-47310 -

A misconfiguration in the default settings of MikroTik RouterOS 7 and fixed in v7.14 allows incoming IPv6 UDP traceroute packets.

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7

CVSS3.1

CVE-2025-45143 -

string-math v1.2.2 was discovered to contain a Regex Denial of Service (ReDoS) which is exploited via a crafted input.

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: Oct. 18, 2025, 1:41 a.m.

5.8

CVSS3.1

CVE-2025-52491 -

Akamai CloudTest before 60 2025.06.09 (12989) allows SSRF.

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2025-45931 -

An issue D-Link DIR-816-A2 DIR-816A2_FWv1.10CNB05_R1B011D88210 allows a remote attacker to execute arbitrary code via system() function in the bin/goahead file

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: July 13, 2025, 9:48 p.m.

2.8

CVSS3.1

CVE-2025-32462 - sudo: LPE via host option

Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 8:18 p.m.

5.5

CVSS3.1

CVE-2025-38089 - sunrpc: handle SVC_GARBAGE during svc auth processing as auth error

In the Linux kernel, the following vulnerability has been resolved: sunrpc: handle SVC_GARBAGE during svc auth processing as auth error tianshuo han reported a remotely-triggerable crash if the client sends a kernel RPC server a specially crafted packet. If decoding the RPC reply fails in such a …

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: Nov. 19, 2025, 12:56 p.m.

9.3

CVSS3.1

CVE-2025-32463 - sudo: LPE via chroot option

Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: Feb. 26, 2026, 5:50 p.m.

5.5

CVSS3.1

CVE-2025-38090 - drivers/rapidio/rio_cm.c: prevent possible heap overwrite

In the Linux kernel, the following vulnerability has been resolved: drivers/rapidio/rio_cm.c: prevent possible heap overwrite In riocm_cdev_ioctl(RIO_CM_CHAN_SEND) -> cm_chan_msg_send() -> riocm_ch_send() cm_chan_msg_send() checks that userspace didn't send too much data but riocm_ch_s…

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: Dec. 17, 2025, 6:13 p.m.

5.3

CVSS3.1

CVE-2025-6920 - Ai-inference-server: authentication bypass via unprotected inference endpoint in api

A flaw was found in the authentication enforcement mechanism of a model inference API in ai-inference-server. All /v1/* endpoints are expected to enforce API key validation. However, the POST /invocations endpoint failed to do so, resulting in an authentication bypass. This vulnerability allows una…

πŸ“… Published: June 30, 2025, midnight πŸ”„ Last Modified: Nov. 20, 2025, 8:59 p.m.

5.3

CVSS4.0

CVE-2025-6877 - SourceCodester Best Salon Management System edit-category.php sql injection

A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been classified as critical. This affects an unknown part of the file /panel/edit-category.php. The manipulation of the argument editid leads to sql injection. It is possible to initiate the attack remotely. The ex…

πŸ“… Published: June 29, 2025, 11:32 p.m. πŸ”„ Last Modified: July 1, 2025, 7:09 p.m.
Total resulsts: 349182
Page 4840 of 34,919
Β« previous page Β» next page
Filters