2

CVSS4.0

CVE-2025-5641 - Radare2 radiff2 cons.c r_cons_is_breaked memory corruption

A vulnerability was found in Radare2 5.9.9. It has been rated as problematic. This issue affects the function r_cons_is_breaked in the library /libr/cons/cons.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. It is possible to launch the attack on the localโ€ฆ

๐Ÿ“… Published: June 5, 2025, 6:31 a.m. ๐Ÿ”„ Last Modified: June 23, 2025, 2:37 p.m.

4.8

CVSS4.0

CVE-2025-5640 - PX4-Autopilot TRAJECTORY_REPRESENTATION_WAYPOINTS Message mavlink_receiver.cpp stack-based overflow

A vulnerability was found in PX4-Autopilot 1.12.3. It has been classified as problematic. This affects the function MavlinkReceiver::handle_message_trajectory_representation_waypoints of the file mavlink_receiver.cpp of the component TRAJECTORY_REPRESENTATION_WAYPOINTS Message Handler. The manipulaโ€ฆ

๐Ÿ“… Published: June 5, 2025, 6 a.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.1

CVSS4.0

CVE-2025-5683 - qt: Qt ICNS Image Crash Vulnerability

When loading a specifically crafted ICNS format image file in QImage then it will trigger a crash.ย This issue affects Qt from versions 6.3.0 through 6.5.9, from 6.6.0 through 6.8.4, 6.9.0. This is fixed in 6.5.10, 6.8.5 and 6.9.1.

๐Ÿ“… Published: June 5, 2025, 5:31 a.m. ๐Ÿ”„ Last Modified: Oct. 15, 2025, 5:06 p.m.

6.9

CVSS4.0

CVE-2025-5639 - PHPGurukul Notice Board System forgot-password.php sql injection

A vulnerability was found in PHPGurukul Notice Board System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /forgot-password.php. The manipulation of the argument email leads to sql injection. The attack may be launched remotely. The exploit has beenโ€ฆ

๐Ÿ“… Published: June 5, 2025, 5:31 a.m. ๐Ÿ”„ Last Modified: June 6, 2025, 8:12 p.m.

8.1

CVSS3.1

CVE-2025-3055 - WP User Frontend Pro <= 4.1.3 - Authenticated (Subscriber+) Arbitrary File Deletion

The WP User Frontend Pro plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the delete_avatar_ajax() function in all versions up to, and including, 4.1.3. This makes it possible for authenticated attackers, with Subscriber-level access and abovโ€ฆ

๐Ÿ“… Published: June 5, 2025, 5:23 a.m. ๐Ÿ”„ Last Modified: April 21, 2026, 8:30 p.m.

8.8

CVSS3.1

CVE-2025-3054 - WP User Frontend Pro <= 4.1.3 - Authenticated (Subscriber+) Arbitrary File Upload

The WP User Frontend Pro plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the upload_files() function in all versions up to, and including, 4.1.3. This makes it possible for authenticated attackers, with Subscriber-level access and above, to uploadโ€ฆ

๐Ÿ“… Published: June 5, 2025, 5:23 a.m. ๐Ÿ”„ Last Modified: April 21, 2026, 8:30 p.m.

5.3

CVSS4.0

CVE-2025-5638 - PHPGurukul Notice Board System admin-profile.php sql injection

A vulnerability has been found in PHPGurukul Notice Board System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin-profile.php. The manipulation of the argument mobilenumber leads to sql injection. The attack can be launched remotely. The โ€ฆ

๐Ÿ“… Published: June 5, 2025, 5 a.m. ๐Ÿ”„ Last Modified: June 6, 2025, 8:12 p.m.

9.1

CVSS3.1

CVE-2025-1793 - SQL Injection in run-llama/llama_index

Multiple vector store integrations in run-llama/llama_index version v0.12.21 have SQL injection vulnerabilities. These vulnerabilities allow an attacker to read and write data using SQL, potentially leading to unauthorized access to data of other users depending on the usage of the llama-index librโ€ฆ

๐Ÿ“… Published: June 5, 2025, 4:54 a.m. ๐Ÿ”„ Last Modified: July 30, 2025, 9:29 p.m.

6.9

CVSS4.0

CVE-2025-5637 - PCMan FTP Server SYSTEM Command buffer overflow

A vulnerability, which was classified as critical, was found in PCMan FTP Server 2.0.7. Affected is an unknown function of the component SYSTEM Command Handler. The manipulation leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and โ€ฆ

๐Ÿ“… Published: June 5, 2025, 4:31 a.m. ๐Ÿ”„ Last Modified: June 24, 2025, 3:49 p.m.

6.9

CVSS4.0

CVE-2025-5636 - PCMan FTP Server SET Command buffer overflow

A vulnerability, which was classified as critical, has been found in PCMan FTP Server 2.0.7. This issue affects some unknown processing of the component SET Command Handler. The manipulation leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the publicโ€ฆ

๐Ÿ“… Published: June 5, 2025, 4:31 a.m. ๐Ÿ”„ Last Modified: June 24, 2025, 3:49 p.m.
Total resulsts: 349182
Page 5168 of 34,919
ยซ previous page ยป next page
Filters