5.4

CVSS3.1

CVE-2025-45855 -

An arbitrary file upload vulnerability in the component /upload/GoodsCategory/image of erupt v1.12.19 allows attackers to execute arbitrary code via uploading a crafted file.

πŸ“… Published: June 3, 2025, midnight πŸ”„ Last Modified: June 23, 2025, 2:25 p.m.

8.6

CVSS3.1

CVE-2025-23107 -

An issue was discovered in Samsung Mobile Processor Exynos 1480 and 2400. The lack of a length check leads to out-of-bounds writes.

πŸ“… Published: June 3, 2025, midnight πŸ”„ Last Modified: June 6, 2025, 6:49 p.m.

9.1

CVSS3.1

CVE-2025-23097 -

An issue was discovered in Samsung Mobile Processor Exynos 1380. The lack of a length check leads to out-of-bounds writes.

πŸ“… Published: June 3, 2025, midnight πŸ”„ Last Modified: June 6, 2025, 6:45 p.m.

6.5

CVSS3.1

CVE-2025-43923 -

An issue was discovered in ReportController in Unicom Focal Point 7.6.1. A user who has administrative privilege in Focal Point can perform SQL injection via the image parameter during a delete report image operation.

πŸ“… Published: June 3, 2025, midnight πŸ”„ Last Modified: June 9, 2025, 6:05 p.m.

9.8

CVSS3.1

CVE-2025-32105 -

A buffer overflow in the the Sangoma IMG2020 HTTP server through 2.3.9.6 allows an unauthenticated user to achieve remote code execution.

πŸ“… Published: June 3, 2025, midnight πŸ”„ Last Modified: June 18, 2025, 2:15 p.m.

7.5

CVSS3.1

CVE-2025-23100 -

An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400. The absence of a NULL check leads to a Denial of Service.

πŸ“… Published: June 3, 2025, midnight πŸ”„ Last Modified: June 6, 2025, 6:45 p.m.

9.8

CVSS3.1

CVE-2025-44148 -

Cross Site Scripting (XSS) vulnerability in MailEnable before v10 allows a remote attacker to execute arbitrary code via the failure.aspx component

πŸ“… Published: June 3, 2025, midnight πŸ”„ Last Modified: June 9, 2025, 6:04 p.m.

8.8

CVSS3.1

CVE-2025-5068 -

Use after free in Blink in Google Chrome prior to 137.0.7151.68 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

πŸ“… Published: June 2, 2025, 11:36 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 6:27 p.m.

8.8

CVSS3.1

CVE-2025-5419 -

Out of bounds read and write in V8 in Google Chrome prior to 137.0.7151.68 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: June 2, 2025, 11:36 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 6:27 p.m.

6.4

CVSS3.1

CVE-2025-3919 - WordPress Comments Import & Export <= 2.4.3 - Missing Authorization to Authenticated (Subscriber+) …

The WordPress Comments Import & Export plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the save_settings function in all versions up to, and including, 2.4.3. Additionally, the plugin fails to properly sanitize and escape FTP settings par…

πŸ“… Published: June 2, 2025, 10:22 p.m. πŸ”„ Last Modified: April 22, 2026, 1:30 a.m.
Total resulsts: 349182
Page 5196 of 34,919
Β« previous page Β» next page
Filters