4.8

CVSS4.0

CVE-2025-5167 - Open Asset Import Library Assimp LWOLoader.h GetS0 out-of-bounds

A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been declared as problematic. Affected by this vulnerability is the function LWOImporter::GetS0 in the library assimp/code/AssetLib/LWO/LWOLoader.h. The manipulation of the argument out leads to out-of-bounds read. The attaโ€ฆ

๐Ÿ“… Published: May 26, 2025, 3:31 a.m. ๐Ÿ”„ Last Modified: June 3, 2025, 3:40 p.m.

4.8

CVSS4.0

CVE-2025-5166 - Open Asset Import Library Assimp MDC File Parser MDCLoader.cpp InternReadFile out-of-bounds

A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been classified as problematic. Affected is the function MDCImporter::InternReadFile of the file assimp/code/AssetLib/MDC/MDCLoader.cpp of the component MDC File Parser. The manipulation of the argument pcVerts leads to outโ€ฆ

๐Ÿ“… Published: May 26, 2025, 3 a.m. ๐Ÿ”„ Last Modified: June 3, 2025, 3:40 p.m.

4.8

CVSS4.0

CVE-2025-5165 - Open Asset Import Library Assimp MDCLoader.cpp ValidateSurfaceHeader out-of-bounds

A vulnerability was found in Open Asset Import Library Assimp 5.4.3 and classified as problematic. This issue affects the function MDCImporter::ValidateSurfaceHeader of the file assimp/code/AssetLib/MDC/MDCLoader.cpp. The manipulation of the argument pcSurface2 leads to out-of-bounds read. Attackinโ€ฆ

๐Ÿ“… Published: May 26, 2025, 2:31 a.m. ๐Ÿ”„ Last Modified: June 3, 2025, 3:40 p.m.

6.3

CVSS4.0

CVE-2025-5164 - PerfreeBlog JWT JwtUtil hard-coded key

A vulnerability has been found in PerfreeBlog 4.0.11 and classified as problematic. This vulnerability affects the function JwtUtil of the component JWT Handler. The manipulation leads to use of hard-coded cryptographic key . The attack can be initiated remotely. The complexity of an attack is ratโ€ฆ

๐Ÿ“… Published: May 26, 2025, 2 a.m. ๐Ÿ”„ Last Modified: June 3, 2025, 3:39 p.m.

6.9

CVSS4.0

CVE-2025-5163 - yangshare ๆŠ€ๆœฏๆจๅทฅ warehouseManager ไป“ๅบ“็ฎก็†็ณป็ปŸ access control

A vulnerability, which was classified as problematic, was found in yangshare ๆŠ€ๆœฏๆจๅทฅ warehouseManager ไป“ๅบ“็ฎก็†็ณป็ปŸ 1.0. This affects an unknown part. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be usโ€ฆ

๐Ÿ“… Published: May 26, 2025, 1:31 a.m. ๐Ÿ”„ Last Modified: June 3, 2025, 3:39 p.m.

5.3

CVSS4.0

CVE-2025-5162 - H3C SecCenter SMP-E1114P02 importFile unrestricted upload

A vulnerability, which was classified as critical, has been found in H3C SecCenter SMP-E1114P02 up to 20250513. Affected by this issue is some unknown functionality of the file /safeEvent/importFile/. The manipulation of the argument logGeneralFile/logGeneralFile_2 leads to unrestricted upload. Theโ€ฆ

๐Ÿ“… Published: May 26, 2025, 1 a.m. ๐Ÿ”„ Last Modified: June 3, 2025, 3:39 p.m.

5.3

CVSS4.0

CVE-2025-5161 - H3C SecCenter SMP-E1114P02 download operationDailyOut path traversal

A vulnerability classified as problematic was found in H3C SecCenter SMP-E1114P02 up to 20250513. Affected by this vulnerability is the function operationDailyOut of the file /safeEvent/download. The manipulation of the argument filename leads to path traversal. The attack can be launched remotely.โ€ฆ

๐Ÿ“… Published: May 26, 2025, 12:31 a.m. ๐Ÿ”„ Last Modified: June 3, 2025, 3:38 p.m.

5.3

CVSS4.0

CVE-2025-5160 - H3C SecCenter SMP-E1114P02 download path traversal

A vulnerability classified as problematic has been found in H3C SecCenter SMP-E1114P02 up to 20250513. Affected is the function Download of the file /packetCaptureStrategy/download. The manipulation of the argument Name leads to path traversal. It is possible to launch the attack remotely. The explโ€ฆ

๐Ÿ“… Published: May 26, 2025, midnight ๐Ÿ”„ Last Modified: June 3, 2025, 3:50 p.m.

7.3

CVSS3.1

CVE-2025-48798 - Gimp: multiple use after free in xcf parser

A flaw was found in GIMP when processing XCF image files. If a user opens one of these image files that has been specially crafted by an attacker, GIMP can be tricked into making serious memory errors, potentially leading to crashes and causing use-after-free issues.

๐Ÿ“… Published: May 26, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2025-37992 - net_sched: Flush gso_skb list too during ->change()

In the Linux kernel, the following vulnerability has been resolved: net_sched: Flush gso_skb list too during ->change() Previously, when reducing a qdisc's limit via the ->change() operation, only the main skb queue was trimmed, potentially leaving packets in the gso_skb list. This could result iโ€ฆ

๐Ÿ“… Published: May 26, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 16, 2025, 8:19 p.m.
Total resulsts: 349182
Page 5257 of 34,919
ยซ previous page ยป next page
Filters