8.8

CVSS3.1

CVE-2025-26669 - Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

๐Ÿ“… Published: April 8, 2025, 5:23 p.m. ๐Ÿ”„ Last Modified: Feb. 13, 2026, 7:32 p.m.

7.8

CVSS3.1

CVE-2025-26666 - Windows Media Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.

๐Ÿ“… Published: April 8, 2025, 5:23 p.m. ๐Ÿ”„ Last Modified: Feb. 13, 2026, 7:32 p.m.

7

CVSS3.1

CVE-2025-26665 - Windows upnphost.dll Elevation of Privilege Vulnerability

Sensitive data storage in improperly locked memory in Windows upnphost.dll allows an authorized attacker to elevate privileges locally.

๐Ÿ“… Published: April 8, 2025, 5:23 p.m. ๐Ÿ”„ Last Modified: Feb. 13, 2026, 7:32 p.m.

6.5

CVSS3.1

CVE-2025-26664 - Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

๐Ÿ“… Published: April 8, 2025, 5:23 p.m. ๐Ÿ”„ Last Modified: Feb. 13, 2026, 7:32 p.m.

8.1

CVSS3.1

CVE-2025-26663 - Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.

๐Ÿ“… Published: April 8, 2025, 5:23 p.m. ๐Ÿ”„ Last Modified: Feb. 13, 2026, 7:32 p.m.

0.0

CVE-2025-32279 - WordPress Live Forms plugin <= 4.8.5 - Broken Access Control vulnerability

Missing Authorization vulnerability in Shahjada Live Forms liveforms.This issue affects Live Forms: from n/a through <= 4.8.5.

๐Ÿ“… Published: April 8, 2025, 4:59 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2025-32211 - WordPress Broadstreet plugin <= 1.52.1 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Broadstreet Broadstreet Ads broadstreet allows Stored XSS.This issue affects Broadstreet Ads: from n/a through <= 1.52.1.

๐Ÿ“… Published: April 8, 2025, 4:59 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2025-32164 - WordPress m1.DownloadList plugin <= 0.24 - Sensitive Data Exposure vulnerability

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in maennchen1.de m1.DownloadList m1downloadlist allows Retrieve Embedded Sensitive Data.This issue affects m1.DownloadList: from n/a through <= 0.24.

๐Ÿ“… Published: April 8, 2025, 4:59 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2025-32117 - WordPress Widgetize Pages Light plugin <= 3.0 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in OTWthemes Widgetize Pages Light widgetize-pages-light allows Reflected XSS.This issue affects Widgetize Pages Light: from n/a through <= 3.0.

๐Ÿ“… Published: April 8, 2025, 4:59 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.9

CVSS3.1

CVE-2024-52981 -

An issue was discovered in Elasticsearch, where a large recursion using the Well-KnownText formatted string with nested GeometryCollection objects could cause a stackoverflow.

๐Ÿ“… Published: April 8, 2025, 4:54 p.m. ๐Ÿ”„ Last Modified: Oct. 2, 2025, 3:33 p.m.
Total resulsts: 345215
Page 5567 of 34,522
ยซ previous page ยป next page
Filters