4.8

CVSS4.0

CVE-2025-2206 - aitangbao springboot-manager permission cross site scripting

A vulnerability classified as problematic has been found in aitangbao springboot-manager 3.0. This affects an unknown part of the file /sys/permission. The manipulation of the argument name leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed…

πŸ“… Published: March 11, 2025, 8 p.m. πŸ”„ Last Modified: May 26, 2025, 2:29 a.m.

7.1

CVSS3.1

CVE-2025-23360 -

NVIDIA Nemo Framework contains a vulnerability where a user could cause a relative path traversal issue by arbitrary file write. A successful exploit of this vulnerability may lead to code execution and data tampering.

πŸ“… Published: March 11, 2025, 7:44 p.m. πŸ”„ Last Modified: Sept. 23, 2025, 7:12 p.m.

6.5

CVSS3.1

CVE-2025-23243 -

NVIDIA Riva contains a vulnerability where a user could cause an improper access control issue. A successful exploit of this vulnerability might lead to data tampering or denial of service.

πŸ“… Published: March 11, 2025, 7:43 p.m. πŸ”„ Last Modified: Oct. 16, 2025, 7:27 p.m.

7.3

CVSS3.1

CVE-2025-23242 -

NVIDIA Riva contains a vulnerability where a user could cause an improper access control issue. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, denial of service, or information disclosure.

πŸ“… Published: March 11, 2025, 7:42 p.m. πŸ”„ Last Modified: Oct. 16, 2025, 7:30 p.m.

6.2

CVSS3.1

CVE-2025-27789 - Inefficient RexExp complexity in generated code with .replace when transpiling named capturing grou…

Babel is a compiler for writing next generation JavaScript. When using versions of Babel prior to 7.26.10 and 8.0.0-alpha.17 to compile regular expression named capturing groups, Babel will generate a polyfill for the `.replace` method that has quadratic complexity on some specific replacement patt…

πŸ“… Published: March 11, 2025, 7:09 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.6

CVSS3.1

CVE-2025-27773 - SimpleSAMLphp SAML2 library has incorrect signature verification for HTTP-Redirect binding

The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. Prior to versions 4.17.0 and 5.0.0-alpha.20, there is a signature confusion attack in the HTTPRedirect binding. An attacker with any signed SAMLResponse via the HTTP-Redirect binding can cause the application to accep…

πŸ“… Published: March 11, 2025, 7:04 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.8

CVSS3.1

CVE-2025-27591 -

A privilege escalation vulnerability existed in the Below service prior to v0.9.0 due to the creation of a world-writable directory at /var/log/below. This could have allowed local unprivileged users to escalate to root privileges through symlink attacks that manipulate files such as /etc/shadow.

πŸ“… Published: March 11, 2025, 6:29 p.m. πŸ”„ Last Modified: July 3, 2025, 2:40 p.m.

5.5

CVSS3.1

CVE-2025-24431 - Acrobat Reader | Out-of-bounds Read (CWE-125)

Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires u…

πŸ“… Published: March 11, 2025, 6:10 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:09 p.m.

7.8

CVSS3.1

CVE-2025-27158 - Acrobat Reader | Access of Uninitialized Pointer (CWE-824)

Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must …

πŸ“… Published: March 11, 2025, 6:10 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:09 p.m.

7.8

CVSS3.1

CVE-2025-27161 - Acrobat Reader | Out-of-bounds Read (CWE-125)

Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in …

πŸ“… Published: March 11, 2025, 6:10 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:09 p.m.
Total resulsts: 349182
Page 6375 of 34,919
Β« previous page Β» next page
Filters