7

CVSS3.1

CVE-2025-26696 - Crafted email message incorrectly shown as being encrypted

Certain crafted MIME email messages that claimed to contain an encrypted OpenPGP message, which instead contained an OpenPGP signed message, were wrongly shown as being encrypted. This vulnerability was fixed in Thunderbird 136 and Thunderbird 128.8.

πŸ“… Published: March 10, 2025, 6:41 p.m. πŸ”„ Last Modified: April 21, 2026, 10:15 p.m.

5.5

CVSS4.0

CVE-2025-27136 - LocalS3 CreateBucketConfiguration Endpoint XML External Entity (XXE) Injection

LocalS3 is an Amazon S3 mock service for testing and local development. Prior to version 1.21, the LocalS3 service's bucket creation endpoint is vulnerable to XML External Entity (XXE) injection. When processing the CreateBucketConfiguration XML document during bucket creation, the service's XML pa…

πŸ“… Published: March 10, 2025, 6:24 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.1

CVSS3.1

CVE-2024-56188 -

there is a possible way to crash the modem due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: March 10, 2025, 6:19 p.m. πŸ”„ Last Modified: June 27, 2025, 4:12 p.m.

6.6

CVSS3.1

CVE-2024-56187 -

In ppcfw_deny_sec_dram_access of ppcfw.c, there is a possible arbitrary read from TEE memory due to a logic error in the code. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: March 10, 2025, 6:19 p.m. πŸ”„ Last Modified: June 27, 2025, 4:20 p.m.

5.1

CVSS3.1

CVE-2024-56186 -

In closeChannel of secureelementimpl.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: March 10, 2025, 6:19 p.m. πŸ”„ Last Modified: June 27, 2025, 4:21 p.m.

5.1

CVSS3.1

CVE-2024-56185 -

In ProtocolUnsolOnSSAdapter::GetServiceClass() of protocolcalladapter.cpp, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local information disclosure with baseband firmware compromise required. User Interaction is not needed for exploitation.

πŸ“… Published: March 10, 2025, 6:19 p.m. πŸ”„ Last Modified: June 27, 2025, 4:21 p.m.

5.1

CVSS3.1

CVE-2024-56184 -

In static long dev_send of tipc_dev_ql, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: March 10, 2025, 6:19 p.m. πŸ”„ Last Modified: June 27, 2025, 4:21 p.m.

9.3

CVSS3.1

CVE-2025-25306 - Misskey's Incomplete Patch of CVE-2024-52591 Leads to Forgery of Federated Notes

Misskey is an open source, federated social media platform. The patch for CVE-2024-52591 did not sufficiently validate the relation between the `id` and `url` fields of ActivityPub objects. An attacker can forge an object where they claim authority in the `url` field even if the specific ActivityPu…

πŸ“… Published: March 10, 2025, 6:13 p.m. πŸ”„ Last Modified: Nov. 26, 2025, 4:24 p.m.

7.7

CVSS4.0

CVE-2025-22603 - AutoGPT SSRF vulnerability

AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents that automate complex workflows. Versions prior to autogpt-platform-beta-v0.4.2 contains a server-side request forgery (SSRF) vulnerability inside component (or block) `Send Web Request`.…

πŸ“… Published: March 10, 2025, 6:09 p.m. πŸ”„ Last Modified: Jan. 28, 2026, 5:24 p.m.

6.5

CVSS3.1

CVE-2025-1296 - Nomad Exposes Sensitive Workload Identity and Client Secret Token in Audit Logs

Nomad Community and Nomad Enterprise (β€œNomad”) are vulnerable to unintentional exposure of the workload identity token and client secret token in audit logs. This vulnerability, identified as CVE-2025-1296, is fixed in Nomad Community Edition 1.9.7 and Nomad Enterprise 1.9.7, 1.8.11, and 1.7.19.

πŸ“… Published: March 10, 2025, 6:02 p.m. πŸ”„ Last Modified: Dec. 18, 2025, 2:41 p.m.
Total resulsts: 349182
Page 6402 of 34,919
Β« previous page Β» next page
Filters