3.8

CVSS3.1

CVE-2025-20081 - Communication Dsoftbus has an UAF vulnerability

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free. This vulnerability can be exploited only in restricted scenarios.

πŸ“… Published: March 4, 2025, 3:44 a.m. πŸ”„ Last Modified: March 4, 2025, 7:08 p.m.

5.5

CVSS3.1

CVE-2025-20042 - Liteos-A has an out of bounds read vulnerability

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause information leak through out-of-bounds read.

πŸ“… Published: March 4, 2025, 3:44 a.m. πŸ”„ Last Modified: March 4, 2025, 7:08 p.m.

3.8

CVSS3.1

CVE-2025-20024 - Arkcompiler Ets Runtime has an integer overflow vulnerability

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through integer overflow. This vulnerability can be exploited only in restricted scenarios.

πŸ“… Published: March 4, 2025, 3:44 a.m. πŸ”„ Last Modified: March 4, 2025, 7:08 p.m.

3.3

CVSS3.1

CVE-2025-20021 - Arkcompiler Ets Runtime has an out-of-bounds read vulnerability

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.

πŸ“… Published: March 4, 2025, 3:44 a.m. πŸ”„ Last Modified: March 4, 2025, 7:08 p.m.

3.3

CVSS3.1

CVE-2025-20011 - Communication Dsoftbus has a memory leak vulnerability

in OpenHarmony v5.0.2 and prior versions allow a local attacker case DOS through missing release of memory.

πŸ“… Published: March 4, 2025, 3:44 a.m. πŸ”„ Last Modified: July 12, 2025, 3:26 p.m.

3.8

CVSS3.1

CVE-2025-0587 - Arkcompiler Ets Runtime has an integer overflow vulnerability

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through integer overflow. This vulnerability can be exploited only in restricted scenarios.

πŸ“… Published: March 4, 2025, 3:44 a.m. πŸ”„ Last Modified: March 11, 2025, 6:07 p.m.

8.8

CVSS3.1

CVE-2025-1639 - Animation Addons for Elementor Pro <= 1.6 - Missing Authorization to Authenticated (Subscriber+) Ar…

The Animation Addons for Elementor Pro plugin for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a missing capability check on the install_elementor_plugin_handler() function in all versions up to, and including, 1.6. This makes it possible for authenticated attackers,…

πŸ“… Published: March 4, 2025, 3:38 a.m. πŸ”„ Last Modified: April 20, 2026, 11:45 p.m.

6.5

CVSS3.1

CVE-2025-1321 - teachPress <= 9.0.7 - Authenticated (Contributor+) SQL Injection

The teachPress plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter of the 'tpsearch' shortcode in all versions up to, and including, 9.0.7 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes …

πŸ“… Published: March 4, 2025, 3:37 a.m. πŸ”„ Last Modified: April 20, 2026, 11:45 p.m.

9.8

CVSS3.1

CVE-2025-0912 - GiveWP – Donation Plugin and Fundraising Platform <= 3.19.4 - Unauthenticated PHP Object Injection

The Donations Widget plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.19.4 via deserialization of untrusted input from the Donation Form through the 'card_address' parameter. This makes it possible for unauthenticated attackers to inject a PHP Objec…

πŸ“… Published: March 4, 2025, 3:37 a.m. πŸ”„ Last Modified: April 22, 2026, 1:30 p.m.

4.3

CVSS3.1

CVE-2024-13686 - VW Storefront <= 0.9.9 - Missing Authorization to Authenticated (Subscriber+) Settings Reset

The VW Storefront theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the vw_storefront_reset_all_settings() function in all versions up to, and including, 0.9.9. This makes it possible for authenticated attackers, with Subscriber-level access…

πŸ“… Published: March 4, 2025, 3:37 a.m. πŸ”„ Last Modified: April 8, 2026, 4:43 p.m.
Total resulsts: 349182
Page 6466 of 34,919
Β« previous page Β» next page
Filters