7.3

CVSS3.1

CVE-2026-24045 - Docmost Affected by Stored XSS in Public Share Page

Docmost is open-source collaborative wiki and documentation software. From g and before 0.25.0, the public share page functionality in Docmost does not properly HTML-escape page titles before inserting them into meta tags and the title tag. This allows Stored Cross-Site Scripting (XSS) attacks, whe…

πŸ“… Published: Feb. 10, 2026, 4:56 p.m. πŸ”„ Last Modified: Feb. 10, 2026, 9:42 p.m.

4.3

CVSS3.1

CVE-2026-25530 - Kanboard is missing authorization check in getSwimlane API allows cross-project data access

Kanboard is project management software focused on Kanban methodology. Prior to 1.2.50, the getSwimlane API method lacks project-level authorization, allowing authenticated users to access swimlane data from projects they cannot access. This vulnerability is fixed in 1.2.50.

πŸ“… Published: Feb. 10, 2026, 4:47 p.m. πŸ”„ Last Modified: Feb. 13, 2026, 8:21 p.m.

5.7

CVSS3.1

CVE-2026-24885 - Kanboard Affected by Cross-Site Request Forgery (CSRF) via Content-Type Misconfiguration in Project…

Kanboard is project management software focused on Kanban methodology. Prior to 1.2.50, a Cross-Site Request Forgery (CSRF) vulnerability exists in the ProjectPermissionController within the Kanboard application. The application fails to strictly enforce the application/json Content-Type for the ch…

πŸ“… Published: Feb. 10, 2026, 4:40 p.m. πŸ”„ Last Modified: Feb. 13, 2026, 8:19 p.m.

5.4

CVSS4.0

CVE-2025-36522 -

Incorrect default permissions for some Intel(R) Chipset Software before version 10.1.20266.8668 or later. within Ring 3: User Applications may allow an escalation of privilege. System software adversary with an authenticated user combined with a high complexity attack may enable escalation of privi…

πŸ“… Published: Feb. 10, 2026, 4:26 p.m. πŸ”„ Last Modified: Feb. 11, 2026, 9:57 p.m.

5.4

CVSS4.0

CVE-2025-36511 -

Incorrect default permissions for some Intel(R) Memory and Storage Tool before version 2.5.2 within Ring 3: User Applications may allow an escalation of privilege. System software adversary with an authenticated user combined with a high complexity attack may enable escalation of privilege. This re…

πŸ“… Published: Feb. 10, 2026, 4:26 p.m. πŸ”„ Last Modified: Feb. 11, 2026, 9:57 p.m.

5.4

CVSS4.0

CVE-2025-35999 -

Incorrect permission assignment for critical resource for some System Firmware Update Utility (SysFwUpdt) for Intel(R) Server Boards and Intel(R) Server Systems Based before version 16.0.12. within Ring 3: User Applications may allow an escalation of privilege. System software adversary with a priv…

πŸ“… Published: Feb. 10, 2026, 4:26 p.m. πŸ”„ Last Modified: Feb. 11, 2026, 9:57 p.m.

7

CVSS4.0

CVE-2025-35998 -

Missing protection mechanism for alternate hardware interface in the Intel(R) Quick Assist Technology for some Intel(R) Platforms within Ring 0: Kernel may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable escalation …

πŸ“… Published: Feb. 10, 2026, 4:26 p.m. πŸ”„ Last Modified: Feb. 11, 2026, 9:57 p.m.

5.7

CVSS4.0

CVE-2025-35992 -

Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable denial of service. This result may potentially occur via…

πŸ“… Published: Feb. 10, 2026, 4:25 p.m. πŸ”„ Last Modified: Feb. 11, 2026, 9:57 p.m.

2

CVSS4.0

CVE-2025-33030 -

Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable data corruption. This result may potentially oc…

πŸ“… Published: Feb. 10, 2026, 4:25 p.m. πŸ”„ Last Modified: Feb. 11, 2026, 9:57 p.m.

2

CVSS4.0

CVE-2025-32739 -

Improper conditions check in some firmware for some Intel(R) Graphics Drivers and Intel LTS kernels within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable denial of service. This resul…

πŸ“… Published: Feb. 10, 2026, 4:25 p.m. πŸ”„ Last Modified: Feb. 11, 2026, 9:57 p.m.
Total resulsts: 332917
Page 92 of 33,292
Β« previous page Β» next page
Filters