5.5

CVSS3.1

CVE-2025-70305 -

A stack overflow in the dmx_saf function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted .saf file.

πŸ“… Published: Jan. 15, 2026, midnight πŸ”„ Last Modified: Jan. 23, 2026, 5:35 p.m.

5.5

CVSS3.1

CVE-2025-70309 -

A stack overflow in the pcmreframe_flush_packet function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted WAV file.

πŸ“… Published: Jan. 15, 2026, midnight πŸ”„ Last Modified: Jan. 23, 2026, 5:34 p.m.

8.2

CVSS3.1

CVE-2025-70298 -

GPAC v2.4.0 was discovered to contain an out-of-bounds read in the oggdmx_parse_tags function.

πŸ“… Published: Jan. 15, 2026, midnight πŸ”„ Last Modified: Jan. 23, 2026, 5:37 p.m.

7.5

CVSS3.1

CVE-2024-48077 -

NanoMQ v0.22.7 is vulnerable to Denial of Service (DoS) due to improper resource throttling. A crafted sequence of requests causes the recv-q queue to saturate, leading to the rapid exhaustion of system file descriptors (FDs). This exhaustion triggers a process crash, rendering the broker unable to…

πŸ“… Published: Jan. 15, 2026, midnight πŸ”„ Last Modified: April 3, 2026, 4:16 p.m.

7.5

CVSS3.1

CVE-2025-70307 -

A stack overflow in the dump_ttxt_sample function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted packet.

πŸ“… Published: Jan. 15, 2026, midnight πŸ”„ Last Modified: Jan. 30, 2026, 5:58 p.m.

7.5

CVSS3.1

CVE-2025-67076 -

Directory traversal vulnerability in Omnispace Agora Project before 25.10 allowing unauthenticated attackers to read files on the system via the misc controller and the ExternalGetFile action. Only files with an extension can be read.

πŸ“… Published: Jan. 15, 2026, midnight πŸ”„ Last Modified: Jan. 21, 2026, 2:45 p.m.

7.5

CVSS3.1

CVE-2025-70656 -

Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the mac parameter of the sub_65B5C function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

πŸ“… Published: Jan. 15, 2026, midnight πŸ”„ Last Modified: Jan. 20, 2026, 5:34 p.m.

2.9

CVSS3.1

CVE-2026-0992 - Libxml2: libxml2: denial of service via crafted xml catalogs

A flaw was found in the libxml2 library. This uncontrolled resource consumption vulnerability occurs when processing XML catalogs that contain repeated <nextCatalog> elements pointing to the same downstream catalog. A remote attacker can exploit this by supplying crafted catalogs, causing the parse…

πŸ“… Published: Jan. 15, 2026, midnight πŸ”„ Last Modified: Jan. 16, 2026, 3:55 p.m.

3.7

CVSS3.1

CVE-2026-0989 - Libxml2: unbounded relaxng include recursion leading to stack overflow

A flaw was identified in the RelaxNG parser of libxml2 related to how external schema inclusions are handled. The parser does not enforce a limit on inclusion depth when resolving nested <include> directives. Specially crafted or overly complex schemas can cause excessive recursion during parsing. …

πŸ“… Published: Jan. 15, 2026, midnight πŸ”„ Last Modified: Jan. 16, 2026, 3:55 p.m.

9.9

CVSS3.1

CVE-2025-67084 -

File upload vulnerability in InvoicePlane through 1.6.3 allows authenticated attackers to upload arbitrary PHP files into attachments, which can later be executed remotely, leading to Remote Code Execution (RCE).

πŸ“… Published: Jan. 15, 2026, midnight πŸ”„ Last Modified: Jan. 22, 2026, 4:03 p.m.
Total resulsts: 342251
Page 1433 of 34,226
Β« previous page Β» next page
Filters