5.5

CVSS3.1

CVE-2024-58237 - bpf: consider that tail calls invalidate packet pointers

In the Linux kernel, the following vulnerability has been resolved: bpf: consider that tail calls invalidate packet pointers Tail-called programs could execute any of the helpers that invalidate packet pointers. Hence, conservatively assume that each tail call invalidates packet pointers. Making…

πŸ“… Published: May 5, 2025, midnight πŸ”„ Last Modified: Nov. 10, 2025, 5:35 p.m.

7.5

CVSS3.1

CVE-2025-45608 -

Incorrect access control in the /system/user/findUserList API of Xinguan v0.0.1-SNAPSHOT allows attackers to access sensitive information via a crafted payload.

πŸ“… Published: May 5, 2025, midnight πŸ”„ Last Modified: Oct. 10, 2025, 7:07 p.m.

9.1

CVSS3.1

CVE-2025-45238 -

foxcms v1.2.5 was discovered to contain an arbitrary file deletion vulnerability via the delRestoreSerie method.

πŸ“… Published: May 5, 2025, midnight πŸ”„ Last Modified: June 12, 2025, 5:39 p.m.

5.5

CVSS3.1

CVE-2024-58098 - bpf: track changes_pkt_data property for global functions

In the Linux kernel, the following vulnerability has been resolved: bpf: track changes_pkt_data property for global functions When processing calls to certain helpers, verifier invalidates all packet pointers in a current state. For example, consider the following program: __attribute__((__n…

πŸ“… Published: May 5, 2025, midnight πŸ”„ Last Modified: Nov. 10, 2025, 5:35 p.m.

5.5

CVSS3.1

CVE-2024-58100 - bpf: check changes_pkt_data property for extension programs

In the Linux kernel, the following vulnerability has been resolved: bpf: check changes_pkt_data property for extension programs When processing calls to global sub-programs, verifier decides whether to invalidate all packet pointers in current state depending on the changes_pkt_data property of t…

πŸ“… Published: May 5, 2025, midnight πŸ”„ Last Modified: Nov. 10, 2025, 5:35 p.m.

6.5

CVSS3.1

CVE-2025-47268 - iputils: Signed Integer Overflow in Timestamp Multiplication in iputils ping

ping in iputils before 20250602 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.

πŸ“… Published: May 5, 2025, midnight πŸ”„ Last Modified: April 6, 2026, 2:12 p.m.

5.4

CVSS3.1

CVE-2025-45751 -

SourceCodester Web Based Pharmacy Product Management System 1.0 is vulnerable to Cross Site Scripting (XSS) in add-admin.php via the Fullname text field.

πŸ“… Published: May 5, 2025, midnight πŸ”„ Last Modified: May 7, 2025, 7:16 p.m.

9.8

CVSS3.1

CVE-2025-45612 -

Incorrect access control in xmall v1.1 allows attackers to bypass authentication via a crafted GET request to /index.

πŸ“… Published: May 5, 2025, midnight πŸ”„ Last Modified: June 16, 2025, 8 p.m.

7.5

CVSS3.1

CVE-2025-45610 -

Incorrect access control in the component /scheduleLog/info/1 of PassJava-Platform v3.0.0 allows attackers to access sensitive information via a crafted payload.

πŸ“… Published: May 5, 2025, midnight πŸ”„ Last Modified: Oct. 10, 2025, 7:01 p.m.

7.5

CVSS3.1

CVE-2025-45320 -

A Directory Listing Vulnerability was found in the /osms/Requester/ directory of the Kashipara Online Service Management Portal V1.0.

πŸ“… Published: May 5, 2025, midnight πŸ”„ Last Modified: May 7, 2025, 4:39 p.m.
Total resulsts: 345171
Page 5157 of 34,518
Β« previous page Β» next page
Filters