6.3

CVSS3.1

CVE-2025-29722 -

A CSRF vulnerability in Commercify v1.0 allows remote attackers to perform unauthorized actions on behalf of authenticated users. The issue exists due to missing CSRF protection on sensitive endpoints.

๐Ÿ“… Published: April 17, 2025, midnight ๐Ÿ”„ Last Modified: April 23, 2025, 6:49 p.m.

7.6

CVSS3.1

CVE-2025-29451 -

An issue in Seo Panel 4.11.0 allows a remote attacker to obtain sensitive information via the Mail Setting component.

๐Ÿ“… Published: April 17, 2025, midnight ๐Ÿ”„ Last Modified: April 23, 2025, 6:09 p.m.

9.8

CVSS3.1

CVE-2025-29047 -

Buffer Overflow vulnerability inALFA WiFi CampPro router ALFA_CAMPRO-co-2.29 allows a remote attacker to execute arbitrary code via the hiddenIndex in the function StorageEditUser

๐Ÿ“… Published: April 17, 2025, midnight ๐Ÿ”„ Last Modified: April 30, 2025, 3:32 p.m.

9.8

CVSS3.1

CVE-2025-29044 -

Buffer Overflow vulnerability in Netgear- R61 router V1.0.1.28 allows a remote attacker to execute arbitrary code via the QUERY_STRING key value

๐Ÿ“… Published: April 17, 2025, midnight ๐Ÿ”„ Last Modified: April 21, 2025, 6:42 p.m.

9.8

CVSS3.1

CVE-2025-29042 -

An issue in dlink DIR 832x 240802 allows a remote attacker to execute arbitrary code via the macaddr key value to the function 0x42232c

๐Ÿ“… Published: April 17, 2025, midnight ๐Ÿ”„ Last Modified: April 25, 2025, 6:32 p.m.

3.3

CVSS3.1

CVE-2025-43708 -

VisiCut 2.1 allows stack consumption via an XML document with nested set elements, as demonstrated by a java.util.HashMap StackOverflowError when reference='../../../set/set[2]' is used, aka an "insecure deserialization" issue.

๐Ÿ“… Published: April 17, 2025, midnight ๐Ÿ”„ Last Modified: Sept. 24, 2025, 12:51 a.m.

7.5

CVSS3.1

CVE-2025-25455 -

Tenda AC10 V4.0si_V16.03.10.20 is vulnerable to Buffer Overflow in AdvSetMacMtuWan via wanMTU2.

๐Ÿ“… Published: April 17, 2025, midnight ๐Ÿ”„ Last Modified: April 22, 2025, 4:41 p.m.

5.5

CVSS3.1

CVE-2020-36789 - can: dev: can_get_echo_skb(): prevent call to kfree_skb() in hard IRQ context

In the Linux kernel, the following vulnerability has been resolved: can: dev: can_get_echo_skb(): prevent call to kfree_skb() in hard IRQ context If a driver calls can_get_echo_skb() during a hardware IRQ (which is often, but not always, the case), the 'WARN_ON(in_irq)' in net/core/skbuff.c#skb_rโ€ฆ

๐Ÿ“… Published: April 17, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 1, 2025, 5:15 p.m.

2.9

CVSS3.1

CVE-2025-32415 - libxml2: Out-of-bounds Read in xmlSchemaIDCFillNodeTables

In libxml2 before 2.13.8 and 2.14.x before 2.14.2, xmlSchemaIDCFillNodeTables in xmlschemas.c has a heap-based buffer under-read. To exploit this, a crafted XML document must be validated against an XML schema with certain identity constraints, or a crafted XML schema must be used.

๐Ÿ“… Published: April 17, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 8:18 p.m.

7.6

CVSS3.1

CVE-2025-29460 -

An issue in MyBB 1.8.38 allows a remote attacker to obtain sensitive information via the Add Mycode function. NOTE: the Supplier disputes this because of the allowed actions of Board administrators and because of SSRF mitigation.

๐Ÿ“… Published: April 17, 2025, midnight ๐Ÿ”„ Last Modified: April 25, 2025, 4:27 p.m.
Total resulsts: 343942
Page 5231 of 34,395
ยซ previous page ยป next page
Filters