9.8

CVSS3.1

CVE-2024-22611 -

OpenEMR 7.0.2 is vulnerable to SQL Injection via \openemr\library\classes\Pharmacy.class.php, \controllers\C_Pharmacy.class.php and \openemr\controller.php.

๐Ÿ“… Published: April 3, 2025, midnight ๐Ÿ”„ Last Modified: April 8, 2025, 8:21 p.m.

5.5

CVSS3.1

CVE-2025-22007 - Bluetooth: Fix error code in chan_alloc_skb_cb()

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix error code in chan_alloc_skb_cb() The chan_alloc_skb_cb() function is supposed to return error pointers on error. Returning NULL will lead to a NULL dereference.

๐Ÿ“… Published: April 3, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 8:17 p.m.

9.8

CVSS3.1

CVE-2025-22930 -

OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the groupid parameter at /messaging/Group.php.

๐Ÿ“… Published: April 3, 2025, midnight ๐Ÿ”„ Last Modified: April 29, 2025, 8 p.m.

7.8

CVSS3.1

CVE-2025-29570 -

An issue in Shenzhen Libituo Technology Co., Ltd LBT-T300-T400 v3.2 allows a local attacker to escalate privileges via the function tftp_image_check of a binary named rc.

๐Ÿ“… Published: April 3, 2025, midnight ๐Ÿ”„ Last Modified: Aug. 20, 2025, 2:50 a.m.

9.8

CVSS3.1

CVE-2025-22929 -

OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the filter_id parameter at /students/StudentFilters.php.

๐Ÿ“… Published: April 3, 2025, midnight ๐Ÿ”„ Last Modified: April 29, 2025, 8:02 p.m.

9.8

CVSS3.1

CVE-2025-29647 -

SeaCMS v13.3 has a SQL injection vulnerability in the component admin_tempvideo.php.

๐Ÿ“… Published: April 3, 2025, midnight ๐Ÿ”„ Last Modified: April 8, 2025, 8:15 p.m.

7.5

CVSS3.1

CVE-2024-47213 -

An issue was discovered affecting Enrich 5.1.0 and below. It involves sending a maliciously crafted Snowplow event to the pipeline. Upon receiving this event and trying to validate it, Enrich crashes and attempts to restart indefinitely. As a result, event processing would be halted.

๐Ÿ“… Published: April 3, 2025, midnight ๐Ÿ”„ Last Modified: April 23, 2025, 2:58 p.m.

5.5

CVSS3.1

CVE-2025-21996 - drm/radeon: fix uninitialized size issue in radeon_vce_cs_parse()

In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix uninitialized size issue in radeon_vce_cs_parse() On the off chance that command stream passed from userspace via ioctl() call to radeon_vce_cs_parse() is weirdly crafted and first command to execute is to encode โ€ฆ

๐Ÿ“… Published: April 3, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 8:17 p.m.

9.8

CVSS3.1

CVE-2025-29462 -

A buffer overflow vulnerability has been discovered in Tenda Ac15 V15.13.07.13. The vulnerability occurs when the webCgiGetUploadFile function calls the socketRead function to process HTTP request messages, resulting in the overwriting of a buffer on the stack.

๐Ÿ“… Published: April 3, 2025, midnight ๐Ÿ”„ Last Modified: April 22, 2025, 4:33 p.m.

2.2

CVSS3.1

CVE-2025-29991 -

Yubico YubiKey 5.4.1 through 5.7.3 before 5.7.4 has an incorrect FIDO CTAP PIN/UV Auth Protocol Two implementation. It uses the signature length from CTAP PIN/UV Auth Protocol One, even when CTAP PIN/UV Auth Protocol Two was chosen, resulting in a partial signature verification.

๐Ÿ“… Published: April 3, 2025, midnight ๐Ÿ”„ Last Modified: April 7, 2025, 2:18 p.m.
Total resulsts: 343928
Page 5518 of 34,393
ยซ previous page ยป next page
Filters