7.5

CVSS3.1

CVE-2024-47213 -

An issue was discovered affecting Enrich 5.1.0 and below. It involves sending a maliciously crafted Snowplow event to the pipeline. Upon receiving this event and trying to validate it, Enrich crashes and attempts to restart indefinitely. As a result, event processing would be halted.

πŸ“… Published: April 3, 2025, midnight πŸ”„ Last Modified: April 23, 2025, 2:58 p.m.

5.5

CVSS3.1

CVE-2025-21996 - drm/radeon: fix uninitialized size issue in radeon_vce_cs_parse()

In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix uninitialized size issue in radeon_vce_cs_parse() On the off chance that command stream passed from userspace via ioctl() call to radeon_vce_cs_parse() is weirdly crafted and first command to execute is to encode …

πŸ“… Published: April 3, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 8:17 p.m.

9.8

CVSS3.1

CVE-2025-29462 -

A buffer overflow vulnerability has been discovered in Tenda Ac15 V15.13.07.13. The vulnerability occurs when the webCgiGetUploadFile function calls the socketRead function to process HTTP request messages, resulting in the overwriting of a buffer on the stack.

πŸ“… Published: April 3, 2025, midnight πŸ”„ Last Modified: April 22, 2025, 4:33 p.m.

2.2

CVSS3.1

CVE-2025-29991 -

Yubico YubiKey 5.4.1 through 5.7.3 before 5.7.4 has an incorrect FIDO CTAP PIN/UV Auth Protocol Two implementation. It uses the signature length from CTAP PIN/UV Auth Protocol One, even when CTAP PIN/UV Auth Protocol Two was chosen, resulting in a partial signature verification.

πŸ“… Published: April 3, 2025, midnight πŸ”„ Last Modified: April 7, 2025, 2:18 p.m.

7.5

CVSS3.1

CVE-2024-56528 -

This vulnerability affects Snowplow Collector 3.x before 3.3.0 (unless it’s set up behind a reverse proxy that establishes payload limits). It involves sending very large payloads to the Collector and can render it unresponsive to the rest of the requests. As a result, data would not enter the pipe…

πŸ“… Published: April 3, 2025, midnight πŸ”„ Last Modified: April 15, 2025, 7:29 p.m.

5.5

CVSS3.1

CVE-2025-22003 - can: ucan: fix out of bound read in strscpy() source

In the Linux kernel, the following vulnerability has been resolved: can: ucan: fix out of bound read in strscpy() source Commit 7fdaf8966aae ("can: ucan: use strscpy() to instead of strncpy()") unintentionally introduced a one byte out of bound read on strscpy()'s source argument (which is kind o…

πŸ“… Published: April 3, 2025, midnight πŸ”„ Last Modified: Oct. 1, 2025, 5:15 p.m.

5.5

CVSS3.1

CVE-2025-21995 - drm/sched: Fix fence reference count leak

In the Linux kernel, the following vulnerability has been resolved: drm/sched: Fix fence reference count leak The last_scheduled fence leaks when an entity is being killed and adding the cleanup callback fails. Decrement the reference count of prev when dma_fence_add_callback() fails, ensuring p…

πŸ“… Published: April 3, 2025, midnight πŸ”„ Last Modified: Oct. 1, 2025, 7:15 p.m.

7.5

CVSS3.1

CVE-2024-47212 -

An issue was discovered in Iglu Server 0.13.0 and below. It involves sending very large payloads to a particular API endpoint of Iglu Server and can render it completely unresponsive. If the operation of Iglu Server is not restored, event processing in the pipeline would eventually halt.

πŸ“… Published: April 3, 2025, midnight πŸ”„ Last Modified: April 8, 2025, 8:06 p.m.

9.8

CVSS3.1

CVE-2025-29064 -

An issue in TOTOLINK x18 v.9.1.0cu.2024_B20220329 allows a remote attacker to execute arbitrary code via the sub_410E54 function of the cstecgi.cgi.

πŸ“… Published: April 3, 2025, midnight πŸ”„ Last Modified: April 29, 2025, 4:22 p.m.

7.8

CVSS3.1

CVE-2025-29504 -

Insecure Permission vulnerability in student-manage 1 allows a local attacker to escalate privileges via the Unsafe permission verification.

πŸ“… Published: April 3, 2025, midnight πŸ”„ Last Modified: Oct. 15, 2025, 4:49 p.m.
Total resulsts: 343932
Page 5519 of 34,394
Β« previous page Β» next page
Filters