5.6

CVSS4.0

CVE-2024-42189 - HCL BigFix Web Reports might be subject to a Denial of Service (DoS) attack

HCL BigFix Web Reports might be subject to a Denial of Service (DoS) attack, due to a potentially weak validation of an API parameter.

๐Ÿ“… Published: April 15, 2025, 6:07 p.m. ๐Ÿ”„ Last Modified: Oct. 9, 2025, 7:21 p.m.

4.8

CVSS4.0

CVE-2024-42200 - HCL BigFix Web Reports is potentially susceptible to a Stored Cross-Site Scripting (XSS) attack

HCL BigFix Web Reports might be subject to a Stored Cross-Site Scripting (XSS) attack, due to a potentially weak validation of user input.

๐Ÿ“… Published: April 15, 2025, 6 p.m. ๐Ÿ”„ Last Modified: Oct. 9, 2025, 7:22 p.m.

8.5

CVSS4.0

CVE-2025-3618 - Local Privilege Escalation Vulnerability

A denial-of-service vulnerability exists in the Rockwell Automation ThinManager. The software fails to adequately verify the outcome of memory allocation while processing Type 18 messages. If exploited, a threat actor could cause a denial-of-service on the target software.

๐Ÿ“… Published: April 15, 2025, 5:19 p.m. ๐Ÿ”„ Last Modified: July 14, 2025, 7:17 p.m.

8.5

CVSS4.0

CVE-2025-3617 - Local Privilege Escalation in ThinManagerยฎ

A privilege escalation vulnerability exists in the Rockwell Automation ThinManager. When the software starts up, files are deleted in the temporary folder causing the Access Control Entry of the directory to inherit permissions from the parent directory. If exploited, a threat actor could inherit eโ€ฆ

๐Ÿ“… Published: April 15, 2025, 5:17 p.m. ๐Ÿ”„ Last Modified: July 14, 2025, 7:16 p.m.

7.3

CVSS3.1

CVE-2025-32780 - BleachBit for Windows Has DLL Untrusted Path Vulnerability

BleachBit cleans files to free disk space and to maintain privacy. BleachBit for Windows up to version 4.6.2 is vulnerable to a DLL Hijacking vulnerability. By placing a malicious DLL with the name uuid.dll in the folder C:\Users\<username>\AppData\Local\Microsoft\WindowsApps\, an attacker can execโ€ฆ

๐Ÿ“… Published: April 15, 2025, 4:32 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2025-32779 - labsai/eddi Vulnerable to Path Traversal (Zip Slip) in ZIP Import Function

E.D.D.I (Enhanced Dialog Driven Interface) is a middleware to connect and manage LLM API bots. In versions before 5.5.0, an attacker with access to the `/backup/import` API endpoint can write arbitrary files to locations outside the intended extraction directory due to a Zip Slip vulnerability. Altโ€ฆ

๐Ÿ“… Published: April 15, 2025, 4:32 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2025-32776 - OpenRazer Vulnerable to Out of Bounds Read

OpenRazer is an open source driver and user-space daemon to control Razer device lighting and other features on GNU/Linux. By writing specially crafted data to the `matrix_custom_frame` file, an attacker can cause the custom kernel driver to read more bytes than provided by user space. This data wiโ€ฆ

๐Ÿ“… Published: April 15, 2025, 4:32 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.7

CVSS3.1

CVE-2025-29817 - Microsoft Power Automate Desktop Information Disclosure Vulnerability

Uncontrolled search path element in Power Automate allows an authorized attacker to disclose information over a network.

๐Ÿ“… Published: April 15, 2025, 4:10 p.m. ๐Ÿ”„ Last Modified: Feb. 13, 2026, 7:32 p.m.

6.3

CVSS4.0

CVE-2024-11084 - Potential Username Enumeration in Helix ALM

Helix ALM prior to 2025.1 returns distinct error responses during authentication, allowing an attacker to determine whether a username exists.

๐Ÿ“… Published: April 15, 2025, 3:34 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.2

CVSS4.0

CVE-2024-13177 - Symlink Following in Netskope Client Postinstall Script

Netskope Client on Mac OS is impacted by a vulnerability in which the postinstall script does not properly validate the path of the file โ€œnsinstallationโ€. A standard user could potentially create a symlink of the file โ€œnsinstallationโ€ to escalate the privileges of a different file on the system. Tโ€ฆ

๐Ÿ“… Published: April 15, 2025, 3:21 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 346087
Page 5569 of 34,609
ยซ previous page ยป next page
Filters