CVE Feed

    Dashboard / CVE

    8.4
    High

    CVE-2025-53524

    Last Modified: 15 Apr 2026

    Fuji Electric Monitouch V-SFT-6 is vulnerable to an out-of-bounds write while processing a specially crafted project file, which may allow an attacker to execute arbitrary code.

    Published: 17 Dec 2025
    9.9
    Critical

    CVE-2025-14700

    Last Modified: 23 Dec 2025

    An input neutralization vulnerability in the Webhook Template component of Crafty Controller allows a remote, authenticated attacker to perform remote code execution via Server Side Template Injection.

    Published: 17 Dec 2025
    7.1
    High

    CVE-2025-14701

    Last Modified: 23 Dec 2025

    An input neutralization vulnerability in the Server MOTD component of Crafty Controller allows a remote, unauthenticated attacker to perform stored XSS via server MOTD modification.

    Published: 17 Dec 2025
    4.3
    Medium

    CVE-2025-43501

    Last Modified: 2 Apr 2026

    A buffer overflow issue was addressed with improved memory handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2. Processing maliciously crafted web content may lead to an unexpected process crash.

    Published: 17 Dec 2025
    6.6
    Medium

    CVE-2025-65855

    Last Modified: 6 Jan 2026

    The OTA firmware update mechanism in Netun Solutions HelpFlash IoT (firmware v18_178_221102_ASCII_PRO_1R5_50) uses hard-coded WiFi credentials identical across all devices and does not authenticate update servers or validate firmware signatures. An attacker with brief physical access can activate OTA mode (8-second button press), create a malicious WiFi AP using the known credentials, and serve malicious firmware via unauthenticated HTTP to achieve arbitrary code execution on this safety-critical emergency signaling device.

    Published: 17 Dec 2025
    5.3
    Medium

    CVE-2024-29370

    Last Modified: 5 Jan 2026

    In python-jose 3.3.0 (specifically jwe.decrypt), a vulnerability allows an attacker to cause a Denial-of-Service (DoS) condition by crafting a malicious JSON Web Encryption (JWE) token with an exceptionally high compression ratio. When this token is processed by the server, it results in significant memory allocation and processing time during decompression.

    Published: 17 Dec 2025
    9.8
    Critical

    CVE-2022-23851

    Last Modified: 5 Jan 2026

    Netaxis API Orchestrator (APIO) before 0.19.3 allows server side template injection (SSTI).

    Published: 17 Dec 2025
    9.8
    Critical

    CVE-2025-67793

    Last Modified: 2 Jan 2026

    An issue was discovered in DriveLock 24.1 through 24.1.*, 24.2 through 24.2.*, and 25.1 before 25.1.6. Users with the "Manage roles and permissions" privilege can promote themselves or other DOC users to the Supervisor role through an API call. This privilege is included by default in the Administrator role. This issue mainly affects cloud multi-tenant deployments; on-prem single-tenant installations are typically not impacted because local admins usually already have Supervisor privileges.

    Published: 17 Dec 2025
    6.5
    Medium

    CVE-2025-67074

    Last Modified: 2 Jan 2026

    A Buffer overflow vulnerability in function fromAdvSetMacMtuWan of bin httpd in Tenda AC10V4.0 V16.03.10.20 allows remote attackers to cause denial of service and possibly code execution by sending a post request with a crafted payload (field `serverName`) to /goform/AdvSetMacMtuWan.

    Published: 17 Dec 2025
    7.5
    High

    CVE-2025-67171

    Last Modified: 18 Dec 2025

    Incorrect access control in the /templates/ component of RiteCMS v3.1.0 allows attackers to access sensitive files via directory traversal.

    Published: 17 Dec 2025
    6.1
    Medium

    CVE-2025-66924

    Last Modified: 18 Dec 2025

    A Cross-site scripting (XSS) vulnerability in Create/Update Item Kit(s) in Open Source Point of Sale v3.4.1 allows remote attackers to inject arbitrary web script or HTML via the "name" parameter.

    Published: 17 Dec 2025
    7.8
    High

    CVE-2025-53398

    Last Modified: 2 Jan 2026

    The Portrait Dell Color Management application 3.3.8 for Dell monitors has Insecure Permissions,

    Published: 17 Dec 2025
    9.8
    Critical

    CVE-2025-67791

    Last Modified: 18 Dec 2025

    An issue was discovered in DriveLock 24.1 through 24.1.*, 24.2 through 24.2.*, and 25.1 through 25.1.*. An incomplete configuration (agent authentication) in DriveLock tenant allows attackers to impersonate any DriveLock agent on the network against the DES (DriveLock Enterprise Service).

    Published: 17 Dec 2025
    6.1
    Medium

    CVE-2025-67170

    Last Modified: 18 Dec 2025

    A reflected cross-site scripting (XSS) vulnerability in RiteCMS v3.1.0 allows attackers to execute arbitrary code in the context of a user's browser via a crafted payload.

    Published: 17 Dec 2025
    9.8
    Critical

    CVE-2025-67073

    Last Modified: 2 Jan 2026

    A Buffer overflow vulnerability in function fromAdvSetMacMtuWan of bin httpd in Tenda AC10V4.0 V16.03.10.20 allows remote attackers to cause denial of service and possibly code execution by sending a post request with a crafted payload (field `serviceName`) to /goform/AdvSetMacMtuWan.

    Published: 17 Dec 2025
    7.2
    High

    CVE-2025-66923

    Last Modified: 18 Dec 2025

    A Cross-site scripting (XSS) vulnerability in Create/Update Customer(s) in Open Source Point of Sale v3.4.1 allows remote attackers to inject arbitrary web script or HTML via the phone_number parameter.

    Published: 17 Dec 2025
    7.2
    High

    CVE-2025-66921

    Last Modified: 18 Dec 2025

    A Cross-site scripting (XSS) vulnerability in Create/Update Item(s) Module in Open Source Point of Sale v3.4.1 allows remote attackers to inject arbitrary web script or HTML via the "name" parameter.

    Published: 17 Dec 2025
    7.8
    High

    CVE-2025-53919

    Last Modified: 2 Jan 2026

    An issue was discovered in the Portrait Dell Color Management application through 3.3.008 for Dell monitors, It creates a temporary folder, with weak permissions, during installation and uninstallation. A low-privileged attacker with local access could potentially exploit this, leading to elevation of privileges.

    Published: 17 Dec 2025
    4.3
    Medium

    CVE-2025-43541

    Last Modified: 22 Apr 2026

    A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.

    Published: 17 Dec 2025
    6.1
    Medium

    CVE-2025-67794

    Last Modified: 18 Dec 2025

    An issue was discovered in DriveLock 24.1 through 24.1.*, 24.2 before 24.2.8, and 25.1 before 25.1.6. Directories and files created by the agent are created with overly permissive ACLs, allowing local users without administrator rights to trigger actions or destabilize the agent.

    Published: 17 Dec 2025
    7.3
    High

    CVE-2025-67285

    Last Modified: 2 Jan 2026

    A SQL injection vulnerability was found in the '/cts/admin/?page=zone' file of ITSourcecode COVID Tracking System Using QR-Code v1.0. The reason for this issue is that attackers inject malicious code from the parameter 'id' and use it directly in SQL queries without the need for appropriate cleaning or validation.

    Published: 17 Dec 2025
    7.5
    High

    CVE-2025-67790

    Last Modified: 18 Dec 2025

    An issue was discovered in DriveLock 24.1 before 24.1.6, 24.2 before 24.2.7, and 25.1 before 25.1.5. An unprivileged user could cause occasionally a Blue Screen Of Death (BSOD) on Windows computers by using an IOCTL and an unterminated string.

    Published: 17 Dec 2025
    6.1
    Medium

    CVE-2025-65233

    Last Modified: 5 Jan 2026

    Reflected cross-site scripting (XSS) in SLiMS (slims9_bulian) before 9.6.0 via improper handling of $_SERVER['PHP_SELF' ] in index.php/sysconfig.inc.php, which allows remote attackers to execute arbitrary JavaScript in a victim's browser by supplying a crafted URL path.

    Published: 17 Dec 2025
    7.8
    High

    CVE-2025-67792

    Last Modified: 18 Dec 2025

    An issue was discovered in DriveLock 24.1 before 24.1.6, 24.2 before 24.2.7, and 25.1 before 25.1.5. Local unprivileged users can manipulate a DriveLock process to execute arbitrary commands on Windows computers.

    Published: 17 Dec 2025
    9.9
    Critical

    CVE-2025-67164

    Last Modified: 2 Jan 2026

    An authenticated arbitrary file upload vulnerability in the /storage/poc.php component of Pagekit CMS v1.0.18 allows attackers to execute arbitrary code via uploading a crafted PHP file.

    Published: 17 Dec 2025
    9.9
    Critical

    CVE-2025-67781

    Last Modified: 2 Jan 2026

    An issue was discovered in DriveLock 24.1 before 24.1.6, 24.2 before 24.2.7, and 25.1 before 25.1.5. Local unprivileged users can manipulate privileged processes to gain more privileges on Windows computers.

    Published: 17 Dec 2025
    4.3
    Medium

    CVE-2025-43535

    Last Modified: 2 Apr 2026

    The issue was addressed with improved memory handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2. Processing maliciously crafted web content may lead to an unexpected process crash.

    Published: 17 Dec 2025
    9.6
    Critical

    CVE-2025-67787

    Last Modified: 2 Jan 2026

    An issue was discovered in 25.1.2 before 25.1.5. A Cross Site Scripting (XSS) issue in DriveLock Operations Center allows for session takeover over a network.

    Published: 17 Dec 2025
    5.3
    Medium

    CVE-2025-67789

    Last Modified: 18 Dec 2025

    An issue was discovered in DriveLock 24.1 before 24.1.6, 24.2 before 24.2.7, and 25.1 before 25.1.5. Authenticated users can retrieve the computer count of other DriveLock tenants via the DriveLock API.

    Published: 17 Dec 2025
    7.5
    High

    CVE-2025-67174

    Last Modified: 18 Dec 2025

    A local file inclusion (LFI) vulnerability in RiteCMS v3.1.0 allows attackers to read arbitrary files on the host via a directory traversal in the admin_language_file and default_page_language_file in the admin.php component

    Published: 17 Dec 2025
    6.8
    Medium

    CVE-2025-67173

    Last Modified: 18 Dec 2025

    A Cross-Site Request Forgery (CSRF) in the page creation/editing function of RiteCMS v3.1.0 allows attackers to arbitrarily create pages via a crafted POST request.

    Published: 17 Dec 2025
    5.3
    Medium

    CVE-2025-67168

    Last Modified: 18 Dec 2025

    RiteCMS v3.1.0 was discovered to use insecure encryption to store passwords.

    Published: 17 Dec 2025
    9.8
    Critical

    CVE-2025-67165

    Last Modified: 2 Jan 2026

    An Insecure Direct Object Reference (IDOR) in Pagekit CMS v1.0.18 allows attackers to escalate privileges.

    Published: 17 Dec 2025
    8.8
    High

    CVE-2025-66953

    Last Modified: 2 Jan 2026

    CSRF vulnerability in narda miteq Uplink Power Contril Unit UPC2 v.1.17 allows a remote attacker to execute arbitrary code via the Web-based management interface and specifically the /system_setup.htm, /set_clock.htm, /receiver_setup.htm, /cal.htm?..., and /channel_setup.htm endpoints

    Published: 17 Dec 2025
    2.8
    Low

    CVE-2025-65185

    Last Modified: 5 Jan 2026

    There is a username enumeration via local user login in Entrinsik Informer v5.10.1 which allows malicious users to enumerate users by entering an OTP code and new password then reviewing application responses.

    Published: 17 Dec 2025
    7.8
    High

    CVE-2024-46060

    Last Modified: 5 Jan 2026

    Anaconda3 macOS installers before 2024.06-1 contain a local privilege escalation vulnerability when installed outside the user's home directory. During installation, world-writable files are created and executed with root privileges. This allows a local low-privileged user to inject arbitrary commands, leading to code execution as the root user.

    Published: 17 Dec 2025
    4.3
    Medium

    CVE-2025-43536

    Last Modified: 22 Apr 2026

    A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2. Processing maliciously crafted web content may lead to an unexpected process crash.

    Published: 17 Dec 2025
    3.1
    Low

    CVE-2025-43531

    Last Modified: 22 Apr 2026

    A race condition was addressed with improved state handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, tvOS 26.2, visionOS 26.2, watchOS 26.2. Processing maliciously crafted web content may lead to an unexpected process crash.

    Published: 17 Dec 2025
    7.2
    High

    CVE-2025-67172

    Last Modified: 18 Dec 2025

    RiteCMS v3.1.0 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the parse_special_tags() function.

    Published: 17 Dec 2025
    7.1
    High

    CVE-2025-65203

    Last Modified: 5 Jan 2026

    KeePassXC-Browser thru 1.9.9.2 autofills or prompts to fill stored credentials into documents rendered under a browser-enforced CSP directive and iframe attribute sandbox, allowing attacker-controlled script in the sandboxed document to access populated form fields and exfiltrate credentials.

    Published: 17 Dec 2025
    7.8
    High

    CVE-2024-46062

    Last Modified: 5 Jan 2026

    Miniconda3 macOS installers before 23.11.0-1 contain a local privilege escalation vulnerability when installed outside the user's home directory. During installation, world-writable files are created and executed with root privileges. This flaw allows a local low-privileged user to inject arbitrary commands, leading to code execution as the root user.

    Published: 17 Dec 2025
    7.5
    High

    CVE-2024-29371

    Last Modified: 23 Jan 2026

    In jose4j before 0.9.6, an attacker can cause a Denial-of-Service (DoS) condition by crafting a malicious JSON Web Encryption (JWE) token with an exceptionally high compression ratio. When this token is processed by the server, it results in significant memory allocation and processing time during decompression.

    Published: 17 Dec 2025
    8.8
    High

    CVE-2025-14766

    Last Modified: 26 Feb 2026

    Out of bounds read and write in V8 in Google Chrome prior to 143.0.7499.147 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 16 Dec 2025
    8.8
    High

    CVE-2025-14765

    Last Modified: 26 Feb 2026

    Use after free in WebGPU in Google Chrome prior to 143.0.7499.147 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 16 Dec 2025
    8.6
    High

    CVE-2025-34288

    Last Modified: 5 Mar 2026

    Nagios XI versions prior to 2026R1.1 are vulnerable to local privilege escalation due to an unsafe interaction between sudo permissions and application file permissions. A user‑accessible maintenance script may be executed as root via sudo and includes an application file that is writable by a lower‑privileged user. A local attacker with access to the application account can modify this file to introduce malicious code, which is then executed with elevated privileges when the script is run. Successful exploitation results in arbitrary code execution as the root user.

    Published: 16 Dec 2025
    8.7
    High

    CVE-2025-68274

    Last Modified: 5 Mar 2026

    SIPGO is a library for writing SIP services in the GO language. Starting in version 0.3.0 and prior to version 1.0.0-alpha-1, a nil pointer dereference vulnerability is in the SIPGO library's `NewResponseFromRequest` function that affects all normal SIP operations. The vulnerability allows remote attackers to crash any SIP application by sending a single malformed SIP request without a To header. The vulnerability occurs when SIP message parsing succeeds for a request missing the To header, but the response creation code assumes the To header exists without proper nil checks. This affects routine operations like call setup, authentication, and message handling - not just error cases. This vulnerability affects all SIP applications using the sipgo library, not just specific configurations or edge cases, as long as they make use of the `NewResponseFromRequest` function. Version 1.0.0-alpha-1 contains a patch for the issue.

    Published: 16 Dec 2025
    6.5
    Medium

    CVE-2025-64520

    Last Modified: 19 Feb 2026

    GLPI is a free asset and IT management software package. Starting in version 9.1.0 and prior to version 10.0.21, an unauthorized user with an API access can read all knowledge base entries. Users should upgrade to 10.0.21 to receive a patch.

    Published: 16 Dec 2025
    7.4
    High

    CVE-2025-53619

    Last Modified: 2 Jan 2026

    An out-of-bounds read vulnerability exists in the JPEGBITSCodec::InternalCode functionality of Grassroot DICOM 3.024. A specially crafted DICOM file can lead to an information leak. An attacker can provide a malicious file to trigger this vulnerability.The function `null_convert` is called based of the value of the malicious DICOM file specifying the intended interpretation of the image pixel data

    Published: 16 Dec 2025
    7.4
    High

    CVE-2025-53618

    Last Modified: 2 Jan 2026

    An out-of-bounds read vulnerability exists in the JPEGBITSCodec::InternalCode functionality of Grassroot DICOM 3.024. A specially crafted DICOM file can lead to an information leak. An attacker can provide a malicious file to trigger this vulnerability.The function `grayscale_convert` is called based of the value of the malicious DICOM file specifying the intended interpretation of the image pixel data

    Published: 16 Dec 2025
    7.4
    High

    CVE-2025-52582

    Last Modified: 2 Jan 2026

    An out-of-bounds read vulnerability exists in the Overlay::GrabOverlayFromPixelData functionality of Grassroot DICOM 3.024. A specially crafted DICOM file can lead to an information leak. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 16 Dec 2025