CVE Feed

    Dashboard / CVE

    8.1
    High

    CVE-2025-13148

    Last Modified: 15 Dec 2025

    IBM Aspera Orchestrator 4.0.0 through 4.1.0 could allow could an authenticated user to change the password of another user without prior knowledge of that password.

    Published: 11 Dec 2025
    8.8
    High

    CVE-2025-13481

    Last Modified: 15 Dec 2025

    IBM Aspera Orchestrator 4.0.0 through 4.1.0 could allow an authenticated user to execute arbitrary commands with elevated privileges on the system due to improper validation of user supplied input.

    Published: 11 Dec 2025
    5.3
    Medium

    CVE-2025-13211

    Last Modified: 15 Dec 2025

    IBM Aspera Orchestrator 4.0.0 through 4.1.0 could allow an authenticated user to cause a denial of service in the email service due to improper control of interaction frequency.

    Published: 11 Dec 2025
    5.5
    Medium

    CVE-2024-42197

    Last Modified: 15 Apr 2026

    HCL Workload Scheduler stores user credentials in plain text which can be read by a local user.

    Published: 11 Dec 2025
    6.8
    Medium

    CVE-2025-36938

    Last Modified: 11 Mar 2026

    In U-Boot of append_uint32_le(), there is a possible fault injection due to a logic error in the code. This could lead to physical escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    9.8
    Critical

    CVE-2025-36937

    Last Modified: 26 Feb 2026

    In AudioDecoder::HandleProduceRequest of audio_decoder.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7.8
    High

    CVE-2025-36936

    Last Modified: 26 Feb 2026

    In GetTachyonCommand of tachyon_server_common.h, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7.8
    High

    CVE-2025-36935

    Last Modified: 26 Feb 2026

    In trusty_ffa_mem_reclaim of shared-mem-smcall.c, there is a possible memory corruption due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7.4
    High

    CVE-2025-36934

    Last Modified: 26 Feb 2026

    In bigo_worker_thread of private/google-modules/video/gchips/bigo.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7.8
    High

    CVE-2025-36932

    Last Modified: 26 Feb 2026

    In tracepoint_msg_handler of cpm/google/lib/tracepoint/tracepoint_ipc.c, there is a possible memory overwrite due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7.8
    High

    CVE-2025-36931

    Last Modified: 26 Feb 2026

    In GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7.8
    High

    CVE-2025-36930

    Last Modified: 26 Feb 2026

    In GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    5.5
    Medium

    CVE-2025-36929

    Last Modified: 12 Dec 2025

    In AreFencesRegistered of gxp_fence_manager.cc, there is a possible information leak due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7.8
    High

    CVE-2025-36928

    Last Modified: 26 Feb 2026

    In GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7.8
    High

    CVE-2025-36927

    Last Modified: 26 Feb 2026

    In GetTachyonCommand of tachyon_server_common.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7.8
    High

    CVE-2025-36925

    Last Modified: 26 Feb 2026

    In WAVES_send_data_to_dsp of libaoc_waves.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    8
    High

    CVE-2025-36924

    Last Modified: 26 Feb 2026

    In ss_DecodeLcsAssistDataReqMsg(void) of ss_LcsManagement.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    8
    High

    CVE-2025-36923

    Last Modified: 26 Feb 2026

    In NrmmDecoder::DecodeSORTransparentContext of cn_NrmmDecoder.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    6.7
    Medium

    CVE-2025-36922

    Last Modified: 26 Feb 2026

    In bigo_map of bigo_iommu.c, there is a possible information disclosure due to a use after free. This could lead to local escalation of privilege in the OS Kernel level with System execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    5.5
    Medium

    CVE-2025-36921

    Last Modified: 12 Dec 2025

    In ProtocolPsUnthrottleApn() of protocolpsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with baseband firmware compromise required. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7.8
    High

    CVE-2025-36919

    Last Modified: 26 Feb 2026

    In aocc_read of aoc_channel_dev.c, there is a possible double free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7.8
    High

    CVE-2025-36918

    Last Modified: 26 Feb 2026

    In aoc_service_read_message of aoc_ipc_core.c, there is a possible out of bounds read due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    6.5
    Medium

    CVE-2025-36917

    Last Modified: 12 Dec 2025

    In SwDcpItg of up_L2commonPdcpSecurity.cpp, there is a possible denial of service due to an incorrect bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    7
    High

    CVE-2025-36916

    Last Modified: 26 Feb 2026

    In PrepareWorkloadBuffers of gxp_main_actor.cc, there is a possible double fetch due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    6.5
    Medium

    CVE-2025-36912

    Last Modified: 12 Dec 2025

    In cellular modem, there is a possible denial of service due to a logic error in the code. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    5.5
    Medium

    CVE-2025-36889

    Last Modified: 12 Dec 2025

    In onCreateTasks of CameraActivity.java, there is a possible permission bypass due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 11 Dec 2025
    8.9
    High

    CVE-2025-14535

    Last Modified: 7 Jan 2026

    A vulnerability was identified in UTT 进取 512W up to 3.1.7.7-171114. Affected is the function strcpy of the file /goform/formConfigFastDirectionW. The manipulation of the argument ssid leads to buffer overflow. The attack may be initiated remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 11 Dec 2025
    8.9
    High

    CVE-2025-14534

    Last Modified: 7 Jan 2026

    A vulnerability was determined in UTT 进取 512W up to 3.1.7.7-171114. This impacts the function strcpy of the file /goform/formNatStaticMap of the component Endpoint. Executing manipulation of the argument NatBind can lead to buffer overflow. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 11 Dec 2025
    2.1
    Low

    CVE-2025-14531

    Last Modified: 16 Dec 2025

    A vulnerability was found in code-projects Rental Management System 2.0. This affects an unknown function of the file Transaction.java of the component Log Handler. Performing manipulation results in crlf injection. The attack can be initiated remotely. The exploit has been made public and could be used.

    Published: 11 Dec 2025
    9.1
    Critical

    CVE-2025-13780

    Last Modified: 26 Feb 2026

    pgAdmin versions up to 9.10 are affected by a Remote Code Execution (RCE) vulnerability that occurs when running in server mode and performing restores from PLAIN-format dump files. This issue allows attackers to inject and execute arbitrary commands on the server hosting pgAdmin, posing a critical risk to the integrity and security of the database management system and underlying data.

    Published: 11 Dec 2025
    7.8
    High

    CVE-2025-64669

    Last Modified: 20 Apr 2026

    Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges locally.

    Published: 11 Dec 2025
    8.6
    High

    CVE-2025-14046

    Last Modified: 19 Dec 2025

    An improper neutralization of input vulnerability was identified in GitHub Enterprise Server that allowed user-supplied HTML to inject DOM elements with IDs that collided with server-initialized data islands. These collisions could overwrite or shadow critical application state objects used by certain Project views, leading to unintended server-side POST requests or other unauthorized backend interactions. Successful exploitation requires an attacker to have access to the target GitHub Enterprise Server instance and to entice a privileged user to view crafted malicious content that includes conflicting HTML elements. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.18.3, 3.17.9, 3.16.12, 3.15.16, and 3.14.21.

    Published: 11 Dec 2025
    2
    Low

    CVE-2025-14530

    Last Modified: 16 Dec 2025

    A vulnerability has been found in SourceCodester Real Estate Property Listing App 1.0. The impacted element is an unknown function of the file /admin/property.php. Such manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 11 Dec 2025
    5.5
    Medium

    CVE-2025-14529

    Last Modified: 24 Feb 2026

    A flaw has been found in Campcodes Retro Basketball Shoes Online Store 1.0. The affected element is an unknown function of the file /admin/admin_running.php. This manipulation of the argument pid causes sql injection. It is possible to initiate the attack remotely. The exploit has been published and may be used.

    Published: 11 Dec 2025
    1
    Low

    CVE-2025-13912

    Last Modified: 15 Apr 2026

    Multiple constant-time implementations in wolfSSL before version 5.8.4 may be transformed into non-constant-time binary by LLVM optimizations, which can potentially result in observable timing discrepancies and lead to information disclosure through timing side-channel attacks.

    Published: 11 Dec 2025
    5.5
    Medium

    CVE-2025-14528

    Last Modified: 15 Dec 2025

    A vulnerability was detected in D-Link DIR-803 up to 1.04. Impacted is an unknown function of the file /getcfg.php of the component Configuration Handler. The manipulation of the argument AUTHORIZED_GROUP results in information disclosure. The attack may be performed from remote. The exploit is now public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.

    Published: 11 Dec 2025
    5.5
    Medium

    CVE-2025-14527

    Last Modified: 24 Feb 2026

    A weakness has been identified in projectworlds Advanced Library Management System 1.0. This vulnerability affects unknown code of the file /view_book.php. Executing a manipulation of the argument book_id can lead to sql injection. The attack can be executed remotely. The exploit has been made available to the public and could be used for attacks.

    Published: 11 Dec 2025
    9.8
    Critical

    CVE-2025-66048

    Last Modified: 17 Dec 2025

    Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially crafted MFER file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger these vulnerabilities.When Tag is 133

    Published: 11 Dec 2025
    9.8
    Critical

    CVE-2025-66047

    Last Modified: 17 Dec 2025

    Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially crafted MFER file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger these vulnerabilities.When Tag is 131

    Published: 11 Dec 2025
    9.8
    Critical

    CVE-2025-66046

    Last Modified: 17 Dec 2025

    Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially crafted MFER file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger these vulnerabilities.When Tag is 67

    Published: 11 Dec 2025
    9.8
    Critical

    CVE-2025-66045

    Last Modified: 17 Dec 2025

    Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially crafted MFER file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger these vulnerabilities.When Tag is 65

    Published: 11 Dec 2025
    9.8
    Critical

    CVE-2025-66044

    Last Modified: 17 Dec 2025

    Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially crafted MFER file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger these vulnerabilities.When Tag is 64

    Published: 11 Dec 2025
    9.8
    Critical

    CVE-2025-66043

    Last Modified: 17 Dec 2025

    Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially crafted MFER file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger these vulnerabilities.When Tag is 3

    Published: 11 Dec 2025
    7.4
    High

    CVE-2025-14526

    Last Modified: 24 Feb 2026

    A security flaw has been discovered in Tenda CH22 1.0.0.1. This affects the function frmL7ImForm of the file /goform/L7Im. Performing a manipulation of the argument page results in buffer overflow. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.

    Published: 11 Dec 2025
    7.1
    High

    CVE-2024-8273

    Last Modified: 19 Feb 2026

    Authentication Bypass by Spoofing vulnerability in HYPR Server allows Identity Spoofing.This issue affects Server: before 10.1.

    Published: 11 Dec 2025
    2.1
    Low

    CVE-2025-14522

    Last Modified: 9 Jan 2026

    A vulnerability was detected in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. The impacted element is an unknown function of the file /Public/Kindeditor/php/upload_json.php. Performing manipulation of the argument imgFile results in unrestricted upload. It is possible to initiate the attack remotely. The exploit is now public and may be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 11 Dec 2025
    2.1
    Low

    CVE-2025-14521

    Last Modified: 9 Jan 2026

    A security vulnerability has been detected in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. The affected element is an unknown function of the file /admin/index.php/datafile/download. Such manipulation of the argument filename leads to path traversal. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 11 Dec 2025
    2.1
    Low

    CVE-2025-14520

    Last Modified: 9 Jan 2026

    A weakness has been identified in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. Impacted is an unknown function of the file /admin/index.php/datafile/delfile. This manipulation of the argument filename causes path traversal. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited. This product adopts a rolling release strategy to maintain continuous delivery The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 11 Dec 2025
    3.8
    Low

    CVE-2025-67742

    Last Modified: 15 Dec 2025

    In JetBrains TeamCity before 2025.11 path traversal was possible via file upload

    Published: 11 Dec 2025
    4.6
    Medium

    CVE-2025-67741

    Last Modified: 15 Dec 2025

    In JetBrains TeamCity before 2025.11 stored XSS was possible via session attribute

    Published: 11 Dec 2025