CVE Feed

    Dashboard / CVE

    5.8
    Medium

    CVE-2025-20339

    Last Modified: 15 Apr 2026

    A vulnerability in the access control list (ACL) processing of IPv4 packets of Cisco SD-WAN vEdge Software could allow an unauthenticated, remote attacker to bypass a configured ACL. This vulnerability is due to the improper enforcement of the implicit deny all at the end of a configured ACL. An attacker could exploit this vulnerability by attempting to send unauthorized traffic to an interface on an affected device. A successful exploit could allow the attacker to bypass an ACL on the affected device.

    Published: 24 Sept 2025
    4.3
    Medium

    CVE-2025-20365

    Last Modified: 15 Apr 2026

    A vulnerability in the IPv6 Router Advertisement (RA) packet processing of Cisco Access Point Software could allow an unauthenticated, adjacent attacker to modify the IPv6 gateway on an affected device. This vulnerability is due to a logic error in the processing of IPv6 RA packets that are received from wireless clients. An attacker could exploit this vulnerability by associating to a wireless network and sending a series of crafted IPv6 RA packets. A successful exploit could allow the attacker to temporarily change the IPv6 gateway of an affected device. This could also lead to intermittent packet loss for any wireless clients that are associated with the affected device.

    Published: 24 Sept 2025
    4.3
    Medium

    CVE-2025-20364

    Last Modified: 15 Apr 2026

    A vulnerability in the Device Analytics action frame processing of Cisco Wireless Access Point (AP) Software could allow an unauthenticated, adjacent attacker to inject wireless 802.11 action frames with arbitrary information. This vulnerability is due to insufficient verification checks of incoming 802.11 action frames. An attacker could exploit this vulnerability by sending 802.11 Device Analytics action frames with arbitrary parameters. A successful exploit could allow the attacker to inject Device Analytics action frames with arbitrary information, which could modify the Device Analytics data of valid wireless clients that are connected to the same wireless controller.

    Published: 24 Sept 2025
    1.9
    Low

    CVE-2025-10909

    Last Modified: 15 Apr 2026

    A security flaw has been discovered in Mangati NovoSGA up to 2.2.9. The impacted element is an unknown function of the file /admin of the component SVG File Handler. Performing manipulation of the argument logoNavbar/logoLogin results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been released to the public and may be exploited.

    Published: 24 Sept 2025
    8.8
    High

    CVE-2025-10892

    Last Modified: 26 Feb 2026

    Integer overflow in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 24 Sept 2025
    8.8
    High

    CVE-2025-10891

    Last Modified: 26 Feb 2026

    Integer overflow in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 24 Sept 2025
    9.1
    Critical

    CVE-2025-10890

    Last Modified: 25 Sept 2025

    Side-channel information leakage in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)

    Published: 24 Sept 2025
    8.8
    High

    CVE-2025-10502

    Last Modified: 26 Feb 2026

    Heap buffer overflow in ANGLE in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via malicious network traffic. (Chromium security severity: High)

    Published: 24 Sept 2025
    8.8
    High

    CVE-2025-10500

    Last Modified: 26 Feb 2026

    Use after free in Dawn in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 24 Sept 2025
    8.8
    High

    CVE-2025-10501

    Last Modified: 26 Feb 2026

    Use after free in WebRTC in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 24 Sept 2025
    9.8
    Critical

    CVE-2025-10585

    Last Modified: 26 Feb 2026

    Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 24 Sept 2025
    6.9
    Medium

    CVE-2025-10360

    Last Modified: 15 Apr 2026

    In Puppet Enterprise versions 2025.4.0 and 2025.5, the encryption key used for encrypting content in the Infra Assistant database was not excluded from the files gathered by Puppet backup. The key is only present on the system if the user has a Puppet Enterprise Advanced license and has enabled the Infra Assistant feature. The key is used for encrypting one particular bit of data in the Infra Assistant database: the API key for their AI provider account. This has been fixed in Puppet Enterprise version 2025.6, and release notes for 2025.6 have remediation steps for users of affected versions who can't update to the latest version.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-47329

    Last Modified: 26 Feb 2026

    Memory corruption while handling invalid inputs in application info setup.

    Published: 24 Sept 2025
    7.5
    High

    CVE-2025-47328

    Last Modified: 25 Sept 2025

    Transient DOS while processing power control requests with invalid antenna or stream values.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-47327

    Last Modified: 26 Feb 2026

    Memory corruption while encoding the image data.

    Published: 24 Sept 2025
    7.5
    High

    CVE-2025-47326

    Last Modified: 25 Sept 2025

    Transient DOS while handling command data during power control processing.

    Published: 24 Sept 2025
    7.5
    High

    CVE-2025-47318

    Last Modified: 28 Nov 2025

    Transient DOS while parsing the EPTM test control message to get the test pattern.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-47317

    Last Modified: 26 Feb 2026

    Memory corruption due to global buffer overflow when a test command uses an invalid payload type.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-47316

    Last Modified: 26 Feb 2026

    Memory corruption due to double free when multiple threads race to set the timestamp store.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-47315

    Last Modified: 26 Feb 2026

    Memory corruption while handling repeated memory unmap requests from guest VM.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-47314

    Last Modified: 26 Feb 2026

    Memory corruption while processing data sent by FE driver.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-27077

    Last Modified: 26 Feb 2026

    Memory corruption while processing message in guest VM.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-27037

    Last Modified: 26 Feb 2026

    Memory corruption while processing config_dev IOCTL when camera kernel driver drops its reference to CPU buffers.

    Published: 24 Sept 2025
    6.1
    Medium

    CVE-2025-27036

    Last Modified: 25 Sept 2025

    Information disclosure when Video engine escape input data is less than expected minimum size.

    Published: 24 Sept 2025
    9.8
    Critical

    CVE-2025-27034

    Last Modified: 26 Feb 2026

    Memory corruption while selecting the PLMN from SOR failed list.

    Published: 24 Sept 2025
    6.1
    Medium

    CVE-2025-27033

    Last Modified: 25 Sept 2025

    Information disclosure while running video usecase having rogue firmware.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-27032

    Last Modified: 26 Feb 2026

    memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.

    Published: 24 Sept 2025
    6.1
    Medium

    CVE-2025-27030

    Last Modified: 25 Sept 2025

    information disclosure while invoking calibration data from user space to update firmware size.

    Published: 24 Sept 2025
    8.2
    High

    CVE-2025-21488

    Last Modified: 28 Nov 2025

    Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set.

    Published: 24 Sept 2025
    8.2
    High

    CVE-2025-21487

    Last Modified: 28 Nov 2025

    Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.

    Published: 24 Sept 2025
    8.2
    High

    CVE-2025-21484

    Last Modified: 10 Feb 2026

    Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP packet.

    Published: 24 Sept 2025
    9.8
    Critical

    CVE-2025-21483

    Last Modified: 26 Feb 2026

    Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.

    Published: 24 Sept 2025
    7.1
    High

    CVE-2025-21482

    Last Modified: 26 Feb 2026

    Cryptographic issue while performing RSA PKCS padding decoding.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-21481

    Last Modified: 26 Feb 2026

    Memory corruption while performing private key encryption in trusted application.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-21476

    Last Modified: 26 Feb 2026

    Memory corruption when passing parameters to the Trusted Virtual Machine during the handshake.

    Published: 24 Sept 2025
    5.9
    Medium

    CVE-2025-8869

    Last Modified: 15 Apr 2026

    When extracting a tar archive pip may not check symbolic links point into the extraction directory if the tarfile module doesn't implement PEP 706. Note that upgrading pip to a "fixed" version for this vulnerability doesn't fix all known vulnerabilities that are remediated by using a Python version that implements PEP 706. Note that this is a vulnerability in pip's fallback implementation of tar extraction for Python versions that don't implement PEP 706 and therefore are not secure to all vulnerabilities in the Python 'tarfile' module. If you're using a Python version that implements PEP 706 then pip doesn't use the "vulnerable" fallback code. Mitigations include upgrading to a version of pip that includes the fix, upgrading to a Python version that implements PEP 706 (Python >=3.9.17, >=3.10.12, >=3.11.4, or >=3.12), applying the linked patch, or inspecting source distributions (sdists) before installation as is already a best-practice.

    Published: 24 Sept 2025
    7.2
    High

    CVE-2025-48868

    Last Modified: 29 Sept 2025

    Horilla is a free and open source Human Resource Management System (HRMS). An authenticated Remote Code Execution (RCE) vulnerability exists in Horilla 1.3.0 due to the unsafe use of Python’s eval() function on a user-controlled query parameter in the project_bulk_archive view. This allows privileged users (e.g., administrators) to execute arbitrary system commands on the server. While having Django’s DEBUG=True makes exploitation visibly easier by returning command output in the HTTP response, this is not required. The vulnerability can still be exploited in DEBUG=False mode by using blind payloads such as a reverse shell, leading to full remote code execution. This issue has been patched in version 1.3.1.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-23354

    Last Modified: 10 Oct 2025

    NVIDIA Megatron-LM for all platforms contains a vulnerability in the ensemble_classifer script where malicious data created by an attacker may cause an injection. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, Information disclosure, and data tampering.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-23353

    Last Modified: 10 Oct 2025

    NVIDIA Megatron-LM for all platforms contains a vulnerability in the msdp preprocessing script where malicious data created by an attacker may cause an injection. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, Information disclosure, and data tampering.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-23349

    Last Modified: 10 Oct 2025

    NVIDIA Megatron-LM for all platforms contains a vulnerability in the tasks/orqa/unsupervised/nq.py component, where an attacker may cause a code injection. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.

    Published: 24 Sept 2025
    7.8
    High

    CVE-2025-23348

    Last Modified: 10 Oct 2025

    NVIDIA Megatron-LM for all platforms contains a vulnerability in the pretrain_gpt script, where malicious data created by an attacker may cause a code injection issue. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.

    Published: 24 Sept 2025
    3.3
    Low

    CVE-2025-23346

    Last Modified: 6 Oct 2025

    NVIDIA CUDA Toolkit contains a vulnerability in cuobjdump, where an unprivileged user can cause a NULL pointer dereference. A successful exploit of this vulnerability may lead to a limited denial of service.

    Published: 24 Sept 2025
    3.3
    Low

    CVE-2025-23340

    Last Modified: 3 Nov 2025

    NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the nvdisasm binary where a user may cause an out-of-bounds read by passing a malformed ELF file to nvdisasm. A successful exploit of this vulnerability may lead to a partial denial of service.

    Published: 24 Sept 2025
    3.3
    Low

    CVE-2025-23339

    Last Modified: 26 Feb 2026

    NVIDIA CUDA Toolkit for all platforms contains a vulnerability in cuobjdump where an attacker may cause a stack-based buffer overflow by getting the user to run cuobjdump on a malicious ELF file. A successful exploit of this vulnerability may lead to arbitrary code execution at the privilege level of the user running cuobjdump.

    Published: 24 Sept 2025
    3.3
    Low

    CVE-2025-23338

    Last Modified: 3 Nov 2025

    NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where a user may cause an out-of-bounds write by running nvdisasm on a malicious ELF file. A successful exploit of this vulnerability may lead to denial of service.

    Published: 24 Sept 2025
    3.3
    Low

    CVE-2025-23308

    Last Modified: 26 Feb 2026

    NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where an attacker may cause a heap-based buffer overflow by getting the user to run nvdisasm on a malicious ELF file. A successful exploit of this vulnerability may lead to arbitrary code execution at the privilege level of the user running nvdisasm.

    Published: 24 Sept 2025
    4.2
    Medium

    CVE-2025-23275

    Last Modified: 6 Oct 2025

    NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvJPEG where a local authenticated user may cause a GPU out-of-bounds write by providing certain image dimensions. A successful exploit of this vulnerability may lead to denial of service and information disclosure.

    Published: 24 Sept 2025
    4.5
    Medium

    CVE-2025-23274

    Last Modified: 15 Apr 2026

    NVIDIA nvJPEG contains a vulnerability in jpeg encoding where a user may cause an out-of-bounds read by providing a maliciously crafted input image with dimensions that cause integer overflows in array index calculations. A successful exploit of this vulnerability may lead to denial of service.

    Published: 24 Sept 2025
    2.5
    Low

    CVE-2025-23273

    Last Modified: 6 Oct 2025

    NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvJPEG where a local authenticated user may cause a divide by zero error by submitting a specially crafted JPEG file. A successful exploit of this vulnerability may lead to denial of service.

    Published: 24 Sept 2025
    5.7
    Medium

    CVE-2025-23272

    Last Modified: 15 Apr 2026

    NVIDIA nvJPEG library contains a vulnerability where an attacker can cause an out-of-bounds read by means of a specially crafted JPEG file. A successful exploit of this vulnerability might lead to information disclosure or denial of service.

    Published: 24 Sept 2025