Latest CVE Feed
-
7.8
HIGHCVE-2023-38114
Foxit PDF Reader AcroForm Doc Object Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulne... Read more
- Published: May. 03, 2024
- Modified: Aug. 12, 2025
-
7.5
HIGHCVE-2025-23333
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of-bounds read by manipulating shared memory data. A successful exploit of this vulnerability might lead to informati... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 12, 2025
-
7.5
HIGHCVE-2025-23334
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of-bounds read by sending a request. A successful exploit of this vulnerability might lead to information disclosure.... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 12, 2025
-
7.5
HIGHCVE-2025-23335
NVIDIA Triton Inference Server for Windows and Linux and the Tensor RT backend contain a vulnerability where an attacker could cause an underflow by a specific model configuration and a specific input. A successful exploit of this vulnerability might lead... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 12, 2025
-
6.6
MEDIUMCVE-2025-47183
In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_tree function may read past the end of a heap buffer while parsing an MP4 file, leading to information disclosure.... Read more
Affected Products : gstreamer- Published: Aug. 07, 2025
- Modified: Aug. 12, 2025
-
8.1
HIGHCVE-2025-47219
In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_trak function may read past the end of a heap buffer while parsing an MP4 file, possibly leading to information disclosure.... Read more
Affected Products : gstreamer- Published: Aug. 07, 2025
- Modified: Aug. 12, 2025
-
5.6
MEDIUMCVE-2025-47806
In GStreamer through 1.26.1, the subparse plugin's parse_subrip_time function may write data past the bounds of a stack buffer, leading to a crash.... Read more
Affected Products : gstreamer- Published: Aug. 07, 2025
- Modified: Aug. 12, 2025
-
5.5
MEDIUMCVE-2025-47807
In GStreamer through 1.26.1, the subparse plugin's subrip_unescape_formatting function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.... Read more
Affected Products : gstreamer- Published: Aug. 07, 2025
- Modified: Aug. 12, 2025
-
5.6
MEDIUMCVE-2025-47808
In GStreamer through 1.26.1, the subparse plugin's tmplayer_parse_line function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.... Read more
Affected Products : gstreamer- Published: Aug. 07, 2025
- Modified: Aug. 12, 2025
-
8.4
HIGHCVE-2025-24298
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through use after free.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
-
5.5
MEDIUMCVE-2025-24844
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
-
5.5
MEDIUMCVE-2025-24925
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
-
5.5
MEDIUMCVE-2025-25212
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through improper input.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
-
8.4
HIGHCVE-2025-25278
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through race condition.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
-
6.4
MEDIUMCVE-2024-13403
The WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘fieldHTML’ parameter in all versions up to, and including, 1.9.3.1 due to insufficient... Read more
Affected Products : wpforms- Published: Feb. 04, 2025
- Modified: Aug. 12, 2025
-
5.5
MEDIUMCVE-2025-26690
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
-
8.4
HIGHCVE-2025-27128
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through use after free.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
-
5.5
MEDIUMCVE-2025-27536
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through type confusion.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
-
5.5
MEDIUMCVE-2025-27562
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
-
8.4
HIGHCVE-2025-27577
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through race condition.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025