Latest CVE Feed
-
6.6
MEDIUMCVE-2025-47183
In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_tree function may read past the end of a heap buffer while parsing an MP4 file, leading to information disclosure.... Read more
Affected Products : gstreamer- Published: Aug. 07, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Information Disclosure
-
8.1
HIGHCVE-2025-47219
In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_trak function may read past the end of a heap buffer while parsing an MP4 file, possibly leading to information disclosure.... Read more
Affected Products : gstreamer- Published: Aug. 07, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Memory Corruption
-
5.6
MEDIUMCVE-2025-47806
In GStreamer through 1.26.1, the subparse plugin's parse_subrip_time function may write data past the bounds of a stack buffer, leading to a crash.... Read more
Affected Products : gstreamer- Published: Aug. 07, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Memory Corruption
-
5.5
MEDIUMCVE-2025-47807
In GStreamer through 1.26.1, the subparse plugin's subrip_unescape_formatting function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.... Read more
Affected Products : gstreamer- Published: Aug. 07, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Denial of Service
-
5.6
MEDIUMCVE-2025-47808
In GStreamer through 1.26.1, the subparse plugin's tmplayer_parse_line function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.... Read more
Affected Products : gstreamer- Published: Aug. 07, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Denial of Service
-
8.4
HIGHCVE-2025-24298
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through use after free.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Memory Corruption
-
5.5
MEDIUMCVE-2025-24844
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Denial of Service
-
5.5
MEDIUMCVE-2025-24925
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Denial of Service
-
5.5
MEDIUMCVE-2025-25212
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through improper input.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Denial of Service
-
8.4
HIGHCVE-2025-25278
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through race condition.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Race Condition
-
6.4
MEDIUMCVE-2024-13403
The WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘fieldHTML’ parameter in all versions up to, and including, 1.9.3.1 due to insufficient... Read more
Affected Products : wpforms- Published: Feb. 04, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Cross-Site Scripting
-
5.5
MEDIUMCVE-2025-26690
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Denial of Service
-
8.4
HIGHCVE-2025-27128
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through use after free.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Memory Corruption
-
5.5
MEDIUMCVE-2025-27536
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through type confusion.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Denial of Service
-
5.5
MEDIUMCVE-2025-27562
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Denial of Service
-
8.4
HIGHCVE-2025-27577
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through race condition.... Read more
Affected Products : openharmony- Published: Aug. 11, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Race Condition
-
6.5
MEDIUMCVE-2023-35720
ASUS RT-AX92U lighttpd mod_webdav.so SQL Injection Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected ASUS RT-AX92U routers. Authentication is not required to exploit th... Read more
- Published: May. 03, 2024
- Modified: Aug. 12, 2025
-
8.8
HIGHCVE-2023-35717
TP-Link Tapo C210 Password Recovery Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of TP-Link Tapo C210 IP cameras. Authentication is not required to exploit thi... Read more
- Published: May. 03, 2024
- Modified: Aug. 12, 2025
-
6.5
MEDIUMCVE-2024-49348
IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.0.3, 22.0.1, and 22.0.2 allows restricting access to organizational data to valid contexts. The fact that tasks of type co... Read more
Affected Products : cloud_pak_for_business_automation- Published: Feb. 05, 2025
- Modified: Aug. 12, 2025
-
7.5
HIGHCVE-2025-23331
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause a memory allocation with excessive size value, leading to a segmentation fault, by providing an invalid request. A successful exploit of this vulnerabil... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 12, 2025
- Vuln Type: Memory Corruption