Latest CVE Feed
-
5.4
MEDIUMCVE-2024-10970
The The Motors – Car Dealer, Classifieds & Listing plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.4.43. This is due to the software allowing users to execute an action that does not properly val... Read more
Affected Products : motors_-_car_dealer\,_classifieds_\&_listing- Published: Jan. 16, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Misconfiguration
-
7.8
HIGHCVE-2024-13045
Ashlar-Vellum Cobalt AR File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to e... Read more
Affected Products : cobalt- Published: Dec. 30, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2024-13044
Ashlar-Vellum Cobalt AR File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit t... Read more
Affected Products : cobalt- Published: Dec. 30, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2024-13048
Ashlar-Vellum Cobalt XE File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit t... Read more
Affected Products : cobalt- Published: Dec. 30, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2025-2015
Ashlar-Vellum Cobalt VS File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this v... Read more
Affected Products : cobalt- Published: Mar. 11, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-2017
Ashlar-Vellum Cobalt CO File Parsing Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this ... Read more
Affected Products : cobalt- Published: Mar. 11, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2023-42103
Ashlar-Vellum Cobalt AR File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this v... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2023-42102
Ashlar-Vellum Cobalt AR File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this v... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2023-42101
Ashlar-Vellum Cobalt AR File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit th... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2023-42104
Ashlar-Vellum Cobalt AR File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this v... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2023-35712
Ashlar-Vellum Cobalt XE File Parsing Uninitialized Memory Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit ... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2023-35710
Ashlar-Vellum Cobalt Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this vuln... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.5
HIGHCVE-2024-45650
IBM Security Verify Directory 10.0 through 10.0.3 is vulnerable to a denial of service when sending an LDAP extended operation.... Read more
Affected Products : security_verify_directory- Published: Jan. 31, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Denial of Service
-
7.8
HIGHCVE-2025-2016
Ashlar-Vellum Cobalt VC6 File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this ... Read more
Affected Products : cobalt- Published: Mar. 11, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2024-13049
Ashlar-Vellum Cobalt XE File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this v... Read more
Affected Products : cobalt- Published: Dec. 30, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2024-13047
Ashlar-Vellum Cobalt CO File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this v... Read more
Affected Products : cobalt- Published: Dec. 30, 2024
- Modified: Aug. 08, 2025
-
5.3
MEDIUMCVE-2024-45658
IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned. This information could be used in further attacks against the syste... Read more
Affected Products : security_verify_access- Published: Feb. 04, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Information Disclosure
-
7.2
HIGHCVE-2025-20184
A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Web Appliance could allow an authenticated, remote attacker to perform command injection attacks against an affected device. Th... Read more
Affected Products : asyncos secure_email_gateway secure_email_gateway_virtual_appliance_c100v secure_email_gateway_virtual_appliance_c300v secure_email_gateway_virtual_appliance_c600v secure_email_gateway_c195 secure_email_gateway_c395 secure_email_gateway_c695 secure_web_appliance_virtual_s1000v secure_web_appliance_virtual_s100v +5 more products- Published: Feb. 05, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Injection
-
7.8
HIGHCVE-2023-39427
In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share v12 SP0 Build (1204.77), the affected applications lack proper validation of user-supplied data when parsing XE files. This could lead to an out-of-bounds write. An attacker could leverage ... Read more
- EPSS Score: %0.10
- Published: Oct. 26, 2023
- Modified: Aug. 08, 2025
-
8.9
HIGHCVE-2025-24326
When BIG-IP Advanced WAF/ASM Behavioral DoS (BADoS) TLS Signatures feature is configured, undisclosed traffic can case an increase in memory resource utilization. Note: Software versions which have reached End of Technical Support (EoTS) are not eval... Read more
- Published: Feb. 05, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Denial of Service