Latest CVE Feed
-
4.3
MEDIUMCVE-2025-5195
An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.7, 17.11 before 17.11.3, and 18.0 before 18.0.1. It was possible for authenticated users to access arbitrary compliance frameworks, leading to unauthorized data dis... Read more
Affected Products : gitlab- Published: Jun. 12, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Authorization
-
7.5
HIGHCVE-2025-0673
An issue has been discovered in GitLab CE/EE affecting all versions from 17.7 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2, allow an attacker to trigger an infinite redirect loop, potentially leading to a denial of service condition.... Read more
Affected Products : gitlab- Published: Jun. 12, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Denial of Service
-
6.5
MEDIUMCVE-2025-5996
An issue has been discovered in GitLab CE/EE affecting all versions from 2.1.0 before 17.10.8, 17.11 before 17.11.4, and 18.0 before 18.0.2. A lack of input validation in HTTP responses could allow an authenticated user to cause denial of service.... Read more
Affected Products : gitlab- Published: Jun. 12, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Denial of Service
-
9.8
CRITICALCVE-2025-24813
Path Equivalence: 'file.Name' (Internal Dot) leading to Remote Code Execution and/or Information disclosure and/or malicious content added to uploaded files via write enabled Default Servlet in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0... Read more
- Actively Exploited
- Published: Mar. 10, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Path Traversal
-
7.8
HIGHCVE-2024-12751
Foxit PDF Reader AcroForm Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerabilit... Read more
- Published: Dec. 30, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2024-12752
Foxit PDF Reader AcroForm Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability... Read more
- Published: Dec. 30, 2024
- Modified: Aug. 08, 2025
-
7.3
HIGHCVE-2024-12753
Foxit PDF Reader Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Foxit PDF Reader. An attacker must first obtain the ability to execute low-privileged c... Read more
- Published: Dec. 30, 2024
- Modified: Aug. 08, 2025
-
5.4
MEDIUMCVE-2024-10970
The The Motors – Car Dealer, Classifieds & Listing plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.4.43. This is due to the software allowing users to execute an action that does not properly val... Read more
Affected Products : motors_-_car_dealer\,_classifieds_\&_listing- Published: Jan. 16, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Misconfiguration
-
7.8
HIGHCVE-2024-13045
Ashlar-Vellum Cobalt AR File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to e... Read more
Affected Products : cobalt- Published: Dec. 30, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2024-13044
Ashlar-Vellum Cobalt AR File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit t... Read more
Affected Products : cobalt- Published: Dec. 30, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2024-13048
Ashlar-Vellum Cobalt XE File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit t... Read more
Affected Products : cobalt- Published: Dec. 30, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2025-2015
Ashlar-Vellum Cobalt VS File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this v... Read more
Affected Products : cobalt- Published: Mar. 11, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-2017
Ashlar-Vellum Cobalt CO File Parsing Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this ... Read more
Affected Products : cobalt- Published: Mar. 11, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2023-42103
Ashlar-Vellum Cobalt AR File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this v... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2023-42102
Ashlar-Vellum Cobalt AR File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this v... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2023-42101
Ashlar-Vellum Cobalt AR File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit th... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2023-42104
Ashlar-Vellum Cobalt AR File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this v... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2023-35712
Ashlar-Vellum Cobalt XE File Parsing Uninitialized Memory Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit ... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.8
HIGHCVE-2023-35710
Ashlar-Vellum Cobalt Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this vuln... Read more
Affected Products : cobalt- Published: May. 03, 2024
- Modified: Aug. 08, 2025
-
7.5
HIGHCVE-2024-45650
IBM Security Verify Directory 10.0 through 10.0.3 is vulnerable to a denial of service when sending an LDAP extended operation.... Read more
Affected Products : security_verify_directory- Published: Jan. 31, 2025
- Modified: Aug. 08, 2025
- Vuln Type: Denial of Service