Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 6.5

    MEDIUM
    CVE-2018-6484

    In ZZIPlib 0.13.67, there is a memory alignment error and bus error in the __zzip_fetch_disk_trailer function of zzip/zip.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted zip file.... Read more

    Affected Products : ubuntu_linux zziplib zziplib
    • EPSS Score: %0.42
    • Published: Feb. 01, 2018
    • Modified: Jul. 10, 2025
  • 6.5

    MEDIUM
    CVE-2018-6869

    In ZZIPlib 0.13.68, there is an uncontrolled memory allocation and a crash in the __zzip_parse_root_directory function of zzip/zip.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted zip file.... Read more

    • EPSS Score: %1.07
    • Published: Feb. 09, 2018
    • Modified: Jul. 10, 2025
  • 6.5

    MEDIUM
    CVE-2018-7726

    An issue was discovered in ZZIPlib 0.13.68. There is a bus error caused by the __zzip_parse_root_directory function of zip.c. Attackers could leverage this vulnerability to cause a denial of service via a crafted zip file.... Read more

    • EPSS Score: %0.35
    • Published: Mar. 06, 2018
    • Modified: Jul. 10, 2025
  • 5.5

    MEDIUM
    CVE-2017-5980

    The zzip_mem_entry_new function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted ZIP file.... Read more

    Affected Products : zziplib zziplib
    • EPSS Score: %0.22
    • Published: Mar. 01, 2017
    • Modified: Jul. 10, 2025
  • 5.5

    MEDIUM
    CVE-2017-5974

    Heap-based buffer overflow in the __zzip_get32 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.... Read more

    Affected Products : debian_linux zziplib zziplib
    • EPSS Score: %0.60
    • Published: Mar. 01, 2017
    • Modified: Jul. 10, 2025
  • 5.5

    MEDIUM
    CVE-2017-5977

    The zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted ZIP file.... Read more

    Affected Products : zziplib zziplib
    • EPSS Score: %0.46
    • Published: Mar. 01, 2017
    • Modified: Jul. 10, 2025
  • 3.3

    LOW
    CVE-2020-18442

    Infinite Loop in zziplib v0.13.69 allows remote attackers to cause a denial of service via the return value "zzip_file_read" in the function "unzzip_cat_file".... Read more

    Affected Products : fedora debian_linux zziplib zziplib
    • EPSS Score: %0.06
    • Published: Jun. 18, 2021
    • Modified: Jul. 10, 2025
  • 5.5

    MEDIUM
    CVE-2017-5975

    Heap-based buffer overflow in the __zzip_get64 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.... Read more

    Affected Products : debian_linux zziplib zziplib
    • EPSS Score: %0.63
    • Published: Mar. 01, 2017
    • Modified: Jul. 10, 2025
  • 5.5

    MEDIUM
    CVE-2020-18770

    An issue was discovered in function zzip_disk_entry_to_file_header in mmapped.c in zziplib 0.13.69, which will lead to a denial-of-service.... Read more

    Affected Products : zziplib zziplib
    • EPSS Score: %0.02
    • Published: Aug. 22, 2023
    • Modified: Jul. 10, 2025
  • 5.5

    MEDIUM
    CVE-2017-5981

    seeko.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (assertion failure and crash) via a crafted ZIP file.... Read more

    Affected Products : zziplib zziplib
    • EPSS Score: %0.43
    • Published: Mar. 01, 2017
    • Modified: Jul. 10, 2025
  • 5.5

    MEDIUM
    CVE-2017-5978

    The zzip_mem_entry_new function in memdisk.c in zziplib 0.13.62 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted ZIP file.... Read more

    Affected Products : zziplib zziplib
    • EPSS Score: %0.43
    • Published: Mar. 01, 2017
    • Modified: Jul. 10, 2025
  • 5.5

    MEDIUM
    CVE-2017-5976

    Heap-based buffer overflow in the zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.... Read more

    Affected Products : debian_linux zziplib zziplib
    • EPSS Score: %0.63
    • Published: Mar. 01, 2017
    • Modified: Jul. 10, 2025
  • 6.5

    MEDIUM
    CVE-2018-6541

    In ZZIPlib 0.13.67, there is a bus error caused by loading of a misaligned address (when handling disk64_trailer local entries) in __zzip_fetch_disk_trailer (zzip/zip.c). Remote attackers could leverage this vulnerability to cause a denial of service via ... Read more

    Affected Products : ubuntu_linux zziplib zziplib
    • EPSS Score: %0.44
    • Published: Feb. 02, 2018
    • Modified: Jul. 10, 2025
  • 6.5

    MEDIUM
    CVE-2018-7727

    An issue was discovered in ZZIPlib 0.13.68. There is a memory leak triggered in the function zzip_mem_disk_new in memdisk.c, which will lead to a denial of service attack.... Read more

    • EPSS Score: %0.09
    • Published: Mar. 06, 2018
    • Modified: Jul. 10, 2025
  • 6.5

    MEDIUM
    CVE-2018-7725

    An issue was discovered in ZZIPlib 0.13.68. An invalid memory address dereference was discovered in zzip_disk_fread in mmapped.c. The vulnerability causes an application crash, which leads to denial of service.... Read more

    • EPSS Score: %0.35
    • Published: Mar. 06, 2018
    • Modified: Jul. 10, 2025
  • 6.5

    MEDIUM
    CVE-2018-6542

    In ZZIPlib 0.13.67, there is a bus error (when handling a disk64_trailer seek value) caused by loading of a misaligned address in the zzip_disk_findfirst function of zzip/mmapped.c.... Read more

    Affected Products : zziplib zziplib
    • EPSS Score: %0.28
    • Published: Feb. 02, 2018
    • Modified: Jul. 10, 2025
  • 5.5

    MEDIUM
    CVE-2025-27736

    Exposure of sensitive information to an unauthorized actor in Windows Power Dependency Coordinator allows an authorized attacker to disclose information locally.... Read more

    • Published: Apr. 08, 2025
    • Modified: Jul. 10, 2025
    • Vuln Type: Information Disclosure
  • 6.0

    MEDIUM
    CVE-2025-27735

    Insufficient verification of data authenticity in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to bypass a security feature locally.... Read more

    • Published: Apr. 08, 2025
    • Modified: Jul. 10, 2025
    • Vuln Type: Authorization
  • 6.3

    MEDIUM
    CVE-2024-32231

    Stash up to v0.25.1 was discovered to contain a SQL injection vulnerability via the sort parameter.... Read more

    Affected Products : stash
    • Published: Aug. 15, 2024
    • Modified: Jul. 10, 2025
  • 7.8

    HIGH
    CVE-2025-27733

    Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.... Read more

    • Published: Apr. 08, 2025
    • Modified: Jul. 10, 2025
    • Vuln Type: Memory Corruption
Showing 20 of 291722 Results