Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
8.7 HIGH
CVE-2026-29063 — Immutable.js: Improperly Controlled Modification of Object Prototype Attributes ('Prototy…

Immutable.js provides many Persistent Immutable data structures. Prior to versions 3.8.3, 4.3.7, and 5.1.5, Prototype Pollution is possible in immutable via the mergeDeep(), mergeDeepWith(), merge(),…

Remote | Misconfiguration
Mar 06, 2026 Mar 09, 2026
Mar 06, 2026
Mar 09, 2026
6.5 MEDIUM
CVE-2025-69653 — "QuickJS Denial-of-Service Vulnerability"

A crafted JavaScript input can trigger an internal assertion failure in QuickJS release 2025-09-13, fixed in commit 1dbba8a88eaa40d15a8a9b70bb1a0b8fb5b552e6 (2025-12-11), in file gc_decref_child in q…

Remote | Denial of Service
Mar 06, 2026 Mar 12, 2026
Mar 06, 2026
Mar 12, 2026
6.2 MEDIUM
CVE-2025-69652 — GNU Binutils Denial of Service Vulnerability

GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformed DWARF abbrev or debug information. Due to incomplete state…

binutils | Denial of Service
Mar 06, 2026 Mar 11, 2026
Mar 06, 2026
Mar 11, 2026
7.5 HIGH
CVE-2025-69650 — GNU Binutils Double Free Vulnerability

GNU Binutils thru 2.46 readelf contains a double free vulnerability when processing a crafted ELF binary with malformed relocation data. During GOT relocation handling, dump_relocations may return ea…

binutils | Remote | Memory Corruption
Mar 06, 2026 Mar 19, 2026
Mar 06, 2026
Mar 19, 2026
7.5 HIGH
CVE-2025-69649 — Apache GNU Binutils Null Pointer Dereference Vulnerability

GNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. During relocation processing, an invalid or null se…

binutils | Remote | Memory Corruption
Mar 06, 2026 Mar 11, 2026
Mar 06, 2026
Mar 11, 2026
Showing 20 of 5865 Results