Latest CVE Feed
-
0.0
NACVE-2025-13737
The Nextend Social Login and Register plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.21. This is due to missing or incorrect nonce validation on the 'unlinkUser' function. This makes it possible ... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Cross-Site Request Forgery
-
4.4
MEDIUMCVE-2025-64315
Configuration defect vulnerability in the file management module. Impact: Successful exploitation of this vulnerability may affect app data confidentiality and integrity.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Misconfiguration
-
9.3
CRITICALCVE-2025-64314
Permission control vulnerability in the memory management module. Impact: Successful exploitation of this vulnerability may affect confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Memory Corruption
-
5.3
MEDIUMCVE-2025-64313
Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Denial of Service
-
5.1
MEDIUMCVE-2025-64311
Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Authorization
-
7.3
HIGHCVE-2025-58316
DoS vulnerability in the video-related system service module. Impact: Successful exploitation of this vulnerability may affect availability.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Denial of Service
-
5.5
MEDIUMCVE-2025-58315
Permission control vulnerability in the Wi-Fi module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Authorization
-
6.6
MEDIUMCVE-2025-58314
Vulnerability of accessing invalid memory in the component driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Memory Corruption
-
5.1
MEDIUMCVE-2025-58312
Permission control vulnerability in the App Lock module. Impact: Successful exploitation of this vulnerability may affect availability.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Authorization
-
8.0
HIGHCVE-2025-58310
Permission control vulnerability in the distributed component. Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Authorization
-
6.8
MEDIUMCVE-2025-58309
Permission control vulnerability in the startup recovery module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Authorization
-
6.4
MEDIUMCVE-2025-58307
UAF vulnerability in the screen recording framework module. Impact: Successful exploitation of this vulnerability may affect availability.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Memory Corruption
-
8.4
HIGHCVE-2025-58303
UAF vulnerability in the screen recording framework module. Impact: Successful exploitation of this vulnerability may affect availability.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Memory Corruption
-
6.2
MEDIUMCVE-2025-58294
Permission control vulnerability in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Authorization
-
4.9
MEDIUMCVE-2025-64312
Permission control vulnerability in the file management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Authorization
-
5.8
MEDIUMCVE-2025-58311
UAF vulnerability in the USB driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Memory Corruption
-
7.3
HIGHCVE-2025-58308
Vulnerability of improper criterion security check in the call module. Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Authorization
-
6.2
MEDIUMCVE-2025-58305
Identity authentication bypass vulnerability in the Gallery app. Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Authentication
-
4.9
MEDIUMCVE-2025-58304
Permission control vulnerability in the file management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Authorization
-
8.4
HIGHCVE-2025-58302
Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products :- Published: Nov. 28, 2025
- Modified: Nov. 28, 2025
- Vuln Type: Authorization