Latest CVE Feed
-
3.3
LOWCVE-2025-23288
NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may cause an exposure of sensitive system information with local unprivileged system access. A successful exploit of this vulnerability may lead to Information disclosure.... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
3.3
LOWCVE-2025-23287
NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may access sensitive system-level information. A successful exploit of this vulnerability may lead to Information disclosure.... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
4.4
MEDIUMCVE-2025-23286
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where an attacker could read invalid memory. A successful exploit of this vulnerability might lead to information disclosure.... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
7.8
HIGHCVE-2025-23283
NVIDIA vGPU software for Linux-style hypervisors contains a vulnerability in the Virtual GPU Manager, where a malicious guest could cause stack buffer overflow. A successful exploit of this vulnerability might lead to code execution, denial of service, es... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
7.0
HIGHCVE-2025-23281
NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker with local unprivileged access that can win a race condition might be able to trigger a use-after-free error. A successful exploit of this vulnerability might lead to code ex... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
7.0
HIGHCVE-2025-23279
NVIDIA .run Installer for Linux and Solaris contains a vulnerability where an attacker could use a race condition to escalate privileges. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclo... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
7.1
HIGHCVE-2025-23278
NVIDIA Display Driver for Windows and Linux contains a vulnerability where an attacker might cause an improper index validation by issuing a call with crafted parameters. A successful exploit of this vulnerability might lead to data tampering or denial o... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
7.3
HIGHCVE-2025-23277
NVIDIA Display Driver for Linux and Windows contains a vulnerability in the kernel mode driver, where an attacker could access memory outside bounds permitted under normal use cases. A successful exploit of this vulnerability might lead to denial of servi... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
7.8
HIGHCVE-2025-23276
NVIDIA Installer for Windows contains a vulnerability where an attacker may be able to escalate privileges. A successful exploit of this vulnerability may lead to escalation of privileges, denial of service, code execution, information disclosure and data... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
9.8
CRITICALCVE-2025-8471
A vulnerability, which was classified as critical, has been found in projectworlds Online Admission System 1.0. This issue affects some unknown processing of the file /adminlogin.php. The manipulation of the argument a_id leads to sql injection. The attac... Read more
Affected Products : online_admission_system- Published: Aug. 02, 2025
- Modified: Aug. 05, 2025
-
9.8
CRITICALCVE-2025-8470
A vulnerability classified as critical was found in SourceCodester Online Hotel Reservation System 1.0. This vulnerability affects unknown code of the file /admin/deleteroom.php. The manipulation of the argument ID leads to sql injection. The attack can b... Read more
- Published: Aug. 02, 2025
- Modified: Aug. 05, 2025
-
9.8
CRITICALCVE-2025-8469
A vulnerability classified as critical has been found in SourceCodester Online Hotel Reservation System 1.0. This affects an unknown part of the file /admin/deletegallery.php. The manipulation of the argument ID leads to sql injection. It is possible to i... Read more
- Published: Aug. 02, 2025
- Modified: Aug. 05, 2025
-
9.8
CRITICALCVE-2025-8468
A vulnerability was found in code-projects Wazifa System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /controllers/reset.php. The manipulation of the argument email leads to sql injection. The attack... Read more
Affected Products : wazifa_system- Published: Aug. 02, 2025
- Modified: Aug. 05, 2025
-
9.8
CRITICALCVE-2025-7710
The Brave Conversion Engine (PRO) plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 0.7.7. This is due to the plugin not properly restricting a claimed identity while authenticating with Facebook. This makes... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
6.4
MEDIUMCVE-2025-7500
The Ocean Social Sharing plugin for WordPress is vulnerable to Stored Cross-Site Scripting via social icon titles in all versions up to, and including, 2.2.1 due to insufficient input sanitization and output escaping. This makes it possible for authentica... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
9.8
CRITICALCVE-2025-8467
A vulnerability was found in code-projects Wazifa System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /controllers/regcontrol.php. The manipulation of the argument Username leads to sql inje... Read more
Affected Products : wazifa_system- Published: Aug. 02, 2025
- Modified: Aug. 05, 2025
-
4.3
MEDIUMCVE-2025-8488
The Ultimate Addons for Elementor (Formerly Elementor Header & Footer Builder) plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the save_hfe_compatibility_option_callback ()function in all versio... Read more
Affected Products : elementor_header_\&_footer_builder- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025
-
5.3
MEDIUMCVE-2025-6722
The BitFire Security – Firewall, WAF, Bot/Spam Blocker, Login Security plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.5 via the bitfire_* directory that automatically gets created and stores po... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 05, 2025
-
9.8
CRITICALCVE-2025-8466
A vulnerability was found in code-projects Online Farm System 1.0. It has been classified as critical. Affected is an unknown function of the file /forgot_passfarmer.php. The manipulation of the argument email leads to sql injection. It is possible to lau... Read more
Affected Products : online_farm_system- Published: Aug. 02, 2025
- Modified: Aug. 05, 2025
-
6.1
MEDIUMCVE-2025-8400
The Image Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject a... Read more
Affected Products :- Published: Aug. 02, 2025
- Modified: Aug. 04, 2025