Latest CVE Feed
-
7.8
HIGHCVE-2025-7239
IrfanView CADImage Plugin DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView CADImage Plugin. User interaction is required to ... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 25, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7238
IrfanView CADImage Plugin DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView CADImage Plugin. User interaction is required t... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 25, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7237
IrfanView CADImage Plugin DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView CADImage Plugin. User interaction is required to ... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 25, 2025
-
7.8
HIGHCVE-2025-7236
IrfanView CADImage Plugin DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView CADImage Plugin. User interaction is required to ... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 25, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7235
IrfanView CADImage Plugin DXF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView CADImage Plugin. User interaction is required t... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 25, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7234
IrfanView CADImage Plugin CGM File Parsing Out-of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView CADImage Plugin. User interaction is required t... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 24, 2025
- Vuln Type: Memory Corruption
-
5.5
MEDIUMCVE-2025-7233
IrfanView CADImage Plugin DWG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of IrfanView CADImage Plugin. User interaction is re... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 25, 2025
- Vuln Type: Information Disclosure
-
7.8
HIGHCVE-2025-7231
INVT VT-Designer PM3 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of INVT VT-Designer. User interaction is required to exploit this vul... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7230
INVT VT-Designer PM3 File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of INVT VT-Designer. User interaction is required to exploit this vulnerab... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7229
INVT VT-Designer PM3 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of INVT VT-Designer. User interaction is required to exploit this vul... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7228
INVT VT-Designer PM3 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of INVT VT-Designer. User interaction is required to exploit this vul... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7227
INVT VT-Designer PM3 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of INVT VT-Designer. User interaction is required to exploit this vul... Read more
- Published: Jul. 21, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7226
INVT HMITool VPM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of INVT HMITool. User interaction is required to exploit this vulnerabili... Read more
Affected Products : hmitool- Published: Jul. 21, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7225
INVT HMITool VPM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of INVT HMITool. User interaction is required to exploit this vulnerabili... Read more
Affected Products : hmitool- Published: Jul. 21, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7224
INVT HMITool VPM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of INVT HMITool. User interaction is required to exploit this vulnerabili... Read more
Affected Products : hmitool- Published: Jul. 21, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7223
INVT HMITool VPM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of INVT HMITool. User interaction is required to exploit this vulnerabili... Read more
Affected Products : hmitool- Published: Jul. 21, 2025
- Modified: Jul. 29, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-7222
Luxion KeyShot 3DM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Luxion KeyShot. User interaction is required to exploit this vulnera... Read more
Affected Products : keyshot- Published: Jul. 21, 2025
- Modified: Aug. 11, 2025
- Vuln Type: Memory Corruption
-
5.3
MEDIUMCVE-2025-54121
Starlette is a lightweight ASGI (Asynchronous Server Gateway Interface) framework/toolkit, designed for building async web services in Python. In versions 0.47.1 and below, when parsing a multi-part form with large files (greater than the default max spoo... Read more
Affected Products : starlette- Published: Jul. 21, 2025
- Modified: Jul. 22, 2025
- Vuln Type: Denial of Service
-
9.4
CRITICALCVE-2025-54071
RomM (ROM Manager) allows users to scan, enrich, browse and play their game collections with a clean and responsive interface. In versions 4.0.0-beta.3 and below, an authenticated arbitrary file write vulnerability exists in the /api/saves endpoint. This ... Read more
Affected Products :- Published: Jul. 21, 2025
- Modified: Jul. 22, 2025
- Vuln Type: Path Traversal
-
9.1
CRITICALCVE-2025-52362
Server-Side Request Forgery (SSRF) vulnerability exists in the URL processing functionality of PHProxy version 1.1.1 and prior. The input validation for the _proxurl parameter can be bypassed, allowing a remote, unauthenticated attacker to submit a specia... Read more
Affected Products :- Published: Jul. 21, 2025
- Modified: Jul. 22, 2025
- Vuln Type: Server-Side Request Forgery