Latest CVE Feed
-
9.0
HIGHCVE-2025-7090
A vulnerability, which was classified as critical, has been found in Belkin F9K1122 1.00.33. Affected by this issue is the function formConnectionSetting of the file /goform/formConnectionSetting of the component webs. The manipulation of the argument max... Read more
- Published: Jul. 06, 2025
- Modified: Jul. 09, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-7089
A vulnerability was found in Belkin F9K1122 1.00.33 and classified as critical. This issue affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup of the component webs. The manipulation of the argument pppUserName leads to stack-base... Read more
- Published: Jul. 06, 2025
- Modified: Jul. 09, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-7088
A vulnerability, which was classified as critical, was found in Belkin F9K1122 1.00.33. This affects the function formPPPoESetup of the file /goform/formPPPoESetup of the component webs. The manipulation of the argument pppUserName leads to stack-based bu... Read more
- Published: Jul. 06, 2025
- Modified: Jul. 09, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-7087
A vulnerability classified as critical was found in Belkin F9K1122 1.00.33. Affected by this vulnerability is the function formL2TPSetup of the file /goform/formL2TPSetup of the component webs. The manipulation of the argument L2TPUserName leads to stack-... Read more
- Published: Jul. 06, 2025
- Modified: Jul. 09, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-7086
A vulnerability classified as critical has been found in Belkin F9K1122 1.00.33. Affected is the function formPPTPSetup of the file /goform/formPPTPSetup of the component webs. The manipulation of the argument pptpUserName leads to stack-based buffer over... Read more
- Published: Jul. 06, 2025
- Modified: Jul. 09, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-7085
A vulnerability was found in Belkin F9K1122 1.00.33. It has been rated as critical. This issue affects the function formiNICWpsStart of the file /goform/formiNICWpsStart of the component webs. The manipulation of the argument pinCode leads to stack-based ... Read more
- Published: Jul. 06, 2025
- Modified: Jul. 09, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-7084
A vulnerability was found in Belkin F9K1122 1.00.33. It has been declared as critical. This vulnerability affects the function formWpsStart of the file /goform/formWpsStart of the component webs. The manipulation of the argument pinCode leads to stack-bas... Read more
- Published: Jul. 06, 2025
- Modified: Jul. 09, 2025
- Vuln Type: Memory Corruption
-
8.8
HIGHCVE-2025-7083
A vulnerability was found in Belkin F9K1122 1.00.33. It has been classified as critical. This affects the function mp of the file /goform/mp of the component webs. The manipulation of the argument command leads to os command injection. It is possible to i... Read more
- Published: Jul. 06, 2025
- Modified: Jul. 09, 2025
- Vuln Type: Injection
-
8.8
HIGHCVE-2025-7082
A vulnerability was found in Belkin F9K1122 1.00.33 and classified as critical. Affected by this issue is the function formBSSetSitesurvey of the file /goform/formBSSetSitesurvey of the component webs. The manipulation of the argument wan_ipaddr/wan_netma... Read more
- Published: Jul. 06, 2025
- Modified: Jul. 09, 2025
- Vuln Type: Injection
-
8.8
HIGHCVE-2025-7081
A vulnerability has been found in Belkin F9K1122 1.00.33 and classified as critical. Affected by this vulnerability is the function formSetWanStatic of the file /goform/formSetWanStatic of the component webs. The manipulation of the argument m_wan_ipaddr/... Read more
- Published: Jul. 06, 2025
- Modified: Jul. 09, 2025
- Vuln Type: Injection
-
6.3
MEDIUMCVE-2025-7080
A vulnerability, which was classified as problematic, was found in Done-0 Jank up to 322caebbad10568460364b9667aa62c3080bfc17. Affected is an unknown function of the file internal/utils/jwt_utils.go of the component JWT Token Handler. The manipulation of ... Read more
Affected Products :- Published: Jul. 06, 2025
- Modified: Jul. 08, 2025
- Vuln Type: Cryptography
-
9.5
CRITICALCVE-2025-5333
Remote attackers can execute arbitrary code in the context of the vulnerable service process.... Read more
Affected Products :- Published: Jul. 06, 2025
- Modified: Jul. 08, 2025
-
6.3
MEDIUMCVE-2025-7079
A vulnerability, which was classified as problematic, has been found in mao888 bluebell-plus up to 2.3.0. This issue affects some unknown processing of the file bluebell_backend/pkg/jwt/jwt.go of the component JWT Token Handler. The manipulation of the ar... Read more
Affected Products :- Published: Jul. 06, 2025
- Modified: Jul. 08, 2025
- Vuln Type: Misconfiguration
-
0.0
NACVE-2025-38235
In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: fix "appletb_backlight" backlight device reference counting During appletb_kbd_probe, probe attempts to get the backlight device by name. When this happens backlight_d... Read more
Affected Products : linux_kernel- Published: Jul. 06, 2025
- Modified: Jul. 08, 2025
- Vuln Type: Misconfiguration
-
5.3
MEDIUMCVE-2025-7078
A vulnerability classified as problematic was found in 07FLYCMS, 07FLY-CMS and 07FlyCRM up to 1.3.9. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been ... Read more
- Published: Jul. 06, 2025
- Modified: Aug. 01, 2025
- Vuln Type: Cross-Site Request Forgery
-
9.0
HIGHCVE-2025-7077
A vulnerability classified as critical has been found in Shenzhen Libituo Technology LBT-T300-T310 up to 2.2.3.6. This affects the function config_3g_para of the file /appy.cgi. The manipulation of the argument username_3g/password_3g leads to buffer over... Read more
- Published: Jul. 06, 2025
- Modified: Aug. 20, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-27446
Incorrect Permission Assignment for Critical Resource vulnerability in Apache APISIX(java-plugin-runner). Local listening file permissions in APISIX plugin runner allow a local attacker to elevate privileges. This issue affects Apache APISIX(java-plugin-... Read more
Affected Products : apisix- Published: Jul. 06, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Authorization
-
5.4
MEDIUMCVE-2025-7076
A vulnerability was found in BlackVue Dashcam 590X up to 20250624. It has been rated as critical. Affected by this issue is some unknown functionality of the file /upload.cgi of the component Configuration Handler. The manipulation leads to improper acces... Read more
Affected Products :- Published: Jul. 06, 2025
- Modified: Jul. 08, 2025
- Vuln Type: Authorization
-
6.3
MEDIUMCVE-2025-7075
A vulnerability was found in BlackVue Dashcam 590X up to 20250624. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /upload.cgi of the component HTTP Endpoint. The manipulation leads to unrestricted ... Read more
Affected Products :- Published: Jul. 06, 2025
- Modified: Jul. 08, 2025
- Vuln Type: Misconfiguration
-
5.3
MEDIUMCVE-2025-7074
A vulnerability classified as problematic has been found in vercel hyper up to 3.4.1. This affects the function expand/braceExpand/ignoreMap of the file hyper/bin/rimraf-standalone.js. The manipulation leads to inefficient regular expression complexity. I... Read more
Affected Products : hyper- Published: Jul. 05, 2025
- Modified: Jul. 08, 2025
- Vuln Type: Denial of Service