Latest CVE Feed
-
7.8
HIGHCVE-2025-27031
memory corruption while processing IOCTL commands, when the buffer in write loopback mode is accessed after being freed.... Read more
- Published: Jun. 03, 2025
- Modified: Aug. 20, 2025
- Vuln Type: Memory Corruption
-
7.5
HIGHCVE-2025-27029
Transient DOS while processing the tone measurement response buffer when the response buffer is out of range.... Read more
Affected Products : wsa8830_firmware wsa8835_firmware ipq9008_firmware ipq9574_firmware qca8075_firmware qca8081_firmware qca8082_firmware qca8084_firmware qca8085_firmware qca8386_firmware +124 more products- Published: Jun. 03, 2025
- Modified: Aug. 20, 2025
- Vuln Type: Denial of Service
-
7.8
HIGHCVE-2025-21486
Memory corruption during dynamic process creation call when client is only passing address and length of shell binary.... Read more
- Published: Jun. 03, 2025
- Modified: Aug. 20, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-21485
Memory corruption while processing INIT and multimode invoke IOCTL calls on FastRPC.... Read more
- Published: Jun. 03, 2025
- Modified: Aug. 20, 2025
- Vuln Type: Memory Corruption
-
8.6
HIGHCVE-2025-21480
Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.... Read more
Affected Products : aqt1000_firmware qca6391_firmware sd855_firmware wcd9341_firmware wcd9380_firmware wcd9385_firmware wcn3988_firmware wsa8810_firmware wsa8815_firmware wsa8830_firmware +142 more products- Actively Exploited
- Published: Jun. 03, 2025
- Modified: Jun. 04, 2025
- Vuln Type: Memory Corruption
-
7.5
HIGHCVE-2025-21463
Transient DOS while processing the EHT operation IE in the received beacon frame.... Read more
Affected Products :- Published: Jun. 03, 2025
- Modified: Jun. 04, 2025
- Vuln Type: Denial of Service
-
8.2
HIGHCVE-2024-53026
Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call.... Read more
Affected Products :- Published: Jun. 03, 2025
- Modified: Jun. 04, 2025
- Vuln Type: Information Disclosure
-
8.2
HIGHCVE-2024-53021
Information disclosure may occur while processing goodbye RTCP packet from network.... Read more
Affected Products :- Published: Jun. 03, 2025
- Modified: Jun. 04, 2025
- Vuln Type: Information Disclosure
-
8.2
HIGHCVE-2024-53020
Information disclosure may occur while decoding the RTP packet with invalid header extension from network.... Read more
Affected Products :- Published: Jun. 03, 2025
- Modified: Jun. 04, 2025
- Vuln Type: Information Disclosure
-
8.2
HIGHCVE-2024-53019
Information disclosure may occur while decoding the RTP packet with improper header length for number of contributing sources.... Read more
Affected Products : qca6696_firmware sa6155p_firmware sa8155p_firmware sa8195p_firmware sd_8_gen1_5g_firmware sw5100_firmware sw5100p_firmware wcd9341_firmware wcd9380_firmware wcd9385_firmware +152 more products- Published: Jun. 03, 2025
- Modified: Aug. 20, 2025
- Vuln Type: Information Disclosure
-
6.6
MEDIUMCVE-2024-53018
Memory corruption may occur while processing the OIS packet parser.... Read more
- Published: Jun. 03, 2025
- Modified: Aug. 20, 2025
- Vuln Type: Memory Corruption
-
6.6
MEDIUMCVE-2024-53017
Memory corruption while handling test pattern generator IOCTL command.... Read more
- Published: Jun. 03, 2025
- Modified: Aug. 20, 2025
- Vuln Type: Memory Corruption
-
6.6
MEDIUMCVE-2024-53016
Memory corruption while processing I2C settings in Camera driver.... Read more
Affected Products : qca6391_firmware qca6426_firmware qca6436_firmware sd865_5g_firmware sw5100_firmware sw5100p_firmware wcd9380_firmware wcd9385_firmware wcn3980_firmware wcn3988_firmware +58 more products- Published: Jun. 03, 2025
- Modified: Aug. 20, 2025
- Vuln Type: Memory Corruption
-
6.6
MEDIUMCVE-2024-53015
Memory corruption while processing IOCTL command to handle buffers associated with a session.... Read more
Affected Products :- Published: Jun. 03, 2025
- Modified: Jun. 04, 2025
- Vuln Type: Memory Corruption
-
6.6
MEDIUMCVE-2024-53013
Memory corruption may occur while processing voice call registration with user.... Read more
Affected Products : qam8295p_firmware qca6391_firmware qca6426_firmware qca6436_firmware qca6574au_firmware qca6595au_firmware qca6696_firmware sa6145p_firmware sa6150p_firmware sa6155p_firmware +110 more products- Published: Jun. 03, 2025
- Modified: Aug. 20, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2024-53010
Memory corruption may occur while attaching VM when the HLOS retains access to VM.... Read more
Affected Products :- Published: Jun. 03, 2025
- Modified: Jun. 04, 2025
- Vuln Type: Memory Corruption
-
9.8
CRITICALCVE-2025-4797
The Golo - City Travel Guide WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.7.0. This is due to the plugin not properly validating a user's identity prior to setting a... Read more
Affected Products : golo- Published: Jun. 03, 2025
- Modified: Jun. 04, 2025
- Vuln Type: Authentication
-
7.2
HIGHCVE-2025-4224
The wpForo + wpForo Advanced Attachments plugin for WordPress is vulnerable to Stored Cross-Site Scripting via media upload names in all versions up to, and including, 3.1.3 due to insufficient input sanitization and output escaping. This makes it possibl... Read more
Affected Products :- Published: Jun. 03, 2025
- Modified: Jun. 04, 2025
- Vuln Type: Cross-Site Scripting
-
4.3
MEDIUMCVE-2025-4047
The Broken Link Checker plugin for WordPress is vulnerable to unauthorized data access due to a missing capability check on the ajax_full_status and ajax_dashboard_status functions in all versions up to, and including, 2.4.4. This makes it possible for au... Read more
Affected Products : broken_link_checker- Published: Jun. 03, 2025
- Modified: Jun. 04, 2025
- Vuln Type: Authorization
-
5.6
MEDIUMCVE-2025-2939
The Ninja Tables – Easy Data Table Builder plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 5.0.18 via deserialization of untrusted input from the args[callback] parameter . This makes it possible for unauth... Read more
Affected Products : ninja_tables- Published: Jun. 03, 2025
- Modified: Jul. 10, 2025
- Vuln Type: Injection