Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.5 MEDIUM
CVE-2025-71285 — net: qrtr: Drop the MHI auto_queue feature for IPCR DL channels

In the Linux kernel, the following vulnerability has been resolved: net: qrtr: Drop the MHI auto_queue feature for IPCR DL channels MHI stack offers the 'auto_queue' feature, which allows the MHI s…

linux_kernel | Race Condition
May 06, 2026 May 12, 2026
May 06, 2026
May 12, 2026
4.7 MEDIUM
CVE-2025-71274 — rpmsg: core: fix race in driver_override_show() and use core helper

In the Linux kernel, the following vulnerability has been resolved: rpmsg: core: fix race in driver_override_show() and use core helper The driver_override_show function reads the driver_override s…

linux_kernel | Race Condition
May 06, 2026 May 12, 2026
May 06, 2026
May 12, 2026
5.5 MEDIUM
CVE-2025-71273 — wifi: rtw88: Use devm_kmemdup() in rtw_set_supported_band()

In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: Use devm_kmemdup() in rtw_set_supported_band() Simplify the code by using device managed memory allocations. This a…

linux_kernel | Memory Corruption
May 06, 2026 Jun 05, 2026
May 06, 2026
Jun 05, 2026
5.5 MEDIUM
CVE-2025-71272 — most: core: fix resource leak in most_register_interface error paths

In the Linux kernel, the following vulnerability has been resolved: most: core: fix resource leak in most_register_interface error paths The function most_register_interface() did not correctly rel…

linux_kernel | Memory Corruption
May 06, 2026 May 12, 2026
May 06, 2026
May 12, 2026
5.5 MEDIUM
CVE-2025-71271 — hfsplus: ensure sb->s_fs_info is always cleaned up

In the Linux kernel, the following vulnerability has been resolved: hfsplus: ensure sb->s_fs_info is always cleaned up When hfsplus was converted to the new mount api a bug was introduced by changi…

linux_kernel | Memory Corruption
May 06, 2026 May 12, 2026
May 06, 2026
May 12, 2026
2.7 LOW
CVE-2025-62345 — HCL BigFix RunBookAI is affected by a Continued availability of Less-Secure “Input Text” …

HCL BigFix RunBookAI is affected by a Continued availability of Less-Secure “Input Text” Vulnerability . A component contains a security weakness in its input handling implementation, increasing the …

Remote | Misconfiguration
May 06, 2026 May 06, 2026
May 06, 2026
May 06, 2026
8.8 HIGH
CVE-2025-31951 — HCL BigFix RunBookAI is affected by a Unvalidated Command Input / Potential Command Smugg…

HCL BigFix RunBookAI is affected by a Unvalidated Command Input / Potential Command Smuggling vulnerability. A flaw in a component's input handling was identified that could permit unauthorized comma…

Remote | Injection
May 06, 2026 May 06, 2026
May 06, 2026
May 06, 2026
6.3 MEDIUM
CVE-2026-6420 — Keylime: keylime: security bypass due to hardcoded tpm quote nonce

A flaw was found in Keylime. An attacker with root access on an enrolled monitored machine, where the Keylime agent runs, can exploit a vulnerability in the Keylime verifier. The verifier uses a hard…

keylime | Cryptography
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
6.1 MEDIUM
CVE-2025-59854 — HCL DFXAnalytics is affected by an Insecure Security Header Configuration vulnerability

HCL DFXAnalytics is affected by an Insecure Security Header Configuration vulnerability where the application utilizes the outdated X-XSS-Protection header, which could allow an attacker to exploit b…

dfxanalytics | Remote | Misconfiguration
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
5.3 MEDIUM
CVE-2025-59853 — HCL DFXAnalytics is affected by an Improper Error Handling vulnerability

HCL DFXAnalytics is affected by an Improper Error Handling vulnerability where the application exposes detailed stack traces in responses, which could allow an attacker to gain insights into the appl…

dfxanalytics | Remote | Information Disclosure
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
9.1 CRITICAL
CVE-2025-59852 — HCL DFXAnalytics is affected by an Insufficient Transport Layer Protection vulnerability

HCL DFXAnalytics is affected by an Insufficient Transport Layer Protection vulnerability where data is transmitted over the network without encryption, which could allow an attacker to compromise t…

dfxanalytics | Remote | Cryptography
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
9.8 CRITICAL
CVE-2025-59851 — HCL DFXAnalytics is affected by an Insecure Security Header configuration vulnerability

HCL DFXAnalytics is affected by a Using Components with Known Vulnerabilities flaw where the application utilizes unpatched libraries or sub-components, which could allow an attacker to identify and …

dfxanalytics | Remote | Supply Chain
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
6.1 MEDIUM
CVE-2025-31970 — HCL DFXAnalytics is affected by an Insecure Security Header configuration vulnerability

HCL DFXAnalytics is affected by an Insecure Security Header configuration vulnerability where the Content-Security-Policy does not define strict directives for object-src and base-uri, which could al…

dfxanalytics | Remote | Misconfiguration
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
Showing 20 of 7533 Results