Search

Found 12,393 results in 5152ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2025-43429 high 8.0 FIX rocky rhel sles 6mo ago A buffer overflow was addressed with improved bounds checking. This issue is fixed in Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, …
CVE-2025-43427 high 8.0 FIX rocky rhel sles 6mo ago This issue was addressed through improved state management. This issue is fixed in Safari 26.1, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1. Processing maliciously crafted we…
CVE-2025-43425 high 8.0 FIX rocky rhel sles 6mo ago The issue was addressed with improved memory handling. This issue is fixed in Safari 26.1, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, watchOS 26.1. Processing maliciously c…
CVE-2025-43421 high 8.0 FIX rocky rhel sles 6mo ago Multiple issues were addressed by disabling array allocation sinking. This issue is fixed in Safari 26.1, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, visionOS 26.1. Processing maliciously crafted web…
CVE-2025-43392 high 8.0 FIX rocky rhel sles 6mo ago The issue was addressed with improved handling of caches. This issue is fixed in Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, watch…
CVE-2025-13947 high 8.0 FIX rocky rhel sles 6mo ago A flaw was found in WebKitGTK. This vulnerability allows remote, user-assisted information disclosure that can reveal any file the user is permitted to read via abusing the file drag-and-drop mechani…
CVE-2025-13502 high 8.0 FIX rocky rhel sles 6mo ago A flaw was found in WebKitGTK and WPE WebKit. This vulnerability allows an out-of-bounds read and integer underflow, leading to a UIProcess crash (DoS) via a crafted payload to the GLib remote inspec…
CVE-2025-66471 high 8.0 FIX rocky rhel sles 6mo ago Important: fence-agents security update
CVE-2025-65637 high 8.0 FIX rockydebian debian rhel 6mo ago RHSA-2026:3428: container-tools:rhel8 security update (Important)
CVE-2025-39864 high 7.8 7.8 FIX rhel sles rocky 6mo ago Moderate: kernel security update
CVE-2025-38724 high 7.8 7.8 FIX rocky rhel sles 6mo ago Moderate: kernel security update
CVE-2025-59375 high 7.5 7.5 FIX rocky rheldebian debian libexpat_project 6mo ago Important: python3.12 security update
CVE-2025-10934 high 8.0 FIX rocky rheldebian debian 7mo ago RHSA-2025:22417: gimp:2.8 security update (Important)
CVE-2025-10925 high 8.0 FIX rocky rheldebian debian 7mo ago RHSA-2025:22417: gimp:2.8 security update (Important)
CVE-2025-10924 high 8.0 FIX rocky rheldebian debian 7mo ago RHSA-2025:22417: gimp:2.8 security update (Important)
CVE-2025-10923 high 8.0 FIX rocky rheldebian debian 7mo ago RHSA-2025:22417: gimp:2.8 security update (Important)
CVE-2025-10922 high 8.0 FIX rocky rheldebian debian 7mo ago RHSA-2025:22417: gimp:2.8 security update (Important)
CVE-2025-10921 high 8.0 FIX rocky rheldebian debian 7mo ago RHSA-2025:22417: gimp:2.8 security update (Important)
CVE-2025-10920 high 8.0 FIX rocky rheldebian debian 7mo ago RHSA-2025:22417: gimp:2.8 security update (Important)
CVE-2025-11230 high 8.0 FIX rheldebian debian sles 7mo ago Important: haproxy security update
CVE-2025-47151 critical 9.5 FIX rocky rheldebian debian 7mo ago RHSA-2025:21628: lasso security update (Critical)
CVE-2025-13033 high 7.5 7.5 FIX debian debian 7mo ago A vulnerability was identified in the email parsing library due to improper handling of specially formatted recipient email addresses. An attacker can exploit this flaw by crafting a recipient addres…
CVE-2025-9230 high 7.5 7.5 FIX rocky rhel sles 7mo ago Issue summary: An application trying to decrypt CMS messages encrypted using password based encryption can trigger an out-of-bounds read and write. Impact summary: This out-of-bounds read may trigge…
CVE-2025-13020 high 8.0 FIX rocky rheldebian debian 7mo ago Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Thunderbird 145, and Thunderbird 140.5.
CVE-2025-13019 high 8.0 FIX rocky rheldebian debian 7mo ago Same-origin policy bypass in the DOM: Workers component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Thunderbird 145, and Thunderbird 140.5.
CVE-2025-13018 high 8.0 FIX rocky rheldebian debian 7mo ago Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Thunderbird 145, and Thunderbird 140.5.
CVE-2025-13017 high 8.0 FIX rocky rheldebian debian 7mo ago Same-origin policy bypass in the DOM: Notifications component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Thunderbird 145, and Thunderbird 140.5.
CVE-2025-13016 high 8.0 FIX rocky rheldebian debian 7mo ago Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Thunderbird 145, and Thunderbird 140.5.
CVE-2025-13015 high 8.0 FIX rocky rheldebian debian 7mo ago Spoofing issue in Firefox. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, and Firefox ESR 115.30.
CVE-2025-13014 high 8.0 FIX rocky rheldebian debian 7mo ago Use-after-free in the Audio/Video component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Firefox ESR 115.30, Thunderbird 145, and Thunderbird 140.5.
CVE-2025-13013 high 8.0 FIX rocky rheldebian debian 7mo ago Mitigation bypass in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Firefox ESR 115.30, Thunderbird 145, and Thunderbird 140.5.
CVE-2025-13012 high 8.0 FIX rocky rheldebian debian 7mo ago Race condition in the Graphics component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Firefox ESR 115.30, Thunderbird 145, and Thunderbird 140.5.
CVE-2025-59089 high 8.0 rocky rheldebian debian 7mo ago RHSA-2025:21140: idm:DL1 security update (Important)
CVE-2025-59088 high 8.0 rocky rheldebian debian 7mo ago RHSA-2025:21140: idm:DL1 security update (Important)
CVE-2025-62168 high 8.0 FIX rocky rhel sles 7mo ago RHSA-2025:19107: squid:4 security update (Important)
CVE-2025-21863 high 7.8 7.8 FIX rhel sles rocky 7mo ago Moderate: kernel security update
CVE-2025-21796 high 7.8 7.8 FIX rhel sles rocky 7mo ago Moderate: kernel security update
CVE-2025-21739 high 7.8 7.8 FIX rhel sles rocky 7mo ago Moderate: kernel security update
CVE-2025-21702 high 7.0 7.0 FIX rhel sles rocky 7mo ago Moderate: kernel security update
CVE-2025-21647 high 7.1 7.1 FIX rhel sles rocky 7mo ago Moderate: kernel security update
CVE-2025-11561 high 8.0 FIX rhel rocky sles 7mo ago RHSA-2025:19610: sssd security update (Important)
CVE-2024-58072 high 7.8 7.8 FIX rhel sles rocky 7mo ago Moderate: kernel security update
CVE-2024-58014 high 7.1 7.1 FIX rhel sles rocky 7mo ago Moderate: kernel security update
CVE-2024-56672 high 7.0 7.0 FIX rhel sles rocky 7mo ago Moderate: kernel security update
CVE-2024-46744 high 7.8 7.8 FIX rhel sles rocky 7mo ago Moderate: kernel security update
CVE-2023-52356 high 7.5 7.5 FIX rhel rocky sles libtiff 7mo ago Moderate: libtiff security update
CVE-2025-8677 high 8.0 FIX rheldebian debian sles 7mo ago Important: bind security update
CVE-2025-40780 high 8.0 FIX rhel rockydebian debian 7mo ago Important: bind9.18 security update
CVE-2025-40778 high 8.0 FIX rhel rockydebian debian 7mo ago Important: bind9.18 security update
CVE-2025-12875 high 7.8 7.8 FIX slesdebian debian mruby 7mo ago A weakness has been identified in mruby 3.4.0. This vulnerability affects the function ary_fill_exec of the file mrbgems/mruby-array-ext/src/array.c. Executing a manipulation of the argument start/le…
CVE-2025-52881 high 8.0 FIX rocky rhel sles aws 7mo ago RHSA-2025:23543: container-tools:rhel8 security update (Important)
CVE-2025-52565 high 8.0 FIX rocky rhel sles aws 7mo ago RHSA-2025:21232: container-tools:rhel8 security update (Important)
CVE-2025-31133 high 8.0 FIX rocky rhel sles aws 7mo ago RHSA-2025:21232: container-tools:rhel8 security update (Important)
CVE-2025-11277 high 7.8 7.8 FIX debian debian rhel sles assimp 7mo ago Moderate: qt5-qt3d security update
CVE-2025-12745 high 7.8 7.8 debian debian bellard 7mo ago A weakness has been identified in QuickJS up to eb2c89087def1829ed99630cb14b549d7a98408c. This affects the function js_array_buffer_slice of the file quickjs.c. This manipulation causes buffer over-r…
CVE-2025-4945 high 8.0 FIX rhel rockydebian debian 7mo ago RHSA-2025:19714: libsoup security update (Important)
CVE-2025-11021 high 8.0 FIX rhel rocky sles 7mo ago RHSA-2025:19714: libsoup security update (Important)
CVE-2025-62231 high 8.0 FIX rhel rocky sles 7mo ago Important: tigervnc security update
CVE-2025-62230 high 8.0 FIX rhel rocky sles 7mo ago Important: tigervnc security update
CVE-2025-62229 high 8.0 FIX rhel rocky sles 7mo ago Important: tigervnc security update
CVE-2025-39702 high 7.0 7.0 FIX rhel slesdebian debian 7mo ago Moderate: kernel security update
CVE-2025-6176 high 8.0 FIX rocky rheldebian debian 7mo ago RHSA-2026:2389: brotli security update (Important)
CVE-2025-49844 high 8.0 FIX rocky rhel sles 7mo ago RHSA-2025:19238: redis:6 security update (Important)
CVE-2025-46819 high 8.0 FIX rocky rhel sles 7mo ago RHSA-2025:19238: redis:6 security update (Important)
CVE-2025-46818 high 8.0 FIX rocky rhel sles 7mo ago RHSA-2025:19238: redis:6 security update (Important)
CVE-2025-46817 high 8.0 FIX rocky rhel sles 7mo ago RHSA-2025:19238: redis:6 security update (Important)
CVE-2025-9900 high 8.0 FIX rocky rhel sles 7mo ago RHSA-2025:19906: mingw-libtiff security update (Important)
CVE-2025-8176 high 7.8 7.8 FIX rocky rhel sles libtiff 7mo ago RHSA-2025:20034: libtiff security update (Important)
CVE-2025-12205 high 7.8 7.8 debian debian kamailio 7mo ago A vulnerability was detected in Kamailio 5.5. The affected element is the function sr_push_yy_state of the file src/core/cfg.lex of the component Configuration File Handler. The manipulation results …
CVE-2025-12204 high 7.8 7.8 debian debian kamailio 7mo ago A security vulnerability has been detected in Kamailio 5.5. Impacted is the function rve_destroy of the file src/core/rvalue.c of the component Configuration File Handler. The manipulation leads to h…
CVE-2025-53066 high 7.5 7.5 FIX rhel slesdebian debian oracle 8mo ago Moderate: java-1.8.0-openjdk security update
CVE-2025-39849 high 7.8 7.8 FIX rhel rocky sles 8mo ago Moderate: kernel security update
CVE-2025-39841 high 7.8 7.8 FIX rhel rocky sles 8mo ago Moderate: kernel security update
CVE-2025-39817 high 7.1 7.1 FIX rhel rocky sles 8mo ago Moderate: kernel security update
CVE-2025-43419 high 8.0 FIX rocky rhel sles 8mo ago The issue was addressed with improved memory handling. This issue is fixed in Safari 26, iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. Processing maliciously crafted web con…
CVE-2025-43356 high 8.0 FIX rhel rocky sles 8mo ago The issue was addressed with improved handling of caches. This issue is fixed in Safari 26, iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. A website…
CVE-2025-43343 high 8.0 FIX rhel rocky sles 8mo ago The issue was addressed with improved memory handling. This issue is fixed in Safari 26, iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. Processing maliciously crafted web con…
CVE-2025-43342 high 8.0 FIX rhel rocky sles 8mo ago A correctness issue was addressed with improved checks. This issue is fixed in Safari 26, iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Tahoe 26, tvOS 26, visionOS 26, watchOS 26. Processing …
CVE-2025-43272 high 8.0 FIX rhel rocky sles 8mo ago The issue was addressed with improved memory handling. This issue is fixed in Safari 26, iOS 26 and iPadOS 26, macOS Tahoe 26, visionOS 26, watchOS 26. Processing maliciously crafted web content may …
CVE-2025-31277 high 9.5 KEVFIX rhel slesdebian debian 8mo ago Apple Safari, iOS, watchOS, visionOS, iPadOS, macOS, and tvOS contain a buffer overflow vulnerability that could allow the processing of maliciously crafted web content which may lead to memory corru…
CVE-2025-31223 high 8.0 FIX rhel slesdebian debian 8mo ago The issue was addressed with improved checks. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted w…
CVE-2025-11715 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago Memory safety bugs present in Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143. Some of these bugs showed evidence of memory corruption and we presume that with enough effort…
CVE-2025-11714 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago Memory safety bugs present in Firefox ESR 115.28, Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143. Some of these bugs showed evidence of memory corruption and we presume tha…
CVE-2025-11712 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago A malicious page could have used the type attribute of an OBJECT tag to override the default browser behavior when encountering a web resource served without a content-type. This could have contribut…
CVE-2025-11711 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago There was a way to change the value of JavaScript Object properties that were supposed to be non-writeable. This vulnerability was fixed in Firefox 144, Firefox ESR 115.29, Firefox ESR 140.4, Thunder…
CVE-2025-11710 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago A compromised web process using malicious IPC messages could have caused the privileged browser process to reveal blocks of its memory to the compromised process. This vulnerability was fixed in Fire…
CVE-2025-11709 high 8.0 FIX rocky rheldebian debian 8mo ago A compromised web process was able to trigger out of bounds reads and writes in a more privileged process using manipulated WebGL textures. This vulnerability was fixed in Firefox 144, Firefox ESR 11…
CVE-2025-11708 high 8.0 FIX rocky rheldebian debian 8mo ago Use-after-free in MediaTrackGraphImpl::GetInstance(). This vulnerability was fixed in Firefox 144, Firefox ESR 140.4, Thunderbird 144, and Thunderbird 140.4.
CVE-2025-39757 high 7.1 7.1 FIX rhel rocky sles 8mo ago Moderate: kernel security update
CVE-2025-61919 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2023-53629 high 7.8 7.8 FIX slesdebian debian linux-kernel 8mo ago In the Linux kernel, the following vulnerability has been resolved: fs: dlm: fix use after free in midcomms commit While working on processing dlm message in softirq context I experienced the follo…
CVE-2022-50552 high 7.8 7.8 FIX slesdebian debian linux-kernel 8mo ago In the Linux kernel, the following vulnerability has been resolved: blk-mq: use quiesced elevator switch when reinitializing queues The hctx's run_work may be racing with the elevator switch when r…
CVE-2025-61772 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-61771 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-61770 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-41244 high 9.5 KEVFIX rhel rocky sles 8mo ago Broadcom VMware Aria Operations and VMware Tools contain a privilege defined with unsafe actions vulnerability. A malicious local actor with non-administrative privileges having access to a VM with V…
CVE-2024-50301 high 7.1 7.1 FIX rhel rocky sles 8mo ago Moderate: kernel security update
CVE-2021-22555 high 10.0 KEVEXPFIX arch arch sles rocky 8mo ago Linux Kernel contains a heap out-of-bounds write vulnerability that could allow an attacker to gain privileges or cause a DoS (via heap memory corruption) through user name space.
CVE-2025-11275 high 7.8 7.8 debian debian sles assimp 8mo ago A vulnerability was identified in Open Asset Import Library Assimp 6.0.2. Affected by this vulnerability is the function ODDLParser::getNextSeparator in the library assimp/contrib/openddlparser/inclu…
CVE-2023-53543 high 7.8 7.8 FIX slesdebian debian linux-kernel 8mo ago In the Linux kernel, the following vulnerability has been resolved: vdpa: Add max vqp attr to vdpa_nl_policy for nlattr length check The vdpa_nl_policy structure is used to validate the nlattr when…