Search

Found 4,680 results in 580ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2025-43272 high 8.0 FIX rhel rocky sles 8mo ago The issue was addressed with improved memory handling. This issue is fixed in Safari 26, iOS 26 and iPadOS 26, macOS Tahoe 26, visionOS 26, watchOS 26. Processing maliciously crafted web content may …
CVE-2025-31277 high 9.5 KEVFIX rhel slesdebian debian 8mo ago Apple Safari, iOS, watchOS, visionOS, iPadOS, macOS, and tvOS contain a buffer overflow vulnerability that could allow the processing of maliciously crafted web content which may lead to memory corru…
CVE-2025-31223 high 8.0 FIX rhel slesdebian debian 8mo ago The issue was addressed with improved checks. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, tvOS 18.5, visionOS 2.5, watchOS 11.5. Processing maliciously crafted w…
CVE-2025-11715 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago Memory safety bugs present in Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143. Some of these bugs showed evidence of memory corruption and we presume that with enough effort…
CVE-2025-11714 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago Memory safety bugs present in Firefox ESR 115.28, Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143. Some of these bugs showed evidence of memory corruption and we presume tha…
CVE-2025-11712 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago A malicious page could have used the type attribute of an OBJECT tag to override the default browser behavior when encountering a web resource served without a content-type. This could have contribut…
CVE-2025-11711 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago There was a way to change the value of JavaScript Object properties that were supposed to be non-writeable. This vulnerability was fixed in Firefox 144, Firefox ESR 115.29, Firefox ESR 140.4, Thunder…
CVE-2025-11710 high 8.0 FIX rocky rhelalmalinux almalinux 8mo ago A compromised web process using malicious IPC messages could have caused the privileged browser process to reveal blocks of its memory to the compromised process. This vulnerability was fixed in Fire…
CVE-2025-11709 high 8.0 FIX rocky rheldebian debian 8mo ago A compromised web process was able to trigger out of bounds reads and writes in a more privileged process using manipulated WebGL textures. This vulnerability was fixed in Firefox 144, Firefox ESR 11…
CVE-2025-11708 high 8.0 FIX rocky rheldebian debian 8mo ago Use-after-free in MediaTrackGraphImpl::GetInstance(). This vulnerability was fixed in Firefox 144, Firefox ESR 140.4, Thunderbird 144, and Thunderbird 140.4.
CVE-2025-39757 high 7.1 7.1 FIX rhel rocky sles 8mo ago Moderate: kernel security update
CVE-2025-61919 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-61772 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-61771 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-61770 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-41244 high 9.5 KEVFIX rhel rocky sles 8mo ago Broadcom VMware Aria Operations and VMware Tools contain a privilege defined with unsafe actions vulnerability. A malicious local actor with non-administrative privileges having access to a VM with V…
CVE-2024-50301 high 7.1 7.1 FIX rhel rocky sles 8mo ago Moderate: kernel security update
CVE-2021-22555 high 10.0 KEVEXPFIX arch arch sles rocky 8mo ago Linux Kernel contains a heap out-of-bounds write vulnerability that could allow an attacker to gain privileges or cause a DoS (via heap memory corruption) through user name space.
CVE-2025-7493 high 8.0 FIX rocky rheldebian debian 8mo ago RHSA-2025:17129: idm:DL1 security update (Important)
CVE-2025-39682 high 7.1 7.1 FIX rhel sles rocky 8mo ago Moderate: kernel security update
CVE-2025-59830 high 8.0 FIX rhel rocky sles 8mo ago RHSA-2025:19719: pcs security update (Important)
CVE-2025-38001 high 8.0 FIX rhel slesdebian debian 8mo ago In the Linux kernel, the following vulnerability has been resolved: net_sched: hfsc: Address reentrant enqueue adding class to eltree twice Savino says: "We are writing to report that this rece…
CVE-2025-38000 high 8.0 FIX rhel slesdebian debian 8mo ago In the Linux kernel, the following vulnerability has been resolved: sch_hfsc: Fix qlen accounting bug when using peek in hfsc_enqueue() When enqueuing the first packet to an HFSC class, hfsc_enqueu…
CVE-2025-32988 high 8.2 8.2 FIX rhel rockydebian debian gnuredhat 9mo ago RHSA-2025:17415: gnutls security, bug fix, and enhancement update (Moderate)
CVE-2025-10537 high 8.0 FIX rhel rockydebian debian 9mo ago Memory safety bugs present in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142. Some of these bugs showed evidence of memory corruption and we presume that with enough effort…
CVE-2025-10536 high 8.0 FIX rhel rockydebian debian 9mo ago Information disclosure in the Networking: Cache component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10533 high 8.0 FIX rhel rockydebian debian 9mo ago Integer overflow in the SVG component. This vulnerability was fixed in Firefox 143, Firefox ESR 115.28, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10532 high 8.0 FIX rhel rockydebian debian 9mo ago Incorrect boundary conditions in the JavaScript: GC component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10529 high 8.0 FIX rhel rockydebian debian 9mo ago Same-origin policy bypass in the Layout component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10528 high 8.0 FIX rhel rockydebian debian 9mo ago Sandbox escape due to undefined behavior, invalid pointer in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-10527 high 8.0 FIX rhel rockydebian debian 9mo ago Sandbox escape due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 143, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVE-2025-4953 high 8.0 FIX rockydebian debian sles 9mo ago RHSA-2025:15904: container-tools:rhel8 security update (Important)
CVE-2025-9566 high 8.1 8.1 FIX rocky rheldebian debian 9mo ago RHSA-2025:15904: container-tools:rhel8 security update (Important)
CVE-2025-58060 high 8.0 FIX rhel rockydebian debian 9mo ago RHSA-2025:15702: cups security update (Important)
CVE-2025-38449 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-38352 high 9.5 KEVFIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38332 high 8.0 FIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38392 high 8.0 FIX rhel slesdebian debian 9mo ago Important: kernel security update
CVE-2025-37803 high 8.0 FIX rhel slesdebian debian 9mo ago Important: kernel security update
CVE-2025-8941 high 8.0 FIX rhel rocky sles 9mo ago RHSA-2025:14557: pam security update (Important)
CVE-2025-6020 high 7.8 7.8 FIX arch arch rhel rocky 9mo ago Important: pam security update
CVE-2025-8067 high 8.0 FIX rhel rocky sles 9mo ago RHSA-2025:15017: udisks2 security update (Important)
CVE-2025-38500 high 7.8 7.8 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-38464 high 8.0 FIX almalinux almalinux rhel rocky 9mo ago Important: kernel security update
CVE-2025-38461 high 8.0 FIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38350 high 7.8 7.8 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-38211 high 8.0 FIX rhel rocky sles 9mo ago Important: kernel security update
CVE-2025-38200 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-37823 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-8715 high 8.0 FIX rhel rocky sles 9mo ago RHSA-2025:15115: postgresql:12 security update (Important)
CVE-2025-8714 high 8.0 FIX rhel rocky sles 9mo ago RHSA-2025:15115: postgresql:12 security update (Important)
CVE-2025-8713 high 8.0 FIX rhel slesdebian debian 9mo ago PostgreSQL optimizer statistics allow a user to read sampled data within a view that the user cannot access. Separately, statistics allow a user to read sampled data that a row security policy inten…
CVE-2025-4207 high 8.0 FIX arch arch rhel sles 9mo ago RHSA-2025:15022: postgresql:15 security update (Important)
CVE-2025-9185 high 8.0 FIX rhel rockydebian debian 9mo ago Memory safety bugs present in Firefox ESR 115.26, Firefox ESR 128.13, Thunderbird ESR 128.13, Firefox ESR 140.1, Thunderbird ESR 140.1, Firefox 141 and Thunderbird 141. Some of these bugs showed evid…
CVE-2025-9182 high 8.0 FIX rhel rockydebian debian 9mo ago Denial-of-service due to out-of-memory in the Graphics: WebRender component. This vulnerability was fixed in Firefox 142, Firefox ESR 140.2, Thunderbird 142, and Thunderbird 140.2.
CVE-2025-9181 high 8.0 FIX rhel rockydebian debian 9mo ago Uninitialized memory in the JavaScript Engine component. This vulnerability was fixed in Firefox 142, Firefox ESR 128.14, Firefox ESR 140.2, Thunderbird 142, Thunderbird 128.14, and Thunderbird 140.2.
CVE-2025-9180 high 8.0 FIX rhel rockydebian debian 9mo ago Same-origin policy bypass in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 142, Firefox ESR 115.27, Firefox ESR 128.14, Firefox ESR 140.2, Thunderbird 142, Thunderbird 128…
CVE-2025-9179 high 8.0 FIX rhel rockydebian debian 9mo ago An attacker was able to perform memory corruption in the GMP process which processes encrypted media. This process is also heavily sandboxed, but represents slightly different privileges from the con…
CVE-2025-54389 high 8.0 FIX debian debian rhel rocky 9mo ago RHSA-2025:14573: aide security update (Important)
CVE-2025-38417 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-37914 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-22058 high 8.0 FIX rhel sles rocky 9mo ago Important: kernel security update
CVE-2025-5914 high 7.8 7.8 FIX rhel rockydebian debian 10mo ago A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to…
CVE-2025-53506 high 8.0 FIX rhel rocky sles 10mo ago Uncontrolled Resource Consumption vulnerability in Apache Tomcat if an HTTP/2 client did not acknowledge the initial settings frame that reduces the maximum permitted concurrent streams. This issue …
CVE-2025-52520 high 8.0 FIX rhel rocky sles 10mo ago For some unlikely configurations of multipart upload, an Integer Overflow vulnerability in Apache Tomcat could lead to a DoS via bypassing of size limits. This issue affects Apache Tomcat: from 11.0…
CVE-2025-52434 high 8.0 FIX rhel rocky sles 10mo ago Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in Apache Tomcat when using the APR/Native connector. This was particularly noticeable with c…
CVE-2025-49125 high 8.0 FIX arch arch rhel rocky 10mo ago Authentication Bypass Using an Alternate Path or Channel vulnerability in Apache Tomcat.  When using PreResources or PostResources mounted other than at the root of the web application, it was possib…
CVE-2025-48989 high 7.5 7.5 FIX rhel rocky sles apache 10mo ago Improper Resource Shutdown or Release vulnerability in Apache Tomcat made Tomcat vulnerable to the made you reset attack. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.9, from 10.1.0…
CVE-2025-48988 high 8.0 FIX arch arch rhel rocky 10mo ago Allocation of Resources Without Limits or Throttling vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.7, from 10.1.0-M1 through 10.1.41, from 9.0.0.M1 th…
CVE-2025-48976 high 8.0 FIX arch arch rhel rocky 10mo ago Allocation of resources for multipart headers with insufficient limits enabled a DoS vulnerability in Apache Commons FileUpload. This issue affects Apache Commons FileUpload: from 1.0 before 1.6; fr…
CVE-2025-47907 high 8.0 rheldebian debian sles google 10mo ago Incorrect results returned from Rows.Scan in database/sql
CVE-2025-4674 high 8.0 FIX rhel rockydebian debian google 10mo ago Important: golang security update
CVE-2025-38471 high 7.8 7.8 FIX rhel slesdebian debian 10mo ago Important: kernel security update
CVE-2025-38380 high 8.0 FIX rhel slesalmalinux almalinux 10mo ago Important: kernel security update
CVE-2025-38250 high 7.8 7.8 FIX rhel slesdebian debian 10mo ago Important: kernel security update
CVE-2025-38159 high 8.0 FIX rhel rocky sles 10mo ago Important: kernel security update
CVE-2025-38085 high 8.0 FIX rhel rocky sles 10mo ago Important: kernel security update
CVE-2025-38084 high 8.0 FIX rhel slesdebian debian 10mo ago Important: kernel security update
CVE-2025-6558 high 9.5 KEVFIX rhel rockydebian debian 10mo ago Google Chromium contains an improper input validation vulnerability in ANGLE and GPU. This vulnerability could allow a remote attacker to potentially perform a sandbox escape via a crafted HTML page.…
CVE-2025-43265 high 8.0 FIX rhel rocky sles 10mo ago An out-of-bounds read was addressed with improved input validation. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing…
CVE-2025-43240 high 8.0 FIX rhel rocky sles 10mo ago A logic issue was addressed with improved checks. This issue is fixed in Safari 18.6, macOS Sequoia 15.6. A download's origin may be incorrectly associated.
CVE-2025-43227 high 8.0 FIX rhel rocky sles 10mo ago This issue was addressed through improved state management. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing malicio…
CVE-2025-43216 high 8.0 FIX rhel rocky sles 10mo ago A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS…
CVE-2025-43212 high 8.0 FIX rhel rocky sles 10mo ago The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously …
CVE-2025-43211 high 8.0 FIX rhel rocky sles 10mo ago The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processi…
CVE-2025-31278 high 8.0 FIX rhel rocky sles 10mo ago The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processi…
CVE-2025-31273 high 8.0 FIX rhel rocky sles 10mo ago The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously …
CVE-2025-23266 high 8.0 rhel sles 10mo ago Important: toolbox security update
CVE-2025-38079 high 7.8 7.8 FIX rhel rocky sles 10mo ago Moderate: kernel security update
CVE-2025-38087 high 8.0 FIX rhel sles rocky 10mo ago Important: kernel security update
CVE-2025-38052 high 8.0 FIX rhel rocky sles 10mo ago Important: kernel security update
CVE-2025-37890 high 8.0 FIX rhel rocky sles 10mo ago Important: kernel security update
CVE-2025-22020 high 8.0 FIX rhel rocky sles 10mo ago Important: kernel security update
CVE-2025-21962 high 8.0 FIX rhel sles rocky 10mo ago Important: kernel security update
CVE-2025-21929 high 8.0 FIX rhel sles rocky 10mo ago Important: kernel security update
CVE-2025-21928 high 8.0 FIX rhel rocky sles 10mo ago Important: kernel security update
CVE-2025-21727 high 7.8 7.8 FIX rhel rocky sles 10mo ago Important: kernel security update
CVE-2025-21726 high 7.8 7.8 FIX rhel sles rocky 10mo ago Moderate: kernel security update
CVE-2022-49788 high 8.0 FIX rhel rocky sles 10mo ago Important: kernel security update
CVE-2025-7425 high 7.8 7.8 FIX rheldebian debian sles 10mo ago A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragm…