Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.1
CVE-2025-0690
The read command is used to read the keyboard input from the user, while reads it keeps the input length in a 32-bit integer value which is further u…
Mitigation only
HIGH 8.8
CVE-2025-1594
A vulnerability, which was classified as critical, was found in FFmpeg up to 7.1. This affects the function ff_aac_search_for_tns of the file libavco…
Ffmpeg
after 7.1
HIGH 7.8
CVE-2025-21704
In the Linux kernel, the following vulnerability has been resolved:
usb: cdc-acm: Check control transfer buffer size before access
If the first fra…
Linux Kernel
5.4.291 / 5.10.235+
CRITICAL 9.1
CVE-2025-27105
vyper is a Pythonic Smart Contract Language for the EVM. Vyper handles AugAssign statements by first caching the target location to avoid double eval…
Vyper
0.4.1+
HIGH 8.8
CVE-2025-1538
A vulnerability classified as critical was found in D-Link DAP-1320 1.00. Affected by this vulnerability is the function set_ws_action of the file /d…
Dap 1320 Firmware
No fix yet
CRITICAL 9.8
CVE-2025-1539
A vulnerability, which was classified as critical, has been found in D-Link DAP-1320 1.00. Affected by this issue is the function replace_special_cha…
Dap 1320 Firmware
Mitigation only
HIGH 7.8
CVE-2025-1471
In Eclipse OMR versions 0.2.0 to 0.4.0, some of the z/OS atoe print functions use a constant length buffer for string conversion. If the input format…
Omr
after 0.4.0
CRITICAL 9.8
CVE-2025-25663
A vulnerability was found in Tenda AC8V4 V16.03.34.06. Affected is the function SUB_0046AC38 of the file /goform/WifiExtraSet. The manipulation of th…
Ac8 Firmware
No fix yet
CRITICAL 9.8
CVE-2025-25664
Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the sub_49E098 function.
Ac8 Firmware
No fix yet
HIGH 7.5
CVE-2025-27091
OpenH264 is a free license codec library which supports H.264 encoding and decoding. A vulnerability in the decoding functions of OpenH264 codec libr…
Openh264
2.5.1+
HIGH 7.6
CVE-2025-0624
A flaw was found in grub2. During the network boot process, when trying to search for the configuration file, grub copies data from a user controlled…
Mitigation only
MEDIUM 6.4
CVE-2025-0677
A flaw was found in grub2. When performing a symlink lookup, the grub's UFS module checks the inode's data size to allocate the internal buffer to re…
Mitigation only
MEDIUM 6.7
CVE-2024-45777
A flaw was found in grub2. The calculation of the translation buffer when reading a language .mo file in grub_gettext_getstr_from_position() may over…
Openshift
after 2.12
MEDIUM 6.7
CVE-2024-45776
When reading the language .mo file in grub_mofile_open(), grub2 fails to verify an integer overflow when allocating its internal buffer. A crafted .m…
Mitigation only
MEDIUM 6.7
CVE-2024-45781
A flaw was found in grub2. When reading a symbolic link's name from a UFS filesystem, grub2 fails to validate the string length taken as an input. Th…
Mitigation only
MEDIUM 6.7
CVE-2024-45774
A flaw was found in grub2. A specially crafted JPEG file can cause the JPEG parser of grub2 to incorrectly check the bounds of its internal buffers, …
Mitigation only
MEDIUM 6.5
CVE-2025-1414
Memory safety bugs present in Firefox 135. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of the…
Firefox
135.0.1+
MEDIUM 6.5
CVE-2024-45320
Out-of-bounds write vulnerability exists in DocuPrint CP225w 01.22.01 and earlier, DocuPrint CP228w 01.22.01 and earlier, DocuPrint CM225fw 01.10.01 …
Mitigation only
HIGH 8.8
CVE-2025-1340EPSS 17%
A vulnerability classified as critical has been found in TOTOLINK X18 9.1.0cu.2024_B20220329. Affected is the function setPasswordCfg of the file /cg…
X18 Firmware
Mitigation only
CRITICAL 9.8
CVE-2025-26508
Certain HP LaserJet Pro, HP LaserJet Enterprise, and HP LaserJet Managed Printers may potentially be vulnerable to Remote Code Execution and Elevatio…
Futuresmart 3
6.17.5.34-202412122146 / 2309118_002274+
HIGH 7.0
CVE-2025-26519
musl libc 0.9.13 through 1.2.5 before 1.2.6 has an out-of-bounds write vulnerability when an attacker can trigger iconv conversion of untrusted EUC-K…
Musl
1.2.6+
HIGH 7.7
CVE-2023-34402
Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Inside file is encapsulate another file, which service…
Headunit Ntg6 Mercedes Benz User Experience
after 2021
HIGH 7.3
CVE-2024-11345
A heap-based memory vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnerability can be leveraged by…
Mitigation only
HIGH 7.5
CVE-2025-25901
A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11, triggered by the dnsserver1 and dnsserver2 parameters at /userRpm/WanSlaacC…
Tl Wr841nd Firmware
No fix yet
HIGH 7.5
CVE-2025-25897
A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the 'ip' parameter at /userRpm/WanStaticIpV6CfgRpm.htm. This vulnerabili…
Tl Wr841nd Firmware
No fix yet
HIGH 7.5
CVE-2025-25898
A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the pskSecret parameter at /userRpm/WlanSecurityRpm.htm. This vulnerabil…
Tl Wr841nd Firmware
No fix yet
MEDIUM 6.5
CVE-2024-36274
Out-of-bounds write in the Intel(R) 800 Series Ethernet Driver for Intel(R) Ethernet Adapter Complete Driver Pack before versions 29.1 may allow an u…
Mitigation only
HIGH 7.8
CVE-2024-31858
Out-of-bounds write for some Intel(R) QuickAssist Technology software before version 2.2.0 may allow an authenticated user to potentially enable esca…
Quickassist Technology
2.2.0-0012+
CRITICAL 9.8
CVE-2025-25742
D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the AccountPassword parameter in the SetSysEmai…
Dir 853 Firmware
No fix yet
CRITICAL 9.8
CVE-2025-25744
D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetDynamicDNSSett…
Dir 853 Firmware
No fix yet