Search

Search Results (311447 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-31125 1 Vitejs 1 Vite 2025-09-24 5.3 Medium
Vite is a frontend tooling framework for javascript. Vite exposes content of non-allowed files using ?inline&import or ?raw?import. Only apps explicitly exposing the Vite dev server to the network (using --host or server.host config option) are affected. This vulnerability is fixed in 6.2.4, 6.1.3, 6.0.13, 5.4.16, and 4.5.11.
CVE-2025-3084 1 Mongodb 1 Mongodb 2025-09-24 6.5 Medium
When run on commands with certain arguments set, explain may fail to validate these arguments before using them. This can lead to crashes in router servers. This affects MongoDB Server v5.0 prior to 5.0.31, MongoDB Server v6.0 prior to 6.0.20, MongoDB Server v7.0 prior to 7.0.16 and MongoDB Server v8.0 prior to 8.0.4
CVE-2025-3085 1 Mongodb 1 Mongodb 2025-09-24 8.1 High
A MongoDB server under specific conditions running on Linux with TLS and CRL revocation status checking enabled, fails to check the revocation status of the intermediate certificates in the peer's certificate chain. In cases of MONGODB-X509, which is not enabled by default, this may lead to improper authentication. This issue may also affect intra-cluster authentication. This issue affects MongoDB Server v5.0 versions prior to 5.0.31, MongoDB Server v6.0 versions prior to 6.0.20, MongoDB Server v7.0 versions prior to 7.0.16 and MongoDB Server v8.0 versions prior to 8.0.4. Required Configuration : MongoDB Server must be running on Linux Operating Systems and CRL revocation status checking must be enabled
CVE-2025-47329 2025-09-24 7.8 High
Memory corruption while handling invalid inputs in application info setup.
CVE-2025-47328 2025-09-24 7.5 High
Transient DOS while processing power control requests with invalid antenna or stream values.
CVE-2025-47327 2025-09-24 7.8 High
Memory corruption while encoding the image data.
CVE-2025-47326 2025-09-24 7.5 High
Transient DOS while handling command data during power control processing.
CVE-2025-47318 2025-09-24 7.5 High
Transient DOS while parsing the EPTM test control message to get the test pattern.
CVE-2025-47317 2025-09-24 7.8 High
Memory corruption due to global buffer overflow when a test command uses an invalid payload type.
CVE-2025-47316 2025-09-24 7.8 High
Memory corruption due to double free when multiple threads race to set the timestamp store.
CVE-2025-47315 2025-09-24 7.8 High
Memory corruption while handling repeated memory unmap requests from guest VM.
CVE-2025-47314 2025-09-24 7.8 High
Memory corruption while processing data sent by FE driver.
CVE-2025-27077 2025-09-24 7.8 High
Memory corruption while processing message in guest VM.
CVE-2025-27037 2025-09-24 7.8 High
Memory corruption while processing config_dev IOCTL when camera kernel driver drops its reference to CPU buffers.
CVE-2025-27036 2025-09-24 6.1 Medium
Information disclosure when Video engine escape input data is less than expected minimum size.
CVE-2025-27034 2025-09-24 9.8 Critical
Memory corruption while selecting the PLMN from SOR failed list.
CVE-2025-27033 2025-09-24 6.1 Medium
Information disclosure while running video usecase having rogue firmware.
CVE-2025-27032 2025-09-24 7.8 High
memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.
CVE-2025-27030 2025-09-24 6.1 Medium
information disclosure while invoking calibration data from user space to update firmware size.
CVE-2025-21488 2025-09-24 8.2 High
Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set.