Search

Search Results (315548 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-59184 1 Microsoft 6 Windows Server, Windows Server 2016, Windows Server 2019 and 3 more 2025-10-24 5.5 Medium
Exposure of sensitive information to an unauthorized actor in Windows High Availability Services allows an authorized attacker to disclose information locally.
CVE-2025-58739 1 Microsoft 10 Windows, Windows 10, Windows 11 and 7 more 2025-10-24 6.5 Medium
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network.
CVE-2025-58738 1 Microsoft 16 Windows, Windows 10, Windows 10 1507 and 13 more 2025-10-24 7 High
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
CVE-2024-4947 2 Fedoraproject, Google 2 Fedora, Chrome 2025-10-24 9.6 Critical
Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2025-58737 1 Microsoft 9 Remote Desktop, Windows, Windows Server and 6 more 2025-10-24 7 High
Use after free in Windows Remote Desktop allows an unauthorized attacker to execute code locally.
CVE-2025-58736 1 Microsoft 20 Windows, Windows 10, Windows 10 1507 and 17 more 2025-10-24 7 High
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
CVE-2025-58734 1 Microsoft 17 Windows, Windows 10 1507, Windows 10 1607 and 14 more 2025-10-24 7 High
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
CVE-2025-58733 1 Microsoft 22 Windows, Windows 10, Windows 10 1507 and 19 more 2025-10-24 7 High
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
CVE-2025-58731 1 Microsoft 10 Windows, Windows 11, Windows 11 22h2 and 7 more 2025-10-24 7 High
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
CVE-2025-58730 1 Microsoft 21 Windows, Windows 10, Windows 10 1507 and 18 more 2025-10-24 7 High
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
CVE-2025-58729 1 Microsoft 12 Windows, Windows 10, Windows 11 and 9 more 2025-10-24 6.5 Medium
Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.
CVE-2025-58727 1 Microsoft 6 Windows, Windows 10, Windows 11 and 3 more 2025-10-24 7 High
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.
CVE-2024-5274 2 Fedoraproject, Google 2 Fedora, Chrome 2025-10-24 8.3 High
Type Confusion in V8 in Google Chrome prior to 125.0.6422.112 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2025-58726 1 Microsoft 10 Windows, Windows 10, Windows 11 and 7 more 2025-10-24 7.5 High
Improper access control in Windows SMB Server allows an authorized attacker to elevate privileges over a network.
CVE-2025-58725 1 Microsoft 10 Windows, Windows 10, Windows 11 and 7 more 2025-10-24 7 High
Heap-based buffer overflow in Windows COM allows an authorized attacker to elevate privileges locally.
CVE-2025-58724 1 Microsoft 5 Azure, Azure Agent, Azure Arc and 2 more 2025-10-24 7.8 High
Improper access control in Azure Connected Machine Agent allows an authorized attacker to elevate privileges locally.
CVE-2024-7965 2 Google, Microsoft 2 Chrome, Edge Chromium 2025-10-24 8.8 High
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2025-58720 1 Microsoft 7 Windows, Windows 10, Windows 11 and 4 more 2025-10-24 7.8 High
Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized attacker to disclose information locally.
CVE-2025-58718 1 Microsoft 13 Remote, Remote Desktop, Remote Desktop Client and 10 more 2025-10-24 8.8 High
Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVE-2025-58714 1 Microsoft 10 Windows, Windows 10, Windows 11 and 7 more 2025-10-24 7.8 High
Improper access control in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.