Total
304940 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2025-20698 | 1 Mediatek | 1 Power Hal | 2025-08-05 | 6.7 Medium |
In Power HAL, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS09915400; Issue ID: MSV-3793. | ||||
CVE-2025-23287 | 1 Nvidia | 1 Gpu Display Driver | 2025-08-05 | 3.3 Low |
NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may access sensitive system-level information. A successful exploit of this vulnerability may lead to Information disclosure. | ||||
CVE-2025-8341 | 1 Grafana | 2 Grafana, Infinity Datasource | 2025-08-05 | 5 Medium |
Grafana is an open-source platform for monitoring and observability. The Infinity datasource plugin, maintained by Grafana Labs, allows visualizing data from JSON, CSV, XML, GraphQL, and HTML endpoints. If the plugin was configured to allow only certain URLs, an attacker could bypass this restriction using a specially crafted URL. This vulnerability is fixed in version 3.4.1. | ||||
CVE-2025-20696 | 1 Mediatek | 32 Mt6739, Mt6761, Mt6765 and 29 more | 2025-08-05 | 6.8 Medium |
In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS09915215; Issue ID: MSV-3801. | ||||
CVE-2025-8515 | 1 Intelbras | 1 Incontrol | 2025-08-05 | 3.1 Low |
A vulnerability was found in Intelbras InControl 2.21.60.9 and classified as problematic. This issue affects some unknown processing of the file /v1/operador/ of the component JSON Endpoint. The manipulation leads to information disclosure. The attack may be initiated remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. | ||||
CVE-2023-4042 | 2 Artifex, Redhat | 9 Ghostscript, Codeready Linux Builder, Codeready Linux Builder For Arm64 and 6 more | 2025-08-05 | 5.5 Medium |
A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. This issue only affects the ghostscript package as shipped with Red Hat Enterprise Linux 8. | ||||
CVE-2025-54299 | 2 Joomla, Nobossextensions | 2 Joomla!, No Boss Testimonials Component | 2025-08-05 | N/A |
A stored XSS vulnerability in No Boss Testimonials component 1.0.0-3.0.0 and 4.0.0-4.0.2 for Joomla was discovered. | ||||
CVE-2025-54980 | 2025-08-05 | N/A | ||
Not used | ||||
CVE-2025-54979 | 2025-08-05 | N/A | ||
Not used | ||||
CVE-2025-54978 | 2025-08-05 | N/A | ||
Not used | ||||
CVE-2025-54977 | 2025-08-05 | N/A | ||
Not used | ||||
CVE-2025-54976 | 2025-08-05 | N/A | ||
Not used | ||||
CVE-2025-54975 | 2025-08-05 | N/A | ||
Not used | ||||
CVE-2025-54974 | 2025-08-05 | N/A | ||
Not used | ||||
CVE-2025-23284 | 1 Nvidia | 1 Gpu Display Driver | 2025-08-05 | 7.8 High |
NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest could cause a stack buffer overflow. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, or data tampering. | ||||
CVE-2025-23283 | 1 Nvidia | 1 Gpu Display Driver | 2025-08-05 | 7.8 High |
NVIDIA vGPU software for Linux-style hypervisors contains a vulnerability in the Virtual GPU Manager, where a malicious guest could cause stack buffer overflow. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering. | ||||
CVE-2025-23281 | 1 Nvidia | 1 Gpu Display Driver | 2025-08-05 | 7 High |
NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker with local unprivileged access that can win a race condition might be able to trigger a use-after-free error. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, or information disclosure. | ||||
CVE-2025-23279 | 1 Nvidia | 1 Gpu Display Driver | 2025-08-05 | 7 High |
NVIDIA .run Installer for Linux and Solaris contains a vulnerability where an attacker could use a race condition to escalate privileges. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, denial of service, or data tampering. | ||||
CVE-2025-23277 | 1 Nvidia | 1 Gpu Display Driver | 2025-08-05 | 7.3 High |
NVIDIA Display Driver for Linux and Windows contains a vulnerability in the kernel mode driver, where an attacker could access memory outside bounds permitted under normal use cases. A successful exploit of this vulnerability might lead to denial of service, data tampering, or information disclosure. | ||||
CVE-2025-23276 | 1 Nvidia | 1 Gpu Display Driver | 2025-08-05 | 7.8 High |
NVIDIA Installer for Windows contains a vulnerability where an attacker may be able to escalate privileges. A successful exploit of this vulnerability may lead to escalation of privileges, denial of service, code execution, information disclosure and data tampering. |