Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2 CVE-2025-53010

MaterialX’s unchecked nodeGraph->getOutput return is vulnerable to NULL Pointer Dereference_CVE-2025-53010

MaterialX is an open standard for the exchange of rich material and look-development content across applications and renderers. In version 1.39.2, ...

AcademySoftwareFoundation MaterialX >= 1.39.2, < 1.39.3 CVE
LOW 3.7 CVE-2025-6011

Timing Side-Channel in Vault’s Userpass Auth Method_CVE-2025-6011

A timing side channel in Vault and Vault Enterprise’s (“Vault”) userpass auth method allowed an attacker to distinguish between existing and non-ex...

HashiCorp Vault CVE
LOW 2.8 CVE-2025-54781

Himmelblau leaks an Intune service access token in its logs_CVE-2025-54781

Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. When debugging is enabled for Himmelblau in version 1.0.0, the him...

himmelblau-idm himmelblau >= 1.0.0, < 1.1.0 CVE
LOW 3.3 CVE-2025-23288

CVE-2025-23288_CVE-2025-23288

NVIDIA GPU Display Driver for Windows contains a vulnerability  where an attacker may cause an exposure of sensitive system information with local ...

NVIDIA GPU Display Drivers R535, R570, R575 CVE
LOW 3.3 CVE-2025-23287

CVE-2025-23287_CVE-2025-23287

NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may access sensitive system-level information. A successful exploi...

NVIDIA GPU Display Drivers R535, R570, R575 CVE
LOW 2.5 CVE-2025-23290

CVE-2025-23290_CVE-2025-23290

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a guest could get global GPU metrics which may be influenced by wor...

NVIDIA GPU Display Drivers R535, R570 CVE
LOW 3.7 CVE-2025-54350

CVE-2025-54350_CVE-2025-54350

In iperf before 3.19.1, iperf_auth.c has a Base64Decode assertion failure and application exit upon a malformed authentication attempt.

ES iperf3 CVE
LOW 3.2 CVE-2025-54956

CVE-2025-54956_CVE-2025-54956

The gh package before 1.5.0 for R delivers an HTTP response in a data structure that includes the Authorization header from the corresponding HTTP ...

r-lib gh CVE
LOW 2.3 CVE-2025-8515

Intelbras InControl JSON Endpoint operador information disclosure_CVE-2025-8515

A vulnerability was found in Intelbras InControl 2.21.60.9 and classified as problematic. This issue affects some unknown processing of the file /v...

Intelbras InControl 2.21.60.9 CVE
LOW 2.9 CVE-2025-50422

CVE-2025-50422_CVE-2025-50422

Cairo through 1.18.4, as used in Poppler through 25.08.0, has an "unscaled->face == NULL" assertion failure for _cairo_ft_unscaled_font_fini in cai...

cairographics Cairo CVE