Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 CVE-2025-54215

InCopy | Out-of-bounds Write (CWE-787)_CVE-2025-54215

InCopy versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the ...

Adobe InCopy CVE
HIGH 7.8 CVE-2025-54216

InCopy | Out-of-bounds Write (CWE-787)_CVE-2025-54216

InCopy versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the ...

Adobe InCopy CVE
HIGH 7.8 CVE-2025-54217

InCopy | Heap-based Buffer Overflow (CWE-122)_CVE-2025-54217

InCopy versions 20.4, 19.5.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution i...

Adobe InCopy CVE
HIGH 7.8 CVE-2025-54218

InCopy | Out-of-bounds Write (CWE-787)_CVE-2025-54218

InCopy versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the ...

Adobe InCopy CVE
HIGH 7.8 CVE-2025-54219

InCopy | Heap-based Buffer Overflow (CWE-122)_CVE-2025-54219

InCopy versions 20.4, 19.5.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution i...

Adobe InCopy CVE
HIGH 7.8 CVE-2025-54220

InCopy | Heap-based Buffer Overflow (CWE-122)_CVE-2025-54220

InCopy versions 20.4, 19.5.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution i...

Adobe InCopy CVE
HIGH 7.7 CVE-2025-54074

Cherry Studio is Vulnerable to OS Command Injection during Connection with a Malicious MCP Server_CVE-2025-54074

Cherry Studio is a desktop client that supports for multiple LLM providers. From versions 1.2.5 to 1.5.1, Cherry Studio is vulnerable to OS Command...

CherryHQ cherry-studio >= 1.2.5, < 1.5.2 CVE
HIGH 7.6 CVE-2025-55004

ImageMagick: heap-buffer overflow read in MNG magnification with alpha_CVE-2025-55004

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-1, ImageMagick is vulnerable ...

ImageMagick ImageMagick < 7.1.2-1 CVE
HIGH 8.8 CVE-2025-55154

ImageMagick: integer overflows in MNG magnification_CVE-2025-55154

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-27 and 7.1.2-1, the magnifi...

ImageMagick ImageMagick < 6.9.13-27 CVE
HIGH 8.2 CVE-2025-55163

Netty MadeYouReset HTTP/2 DDoS Vulnerability_CVE-2025-55163

Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.124.Final and 4.2.4.Final, Netty is vulnerable to MadeY...

netty netty < 4.1.124.Final CVE