Recent Advisories

Severity ID Title Vendor Product Date Type
Unknown ADV-9015

Chromium: CVE-2025-8010 Type Confusion in V8

Security Update News Update Information Title Chromium: CVE-2025-8010 Type Confusion in V8 Update ID MS:CVE-2025-8010 Type mscve Published 2025-07-...

N/A N/A NEWS
Unknown ADV-9014

Chromium: CVE-2025-8011 Type Confusion in V8

Security Update News Update Information Title Chromium: CVE-2025-8011 Type Confusion in V8 Update ID MS:CVE-2025-8011 Type mscve Published 2025-07-...

N/A N/A NEWS
Unknown ADV-9012

Tenda AC10 RequestsProcessLaid heap-based overflow

CVE Details Basic Information Title Tenda AC10 RequestsProcessLaid heap-based overflow Type cve Published 2025-07-26T04:32:10.022Z Modified 2025-07...

N/A N/A NEWS
Unknown ADV-9010

DbGate allows for File Traversal via file parameter

CVE Details Basic Information Title DbGate allows for File Traversal via file parameter Type cve Published 2025-07-26T03:27:05.690Z Modified 2025-0...

N/A N/A NEWS
Unknown ADV-9009

HAX CMS Backend Lacks Comprehensive Authorization Checks

CVE Details Basic Information Title HAX CMS Backend Lacks Comprehensive Authorization Checks Type cve Published 2025-07-26T03:27:34.305Z Modified 2...

N/A N/A NEWS
Unknown ADV-9007

XWiki Platform’s searchDocuments API allows for SQL injection

CVE Details Basic Information Title XWiki Platform’s searchDocuments API allows for SQL injection Type cve Published 2025-07-26T03:28:49.269Z...

N/A N/A NEWS
Unknown ADV-9006

skops’ Inconsistent Trusted Type Validation Enables Hidden `operator` Methods Execution

CVE Details Basic Information Title skops’ Inconsistent Trusted Type Validation Enables Hidden `operator` Methods Execution Type cve Publishe...

N/A N/A NEWS
Unknown ADV-9005

skops’ MethodNode can access unexpected object fields through dot notation, leading to arbitrary code execution at load time

CVE Details Basic Information Title skops’ MethodNode can access unexpected object fields through dot notation, leading to arbitrary code exe...

N/A N/A NEWS
Unknown ADV-9000

DbGate allows Unauthorized File Access via CSV Plugin

CVE Details Basic Information Title DbGate allows Unauthorized File Access via CSV Plugin Type cve Published 2025-07-26T03:34:43.481Z Modified 2025...

N/A N/A NEWS
Unknown ADV-8999

FreeScout’s deserialization of untrusted data leads to Remote Code Execution

CVE Details Basic Information Title FreeScout’s deserialization of untrusted data leads to Remote Code Execution Type cve Published 2025-07-2...

N/A N/A NEWS