Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.8 CVE-2025-43349

CVE-2025-43349_CVE-2025-43349

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in tvOS 26, macOS Sonoma 14.8, macOS Sequoia 15.7, i...

Apple macOS unspecified CVE
LOW 3.3 CVE-2025-43344

CVE-2025-43344_CVE-2025-43344

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in tvOS 26, watchOS 26, visionOS 26, macOS Tahoe 26,...

Apple iOS and iPadOS unspecified CVE
LOW 3.1 CVE-2025-59270

psPAS does not enforce TLS 1.2 within Get-PASSAMLResponse_CVE-2025-59270

psPAS PowerShell module does not explicitly enforce TLS 1.2 within the 'Get-PASSAMLResponse' function during the SAML authentication process. An un...

pspete psPAS 6.4.85 CVE
LOW 2.7 CVE-2025-59160

matrix-js-sdk has insufficient validation when considering a room to be upgraded by another_CVE-2025-59160

Matrix JavaScript SDK is a Matrix Client-Server SDK for JavaScript and TypeScript. matrix-js-sdk before 38.2.0 has insufficient validation of room ...

matrix-org matrix-js-sdk < 38.2.0 CVE
LOW 2.2 CVE-2025-30075

CVE-2025-30075_CVE-2025-30075

In Alludo MindManager before 25.0.208 on Windows, attackers could potentially execute code as other local users on the same machine if they could w...

Alludo MindManager CVE
LOW 2.1 CVE-2025-58749

WAMR runtime hangs or crashes with large memory.fill addresses in LLVM-JIT mode_CVE-2025-58749

WebAssembly Micro Runtime (WAMR) is a lightweight standalone WebAssembly (Wasm) runtime. In WAMR versions prior to 2.4.2, when running in LLVM-JIT ...

bytecodealliance wasm-micro-runtime < 2.4.2 CVE
LOW 3.1 CVE-2025-59270

psPAS does not enforce TLS within Get-PASSAMLResponse_CVE-2025-59270

psPAS PowerShell module does not explicitly enforce TLS 1.2 within the 'Get-PASSAMLResponse' function during the SAML authentication process. An un...

pspete psPAS 6.4.85 CVE
LOW 3.3 CVE-2025-43283

CVE-2025-43283_CVE-2025-43283

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Tahoe 26. An app may be able to cause unexpected sy...

Apple macOS unspecified CVE
LOW 2.3 CVE-2025-10316

Cross-Site Scripting in extension “Form to Database” (form_to_database)_CVE-2025-10316

The extension "Form to Database" is susceptible to Cross-Site Scripting. This issue affects the following versions: before 2.2.5, from 3.0.0 before...

TYPO3 Extension "Form to Database" (form_to_database) CVE
LOW 3.5 CVE-2025-26710

CVE-2025-26710_CVE-2025-26710

There is an an information disclosure vulnerability in ZTE T5400. Due to improper configuration of the access control mechanism, attackers can obta...

ZTE T5400 CR_UNIAGT5400V1.0.0B02 CVE