Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.8 CVE-2025-20622

CVE-2025-20622_CVE-2025-20622

Sensitive information uncleared in resource before release for reuse for some Intel(R) NPU Drivers for Windows before version 32.0.100.4023 within ...

n/a Intel(R) NPU Drivers for Windows before version 32.0.100.4023 CVE
LOW 2.1 CVE-2025-41116

Incorrect oauth passthrough in Grafana Snowflake Datasource_CVE-2025-41116

When using the Grafana Databricks Datasource Plugin, if Oauth passthrough is enabled on the datasource, and multiple users are using the same datas...

Grafana Labs Grafana Databricks Datasource Plugin 1.6.0 CVE
LOW 2.1 CVE-2025-3717

Incorrect oauth passthrough in Grafana Snowflake Datasource_CVE-2025-3717

When using the Grafana Snowflake Datasource Plugin, if Oauth passthrough is enabled on the datasource, and multiple users are using the same dataso...

Grafana Labs Grafana Snowflake Datasource Plugin 1.5.0 CVE
LOW 2 CVE-2025-64181

OpenEXR Makes Use of Uninitialized Memory_CVE-2025-64181

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In...

AcademySoftwareFoundation openexr >= 3.3.0, < 3.3.6 CVE
LOW 3.5 CVE-2025-62780

changedetection.io vulnerable to stored XSS in Watch update via API_CVE-2025-62780

changedetection.io is a free open source web page change detection tool. A Stored Cross Site Scripting is present in changedetection.io Watch updat...

dgtlmoon changedetection.io < 0.50.34 CVE
LOW 2.7 CVE-2025-64529

SpiceDB’s WriteRelationships fails silently if payload is too big_CVE-2025-64529

SpiceDB is an open source database system for creating and managing security-critical application permissions. In versions prior to 1.45.2, users w...

authzed spicedb < 1.45.2 CVE
LOW 2.7 CVE-2025-42883

Insecure File Operations vulnerability in SAP NetWeaver Application Server for ABAP (Migration Workbench)_CVE-2025-42883

Migration Workbench (DX Workbench) in SAP NetWeaver Application Server for ABAP fails to trigger a malware scan when an attacker with administrativ...

SAP_SE SAP NetWeaver Application Server for ABAP (Migration Workbench) SAP_BASIS 700 CVE
LOW 3.1 CVE-2025-8998

CVE-2025-8998_CVE-2025-8998

It was possible to upload files with a specific name to a temporary directory, which may result in process crashes and impact usability. This flaw ...

Axis Communications AB AXIS OS 6.50.0 CVE
LOW 3.1 CVE-2025-64686

CVE-2025-64686_CVE-2025-64686

In JetBrains YouTrack before 2025.3.104432 missing user principal cleanup led to reuse of incorrect authorization context

JetBrains YouTrack CVE
LOW 2.7 CVE-2025-64682

CVE-2025-64682_CVE-2025-64682

In JetBrains Hub before 2025.3.104432 a race condition allowed bypass of the Agent-user limit

JetBrains Hub CVE