Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.7 CVE-2025-54350

CVE-2025-54350_CVE-2025-54350

In iperf before 3.19.1, iperf_auth.c has a Base64Decode assertion failure and application exit upon a malformed authentication attempt.

ES iperf3 CVE
LOW 3.2 CVE-2025-54956

CVE-2025-54956_CVE-2025-54956

The gh package before 1.5.0 for R delivers an HTTP response in a data structure that includes the Authorization header from the corresponding HTTP ...

r-lib gh CVE
LOW 2.3 CVE-2025-8515

Intelbras InControl JSON Endpoint operador information disclosure_CVE-2025-8515

A vulnerability was found in Intelbras InControl 2.21.60.9 and classified as problematic. This issue affects some unknown processing of the file /v...

Intelbras InControl 2.21.60.9 CVE
LOW 2.9 CVE-2025-50422

CVE-2025-50422_CVE-2025-50422

Cairo through 1.18.4, as used in Poppler through 25.08.0, has an "unscaled->face == NULL" assertion failure for _cairo_ft_unscaled_font_fini in cai...

cairographics Cairo CVE
LOW 2.3 CVE-2025-8522

givanz Vvvebjs node.js save.php path traversal_CVE-2025-8522

A vulnerability, which was classified as critical, was found in givanz Vvvebjs up to 2.0.4. Affected is an unknown function of the file /save.php o...

givanz Vvvebjs 2.0.0 CVE
LOW 2 CVE-2025-4599

CVE-2025-4599_CVE-2025-4599

The fragment preview functionality in Liferay Portal 7.4.3.61 through 7.4.3.132, and Liferay DXP 2024.Q4.1 through 2024.Q4.5, 2024.Q3.1 through 202...

Liferay Portal 7.4.0 CVE
LOW 1 CVE-2025-7844

wolfTPM library wrapper function `wolfTPM2_RsaKey_TpmToWolf` copies external data to a fixed-size stack buffer without length validation potentially causing stack-based buffer overflow_CVE-2025-7844

Exporting a TPM based RSA key larger than 2048 bits from the TPM could overrun a stack buffer if the default `MAX_RSA_KEY_BITS=2048` is used. If yo...

wolfSSL Inc. wolfTPM CVE
LOW 3.8 CVE-2025-46094

CVE-2025-46094_CVE-2025-46094

LiquidFiles before 4.1.2 allows directory traversal by configuring the pathname of a local executable file as an Actionscript.

LiquidFiles LiquidFiles CVE
LOW 2 CVE-2025-8534

libtiff tiff2ps tiff2ps.c PS_Lvl2page null pointer dereference_CVE-2025-8534

A vulnerability classified as problematic was found in libtiff 4.6.0. This vulnerability affects the function PS_Lvl2page of the file tools/tiff2ps...

n/a libtiff 4.6.0 CVE
LOW 3.9 CVE-2025-44964

CVE-2025-44964_CVE-2025-44964

A lack of SSL certificate validation in BlueStacks v5.20 allows attackers to execute a man-it-the-middle attack and obtain sensitive information.

n/a n/a n/a CVE