Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.3 CVE-2025-24511

CVE-2025-24511_CVE-2025-24511

Improper initialization in the Linux kernel-mode driver for some Intel(R) I350 Series Ethernet before version 5.19.2 may allow an authenticated use...

n/a Intel(R) I350 Series Ethernet before version 5.19.2 CVE
LOW 2.8 CVE-2025-24324

CVE-2025-24324_CVE-2025-24324

Integer overflow or wraparound in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17.2 may allow an authenticat...

n/a Intel(R) 800 Series Ethernet before version 1.17.2 CVE
LOW 2.3 CVE-2025-22853

CVE-2025-22853_CVE-2025-22853

Improper synchronization in the firmware for some Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local ...

n/a Intel(R) TDX See references CVE
LOW 1.9 CVE-2025-21096

CVE-2025-21096_CVE-2025-21096

Improper buffer restrictions in the firmware for some Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via lo...

n/a Intel(R) TDX See references CVE
LOW 3.3 CVE-2025-20613

CVE-2025-20613_CVE-2025-20613

Predictable Seed in Pseudo-Random Number Generator (PRNG) in the firmware for some Intel(R) TDX may allow an authenticated user to potentially enab...

n/a Intel(R) TDX See references CVE
LOW 3.1 CVE-2025-2498

Insufficient Granularity of Access Control in GitLab_CVE-2025-2498

An improper access control in Gitlab EE affecting all versions from 12.0 prior to 18.0.6, 18.1 prior to 18.1.4, and 18.2 prior to 18.2.2 that under...

GitLab GitLab 12.0 CVE
LOW 2 CVE-2025-5941

Out-of-Bounds Read Vulnerability in Netskope Client_CVE-2025-5941

Netskope is notified about a potential gap in its agent (NS Client) in which a malicious actor could trigger a memory leak by sending a crafted DNS...

Netskope Netskope Client CVE
LOW 2.7 CVE-2025-55193

Active Record logging vulnerable to ANSI escape injection_CVE-2025-55193

Active Record connects classes to relational database tables. Prior to versions 7.1.5.2, 7.2.2.2, and 8.0.2.1, the ID passed to find or similar met...

rails rails >= 0, < 7.1.5.2 CVE
LOW 3.7 CVE-2025-53859

NGINX ngx_mail_smtp_module vulnerability_CVE-2025-53859

NGINX Open Source and NGINX Plus have a vulnerability in the ngx_mail_smtp_module that might allow an unauthenticated attacker to over-read NGINX S...

F5 NGINX Plus R35 CVE
LOW 3.6 CE56E1F3-E102-

Exploit for CVE-2025-55188_CE56E1F3-E102-50A6-B754-53DCF4CE524C

CVE-2025-55188-7z-exploit 7-Zip Symlink Arbitrary File Write PoC (CVE-2025-55188) Description This proof-of-concept demonstrates CVE-2025-55188, a...

N/A N/A GITHUBEXPLOIT