Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2.4 CVE-2025-21046

CVE-2025-21046_CVE-2025-21046

Improper access control in WindowManager in Samsung DeX prior to SMR Oct-2025 Release 1 allows physical attackers to temporarily access to recent a...

Samsung Mobile Samsung Mobile Devices SMR Oct-2025 Release in Android 13, 14, 15 CVE
LOW 1 CVE-2025-32916

Sensitive form data in URL query parameters_CVE-2025-32916

Potential use of sensitive information in GET requests in Checkmk GmbH's Checkmk versions

Checkmk GmbH Checkmk 2.4.0 CVE
LOW 2 CVE-2025-11489

wonderwhy-er DesktopCommanderMCP filesystem.ts isPathAllowed symlink_CVE-2025-11489

A security vulnerability has been detected in wonderwhy-er DesktopCommanderMCP up to 0.2.13. This vulnerability affects the function isPathAllowed ...

wonderwhy-er DesktopCommanderMCP 0.2.0 CVE
LOW 2.3 CVE-2025-61906

Opencast’s editor accidentally publishes videos/overwrites publications #1626_CVE-2025-61906

Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to Opencast 17.8 and 18.2, in some...

opencast opencast < 17.8 CVE
LOW 1 CVE-2025-5009

Information Disclosure in Gemini iOS App_CVE-2025-5009

In Gemini iOS, when a user shared a snippet of a conversation, it would share the entire conversation via a sharable public link that contained the...

Google Gemini CVE
LOW 3.3 CVE-2025-61786

Deno’s –deny-read check does not prevent permission bypass_CVE-2025-61786

Deno is a JavaScript, TypeScript, and WebAssembly runtime. In versions prior to 2.5.3 and 2.2.15, `Deno.FsFile.prototype.stat` and `Deno.FsFile.pro...

denoland deno >= 2.3.0, < 2.5.3 CVE
LOW 2.9 CVE-2025-62187

CVE-2025-62187_CVE-2025-62187

In Ankitects Anki before 25.02.6, crafted sound file references could cause files to be written to arbitrary locations on Windows and Linux (media ...

Ankitects Anki CVE
LOW 2.3 CVE-2025-3449

Weak Session Token used in Automation Runtime SDM_CVE-2025-3449

Generation of Predictable Numbers or Identifiers vulnerability in B&R Industrial Automation Automation Runtime.This issue affects Automation Runtim...

B&R Industrial Automation Automation Runtime 6.0 CVE
LOW 3.7 CVE-2025-43909

CVE-2025-43909_CVE-2025-43909

Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.3.0.15, LTS2025 release versi...

Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release 7.7.1.0 CVE
LOW 1 CVE-2025-61670

Wasmtime has memory leak in C API with `externref` and `anyref` types_CVE-2025-61670

Wasmtime is a runtime for WebAssembly. Wasmtime 37.0.0 and 37.0.1 have memory leaks in the C/C++ API when using bindings for the `anyref` or `exter...

bytecodealliance wasmtime >= 37.0.0, < 37.0.2 CVE