Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 CVE-2025-54231

Adobe Framemaker | Use After Free (CWE-416)_CVE-2025-54231

Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution i...

Adobe Adobe Framemaker CVE
HIGH 7.8 CVE-2025-54230

Adobe Framemaker | Use After Free (CWE-416)_CVE-2025-54230

Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution i...

Adobe Adobe Framemaker CVE
HIGH 7.8 CVE-2025-54229

Adobe Framemaker | Use After Free (CWE-416)_CVE-2025-54229

Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution i...

Adobe Adobe Framemaker CVE
HIGH 7.5 CVE-2025-4277

Tcg2Smm: improper input validation may lead to arbitrary code execution_CVE-2025-4277

Tcg2Smm has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SMM level.

Insyde Software InsydeH2O Kernel 5.2 CVE
HIGH 7.5 CVE-2025-4276

UsbCoreDxe: improper input validation may lead to arbitrary code execution_CVE-2025-4276

UsbCoreDxe has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SMM level.

Insyde Software InsydeH2O Kernel 5.3 CVE
HIGH 7.5 CVE-2025-4410

SetupUtility: A buffer overflow vulnerability leads to arbitrary code execution._CVE-2025-4410

A buffer overflow vulnerability exists in the module SetupUtility. An attacker with local privileged access can exploit this vulnerability by execu...

Insyde Software InsydeH2O See in the Reference link CVE
HIGH 8.8 CVE-2025-8901

CVE-2025-8901_CVE-2025-8901

Out of bounds write in ANGLE in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to perform out of bounds memory access via a crafte...

Google Chrome 139.0.7258.127 CVE
HIGH 8.8 CVE-2025-8882

CVE-2025-8882_CVE-2025-8882

Use after free in Aura in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convinced a user to engage in specific UI gestures to...

Google Chrome 139.0.7258.127 CVE
HIGH 8.8 CVE-2025-8880

CVE-2025-8880_CVE-2025-8880

Race in V8 in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (...

Google Chrome 139.0.7258.127 CVE
HIGH 8.8 CVE-2025-8879

CVE-2025-8879_CVE-2025-8879

Heap buffer overflow in libaom in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to potentially exploit heap corruption via a cura...

Google Chrome 139.0.7258.127 CVE