Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.3 CVE-2025-2611

ICTBroadcast Unauthenticated Session Cookie Remote Code Execution_CVE-2025-2611

The ICTBroadcast application unsafely passes session cookie data to shell processing, allowing an attacker to inject shell commands into a session ...

ICT Innovations ICTBroadcast CVE
CRITICAL 9.8 CVE-2025-50707

CVE-2025-50707_CVE-2025-50707

An issue in thinkphp3 v.3.2.5 allows a remote attacker to execute arbitrary code via the index.php component

n/a n/a n/a CVE
CRITICAL 9.8 CVE-2025-50706

CVE-2025-50706_CVE-2025-50706

An issue in thinkphp v.5.1 allows a remote attacker to execute arbitrary code via the routecheck function

n/a n/a n/a CVE
CRITICAL 10 CVE-2025-54253

Adobe Experience Manager | Misconfiguration (CWE-16)_CVE-2025-54253

Adobe Experience Manager versions 6.5.23 and earlier are affected by a Misconfiguration vulnerability that could result in arbitrary code execution...

Adobe Adobe Experience Manager CVE
CRITICAL 9.3 CVE-2025-54883

Vision UI’s security-kit Contains Cryptographic Weakness_CVE-2025-54883

Vision UI is a collection of enterprise-grade, dependency-free modules for modern web projects. In versions 1.4.0 and below, the getSecureRandomInt...

DavidOsipov Vision-ui < 1.5.0 CVE
CRITICAL 9.1 CVE-2025-54594

react-native-bottom-tabs: Arbitrary code execution in GitHub Actions canary workflow leads to secret exfiltration_CVE-2025-54594

react-native-bottom-tabs is a library of Native Bottom Tabs for React Native. In versions 0.9.2 and below, the github/workflows/release-canary.yml ...

callstackincubator react-native-bottom-tabs <= 0.9.2 CVE
CRITICAL 9.8 CVE-2025-6994

Reveal Listing <= 3.3 - Unauthenticated Privilege Escalation_CVE-2025-6994

The Reveal Listing plugin by smartdatasoft for WordPress is vulnerable to privilege escalation in versions up to, and including, 3.3. This is due t...

SmartDataSoft Reveal Listing * CVE
CRITICAL 9.8 CVE-2025-23310

CVE-2025-23310_CVE-2025-23310

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause stack buffer overflow by specially craf...

NVIDIA Triton Inference Server All versions prior to 25.07 CVE
CRITICAL 9.1 CVE-2025-23317

CVE-2025-23317_CVE-2025-23317

NVIDIA Triton Inference Server contains a vulnerability in the HTTP server, where an attacker could start a reverse shell by sending a specially cr...

NVIDIA Triton Inference Server All versions prior to 25.07 CVE
CRITICAL 9.8 CVE-2025-23311

CVE-2025-23311_CVE-2025-23311

NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a stack overflow through specially crafted HTTP requests. A s...

NVIDIA Triton Inference Server All versions prior to 25.07 CVE