Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 3.3 CVE-2025-25216

CVE-2025-25216_CVE-2025-25216

Improper input validation in some firmware for some Intel(R) Graphics Drivers and Intel LTS kernels within Ring 1: Device Drivers may allow a denia...

n/a Intel(R) Graphics Drivers and Intel LTS kernels See references CVE
LOW 2 CVE-2025-24862

CVE-2025-24862_CVE-2025-24862

Unrestricted upload of file with dangerous type for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applications ...

n/a Intel(R) CIP software before version WIN_DCA_2.4.0.11001 CVE
LOW 2 CVE-2025-24314

CVE-2025-24314_CVE-2025-24314

Improper access control for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applications may allow an information...

n/a Intel(R) CIP software before version WIN_DCA_2.4.0.11001 CVE
LOW 2 CVE-2025-24307

CVE-2025-24307_CVE-2025-24307

Improper privilege management for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applications may allow an escal...

n/a Intel(R) CIP software before version WIN_DCA_2.4.0.11001 CVE
LOW 3.8 CVE-2025-20622

CVE-2025-20622_CVE-2025-20622

Sensitive information uncleared in resource before release for reuse for some Intel(R) NPU Drivers for Windows before version 32.0.100.4023 within ...

n/a Intel(R) NPU Drivers for Windows before version 32.0.100.4023 CVE
LOW 2.1 CVE-2025-41116

Incorrect oauth passthrough in Grafana Snowflake Datasource_CVE-2025-41116

When using the Grafana Databricks Datasource Plugin, if Oauth passthrough is enabled on the datasource, and multiple users are using the same datas...

Grafana Labs Grafana Databricks Datasource Plugin 1.6.0 CVE
LOW 2.1 CVE-2025-3717

Incorrect oauth passthrough in Grafana Snowflake Datasource_CVE-2025-3717

When using the Grafana Snowflake Datasource Plugin, if Oauth passthrough is enabled on the datasource, and multiple users are using the same dataso...

Grafana Labs Grafana Snowflake Datasource Plugin 1.5.0 CVE
LOW 2 CVE-2025-64181

OpenEXR Makes Use of Uninitialized Memory_CVE-2025-64181

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In...

AcademySoftwareFoundation openexr >= 3.3.0, < 3.3.6 CVE
LOW 3.5 CVE-2025-62780

changedetection.io vulnerable to stored XSS in Watch update via API_CVE-2025-62780

changedetection.io is a free open source web page change detection tool. A Stored Cross Site Scripting is present in changedetection.io Watch updat...

dgtlmoon changedetection.io < 0.50.34 CVE
LOW 2.7 CVE-2025-64529

SpiceDB’s WriteRelationships fails silently if payload is too big_CVE-2025-64529

SpiceDB is an open source database system for creating and managing security-critical application permissions. In versions prior to 1.45.2, users w...

authzed spicedb < 1.45.2 CVE