Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 1 CVE-2025-64725

Weblate has improper validation upon invitation acceptance_CVE-2025-64725

Weblate is a web based localization tool. In versions prior to 5.15, it was possible to accept an invitation opened by a different user. Version 5....

WeblateOrg weblate < 5.15 CVE
LOW 0.9 CVE-2025-14714

TCC Bypass via Inherited Permissions in Bundled Interpreter_CVE-2025-14714

An Authentication Bypass vulnerability existed where the application bundled an interpreter (Python) that inherits the Transparency, Consent, and C...

The Document Foundation LibreOffice 25.2 CVE
LOW 3.1 CVE-2025-14023

CVE-2025-14023_CVE-2025-14023

LINE client for iOS prior to 15.19 allows UI spoofing due to inconsistencies between the navigation state and the in-app browser's user interface, ...

LINE Corporation LINE client for iOS 14.0.0 CVE
LOW 3.4 CVE-2025-14019

CVE-2025-14019_CVE-2025-14019

LINE client for Android versions from 13.8 to 15.5 is vulnerable to UI spoofing in the in-app browser where a specific layout could obscure the ful...

LINE Corporation LINE client for Android 13.8 CVE
LOW 2.8 CVE-2025-43532

CVE-2025-43532_CVE-2025-43532

A memory corruption issue was addressed with improved bounds checking. This issue is fixed in macOS Sonoma 14.8.3, macOS Sequoia 15.7.3. Processing...

Apple macOS unspecified CVE
LOW 3.3 CVE-2025-43437

CVE-2025-43437_CVE-2025-43437

An information disclosure issue was addressed with improved privacy controls. This issue is fixed in iOS 26.1 and iPadOS 26.1. An app may be able t...

Apple iOS and iPadOS unspecified CVE
LOW 2.9 CVE-2025-67899

CVE-2025-67899_CVE-2025-67899

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing man...

uriparser project uriparser CVE
LOW 2.4 CVE-2025-43410

CVE-2025-43410_CVE-2025-43410

The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2. An attacker with physic...

Apple macOS unspecified CVE
LOW 2.3 CVE-2025-14606

tiny-rdm Tiny RDM Pickle Decoding pickle_convert.go pickle.loads deserialization_CVE-2025-14606

A security vulnerability has been detected in tiny-rdm Tiny RDM up to 1.2.5. Affected by this vulnerability is the function pickle.loads of the fil...

tiny-rdm Tiny RDM 1.2.0 CVE
LOW 3.7 CVE-2025-9218

rtMedia for WordPress, BuddyPress and bbPress 4.7.0 – 4.7.3 – Missing Authorization to Unauthenticated Information Disclosure via handle_rest_pre_dispatch Function_CVE-2025-9218

The rtMedia for WordPress, BuddyPress and bbPress plugin for WordPress is vulnerable to to Information Disclosure due to missing authorization in t...

rtcamp rtMedia for WordPress, BuddyPress and bbPress 4.7.0 CVE