Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 527 528 529 530 531 532 533 534 535 536 [537] 538 539 540 541 542 543 544 545 546 547 ... Result(s) : 299727

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
N/A 2025-04-08 CVE-2025-26640 cve Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.
N/A 2025-04-08 CVE-2025-26639 cve Integer overflow or wraparound in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.
N/A 2025-04-08 CVE-2025-26637 cve Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
N/A 2025-04-08 CVE-2025-26635 cve Weak authentication in Windows Hello allows an authorized attacker to bypass a security feature over a network.
7.3 2025-04-08 CVE-2025-26628 cve Insufficiently protected credentials in Azure Local Cluster allows an authorized attacker to disclose information locally.
5.3 2025-04-08 CVE-2025-2568 cve The Vayu Blocks – Gutenberg Blocks for WordPress & WooCommerce plugin for WordPress is vulnerable to unauthorized access and modification of data due to missing capability check...
8.8 2025-04-08 CVE-2025-2526 cve The Streamit theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 4.0.2. This is due to the plugin not properly v...
N/A 2025-04-08 CVE-2025-25254 cve An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] in FortiWeb version 7.6.2 and below, version 7.4.6 and below, ...
8.8 2025-04-08 CVE-2025-2525 cve The Streamit theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'st_Authentication_Controller::edit_profile' functi...
N/A 2025-04-08 CVE-2025-25227 cve Insufficient state checks lead to a vector that allows to bypass 2FA checks.
N/A 2025-04-08 CVE-2025-25226 cve Improper handling of identifiers lead to a SQL injection vulnerability in the quoteNameStr method of the database package. Please note: the affected method is a protected method...
6.5 2025-04-08 CVE-2025-2519 cve The Sreamit theme for WordPress is vulnerable to arbitrary file downloads in all versions up to, and including, 4.0.1. This is due to insufficient file validation in the 's...
N/A 2025-04-08 CVE-2025-25013 cve Improper restriction of environment variables in Elastic Defend can lead to exposure of sensitive information such as API keys and tokens via automatic transmission of unfiltere...
6.8 2025-04-08 CVE-2025-25002 cve Insertion of sensitive information into log file in Azure Local Cluster allows an authorized attacker to disclose information over an adjacent network.
9.1 2025-04-08 CVE-2025-24447 cve ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the c...
9.1 2025-04-08 CVE-2025-24446 cve ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution. Exploitation o...
N/A 2025-04-08 CVE-2025-24074 cve Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
N/A 2025-04-08 CVE-2025-24073 cve Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
N/A 2025-04-08 CVE-2025-24062 cve Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
N/A 2025-04-08 CVE-2025-24060 cve Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Page(s) : 1 ... 527 528 529 530 531 532 533 534 535 536 [537] 538 539 540 541 542 543 544 545 546 547 ... Result(s) : 299727