CVE Notify
18.4K subscribers
4 photos
163K links
Alert on the latest CVEs

Partner channel: @malwr
Download Telegram
๐Ÿšจ CVE-2025-36091
IBM Cloud Pak For Business Automation 25.0.0, 24.0.1, and 24.0.0 could allow an authenticated user to cause dashboards to become inaccessible to legitimate users due to invalid ownership assignment.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-43335
The issue was addressed by adding additional logic. This issue is fixed in macOS Sonoma 14.8.2, macOS Sequoia 15.7.2. An app may be able to access user-sensitive data.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-43336
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.8.2, macOS Sequoia 15.7.2. An app with root privileges may be able to access private information.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2024-28891
SQL injection vulnerability exists in the script Handler_CFG.ashx.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2024-23494
SQL injection vulnerability exists in GetDIAE_unListParameters.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2024-23975
SQL injection vulnerability exists in GetDIAE_slogListParameters.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2024-25567
Path traversal attack is possible and write outside of the intended directory and may access sensitive information. If a file name is specified that already exists on the file system, then the original file will be overwritten.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2024-28040
SQL injection vulnerability exists in GetDIAE_astListParameters.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2024-28045
Improper neutralization of input within the affected product could lead to cross-site scripting.

๐ŸŽ–@cveNotify
๐Ÿ‘1
๐Ÿšจ CVE-2025-23155
In the Linux kernel, the following vulnerability has been resolved:

net: stmmac: Fix accessing freed irq affinity_hint

In stmmac_request_irq_multi_msi(), a pointer to the stack variable
cpu_mask is passed to irq_set_affinity_hint(). This value is stored in
irq_desc->affinity_hint, but once stmmac_request_irq_multi_msi()
returns, the pointer becomes dangling.

The affinity_hint is exposed via procfs with S_IRUGO permissions,
allowing any unprivileged process to read it. Accessing this stale
pointer can lead to:

- a kernel oops or panic if the referenced memory has been released and
unmapped, or
- leakage of kernel data into userspace if the memory is re-used for
other purposes.

All platforms that use stmmac with PCI MSI (Intel, Loongson, etc) are
affected.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-37743
In the Linux kernel, the following vulnerability has been resolved:

wifi: ath12k: Avoid memory leak while enabling statistics

Driver uses monitor destination rings for extended statistics mode and
standalone monitor mode. In extended statistics mode, TLVs are parsed from
the buffer received from the monitor destination ring and assigned to the
ppdu_info structure to update per-packet statistics. In standalone monitor
mode, along with per-packet statistics, the packet data (payload) is
captured, and the driver updates per MSDU to mac80211.

When the AP interface is enabled, only extended statistics mode is
activated. As part of enabling monitor rings for collecting statistics,
the driver subscribes to HAL_RX_MPDU_START TLV in the filter
configuration. This TLV is received from the monitor destination ring, and
kzalloc for the mon_mpdu object occurs, which is not freed, leading to a
memory leak. The kzalloc for the mon_mpdu object is only required while
enabling the standalone monitor interface. This causes a memory leak while
enabling extended statistics mode in the driver.

Fix this memory leak by removing the kzalloc for the mon_mpdu object in
the HAL_RX_MPDU_START TLV handling. Additionally, remove the standalone
monitor mode handlings in the HAL_MON_BUF_ADDR and HAL_RX_MSDU_END TLVs.
These TLV tags will be handled properly when enabling standalone monitor
mode in the future.

Tested-on: QCN9274 hw2.0 PCI WLAN.WBE.1.3.1-00173-QCAHKSWPL_SILICONZ-1
Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.0.c5-00481-QCAHMTSWPL_V1.0_V2.0_SILICONZ-3

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2019-18860
Squid before 4.9, when certain web browsers are used, mishandles HTML in the host (aka hostname) parameter to cachemgr.cgi.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-54574
Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-62168
Squid is a caching proxy for the Web. In Squid versions prior to 7.2, a failure to redact HTTP authentication credentials in error handling allows information disclosure. The vulnerability allows a script to bypass browser security protections and learn the credentials a trusted client uses to authenticate. This potentially allows a remote client to identify security tokens or credentials used internally by a web application using Squid for backend load balancing. These attacks do not require Squid to be configured with HTTP authentication. The vulnerability is fixed in version 7.2. As a workaround, disable debug information in administrator mailto links generated by Squid by configuring squid.conf with email_err_data off.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-27064
Information disclosure while registering commands from clients with diag through diagHal.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-27070
Memory corruption while performing encryption and decryption commands.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-27074
Memory corruption while processing a GP command response.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-47352
Memory corruption while processing audio streaming operations.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-47353
Memory corruption while processing request sent from GVM.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-47357
Information Disclosure when a user-level driver performs QFPROM read or write operations on Fuse regions.

๐ŸŽ–@cveNotify
๐Ÿšจ CVE-2025-47360
Memory corruption while processing client message during device management.

๐ŸŽ–@cveNotify