CVE Notify
17.7K subscribers
4 photos
151K links
Alert on the latest CVEs

Partner channel: @malwr
Download Telegram
🚨 CVE-2025-27032
memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.

πŸŽ–@cveNotify
🚨 CVE-2025-33187
NVIDIA DGX Spark GB10 contains a vulnerability in SROOT, where an attacker could use privileged access to gain access to SoC protected areas. A successful exploit of this vulnerability might lead to code execution, information disclosure, data tampering, denial of service, or escalation of privileges.

πŸŽ–@cveNotify
🚨 CVE-2025-33188
NVIDIA DGX Spark GB10 contains a vulnerability in hardware resources where an attacker could tamper with hardware controls. A successful exploit of this vulnerability might lead to information disclosure, data tampering, or denial of service.

πŸŽ–@cveNotify
🚨 CVE-2023-30802
The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to a source code disclosure vulnerability. A remote and unauthenticated attacker can obtain PHP source code by sending an HTTP request with an invalid Content-Length field.

πŸŽ–@cveNotify
🚨 CVE-2023-30803
The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to an authentication bypass vulnerability. A remote and unauthenticated attacker can bypass authentication and access administrative functionality by sending HTTP requests using a crafted Y-forwarded-for header.

πŸŽ–@cveNotify
🚨 CVE-2023-30804
The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to an authenticated file disclosure vulnerability. A remote and authenticated attacker can read arbitrary system files using the svpn_html/loadfile.php endpoint. This issue is exploitable by a remote and unauthenticated attacker when paired with CVE-2023-30803.

πŸŽ–@cveNotify
🚨 CVE-2023-30805
The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to an operating system command injection vulnerability. A remote and unauthenticated attacker can execute arbitrary commands by sending a crafted HTTP POST request to the /LogInOut.php endpoint. This is due to mishandling of shell meta-characters in the "un" parameter.

πŸŽ–@cveNotify
🚨 CVE-2024-21908
TinyMCE versions before 5.9.0 are affected by a stored cross-site scripting vulnerability. An unauthenticated and remote attacker could insert crafted HTML into the editor resulting in arbitrary JavaScript execution in another user's browser.

πŸŽ–@cveNotify
🚨 CVE-2024-21910
TinyMCE versions before 5.10.0 are affected by a cross-site scripting vulnerability. A remote and unauthenticated attacker could introduce crafted image or link URLs that would result in the execution of arbitrary JavaScript in an editing user's browser.

πŸŽ–@cveNotify
🚨 CVE-2024-53021
Information disclosure may occur while processing goodbye RTCP packet from network.

πŸŽ–@cveNotify
🚨 CVE-2024-53026
Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call.

πŸŽ–@cveNotify
🚨 CVE-2025-21463
Transient DOS while processing the EHT operation IE in the received beacon frame.

πŸŽ–@cveNotify
🚨 CVE-2025-21464
Information disclosure while reading data from an image using specified offset and size parameters.

πŸŽ–@cveNotify
🚨 CVE-2025-21465
Information disclosure while processing the hash segment in an MBN file.

πŸŽ–@cveNotify
🚨 CVE-2025-21487
Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.

πŸŽ–@cveNotify
🚨 CVE-2025-47318
Transient DOS while parsing the EPTM test control message to get the test pattern.

πŸŽ–@cveNotify
🚨 CVE-2025-56423
An issue in Austrian Academy of Sciences (AW) Austrian Archaeological Institute OpenAtlas v.8.12.0 allows a remote attacker to obtain sensitive information via the login error messages

πŸŽ–@cveNotify
🚨 CVE-2025-60914
Incorrect access control in Austrian Archaeological Institute Openatlas before v8.12.0 allows attackers to access sensitive information via sending a crafted GET request to the /display_logo endpoint.

πŸŽ–@cveNotify
🚨 CVE-2025-60915
An issue in the size query parameter (/views/file.py) of Austrian Archaeological Institute Openatlas before v8.12.0 allows attackers to execute a path traversal via a crafted request.

πŸŽ–@cveNotify
🚨 CVE-2024-53010
Memory corruption may occur while attaching VM when the HLOS retains access to VM.

πŸŽ–@cveNotify
🚨 CVE-2024-53015
Memory corruption while processing IOCTL command to handle buffers associated with a session.

πŸŽ–@cveNotify