CVE Notify
18.7K subscribers
4 photos
164K links
Alert on the latest CVEs

Partner channel: @malwr
Download Telegram
🚨 CVE-2023-1766
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Akbim Computer Panon allows Reflected XSS.This issue affects Panon: before 1.0.2.

🎖@cveNotify
🚨 CVE-2023-1728
Unrestricted Upload of File with Dangerous Type vulnerability in Fernus Informatics LMS allows OS Command Injection, Server Side Include (SSI) Injection.This issue affects LMS: before 23.04.03.

🎖@cveNotify
🚨 CVE-2023-1726
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Proliz OBS allows Stored XSS for an authenticated user.This issue affects OBS: before 23.04.01.

🎖@cveNotify
🚨 CVE-2023-1803
Authentication Bypass by Alternate Name vulnerability in DTS Electronics Redline Router firmware allows Authentication Bypass.This issue affects Redline Router: before 7.17.

🎖@cveNotify
🚨 CVE-2023-1723
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Veragroup Mobile Assistant allows SQL Injection.This issue affects Mobile Assistant: before 21.S.2343.

🎖@cveNotify
🚨 CVE-2023-23391
Office for Android Spoofing Vulnerability

🎖@cveNotify
🚨 CVE-2023-36565
Microsoft Office Graphics Elevation of Privilege Vulnerability

🎖@cveNotify
🚨 CVE-2024-38250
Windows Graphics Component Elevation of Privilege Vulnerability

🎖@cveNotify
🚨 CVE-2025-26687
Use after free in Windows Win32K - GRFX allows an unauthorized attacker to elevate privileges over a network.

🎖@cveNotify
🚨 CVE-2025-30386
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2025-30388
Heap-based buffer overflow in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2025-47162
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2025-47164
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2025-47167
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2025-47953
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2025-49695
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2025-49696
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2025-49697
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2025-49702
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2025-53732
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

🎖@cveNotify
🚨 CVE-2025-53766
Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.

🎖@cveNotify