2528 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2025-66959
Software Genérico General
7.5
HIGH
EPSS
0.3%
2025 1 PoC

An issue in ollama v.0.12.10 allows a remote attacker to cause a denial of service via the GGUF decoder

CVE-2025-63757
Software Genérico General
7.5
HIGH
EPSS
0.1%
2025 1 PoC

Integer overflow vulnerability in the yuv2ya16_X_c_template function in libswscale/output.c in FFmpeg 8.0.

CVE-2025-2264
Sante PACS Server General ⚡ nuclei
7.5
HIGH
EPSS
64.4%
2025 CWE-22 1 PoC

A Path Traversal Information Disclosure vulnerability exists in "Sante PACS Server.exe". An unauthenticated remote attacker can exploit it to download arbitrary files on the disk drive where the application is installed.

CVE-2025-69419
OpenSSL General
7.4
HIGH
EPSS
0.1%
2025 CWE-787 1 PoC

Issue summary: Calling PKCS12_get_friendlyname() function on a maliciously crafted PKCS#12 file with a BMPString (UTF-16BE) friendly name containing non-ASCII BMP code point can trigger a one byte write before the allocated buffer. Impact summary: The out-of-bounds write can cause a memory corruption which can have various consequences including a Denial of Service. The OPENSSL_uni2utf8() function performs a two-pass conversion of a PKCS#12 BMPString (UTF-16BE) to UTF-8. In the second pass, when emitting UTF-8 bytes, the helper function bmp_to_utf8() incorrectly forwards the remaining UTF-16

CVE-2025-24229
macOS General
7.4
HIGH
EPSS
0.5%
2025 1 PoC

A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. A sandboxed app may be able to access sensitive user data.

CVE-2025-21399
Microsoft Edge Update Setup General
7.4
HIGH
EPSS
0.2%
2025 CWE-426 2 PoCs

Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability

CVE-2025-30460
macOS General
7.4
HIGH
EPSS
0.1%
2025 1 PoC

A permissions issue was addressed by removing vulnerable code and adding additional checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to access protected user data.

CVE-2025-5276
mcp-markdownify-server General
7.4
HIGH
EPSS
0.2%
2025 CWE-918 1 PoC

All versions of the package mcp-markdownify-server are vulnerable to Server-Side Request Forgery (SSRF) via the Markdownify.get() function. An attacker can craft a prompt that, once accessed by the MCP host, can invoke the webpage-to-markdown, bing-search-to-markdown, and youtube-to-markdown tools to issue requests and read the responses to attacker-controlled URLs, potentially leaking sensitive information.

CVE-2025-65117
Process Optimization General
7.4
HIGH
EPSS
0.0%
2025 CWE-676 1 PoC

The vulnerability, if exploited, could allow an authenticated miscreant (Process Optimization Designer User) to embed OLE objects into graphics, and escalate their privileges to the identity of a victim user who subsequently interacts with the graphical elements.

CVE-2025-52490
Software Genérico General
7.3
HIGH
EPSS
0.1%
2025 1 PoC

An issue was discovered in Couchbase Sync Gateway before 3.2.6. In sgcollect_info_options.log and sync_gateway.log, there are cleartext passwords in redacted and unredacted output.

CVE-2025-28028
Software Genérico General
7.3
HIGH
EPSS
0.3%
2025 2 PoCs

TOTOLINK A830R V4.1.2cu.5182_B20201102, A950RG V4.1.2cu.5161_B20200903, A3000RU V5.9c.5185_B20201128, and A3100R V4.1.2cu.5247_B20211129 were found to contain a buffer overflow vulnerability in downloadFile.cgi through the v5 parameter.

CVE-2025-4134
Avast Business Antivirus General
7.3
HIGH
EPSS
0.1%
2025 CWE-552 1 PoC

Lack of file validation in do_update_vps in Avast Business Antivirus for Linux 4.5 on Linux allows local user to spoof or tamper with the update file via an unverified file write.

CVE-2025-11446
upKeeper Manager General
7.3
HIGH
EPSS
0.0%
2025 CWE-532 1 PoC

Insertion of Sensitive Information into Log File vulnerability in upKeeper Solutions upKeeper Manager allows Use of Known Domain Credentials.This issue affects upKeeper Manager: from 5.2.0 before 5.2.12.

CVE-2025-58320
DIALink General
7.3
HIGH
EPSS
0.1%
2025 CWE-22 1 PoC

Delta Electronics DIALink has an Directory Traversal Authentication Bypass Vulnerability.

CVE-2025-9338
Armoury Crate General
7.3
HIGH
EPSS
0.0%
2025 CWE-119 1 PoC

A improper restriction of operations within the bounds of a memory buffer exists in AsIO3.sys driver. This vulnerability can be triggered by manually executing a specially crafted process, potentially leading to local privilage escalation. For additional information, please refer to the 'Security Update for Armoury Crate App' section of the ASUS Security Advisory.

CVE-2025-28033
Software Genérico General
7.3
HIGH
EPSS
0.3%
2025 2 PoCs

TOTOLINK A800R V4.1.2cu.5137_B20200730, A810R V4.1.2cu.5182_B20201026, A830R V4.1.2cu.5182_B20201102, A950RG V4.1.2cu.5161_B20200903, A3000RU V5.9c.5185_B20201128, and A3100R V4.1.2cu.5247_B20211129 were found to contain a pre-auth buffer overflow vulnerability in the setNoticeCfg function through the IpTo parameter.

CVE-2025-28019
Software Genérico General
7.3
HIGH
EPSS
0.3%
2025 2 PoCs

TOTOLINK A800R V4.1.2cu.5137_B20200730 was found to contain a buffer overflow vulnerability in the downloadFile.cgi component

CVE-2025-29621
Software Genérico General
7.3
HIGH
EPSS
0.3%
2025 1 PoC

Francois Jacquet RosarioSIS v12.0.0 was discovered to contain a content spoofing vulnerability in the Theme configuration under the My Preferences module. This vulnerability allows attackers to manipulate application settings.

CVE-2025-48621
Android General
7.3
HIGH
EPSS
0.0%
2025 1 PoC

In DefaultTransitionHandler.java, there is a possible way to enable a tapjacking attack due to a insecure default. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

CVE-2025-7971
Studio 5000 Logix Designer® General
7.3
HIGH
EPSS
0.0%
2025 CWE-20 1 PoC

A security issues exists within Studio 5000 Logix Designer due to unsafe handling of environment variables. If the specified path lacks a valid file, Logix Designer crashes; However, it may be possible to execute malicious code without triggering a crash.