Search
59,181 CVEs
CVEs (59,181, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 1–25 of 59,181 (capped at 500)
| CVE ID | Severity | Patch | CVSS | Published ↑ | Description |
|---|---|---|---|---|---|
| CVE-2025-38003 | MEDIUM | Patched | 5.5 | 2025-06-08 | In the Linux kernel, the following vulnerability has been resolved: can: bcm: add missing rcu read protection for procfs content When the procfs content is generated for … |
| CVE-2025-38004 | HIGH | Patched | 7.1 | 2025-06-08 | In the Linux kernel, the following vulnerability has been resolved: can: bcm: add locking for bcm_op runtime updates The CAN broadcast manager (CAN BCM) can send a sequen… |
| CVE-2025-20063 | LOW | Patched | 3.3 | 2025-06-08 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause apps crash through type confusion. |
| CVE-2025-21082 | LOW | Patched | 3.3 | 2025-06-08 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause apps crash through type confusion. |
| CVE-2025-23235 | LOW | Patched | 3.3 | 2025-06-08 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through out-of-bounds read. |
| CVE-2025-24493 | MEDIUM | Patched | 5.5 | 2025-06-08 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through race condition. |
| CVE-2025-25217 | LOW | Patched | 3.3 | 2025-06-08 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference. |
| CVE-2025-26691 | MEDIUM | Patched | 5.5 | 2025-06-08 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission. |
| CVE-2025-26693 | LOW | Patched | 3.3 | 2025-06-08 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission. |
| CVE-2025-27131 | MEDIUM | Patched | 6.1 | 2025-06-08 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through improper input. |
| CVE-2025-27242 | LOW | Patched | 3.3 | 2025-06-08 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through improper input. |
| CVE-2025-27247 | MEDIUM | Patched | 5.5 | 2025-06-08 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission. |
| CVE-2025-27563 | LOW | Patched | 3.3 | 2025-06-08 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause information leak through get permission. |
| CVE-2025-5847 | HIGH | 8.8 | 2025-06-08 | A vulnerability has been found in Tenda AC9 15.03.02.13 and classified as critical. Affected by this vulnerability is the function formSetSafeWanWebMan of the file /goform/… | |
| CVE-2025-32455 | HIGH | 7.7 | 2025-06-08 | The Quantenna Wi-Fi chipset ships with a local control script, router_command.sh (in the run_cmd argument), that is vulnerable to command injection. This is an instance of … | |
| CVE-2025-32456 | HIGH | 7.7 | 2025-06-08 | The Quantenna Wi-Fi chipset ships with a local control script, router_command.sh (in the put_file_to_qtn argument), that is vulnerable to command injection. This is an inst… | |
| CVE-2025-32457 | HIGH | 7.7 | 2025-06-08 | The Quantenna Wi-Fi chipset ships with a local control script, router_command.sh (in the get_file_from_qtn argument), that is vulnerable to command injection. This is an in… | |
| CVE-2025-32458 | HIGH | 7.7 | 2025-06-08 | The Quantenna Wi-Fi chipset ships with a local control script, router_command.sh (in the get_syslog_from_qtn argument), that is vulnerable to command injection. This is an … | |
| CVE-2025-32459 | HIGH | 7.7 | 2025-06-08 | The Quantenna Wi-Fi chipset ships with a local control script, router_command.sh (in the sync_time argument), that is vulnerable to command injection. This is an instance o… | |
| CVE-2025-35004 | HIGH | Patched | 7.1 | 2025-06-08 | Products that incorporate the Microhard BulletLTE-NA2 and IPn4Gii-NA2 are vulnerable to a post-authentication command injection issue in the AT+MFIP command that can lead t… |
| CVE-2025-35005 | HIGH | Patched | 7.1 | 2025-06-08 | Products that incorporate the Microhard BulletLTE-NA2 and IPn4Gii-NA2 are vulnerable to a post-authentication command injection issue in the AT+MFMAC command that can lead … |
| CVE-2025-35006 | HIGH | Patched | 7.1 | 2025-06-08 | Products that incorporate the Microhard BulletLTE-NA2 and IPn4Gii-NA2 are vulnerable to a post-authentication command injection issue in the AT+MFPORTFWD command that can l… |
| CVE-2025-35007 | HIGH | Patched | 7.1 | 2025-06-08 | Products that incorporate the Microhard BulletLTE-NA2 and IPn4Gii-NA2 are vulnerable to a post-authentication command injection issue in the AT+MFRULE command that can lead… |
| CVE-2025-35008 | HIGH | Patched | 7.1 | 2025-06-08 | Products that incorporate the Microhard BulletLTE-NA2 and IPn4Gii-NA2 are vulnerable to a post-authentication command injection issue in the AT+MMNAME command that can lead… |
| CVE-2025-35009 | HIGH | Patched | 7.1 | 2025-06-08 | Products that incorporate the Microhard BulletLTE-NA2 and IPn4Gii-NA2 are vulnerable to a post-authentication command injection issue in the AT+MNNETSP command that can lea… |