Total
7842 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2025-22038 | 1 Linux | 1 Linux Kernel | 2025-04-30 | 7.1 High |
In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate zero num_subauth before sub_auth is accessed Access psid->sub_auth[psid->num_subauth - 1] without checking if num_subauth is non-zero leads to an out-of-bounds read. This patch adds a validation step to ensure num_subauth != 0 before sub_auth is accessed. | ||||
CVE-2024-21314 | 1 Microsoft | 14 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 11 more | 2025-04-30 | 6.5 Medium |
Microsoft Message Queuing Information Disclosure Vulnerability | ||||
CVE-2024-21311 | 1 Microsoft | 14 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 11 more | 2025-04-30 | 5.5 Medium |
Windows Cryptographic Services Information Disclosure Vulnerability | ||||
CVE-2024-20687 | 1 Microsoft | 11 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 8 more | 2025-04-30 | 7.5 High |
Microsoft AllJoyn API Denial of Service Vulnerability | ||||
CVE-2024-20660 | 1 Microsoft | 13 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 10 more | 2025-04-30 | 6.5 Medium |
Microsoft Message Queuing Information Disclosure Vulnerability | ||||
CVE-2024-20653 | 1 Microsoft | 13 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 10 more | 2025-04-30 | 7.8 High |
Microsoft Common Log File System Elevation of Privilege Vulnerability | ||||
CVE-2024-20691 | 1 Microsoft | 13 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 10 more | 2025-04-30 | 4.7 Medium |
Windows Themes Information Disclosure Vulnerability | ||||
CVE-2024-20658 | 1 Microsoft | 12 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 9 more | 2025-04-30 | 7.8 High |
Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability | ||||
CVE-2023-36424 | 1 Microsoft | 14 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 11 more | 2025-04-29 | 7.8 High |
Windows Common Log File System Driver Elevation of Privilege Vulnerability | ||||
CVE-2023-36428 | 1 Microsoft | 14 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 11 more | 2025-04-29 | 5.5 Medium |
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability | ||||
CVE-2025-29834 | 2025-04-29 | 7.5 High | ||
Out-of-bounds read in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. | ||||
CVE-2025-29811 | 2025-04-29 | 7.8 High | ||
Improper input validation in Windows Mobile Broadband allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-27733 | 2025-04-29 | 7.8 High | ||
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. | ||||
CVE-2025-27728 | 2025-04-29 | 7.8 High | ||
Out-of-bounds read in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-27490 | 2025-04-29 | 7.8 High | ||
Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-27483 | 2025-04-29 | 7.8 High | ||
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. | ||||
CVE-2025-26675 | 2025-04-29 | 7.8 High | ||
Out-of-bounds read in Windows Subsystem for Linux allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-26642 | 2025-04-29 | 7.8 High | ||
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-27742 | 2025-04-29 | 5.5 Medium | ||
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally. | ||||
CVE-2025-27741 | 2025-04-29 | 7.8 High | ||
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. |