Количество 26 125
Количество 26 125
CVE-2025-1220
Null byte termination in hostnames
CVE-2025-1219
libxml streams use wrong content-type header when requesting a redirected resource
CVE-2025-1217
Header parser of http stream wrapper does not handle folded headers
CVE-2025-1215
vim main.c memory corruption
CVE-2025-1211
Versions of the package hackney before 1.21.0 are vulnerable to Server-side Request Forgery (SSRF) due to improper parsing of URLs by URI built-in module and hackey. Given the URL http://127.0.0.1?@127.2.2.2/, the URI function will parse and see the host as 127.0.0.1 (which is correct), and hackney will refer the host as 127.2.2.2/. This vulnerability can be exploited when users rely on the URL function for host checking.
CVE-2025-12105
Libsoup: heap use-after-free in libsoup message queue handling during http/2 read completion
CVE-2025-12084
Quadratic complexity in node ID cache clearing
CVE-2025-12060
Keras keras.utils.get_file Utility Path Traversal Vulnerability
CVE-2025-12058
Vulnerability in Keras Model.load_model Leading to Arbitrary Local File Loading and SSRF
CVE-2025-12036
Chromium: CVE-2025-12036 Inappropriate implementation in V8
CVE-2025-11964
OOBW in utf_16le_to_utf_8_truncated() in libpcap
CVE-2025-11961
OOBR and OOBW in pcap_ether_aton() in libpcap
CVE-2025-11936
Potential DoS Vulnerability through Multiple KeyShareEntry with Same Group in TLS 1.3 ClientHello
CVE-2025-11935
Forward Secrecy Violation in WolfSSL TLS 1.3
CVE-2025-11934
Improper Validation of Signature Algorithm Used in TLS 1.3 CertificateVerify
CVE-2025-11933
DoS Vulnerability in wolfSSL TLS 1.3 CKS Extension
CVE-2025-11932
Timing Side-Channel in PSK Binder Verification
CVE-2025-11931
Integer Underflow Leads to Out-of-Bounds Access in XChaCha20-Poly1305 Decrypt
CVE-2025-11840
GNU Binutils ldmisc.c vfinfo out-of-bounds
CVE-2025-11839
GNU Binutils prdbg.c tg_tag_type return value
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-1220 Null byte termination in hostnames | CVSS3: 3.7 | 1% Низкий | 4 месяца назад | |
CVE-2025-1219 libxml streams use wrong content-type header when requesting a redirected resource | CVSS3: 5.3 | 1% Низкий | больше 1 года назад | |
CVE-2025-1217 Header parser of http stream wrapper does not handle folded headers | CVSS3: 3.1 | 1% Низкий | больше 1 года назад | |
CVE-2025-1215 vim main.c memory corruption | CVSS3: 2.8 | 1% Низкий | больше 1 года назад | |
CVE-2025-1211 Versions of the package hackney before 1.21.0 are vulnerable to Server-side Request Forgery (SSRF) due to improper parsing of URLs by URI built-in module and hackey. Given the URL http://127.0.0.1?@127.2.2.2/, the URI function will parse and see the host as 127.0.0.1 (which is correct), and hackney will refer the host as 127.2.2.2/. This vulnerability can be exploited when users rely on the URL function for host checking. | 1% Низкий | 12 месяцев назад | ||
CVE-2025-12105 Libsoup: heap use-after-free in libsoup message queue handling during http/2 read completion | CVSS3: 7.5 | 0% Низкий | 8 месяцев назад | |
CVE-2025-12084 Quadratic complexity in node ID cache clearing | CVSS3: 5.3 | 1% Низкий | 9 месяцев назад | |
CVE-2025-12060 Keras keras.utils.get_file Utility Path Traversal Vulnerability | 1% Низкий | 10 месяцев назад | ||
CVE-2025-12058 Vulnerability in Keras Model.load_model Leading to Arbitrary Local File Loading and SSRF | 0% Низкий | 10 месяцев назад | ||
CVE-2025-12036 Chromium: CVE-2025-12036 Inappropriate implementation in V8 | 4% Низкий | 10 месяцев назад | ||
CVE-2025-11964 OOBW in utf_16le_to_utf_8_truncated() in libpcap | CVSS3: 1.9 | 0% Низкий | 8 месяцев назад | |
CVE-2025-11961 OOBR and OOBW in pcap_ether_aton() in libpcap | CVSS3: 1.9 | 0% Низкий | 8 месяцев назад | |
CVE-2025-11936 Potential DoS Vulnerability through Multiple KeyShareEntry with Same Group in TLS 1.3 ClientHello | 0% Низкий | 9 месяцев назад | ||
CVE-2025-11935 Forward Secrecy Violation in WolfSSL TLS 1.3 | 0% Низкий | 9 месяцев назад | ||
CVE-2025-11934 Improper Validation of Signature Algorithm Used in TLS 1.3 CertificateVerify | 0% Низкий | 8 месяцев назад | ||
CVE-2025-11933 DoS Vulnerability in wolfSSL TLS 1.3 CKS Extension | 0% Низкий | 8 месяцев назад | ||
CVE-2025-11932 Timing Side-Channel in PSK Binder Verification | 0% Низкий | 9 месяцев назад | ||
CVE-2025-11931 Integer Underflow Leads to Out-of-Bounds Access in XChaCha20-Poly1305 Decrypt | 0% Низкий | 9 месяцев назад | ||
CVE-2025-11840 GNU Binutils ldmisc.c vfinfo out-of-bounds | 0% Низкий | 13 дней назад | ||
CVE-2025-11839 GNU Binutils prdbg.c tg_tag_type return value | CVSS3: 3.3 | 0% Низкий | 6 месяцев назад |
Уязвимостей на страницу