CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| 8d ago | 4 | Exposure of sensitive information caused by incorrect data forwarding during transient execution for some Intel(R) Processors within Ring 0: Hypervisor and Kernel may allow information disclosure. System software adversary with a privileged user combined with a high complexity attack may enable data exposure. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (high), integrity (none) and availability (none) impacts. |
| 8d ago | 5.3 | Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable data alteration. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (high) and availability (none) impacts. |
| 8d ago | 4 | Incomplete cleanup in some UEFI firmware for some Intel(R) reference platforms within UEFI may allow an information disclosure. System software adversary with a privileged user combined with a low complexity attack may enable data exposure. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (high), integrity (none) and availability (none) impacts. |
| 8d ago | 5.6 | A Use‑After‑Free (UAF) vulnerability in the AMD Ryzen™ Master Utility Driver could allow a local attacker to access kernel memory, potentially resulting in loss of availability |
| Exploit 8d ago | 5.3 | Audiobookshelf is a self-hosted audiobook and podcast server. Prior to 2.36.0, the jwtAuthCheck function in server/auth/TokenManager.js treats JWTs with the refresh token type as bearer access tokens on API and WebSocket resource endpoints such as /api/me instead of restricting them to /auth/refresh, allowing refresh tokens to authenticate as the associated users. This issue is fixed in version 2.36.0. |
| Exploit 8d ago | 6.1 | Activepieces is an open source AI workflow automation platform. Prior to 0.83.0, the /api/redirect OAuth callback endpoint embeds the user-supplied code query parameter directly into an inline script block without proper escaping. A crafted request to /api/redirect with a malicious code value can break out of the script context and execute arbitrary JavaScript in the Activepieces origin when a logged-in user opens it. An unauthenticated attacker can access the victim's session tokens or make authenticated API calls on the victim's behalf. This issue is fixed in version 0.83.0. |
| Exploit 8d ago | 5.3 | Activepieces is an open source AI workflow automation platform. Prior to 0.82.0, the POST /api/v1/projects/:projectId/mcp-server/validate-agent-mcp-tool endpoint makes an outbound HTTP or SSE request to a user-supplied serverUrl without URL validation or SSRF protection. An authenticated user can cause the Activepieces server to connect to internal services, cloud metadata endpoints, or arbitrary external hosts and probe network reachability from the Activepieces host. This issue is fixed in version 0.82.0. |
| 8d ago | 5.5 | Improper link resolution before file access ('link following') in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to perform tampering locally. |
| Exploit 8d ago | 4 | CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized limited write access. Exploitation of this issue does not require user interaction. |
| Exploit 8d ago | 6.2 | CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction. |
| 8d ago | 5.5 | Improper link resolution before file access ('link following') in Windows Management Services allows an authorized attacker to deny service locally. |
| 8d ago | 6.7 | Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally. |
| 8d ago | 6.5 | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network. |
| 8d ago | 6.5 | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network. |
| 8d ago | 5.5 | Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Improper input validation in Microsoft Office allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Improper input validation in Microsoft Office Word allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Improper input validation in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Improper input validation in Microsoft Office allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally. |
| 8d ago | 6.7 | Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally. |
| 8d ago | 5.9 | Buffer over-read in Windows Network File System allows an unauthorized attacker to deny service over a network. |
| 8d ago | 5.5 | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. |
| 8d ago | 5.5 | Incomplete cleanup in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. |