CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| 1mo ago | 7.2 | Improper signature verification in AMD CPU ROM microcode patch loader may allow an attacker with local administrator privilege to load malicious CPU microcode resulting in loss of confidentiality and integrity of a confidential guest running under AMD SEV-SNP. |
| 1mo ago | 7.8 | Memory corruption while processing IOCTL from user space to handle GPU AHB bus error. |
| 1mo ago | 7.8 | Memory corruption while Invoking IOCTL calls from user-space to validate FIPS encryption or decryption functionality. |
| 1mo ago | 8.2 | Memory corruption during management frame processing due to mismatch in T2LM info element. |
| 1mo ago | 8.2 | Information disclosure while parsing the OCI IE with invalid length. |
| 1mo ago | 7.8 | Memory corruption while reading CPU state data during guest VM suspend. |
| 1mo ago | 7.8 | Memory corruption while power-up or power-down sequence of the camera sensor. |
| 1mo ago | 7.8 | Memory corruption can occur in the camera when an invalid CID is used. |
| 1mo ago | 7.8 | Memory corruption in Camera due to unusually high number of nodes passed to AXI port. |
| 1mo ago | 7.8 | Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspace. |
| 1mo ago | 7.8 | Memory corruption while validating number of devices in Camera kernel . |
| 1mo ago | 7.8 | Memory corruption may occour while generating test pattern due to negative indexing of display ID. |
| 1mo ago | 7.8 | Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface. |
| 1mo ago | 7.8 | Memory corruption while handling IOCTL call from user-space to set latency level. |
| 1mo ago | 7.8 | Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer. |
| 1mo ago | 8.8 | Memory corruption while configuring a Hypervisor based input virtual device. |
| 1mo ago | 7.8 | Memory corruption while parsing the memory map info in IOCTL calls. |
| 1mo ago | 7.5 | Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem. |
| 1mo ago | 7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound WPJobBoard allows Reflected XSS. This issue affects WPJobBoard: from n/a through 5.10.1. |
| 1mo ago | 7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in gt3themes Photo Gallery gt3-photo-video-gallery allows Reflected XSS.This issue affects Photo Gallery: from n/a through <= 2.7.7.24. |
| 1mo ago | 7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ederson Peka Media Downloader media-downloader allows Reflected XSS.This issue affects Media Downloader: from n/a through <= 0.4.7.5. |
| 1mo ago | 7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in umangmetatagg Custom WP Store Locator custom-store-locator allows Reflected XSS.This issue affects Custom WP Store Locator: from n/a through <= 1.4.7. |
| 1mo ago | 8.8 | Deserialization of Untrusted Data vulnerability in magepeopleteam Taxi Booking Manager for WooCommerce ecab-taxi-booking-manager allows Object Injection.This issue affects Taxi Booking Manager for WooCommerce: from n/a through <= 1.1.8. |
| 1mo ago | 7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wp.insider Simple Membership Custom Messages simple-membership-custom-messages allows Reflected XSS.This issue affects Simple Membership Custom Messages: from n/a through <= 2.4. |
| 1mo ago | 7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Realtyna Realtyna Provisioning realtyna-provisioning allows Reflected XSS.This issue affects Realtyna Provisioning: from n/a through <= 1.2.2. |
| 1mo ago | 7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in icopydoc XML for Avito xml-for-avito allows Reflected XSS.This issue affects XML for Avito: from n/a through <= 2.5.2. |
| 1mo ago | 7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in shanebp BP Email Assign Templates bp-email-assign-templates allows Reflected XSS.This issue affects BP Email Assign Templates: from n/a through <= 1.5. |
| 1mo ago | 7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MantraBrain Sikshya LMS sikshya allows Reflected XSS.This issue affects Sikshya LMS: from n/a through <= 0.0.21. |
| 1mo ago | 7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpgear Import Excel to Gravity Forms gf-excel-import allows Reflected XSS.This issue affects Import Excel to Gravity Forms: from n/a through <= 1.18. |
| 1mo ago | 7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in hkharpreetkumar1 AIO Shortcodes aio-shortcodes allows Stored XSS.This issue affects AIO Shortcodes: from n/a through <= 1.3. |