NA - VU#746790 - SMM callout vulnerabilities identified in Gigabyte UEFI firmware modules
OverviewSystem Management Mode (SMM) callout vulnerabilities have been identified in UEFI modules present in Gigabyte firmware. An attacker could exploit one or more of these vulnerabilities to...
NA - CVE-2025-30402 - A heap-buffer-overflow vulnerability in the...
A heap-buffer-overflow vulnerability in the loading of ExecuTorch methods can cause the runtime to crash and potentially result in code execution or other undesirable effects. This issue affects...
NA - CVE-2025-53641 - Postiz is an AI social media scheduling tool....
Postiz is an AI social media scheduling tool. From 1.45.1 to 1.62.3, the Postiz frontend application allows an attacker to inject arbitrary HTTP headers into the middleware pipeline. This flaw...
NA - CVE-2025-53642 - haxcms-nodejs and haxcms-php are backends for...
haxcms-nodejs and haxcms-php are backends for HAXcms. The logout function within the application does not terminate a user's session or clear their cookies. Additionally, the application...
Medium - CVE-2025-7452 - A vulnerability was found in kone-net go-chat...
A vulnerability was found in kone-net go-chat up to f9e58d0afa9bbdb31faf25e7739da330692c4c63. It has been declared as critical. This vulnerability affects the function GetFile of the file...
NA - CVE-2013-3307 - Linksys E1000 devices through 2.1.02, E1200...
Linksys E1000 devices through 2.1.02, E1200 devices before 2.0.05, and E3200 devices through 1.0.04 allow OS command injection via shell metacharacters in the apply.cgi ping_ip parameter on TCP...
NA - CVE-2025-30403 - A heap-buffer-overflow vulnerability is...
A heap-buffer-overflow vulnerability is possible in mvfst via a specially crafted message during a QUIC session. This issue affects mvfst versions prior to v2025.07.07.00.
Low - CVE-2025-7453 - A vulnerability was found in saltbo zpan up to...
A vulnerability was found in saltbo zpan up to 1.6.5/1.7.0-beta2. It has been rated as problematic. This issue affects the function NewToken of the file zpan/internal/app/service/token.go of the...
High - CVE-2025-7454 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in Campcodes Online Movie Theater Seat Reservation System 1.0. Affected is an unknown function of the file /admin/manage_theater.php. The...