NA - CVE-2024-7457 - The ws.stash.app.mac.daemon.helper tool...
The ws.stash.app.mac.daemon.helper tool contains a vulnerability caused by an incorrect use of macOS’s authorization model. Instead of validating the client's authorization reference, the...
NA - CVE-2024-8270 - The macOS Rocket.Chat application is affected...
The macOS Rocket.Chat application is affected by a vulnerability that allows bypassing Transparency, Consent, and Control (TCC) policies, enabling the exploitation or abuse of permissions...
NA - CVE-2024-9062 - The Archify application contains a local...
The Archify application contains a local privilege escalation vulnerability due to insufficient client validation in its privileged helper tool, com.oct4pie.archifyhelper, which is exposed via XPC....
NA - CVE-2025-1055 - A vulnerability in the K7RKScan.sys driver,...
A vulnerability in the K7RKScan.sys driver, part of the K7 Security Anti-Malware suite, allows a local low-privilege user to send crafted IOCTL requests to terminate a wide range of processes...
NA - CVE-2025-30675 - In Apache CloudStack, a flaw in access control...
In Apache CloudStack, a flaw in access control affects the listTemplates and listIsos APIs. A malicious Domain Admin or Resource Admin can exploit this issue by intentionally specifying the...
NA - CVE-2025-49091 - KDE Konsole before 25.04.2 allows remote code...
KDE Konsole before 25.04.2 allows remote code execution in a certain scenario. It supports loading URLs from the scheme handlers such as a ssh:// or telnet:// or rlogin:// URL. This can be executed...