NA - CVE-2025-49158 - An uncontrolled search path vulnerability in...
An uncontrolled search path vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalation privileges on affected installations. Please note: an attacker...
NA - CVE-2025-49487 - An uncontrolled search path vulnerability in...
An uncontrolled search path vulnerability in the Trend Micro Worry-Free Business Security Services (WFBSS) agent could have allowed an attacker with physical access to a machine to execute...
NA - CVE-2025-49848 - An Out-of-bounds Write vulnerability exists...
An Out-of-bounds Write vulnerability exists within the parsing of PRJ files. The issues result from the lack of proper validation of user-supplied data, which can result in different memory...
NA - CVE-2025-49849 - An Out-of-bounds Read vulnerability exists...
An Out-of-bounds Read vulnerability exists within the parsing of PRJ files. The issues result from the lack of proper validation of user-supplied data, which can result in different memory...
NA - CVE-2025-49850 - A Heap-based Buffer Overflow vulnerability...
A Heap-based Buffer Overflow vulnerability exists within the parsing of PRJ files. The issues result from the lack of proper validation of user-supplied data, which can result in different memory...
NA - CVE-2025-30678 - A Server-side Request Forgery (SSRF)...
A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (on-premise) modTMSM component could allow an attacker to manipulate certain parameters leading to information...
NA - CVE-2025-30679 - A Server-side Request Forgery (SSRF)...
A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (on-premise) modOSCE component could allow an attacker to manipulate certain parameters leading to information...
NA - CVE-2025-30680 - A Server-side Request Forgery (SSRF)...
A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (SaaS) could allow an attacker to manipulate certain parameters leading to information disclosure on affected...
NA - CVE-2025-45525 - A null pointer dereference vulnerability was...
A null pointer dereference vulnerability was discovered in microlight.js (version 0.0.7), a lightweight syntax highlighting library. When processing elements with non-standard CSS color values, the...