Medium - CVE-2024-11955 - A vulnerability was found in GLPI up to...
A vulnerability was found in GLPI up to 10.0.17. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /index.php. The manipulation of the...
NA - CVE-2025-21626 - GLPI is a free asset and IT management software...
GLPI is a free asset and IT management software package. Starting in version 0.71 and prior to version 10.0.18, an anonymous user can fetch sensitive information from the `status.php` endpoint....
NA - CVE-2025-21627 - GLPI is a free asset and IT management software...
GLPI is a free asset and IT management software package. In versions prior to 10.0.18, a malicious link can be crafted to perform a reflected XSS attack on the search page. If the anonymous ticket...
NA - CVE-2025-23024 - GLPI is a free asset and IT management software...
GLPI is a free asset and IT management software package. Starting in version 0.72 and prior to version 10.0.18, an anonymous user can disable all the active plugins. Version 10.0.18 contains a...
High - CVE-2025-26594 - A use-after-free flaw was found in X.Org and...
A use-after-free flaw was found in X.Org and Xwayland. The root cursor is referenced in the X server as a global variable. If a client frees the root cursor, the internal reference points to freed...
High - CVE-2025-26595 - A buffer overflow flaw was found in X.Org and...
A buffer overflow flaw was found in X.Org and Xwayland. The code in XkbVModMaskText() allocates a fixed-sized buffer on the stack and copies the names of the virtual modifiers to that buffer. The...
High - CVE-2025-26596 - A heap overflow flaw was found in X.Org and...
A heap overflow flaw was found in X.Org and Xwayland. The computation of the length in XkbSizeKeySyms() differs from what is written in XkbWriteKeySyms(), which may lead to a heap-based buffer...
High - CVE-2025-26597 - A buffer overflow flaw was found in X.Org and...
A buffer overflow flaw was found in X.Org and Xwayland. If XkbChangeTypesOfKey() is called with a 0 group, it will resize the key symbols table to 0 but leave the key actions unchanged. If the same...
High - CVE-2025-26598 - An out-of-bounds write flaw was found in X.Org...
An out-of-bounds write flaw was found in X.Org and Xwayland. The function GetBarrierDevice() searches for the pointer device based on its device ID and returns the matching value, or supposedly...
High - CVE-2025-26599 - An access to an uninitialized pointer flaw was...
An access to an uninitialized pointer flaw was found in X.Org and Xwayland. The function compCheckRedirect() may fail if it cannot allocate the backing pixmap. In that case, compRedirectWindow()...