NA - CVE-2024-8270 - The macOS Rocket.Chat application is affected...
The macOS Rocket.Chat application is affected by a vulnerability that allows bypassing Transparency, Consent, and Control (TCC) policies, enabling the exploitation or abuse of permissions...
NA - CVE-2024-9062 - The Archify application contains a local...
The Archify application contains a local privilege escalation vulnerability due to insufficient client validation in its privileged helper tool, com.oct4pie.archifyhelper, which is exposed via XPC....
NA - CVE-2025-1055 - A vulnerability in the K7RKScan.sys driver,...
A vulnerability in the K7RKScan.sys driver, part of the K7 Security Anti-Malware suite, allows a local low-privilege user to send crafted IOCTL requests to terminate a wide range of processes...
NA - CVE-2025-30675 - In Apache CloudStack, a flaw in access control...
In Apache CloudStack, a flaw in access control affects the listTemplates and listIsos APIs. A malicious Domain Admin or Resource Admin can exploit this issue by intentionally specifying the...
NA - CVE-2025-49091 - KDE Konsole before 25.04.2 allows remote code...
KDE Konsole before 25.04.2 allows remote code execution in a certain scenario. It supports loading URLs from the scheme handlers such as a ssh:// or telnet:// or rlogin:// URL. This can be executed...
NA - CVE-2025-5958 - Use after free in Media in Google Chrome prior...
Use after free in Media in Google Chrome prior to 137.0.7151.103 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
NA - CVE-2025-5959 - Type Confusion in V8 in Google Chrome prior to...
Type Confusion in V8 in Google Chrome prior to 137.0.7151.103 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
NA - CVE-2024-1243 - Improper input validation in the Wazuh agent...
Improper input validation in the Wazuh agent for Windows prior to version 4.8.0 allows an attacker with control over the Wazuh server or agent key to configure the agent to connect to a malicious...