NA - CVE-2024-10838 - An integer underflow during deserialization may...
An integer underflow during deserialization may allow any unauthenticated user to read out of bounds heap memory. This may result into secret data or pointers revealing the layout of the address...
Medium - CVE-2025-21590 - An Improper Isolation or Compartmentalization...
An Improper Isolation or Compartmentalization vulnerability in the kernel of Juniper Networks Junos OS allows a local attacker with high privileges to compromise the integrity of the device. A...
NA - CVE-2025-27788 - JSON is a JSON implementation for Ruby....
JSON is a JSON implementation for Ruby. Starting in version 2.10.0 and prior to version 2.10.2, a specially crafted document could cause an out of bound read, most likely resulting in a crash....
NA - CVE-2025-27794 - Flarum is open-source forum software. A session...
Flarum is open-source forum software. A session hijacking vulnerability exists in versions prior to 1.8.10 when an attacker-controlled authoritative subdomain under a parent domain (e.g.,...
NA - CVE-2024-27763 - XPixelGroup BasicSR through 1.4.2 might locally...
XPixelGroup BasicSR through 1.4.2 might locally allow code execution in contrived situations where "scontrol show hostname" is executed in the presence of a crafted SLURM_NODELIST environment...
NA - CVE-2025-22954 - GetLateOrMissingIssues in C4/Serials.pm in Koha...
GetLateOrMissingIssues in C4/Serials.pm in Koha before 24.11.02 allows SQL Injection in /serials/lateissues-export.pl via the supplierid or serialid parameter.