CVE-2025-3286 – Rockwell Automation Arena Memory Corruption Code Execution Vulnerability
The following table lists the changes that have been made to the CVE-2025-3286 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-3285 – Rockwell Automation Arena Buffer Overflow Local Code Execution Vulnerability
The following table lists the changes that have been made to the CVE-2025-3285 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-32026 – Element Web Media Encryption Key Disclosure Vulnerability
The following table lists the changes that have been made to the CVE-2025-32026 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-32028 – HAX CMS PHP File Upload Vulnerability (Unvalidated File Type Allowlist)
The following table lists the changes that have been made to the CVE-2025-32028 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-32025 – BEP ImageMeta Denial-of-Service Vulnerability
bep/imagemeta is a Go library for reading EXIF, IPTC and XMP image meta data from JPEG, TIFF, PNG, and WebP files. The buffer created for parsing metadata for PNG and WebP images was only bounded by their input data type, which could lead to potentially large memory allocation, and unreasonably high for image metadata. Before […]
CVE-2025-32024 – Apache Bep ImageMeta Excessive Data Denial of Service Vulnerability
bep/imagemeta is a Go library for reading EXIF, IPTC and XMP image meta data from JPEG, TIFF, PNG, and WebP files. The EXIF data format allows for defining excessively large data structures in relatively small payloads. Before v0.10.0, If you didn’t trust the input images, this could be abused to construct denial-of-service attacks. v0.10.0 added […]
CVE-2025-32017 – Umbraco Path Traversal Vulnerability
The following table lists the changes that have been made to the CVE-2025-32017 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-2829 – Rockwell Automation Arena Buffer Overflow Vulnerability
The following table lists the changes that have been made to the CVE-2025-2829 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]
CVE-2025-32018 – Cursor Code Editor Write Path Manipulation Vulnerability
Cursor is a code editor built for programming with AI. In versions 0.45.0 through 0.48.6, the Cursor app introduced a regression affecting the set of file paths the Cursor Agent is permitted to modify automatically. Under specific conditions, the agent could be prompted, either directly by the user or via maliciously crafted context, to automatically […]
CVE-2025-2293 – Rockwell Automation Arena Buffer Overflow Code Execution Vulnerability
The following table lists the changes that have been made to the CVE-2025-2293 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 08, 2025 Action […]