CVE-2025-6004 – Vault User Lockout Bypass

The following table lists the changes that have been made to the CVE-2025-6004 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 01, 2025 Action […]

CVE-2025-6000 – Apache Vault Code Execution Vulnerability

The following table lists the changes that have been made to the CVE-2025-6000 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 01, 2025 Action […]

CVE-2025-54595 – Pearcleaner Privilege Escalation Vulnerability

The following table lists the changes that have been made to the CVE-2025-54595 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 01, 2025 Action […]

CVE-2025-54593 – FreshRSS Remote Code Execution Vulnerability

FreshRSS is a free, self-hostable RSS aggregator. In versions 1.26.1 and below, an authenticated administrator user can execute arbitrary code on the FreshRSS server by modifying the update URL to one they control, and gain code execution after running an update. After successfully executing code, user data including hashed passwords can be exfiltrated, the instance […]

CVE-2025-54590 – Apache WebFinger SSRF Vulnerability

webfinger.js is a TypeScript-based WebFinger client that runs in both browsers and Node.js environments. In versions 2.8.0 and below, the lookup function accepts user addresses for account checking. However, the ActivityPub specification requires preventing access to localhost services in production. This library does not prevent localhost access, only checking for hosts that start with “localhost” […]

CVE-2025-54564 – ChargePoint Home Flex Unvalidated Decompression Vulnerability

The following table lists the changes that have been made to the CVE-2025-54564 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 01, 2025 Action […]

CVE-2025-54574 – Squid Heap Buffer Overflow (Remote Code Execution)

The following table lists the changes that have been made to the CVE-2025-54574 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 01, 2025 Action […]

CVE-2025-53012 – MaterialX Stack Overflow

MaterialX is an open standard for the exchange of rich material and look-development content across applications and renderers. In version 1.39.2, nested imports of MaterialX files can lead to a crash via stack memory exhaustion, due to the lack of a limit on the “import chain” depth. When parsing file imports, recursion is used to […]

CVE-2025-53011 – MaterialX Null Pointer Dereference

The following table lists the changes that have been made to the CVE-2025-53011 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 01, 2025 Action […]

CVE-2025-53010 – MaterialX Null Pointer Dereference Denial of Service

The following table lists the changes that have been made to the CVE-2025-53010 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Aug. 01, 2025 Action […]