CVE-2025-36907 – Qualcomm ABL Android Heap Buffer Overflow

In draw_surface_image() of abl/android/lib/draw/draw.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege via USB fastboot, after a bootloader unlock, with no additional execution privileges needed. User interaction is needed for exploitation.

CVE-2025-36891 – Apache HTTP Server Local File Inclusion

Affected Products The following products are affected by CVE-2025-36891 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below. No affected product recoded yet

CVE-2025-36896 – Apache Struts Deserialization RCE

Affected Products The following products are affected by CVE-2025-36896 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below. No affected product recoded yet

CVE-2025-36909 – Apache Struts SSRF

Affected Products The following products are affected by CVE-2025-36909 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below. No affected product recoded yet