CVE-2025-65955 – ImageMagick has a use-after-free/double-free risk in Options::fontFamily when clearing family
The following table lists the changes that have been made to the CVE-2025-65955 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 02, 2025 Action […]
CVE-2025-66476 – Vim for Windows Uncontrolled Search Path Element Remote Code Execution Vulnerability
Vim is an open source, command line text editor. Prior to version 9.1.1947, an uncontrolled search path vulnerability on Windows allows Vim to execute malicious executables placed in the current working directory for the current edited file. On Windows, when using cmd.exe as a shell, Vim resolves external commands by searching the current working directory […]
CVE-2025-55181 – Apache Quic HTTP Denial of Service (DoS)
The following table lists the changes that have been made to the CVE-2025-55181 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 02, 2025 Action […]
CVE-2025-65657 – FeehiCMS Remote Code Execution via Unrestricted File Upload
The following table lists the changes that have been made to the CVE-2025-65657 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 02, 2025 Action […]
CVE-2025-64778 – Mirion Medical EC2 Software NMIS BioDose Use of Hard-coded Credentials
The following table lists the changes that have been made to the CVE-2025-64778 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 02, 2025 Action […]
CVE-2025-64642 – Mirion Medical EC2 Software NMIS BioDose Incorrect Permission Assignment for Critical Resource
The following table lists the changes that have been made to the CVE-2025-64642 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 02, 2025 Action […]
CVE-2025-65380 – PHPGurukul Billing System SQL Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-65380 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Dec. 02, 2025 Action […]
CVE-2025-64298 – Mirion Medical EC2 Software NMIS BioDose Incorrect Permission Assignment for Critical Resource
CVE ID : CVE-2025-64298 Published : Dec. 2, 2025, 9:15 p.m. | 24 minutes ago Description : NMIS/BioDose V22.02 and previous version installations where the embedded Microsoft SQLServer Express is used are exposed in the Windows share accessed by clients in networked installs. By default, this directory has insecure directory paths that allow access to the […]
CVE-2025-62575 – Mirion Medical EC2 Software NMIS BioDose Incorrect Permission Assignment for Critical Resource
CVE ID : CVE-2025-62575 Published : Dec. 2, 2025, 9:15 p.m. | 24 minutes ago Description : NMIS/BioDose V22.02 and previous versions rely on a Microsoft SQL Server database. The SQL user account ‘nmdbuser’ and other created accounts by default have the sysadmin role. This can lead to remote code execution through the use of certain […]
CVE-2025-61940 – Mirion Medical EC2 Software NMIS BioDose Use of Client-Side Authentication
CVE ID : CVE-2025-61940 Published : Dec. 2, 2025, 9:15 p.m. | 24 minutes ago Description : NMIS/BioDose V22.02 and previous versions rely on a common SQL Server user account to access data in the database. User access in the client application is restricted by a password authentication check in the client software but the underlying […]