You are viewing this page in an unauthorized frame window.

This is a potential security issue, you are being redirected to https://nvd.nist.gov

You have JavaScript disabled. This site requires JavaScript to be enabled for complete site functionality.

U.S. flag An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

NVD Dashboard

CVEs Received and Processed

CVEs Received and Processed

Please Wait

CVE Status Count

Please Wait

CVSS Score Spread

Please Wait

CVSS V3 Score Distribution

Severity Number of Vulns

CVSS V2 Score Distribution

Severity Number of Vulns


For information on how to the cite the NVD, including the database's Digital Object Identifier (DOI), please consult NIST's Public Data Repository.

Last 20 Scored Vulnerability IDs & Summaries CVSS Severity
  • CVE-2025-51736 - File upload vulnerability in HCL Technologies Ltd. Unica 12.0.0.
    Published: November 28, 2025; 10:16:01 AM -0500

  • CVE-2025-51735 - CSV formula injection vulnerability in HCL Technologies Ltd. Unica 12.0.0.
    Published: November 28, 2025; 10:16:01 AM -0500

  • CVE-2025-51734 - Cross-site scripting (XSS) vulnerability in HCL Technologies Ltd. Unica 12.0.0.
    Published: November 28, 2025; 10:16:01 AM -0500

  • CVE-2025-51733 - Cross-Site Request Forgery (CSRF) vulnerability in HCL Technologies Ltd. Unica 12.0.0.
    Published: November 28, 2025; 10:16:01 AM -0500

  • CVE-2023-6659 - A vulnerability, which was classified as critical, has been found in Campcodes Web-Based Student Clearance System 1.0. This issue affects some unknown processing of the file /libsystem/login.php. The manipulation of the argument student leads to s... read CVE-2023-6659
    Published: December 10, 2023; 8:15:07 PM -0500

    V3.1: 7.5 HIGH

  • CVE-2023-52177 - Missing Authorization vulnerability in SoftLab Integrate Google Drive.This issue affects Integrate Google Drive: from n/a through 1.3.3.
    Published: June 12, 2024; 5:15:16 AM -0400

    V3.1: 6.3 MEDIUM

  • CVE-2023-53258 - In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix possible underflow for displays with large vblank [Why] Underflow observed when using a display with a large vblank region and low refresh rate [How] Simpl... read CVE-2023-53258
    Published: September 15, 2025; 11:15:53 AM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2023-53260 - In the Linux kernel, the following vulnerability has been resolved: ovl: fix null pointer dereference in ovl_permission() Following process: P1 P2 path_lookupat link_path_walk inode_permission ovl_permissi... read CVE-2023-53260
    Published: September 15, 2025; 11:15:53 AM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2023-53261 - In the Linux kernel, the following vulnerability has been resolved: coresight: Fix memory leak in acpi_buffer->pointer There are memory leaks reported by kmemleak: ... unreferenced object 0xffff00213c141000 (size 1024): comm "systemd-udevd", p... read CVE-2023-53261
    Published: September 15, 2025; 11:15:53 AM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2023-53262 - In the Linux kernel, the following vulnerability has been resolved: f2fs: fix scheduling while atomic in decompression path [ 16.945668][ C0] Call trace: [ 16.945678][ C0] dump_backtrace+0x110/0x204 [ 16.945706][ C0] dump_stack_... read CVE-2023-53262
    Published: September 15, 2025; 11:15:53 AM -0400

    V3.1: 7.8 HIGH

  • CVE-2025-13611 - GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.2 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that could have allowed an authenticated user with access to certain logs to obtain sensitive tokens under sp... read CVE-2025-13611
    Published: November 26, 2025; 3:15:49 PM -0500

    V3.1: 5.3 MEDIUM

  • CVE-2023-53263 - In the Linux kernel, the following vulnerability has been resolved: drm/nouveau/disp: fix use-after-free in error handling of nouveau_connector_create We can't simply free the connector after calling drm_connector_init on it. We need to clean up... read CVE-2023-53263
    Published: September 16, 2025; 4:15:34 AM -0400

    V3.1: 7.8 HIGH

  • CVE-2023-53264 - In the Linux kernel, the following vulnerability has been resolved: clk: imx: clk-imxrt1050: fix memory leak in imxrt1050_clocks_probe Use devm_of_iomap() instead of of_iomap() to automatically handle the unused ioremap region. If any error occu... read CVE-2023-53264
    Published: September 16, 2025; 4:15:35 AM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2023-53265 - In the Linux kernel, the following vulnerability has been resolved: ubi: ensure that VID header offset + VID header size <= alloc, size Ensure that the VID header offset + VID header size does not exceed the allocated area to avoid slab OOB. BU... read CVE-2023-53265
    Published: September 16, 2025; 4:15:35 AM -0400

    V3.1: 7.1 HIGH

  • CVE-2023-53266 - In the Linux kernel, the following vulnerability has been resolved: arm64: acpi: Fix possible memory leak of ffh_ctxt Allocated 'ffh_ctxt' memory leak is possible if the SMCCC version and conduit checks fail and -EOPNOTSUPP is returned without f... read CVE-2023-53266
    Published: September 16, 2025; 4:15:35 AM -0400

    V3.1: 5.5 MEDIUM

  • CVE-2025-64515 - Open Forms allows users create and publish smart forms. Prior to versions 3.2.7 and 3.3.3, forms where the prefill data fields are dynamically set to readonly/disabled can be modified by malicious users deliberately trying to modify data they're n... read CVE-2025-64515
    Published: November 18, 2025; 6:15:55 PM -0500

  • CVE-2025-12653 - GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that under specific conditions could have allowed an unauthenticated user to join arbitrary organizations by ... read CVE-2025-12653
    Published: November 26, 2025; 3:15:49 PM -0500

  • CVE-2025-12571 - GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.10 before 18.4.5, 18.5 before 18.5.3, and 18.6 before 18.6.1 that could have allowed an unauthenticated user to cause a Denial of Service condition by sending specifical... read CVE-2025-12571
    Published: November 26, 2025; 3:15:47 PM -0500

  • CVE-2025-11446 - Insertion of Sensitive Information into Log File vulnerability in upKeeper Solutions upKeeper Manager allows Use of Known Domain Credentials.This issue affects upKeeper Manager: from 5.2.0 before 5.2.12.
    Published: November 19, 2025; 4:15:48 AM -0500

    V3.1: 6.5 MEDIUM

  • CVE-2025-52666 - Improper neutralisation of format characters in the settings of Revive Adserver 5.5.2 and 6.0.1 and earlier versions causes an administrator user to disable the admin user console due to a fatal PHP error.
    Published: November 20, 2025; 3:16:22 PM -0500

AltStyle によって変換されたページ (->オリジナル) /