|
461
|
- |
|
-
|
-
|
A transient execution vulnerability within AMD CPUs may allow a local user-privileged attacker to leak data via the floating point divisor unit, potentially resulting in loss of confidentiality.
New
|
-
|
CVE-2025-54505
|
2026-04-28 03:57 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
462
|
7.5 |
HIGH
Network
|
-
|
-
|
A path traversal vulnerability in the UI/static component of leonvanzyl autocoder commit 79d02a allows attackers to read arbitrary files via sending crafted URL path containing traversal sequences.
New
|
CWE-22
Path Traversal
|
CVE-2026-30351
|
2026-04-28 03:57 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
463
|
9.8 |
CRITICAL
Network
|
-
|
-
|
A remote code execution (RCE) vulnerability in the /devserver/start endpoint of leonvanzyl autocoder commit 79d02a allows attackers to execute arbitrary code via providing a crafted command parameter.
New
|
CWE-77
Command Injection
|
CVE-2026-30352
|
2026-04-28 03:57 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
464
|
5.6 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was found in vllm up to 0.19.0. The affected element is the function has_mamba_layers of the file vllm/v1/kv_cache_interface.py of the component KV Block Handler. Performing a manipul…
New
|
CWE-908
Use of Uninitialized Resource
|
CVE-2026-7141
|
2026-04-28 03:57 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
465
|
8.8 |
HIGH
Local
|
-
|
-
|
The Fan Control application V251 contains an improper privilege handling vulnerability in its Open File Dialog. The dialog processes user-supplied paths with elevated permissions, which can be exploi…
New
|
CWE-269
Improper Privilege Management
|
CVE-2025-69689
|
2026-04-28 03:57 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
466
|
6.7 |
MEDIUM
Local
|
-
|
-
|
Dell Alienware Command Center (AWCC), versions prior to 6.13.8.0, contain an Execution with Unnecessary Privileges vulnerability in the AWCC. A low privileged attacker with local access could potenti…
New
|
CWE-250
Execution with Unnecessary Privileges
|
CVE-2026-25908
|
2026-04-28 03:57 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
467
|
6.2 |
MEDIUM
Local
|
-
|
-
|
TransMac 12.2 contains a buffer overflow vulnerability in the license key input field that allows local attackers to crash the application by submitting an oversized string. Attackers can generate a …
New
|
CWE-120
Classic Buffer Overflow
|
CVE-2018-25264
|
2026-04-28 03:55 |
2026-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
468
|
6.2 |
MEDIUM
Local
|
-
|
-
|
CrossFont 7.5 contains a buffer overflow vulnerability that allows local attackers to crash the application by submitting an oversized payload in the License Key field. Attackers can generate a malic…
New
|
CWE-120
Classic Buffer Overflow
|
CVE-2018-25273
|
2026-04-28 03:55 |
2026-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
469
|
6.2 |
MEDIUM
Local
|
-
|
-
|
InfraRecorder 0.53 contains a denial of service vulnerability that allows local attackers to crash the application by importing a maliciously crafted text file. Attackers can create a text file conta…
New
|
CWE-789
Memory Allocation with Excessive Size Value
|
CVE-2018-25274
|
2026-04-28 03:55 |
2026-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
470
|
5.5 |
MEDIUM
Local
|
-
|
-
|
RoboImport 1.2.0.72 contains a denial of service vulnerability that allows local attackers to crash the application by submitting oversized input to registration fields. Attackers can paste a 6000-by…
New
|
CWE-120
Classic Buffer Overflow
|
CVE-2018-25276
|
2026-04-28 03:55 |
2026-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|