Lista CVE - 2025 / Ottobre
Visualizzazione 2801 - 2900 di 4280 CVE per Ottobre 2025 (Pagina 29 di 43)
| ID CVE | Data | Titolo |
|---|---|---|
| CVE-2022-50569 | 2025-10-22 | xfrm: Update ipcomp_scratches with NULL when freed |
| CVE-2022-50570 | 2025-10-22 | platform/chrome: fix memory corruption in ioctl |
| CVE-2022-50571 | 2025-10-22 | btrfs: call __btrfs_remove_free_space_cache_locked on cache load failure |
| CVE-2022-50572 | 2025-10-22 | ASoC: audio-graph-card: fix refcount leak of cpu_ep in __graph_for_each_link() |
| CVE-2022-50573 | 2025-10-22 | wifi: mt76: mt7915: fix mt7915_rate_txpower_get() resource leaks |
| CVE-2022-50574 | 2025-10-22 | drm/omap: dss: Fix refcount leak bugs |
| CVE-2022-50575 | 2025-10-22 | xen/privcmd: Fix a possible warning in privcmd_ioctl_mmap_resource() |
| CVE-2022-50576 | 2025-10-22 | serial: pch: Fix PCI device refcount leak in pch_request_dma() |
| CVE-2022-50577 | 2025-10-22 | ima: Fix memory leak in __ima_inode_hash() |
| CVE-2022-50578 | 2025-10-22 | class: fix possible memory leak in __class_register() |
| CVE-2022-50579 | 2025-10-22 | arm64: ftrace: fix module PLTs with mcount |
| CVE-2022-50580 | 2025-10-22 | blk-throttle: prevent overflow while calculating wait time |
| CVE-2022-50581 | 2025-10-22 | hfs: fix OOB Read in __hfs_brec_find |
| CVE-2022-50582 | 2025-10-22 | regulator: core: Prevent integer underflow |
| CVE-2023-53692 | 2025-10-22 | ext4: fix use-after-free read in ext4_find_extent for bigalloc + inline |
| CVE-2023-53693 | 2025-10-22 | USB: gadget: Fix the memory leak in raw_gadget driver |
| CVE-2023-53694 | 2025-10-22 | riscv: ftrace: Fixup panic by disabling preemption |
| CVE-2023-53695 | 2025-10-22 | udf: Detect system inodes linked into directory hierarchy |
| CVE-2023-53696 | 2025-10-22 | scsi: qla2xxx: Fix memory leak in qla2x00_probe_one() |
| CVE-2023-53697 | 2025-10-22 | nvdimm: Fix memleak of pmu attr_groups in unregister_nvdimm_pmu() |
| CVE-2023-53698 | 2025-10-22 | xsk: fix refcount underflow in error path |
| CVE-2023-53699 | 2025-10-22 | riscv: move memblock_allow_resize() after linear mapping is ready |
| CVE-2023-53700 | 2025-10-22 | media: max9286: Fix memleak in max9286_v4l2_register() |
| CVE-2023-53702 | 2025-10-22 | s390/crypto: use vector instructions only if available for ChaCha20 |
| CVE-2023-53703 | 2025-10-22 | HID: amd_sfh: Fix for shift-out-of-bounds |
| CVE-2023-53704 | 2025-10-22 | clk: imx: clk-imx8mp: improve error handling in imx8mp_clocks_probe() |
| CVE-2023-53705 | 2025-10-22 | ipv6: Fix out-of-bounds access in ipv6_find_tlv() |
| CVE-2023-53706 | 2025-10-22 | mm/vmemmap/devdax: fix kernel crash when probing devdax devices |
| CVE-2023-53707 | 2025-10-22 | drm/amdgpu: Fix integer overflow in amdgpu_cs_pass1 |
| CVE-2023-53708 | 2025-10-22 | ACPI: x86: s2idle: Catch multiple ACPI_TYPE_PACKAGE objects |
| CVE-2023-53709 | 2025-10-22 | ring-buffer: Handle race between rb_move_tail and rb_check_pages |
| CVE-2023-53710 | 2025-10-22 | wifi: mt76: mt7921: fix error code of return in mt7921_acpi_read |
| CVE-2023-53711 | 2025-10-22 | NFS: Fix a potential data corruption |
| CVE-2023-53712 | 2025-10-22 | ARM: 9317/1: kexec: Make smp stop calls asynchronous |
| CVE-2023-53713 | 2025-10-22 | arm64: sme: Use STR P to clear FFR context field in streaming SVE mode |
| CVE-2023-53714 | 2025-10-22 | drm/stm: ltdc: fix late dereference check |
| CVE-2023-53715 | 2025-10-22 | wifi: brcmfmac: cfg80211: Pass the PMK in binary instead of hex |
| CVE-2023-53716 | 2025-10-22 | net: fix skb leak in __skb_tstamp_tx() |
| CVE-2023-53717 | 2025-10-22 | wifi: ath9k: Fix potential stack-out-of-bounds write in ath9k_wmi_rsp_callback() |
| CVE-2023-53718 | 2025-10-22 | ring-buffer: Do not swap cpu_buffer during resize process |
| CVE-2023-53719 | 2025-10-22 | serial: arc_uart: fix of_iomap leak in `arc_serial_probe` |
| CVE-2023-53720 | 2025-10-22 | net/mlx5e: Release the label when replacing existing ct entry |
| CVE-2023-53721 | 2025-10-22 | wifi: ath12k: Fix a NULL pointer dereference in ath12k_mac_op_hw_scan() |
| CVE-2023-53722 | 2025-10-22 | md: raid1: fix potential OOB in raid1_remove_disk() |
| CVE-2023-53723 | 2025-10-22 | drm/amdgpu: disable sdma ecc irq only when sdma RAS is enabled in suspend |
| CVE-2023-53724 | 2025-10-22 | mfd: pcf50633-adc: Fix potential memleak in pcf50633_adc_async_read() |
| CVE-2023-53725 | 2025-10-22 | clocksource/drivers/cadence-ttc: Fix memory leak in ttc_timer_probe |
| CVE-2023-53726 | 2025-10-22 | arm64: csum: Fix OoB access in IP checksum code for negative lengths |
| CVE-2023-53727 | 2025-10-22 | net/sched: fq_pie: avoid stalls in fq_pie_timer() |
| CVE-2023-53728 | 2025-10-22 | posix-timers: Ensure timer ID search-loop limit is valid |
| CVE-2023-53729 | 2025-10-22 | soc: qcom: qmi_encdec: Restrict string length in decode |
| CVE-2023-53730 | 2025-10-22 | blk-iocost: use spin_lock_irqsave in adjust_inuse_and_calc_cost |
| CVE-2023-53731 | 2025-10-22 | netlink: fix potential deadlock in netlink_set_err() |
| CVE-2023-53732 | 2025-10-22 | fs/ntfs3: Fix NULL dereference in ni_write_inode |
| CVE-2025-8848 | 2025-10-22 | HTML Injection in Accept-Language Header in danny-avila/librechat |
| CVE-2016-15048 | 2025-10-22 | AMTT HiBOS Command Injection RCE via server_ping.php |
| CVE-2025-57870 | 2025-10-22 | BUG-000179884 - There is a security vulnerability in ArcGIS Server Feature Services. |
| CVE-2025-30944 | 2025-10-22 | WordPress Tablesome Table Premium <= 1.1.23 - Broken Access Control Vulnerability |
| CVE-2025-31634 | 2025-10-22 | WordPress Insurance theme <= 3.5 - PHP Object Injection Vulnerability |
| CVE-2025-32283 | 2025-10-22 | WordPress Solar Energy theme <= 3.5 - PHP Object Injection Vulnerability |
| CVE-2025-32657 | 2025-10-22 | WordPress Testimonial Slider and Showcase Pro plugin <= 2.1.7 - Local File Inclusion vulnerability |
| CVE-2025-39534 | 2025-10-22 | WordPress Terms Dictionary Plugin <= 1.5.1 - Reflected Cross Site Scripting (XSS) vulnerability |
| CVE-2025-48082 | 2025-10-22 | WordPress Progress Planner plugin <= 1.8.0 - Privilege Escalation vulnerability |
| CVE-2025-48091 | 2025-10-22 | WordPress AnyComment plugin <= 0.3.6 - SQL Injection vulnerability |
| CVE-2025-48092 | 2025-10-22 | WordPress Fix Multiple Redirects plugin <= 1.2.3 - Reflected Cross Site Scripting (XSS) vulnerability |
| CVE-2025-48093 | 2025-10-22 | WordPress Password only login plugin <= 0.2 - Reflected Cross Site Scripting (XSS) vulnerability |
| CVE-2025-48095 | 2025-10-22 | WordPress Survey Maker plugin <= 5.1.8.8 - Cross Site Scripting (XSS) vulnerability |
| CVE-2025-48096 | 2025-10-22 | WordPress Custom CSS plugin <= 1.4.0 - Broken Access Control vulnerability |
| CVE-2025-48097 | 2025-10-22 | WordPress WSAnalytics plugin <= 1.1.2 - Reflected Cross Site Scripting (XSS) vulnerability |
| CVE-2025-48098 | 2025-10-22 | WordPress Survey Maker plugin <= 5.1.8.8 - Cross Site Scripting (XSS) vulnerability |
| CVE-2025-48099 | 2025-10-22 | WordPress Search & Filter plugin <= 1.2.17 - Cross Site Request Forgery (CSRF) to Open Redirect vulnerability |
| CVE-2025-48106 | 2025-10-22 | WordPress Clanora theme < 1.3.1 - Arbitrary File Upload vulnerability |
| CVE-2025-48338 | 2025-10-22 | WordPress WP Abstracts plugin <= 2.7.4 - Local File Inclusion vulnerability |
| CVE-2025-49060 | 2025-10-22 | WordPress Wastia theme < 1.1.3 - Arbitrary File Upload vulnerability |
| CVE-2025-49373 | 2025-10-22 | WordPress Evergreen Content Poster plugin <= 1.4.5 - Cross Site Request Forgery (CSRF) vulnerability |
| CVE-2025-49374 | 2025-10-22 | WordPress Captcha.eu plugin <= 1.0.61 - Server Side Request Forgery (SSRF) vulnerability |
| CVE-2025-49376 | 2025-10-22 | WordPress DELUCKS SEO plugin <= 2.5.9 - Broken Access Control vulnerability |
| CVE-2025-49377 | 2025-10-22 | WordPress Hydra Booking plugin <= 1.1.9 - Broken Access Control vulnerability |
| CVE-2025-49378 | 2025-10-22 | WordPress Hydra Booking plugin <= 1.1.10 - SQL Injection vulnerability |
| CVE-2025-49380 | 2025-10-22 | WordPress WooCommerce Vehicle Parts Finder plugin <= 3.7 - PHP Object Injection vulnerability |
| CVE-2025-49899 | 2025-10-22 | WordPress Whydonate plugin <= 4.0.15 - Broken Access Control vulnerability |
| CVE-2025-49901 | 2025-10-22 | WordPress Simple Link Directory plugin < 14.8.1 - Broken Authentication vulnerability |
| CVE-2025-49903 | 2025-10-22 | WordPress ZoloBlocks plugin <= 2.3.11 - Broken Access Control vulnerability |
| CVE-2025-49906 | 2025-10-22 | WordPress WPComplete plugin <= 2.9.5.3 - Broken Access Control vulnerability |
| CVE-2025-49907 | 2025-10-22 | WordPress MDTF plugin <= 1.3.3.9 - Broken Access Control vulnerability |
| CVE-2025-49908 | 2025-10-22 | WordPress WPC Countdown Timer for WooCommerce plugin <= 3.1.4 - Cross Site Scripting (XSS) vulnerability |
| CVE-2025-49910 | 2025-10-22 | WordPress WPGuppy plugin <= 1.1.4 - Broken Access Control vulnerability |
| CVE-2025-49911 | 2025-10-22 | WordPress WooCommerce Vehicle Parts Finder plugin <= 3.7 - Cross Site Scripting (XSS) vulnerability |
| CVE-2025-49912 | 2025-10-22 | WordPress Email Subscription Popup plugin <= 1.2.26 - Cross Site Scripting (XSS) vulnerability |
| CVE-2025-49913 | 2025-10-22 | WordPress CoSchedule plugin <= 3.4.0 - Broken Access Control vulnerability |
| CVE-2025-49915 | 2025-10-22 | WordPress SMS Alert Order Notifications plugin <= 3.8.5 - SQL Injection vulnerability |
| CVE-2025-49916 | 2025-10-22 | WordPress MultiVendorX plugin <= 4.2.23 - Broken Access Control vulnerability |
| CVE-2025-49917 | 2025-10-22 | WordPress Icegram Express Pro plugin <= 5.9.5 - Server Side Request Forgery (SSRF) vulnerability |
| CVE-2025-49920 | 2025-10-22 | WordPress Web Accessibility By accessiBe plugin <= 2.10 - Broken Access Control vulnerability |
| CVE-2025-49921 | 2025-10-22 | WordPress JetReviews plugin <= 3.0.0 - Local File Inclusion vulnerability |
| CVE-2025-49922 | 2025-10-22 | WordPress WPeMatico RSS Feed Fetcher plugin <= 2.8.3 - Broken Access Control vulnerability |
| CVE-2025-49923 | 2025-10-22 | WordPress Seriously Simple Podcasting plugin <= 3.11.1 - Cross Site Scripting (XSS) vulnerability |
| CVE-2025-49924 | 2025-10-22 | WordPress Wholesale Suite plugin <= 2.2.4.2 - Privilege Escalation vulnerability |
| CVE-2025-49925 | 2025-10-22 | WordPress WPLMS plugin <= 1.9.9.7 - Broken Access Control vulnerability |
| CVE-2025-49926 | 2025-10-22 | WordPress Kalium theme <= 3.25 - Arbitrary Code Execution vulnerability |