CVE-2025-48000 to CVE-2025-48999
61 CVEs with public proof-of-concept exploits.
- CVE-2025-480051 PoCA heap-based buffer overflow vulnerability exists in the RHS2000 parsing functionality of The Biosig Project libbiosig 3.9.0 and Master…
- CVE-2025-480441 PoCAuthorization bypass when bypass policy condition evaluates to true
- CVE-2025-480511 PoCpowertip.ts in Lila (for Lichess) before ab0beaf allows XSS in some applications because of an innerHTML usage pattern in which text is…
- CVE-2025-480601 PoCAddressSanitizer: stack-buffer-overflow in jq_fuzz_execute (jv_string_vfmt)
- CVE-2025-480701 PoCPlane has insecure permissions in UserSerializer
- CVE-2025-480712 PoCsOpenEXR's Forged Unpacked Size can Lead to Heap-Based Buffer Overflow in Deep Scanline Parsing
- CVE-2025-480722 PoCsOpenEXR's Inaccurate Pointer Arithmetic can Cause an Out of Bounds Heap
- CVE-2025-480733 PoCsOpenEXR ScanLineProcess::run_fill NULL Pointer Write In "reduceMemory" Mode
- CVE-2025-480743 PoCsOpenEXR's Unbounded File Header Values can Lead to Out-Of-Memory Errors
- CVE-2025-481291 PoCWordPress Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light plugin <= 2.4.37 - Privilege Escalation Vulnerability
- CVE-2025-481481 PoCWordPress StoreKeeper for WooCommerce Plugin <= 14.4.4 - Arbitrary File Upload Vulnerability
- CVE-2025-481571 PoCWordPress Formality <= 1.5.9 - Local File Inclusion Vulnerability
- CVE-2025-481751 PoCIn libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications involving rgbRowBytes, yRowBytes,…
- CVE-2025-481881 PoClibpspp-core.a in GNU PSPP through 2.0.1 has an incorrect call from fill_buffer (in data/encrypted-file.c) to the Gnulib rijndaelDecrypt…
- CVE-2025-482811 PoCWordPress MyStyle Custom Product Designer plugin <= 3.21.1 - SQL Injection Vulnerability
- CVE-2025-483681 PoCGroupOffice's DOM-Based XSS in all Date Input Fields Allows Arbitrary JavaScript Execution
- CVE-2025-483691 PoCGroupOffice vulnerable to Stored XSS in Tasks Comment Section
- CVE-2025-483791 PoCPillow Vulnerable to Write Buffer Overflow on BCn encoding
- CVE-2025-4838437 PoCsKEVGit allows arbitrary code execution through broken config quoting
- CVE-2025-484611 PoCWeak Session Cookie Entropy
- CVE-2025-484921 PoCGetSimple CMS RCE in Edit component
- CVE-2025-484981 PoCA null pointer dereference vulnerability exists in the Distributed Transaction component of Bloomberg Comdb2 8.1 when processing a number…
- CVE-2025-485431 PoCKEVIn multiple locations, there is a possible way to escape chrome sandbox to attack android system_server due to a use after free. This…
- CVE-2025-485611 PoCIn multiple locations, there is a possible way to access data displayed on the screen due to side channel information disclosure. This…
- CVE-2025-485934 PoCsIn bta_hf_client_cb_init of bta_hf_client_main.cc, there is a possible remote code execution due to a use after free. This could lead to…
- CVE-2025-487033 PoCsKEVCWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1205 allows unauthenticated remote code execution via shell metacharacters in…
- CVE-2025-487051 PoCAn issue was discovered in COROS PACE 3 through 3.0808.0. Due to a NULL pointer dereference vulnerability, sending a crafted BLE message…
- CVE-2025-487061 PoCAn issue was discovered in COROS PACE 3 through 3.0808.0. Due to an out-of-bounds read vulnerability, sending a crafted BLE message forces…
- CVE-2025-487081 PoCgs_lib_ctx_stash_sanitized_arg in base/gslibctx.c in Artifex Ghostscript before 10.05.1 lacks argument sanitization for the # case. A…
- CVE-2025-487341 PoCApache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default
- CVE-2025-487511 PoCThe process_lock crate 0.1.0 for Rust allows data races in unlock.
- CVE-2025-487521 PoCIn the process-sync crate 0.2.2 for Rust, the drop function lacks a check for whether the pthread_mutex is unlocked.
- CVE-2025-487531 PoCIn the anode crate 0.1.0 for Rust, data races can occur in unlock in SpinLock.
- CVE-2025-487541 PoCIn the memory_pages crate 0.1.0 for Rust, division by zero can occur.
- CVE-2025-487551 PoCIn the spiral-rs crate 0.2.0 for Rust, allocation can be attempted for a ZST (zero-sized type).
- CVE-2025-487561 PoCIn group_number in the scsir crate 0.2.0 for Rust, there can be an overflow because a hardware device may expect a small number of bits…
- CVE-2025-487995 PoCsWindows Update Service Elevation of Privilege Vulnerability
- CVE-2025-488041 PoCWindows BitLocker Security Feature Bypass Vulnerability
- CVE-2025-488221 PoCWindows Hyper-V Discrete Device Assignment (DDA) Remote Code Execution Vulnerability
- CVE-2025-488276 PoCsvBulletin 5.0.0 through 5.7.5 and 6.0.0 through 6.0.3 allows unauthenticated users to invoke protected API controllers' methods when…
- CVE-2025-488284 PoCsCertain vBulletin versions might allow attackers to execute arbitrary PHP code by abusing Template Conditionals in the template engine. By…
- CVE-2025-488652 PoCsFabio allows HTTP clients to manipulate custom headers it adds
- CVE-2025-488681 PoCHorilla vulnerable to authenticated RCE via eval() in project_bulk_archive
- CVE-2025-488872 PoCsvLLM has a Regular Expression Denial of Service (ReDoS, Exponential Complexity) Vulnerability in `pythonic_tool_parser.py`
- CVE-2025-488881 PoCDeno run with --allow-read and --deny-read flags results in allowed
- CVE-2025-488892 PoCsGradio Allows Unauthorized File Copy via Path Manipulation
- CVE-2025-489071 PoCDeserialization vulnerability in the IPC module Impact: Successful exploitation of this vulnerability may affect availability.
- CVE-2025-489341 PoCDeno.env.toObject() ignores the variables listed in --deny-env and returns all environment variables
- CVE-2025-489351 PoCDeno has --allow-read / --allow-write permission bypass in `node:sqlite`
- CVE-2025-489421 PoCvLLM DOS: Remotely kill vllm over http with invalid JSON schema
- CVE-2025-489442 PoCsvLLM Tool Schema allows DoS via Malformed pattern and type Fields
- CVE-2025-489482 PoCsNavidrome Transcoding Permission Bypass Vulnerability Report
- CVE-2025-489501 PoCMaxKB Python Sandbox Bypass in Function Library
- CVE-2025-489521 PoCNetAlertX has Password Bypass Vulnerability due to Loose Comparison in PHP
- CVE-2025-489541 PoCDiscourse vulnerable to XSS via user-provided query parameter in oauth failure flow
- CVE-2025-489572 PoCsAstrBot Has Path Traversal Vulnerability in /api/chat/get_file
- CVE-2025-489582 PoCsFroxlor has an HTML Injection Vulnerability
- CVE-2025-489762 PoCsApache Commons FileUpload, Apache Commons FileUpload: FileUpload DoS via part headers
- CVE-2025-489882 PoCsApache Tomcat: FileUpload large number of parts with headers DoS
- CVE-2025-489921 PoCGroup-Office vulnerable to blind XSS
- CVE-2025-489961 PoCUnauthenticated Disclosure of PSU HAX CMS Site Listings via haxPsuUsage API Endpoint