| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-62231 | Xorg: xmayland: value overflow in xkbsetcompatmap() | X.Org | Xwayland | High | 7.3 | 2025-10-30 05:08:32 | Deep Dive |
| CVE-2025-12105 | Libsoup: heap use-after-free in libsoup message queue handling during http/2 read completion | GNOME | libsoup | High | 7.5 | 2025-10-23 09:14:14 | Deep Dive |
| CVE-2025-11568 | Luksmeta: data corruption when handling luks1 partitions with luksmeta | Latchset | luksmeta | Medium | 4.4 | 2025-10-15 19:37:12 | Deep Dive |
| CVE-2025-9640 | Samba: vfs_streams_xattr uninitialized memory write possible | - | - | Medium | 4.3 | 2025-10-15 12:47:30 | Deep Dive |
| CVE-2025-11731 | Libxslt: type confusion in exsltfuncresultcompfunction of libxslt | - | - | Low | 3.1 | 2025-10-14 06:02:36 | Deep Dive |
| CVE-2025-11561 | Sssd: sssd default kerberos configuration allows privilege escalation on ad-joined linux systems | - | - | High | 8.8 | 2025-10-09 13:37:53 | Deep Dive |
| CVE-2025-6242 | Vllm: server side request forgery (ssrf) in mediaconnector | Red Hat | Red Hat AI Inference Server | High | 7.1 | 2025-10-07 19:45:18 | Deep Dive |
| CVE-2025-11234 | Qemu-kvm: vnc websocket handshake use-after-free | - | - | High | 7.5 | 2025-10-03 10:30:34 | Deep Dive |
| CVE-2025-7493 | Freeipa: idm: privilege escalation from host to domain admin in freeipa | Red Hat | Red Hat Enterprise Linux 10 | Critical | 9.1 | 2025-09-30 15:06:47 | Deep Dive |
| CVE-2025-11021 | Libsoup: out-of-bounds read in cookie date handling of libsoup http library | - | - | High | 7.5 | 2025-09-26 08:36:19 | Deep Dive |
| CVE-2025-60019 | Glib-networking: uninitialized memory dereferences on glib-networking through glib-networking/tls/openssl/gtlsbio.c via g_tls_bio_new_from_iostream() and g_tls_bio_new_from_datagram_based() | - | - | Low | 3.7 | 2025-09-25 15:53:03 | Deep Dive |
| CVE-2025-60018 | Glib-networking: out of bound reads on glib-networking through tls/openssl/gtlscertificate-openssl.c via "g_tls_certificate_openssl_get_property()" | - | - | Medium | 4.8 | 2025-09-25 15:52:58 | Deep Dive |
| CVE-2025-10911 | Libxslt: use-after-free with key data stored cross-rvt | - | - | Medium | 5.5 | 2025-09-25 15:13:14 | Deep Dive |
| CVE-2025-9900 | Libtiff: libtiff write-what-where | - | - | High | 8.8 | 2025-09-23 16:26:23 | Deep Dive |
| CVE-2025-5962 | Rhel-lightspeed: improper access control in lightspeed history management allows local privilege manipulation | Red Hat | Red Hat Enterprise Linux 10 | High | 7.7 | 2025-09-22 08:04:40 | Deep Dive |
| CVE-2025-4953 | Podman: build context bind mount | - | - | High | 7.4 | 2025-09-16 14:54:50 | Deep Dive |
| CVE-2025-8277 | Libssh: memory exhaustion via repeated key exchange in libssh | - | - | Low | 3.1 | 2025-09-09 11:55:39 | Deep Dive |
| CVE-2025-9566 | Podman: podman kube play command may overwrite host files | - | - | High | 8.1 | 2025-09-05 19:54:31 | Deep Dive |
| CVE-2025-9901 | Libsoup: improper handling of http vary header in libsoup caching | Red Hat | Red Hat Enterprise Linux 10 | Medium | 5.9 | 2025-09-03 12:32:27 | Deep Dive |
| CVE-2025-7039 | Glib: buffer under-read on glib through glib/gfileutils.c via get_tmp_file() | Red Hat | Red Hat Enterprise Linux 10 | Low | 3.7 | 2025-09-03 01:52:03 | Deep Dive |