CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

CVE-2025-22866

Description: Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way this function is used, we do not believe this leakage is enough to allow recovery of the private key when P-256 is used in any well known protocols.

EPSS Score: 0.05%

Source: CVE
February 7th, 2025 (5 months ago)

CVE-2025-21408

Description: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVSS: HIGH (8.8)

EPSS Score: 0.13%

Source: CVE
February 7th, 2025 (5 months ago)

CVE-2025-21404

Description: Microsoft Edge (Chromium-based) Spoofing Vulnerability

CVSS: MEDIUM (4.3)

EPSS Score: 0.05%

Source: CVE
February 7th, 2025 (5 months ago)

CVE-2025-21342

Description: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVSS: HIGH (8.8)

EPSS Score: 0.13%

Source: CVE
February 7th, 2025 (5 months ago)

CVE-2025-21283

Description: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVSS: MEDIUM (6.5)

EPSS Score: 0.13%

Source: CVE
February 7th, 2025 (5 months ago)

CVE-2025-21279

Description: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVSS: MEDIUM (6.5)

EPSS Score: 0.13%

Source: CVE
February 7th, 2025 (5 months ago)

CVE-2025-21267

Description: Microsoft Edge (Chromium-based) Spoofing Vulnerability

CVSS: MEDIUM (4.4)

EPSS Score: 0.06%

Source: CVE
February 7th, 2025 (5 months ago)

CVE-2025-21253

Description: Microsoft Edge for IOS and Android Spoofing Vulnerability

CVSS: MEDIUM (5.3)

EPSS Score: 0.06%

Source: CVE
February 7th, 2025 (5 months ago)

CVE-2025-21177

Description: Server-Side Request Forgery (SSRF) in Microsoft Dynamics 365 Sales allows an authorized attacker to elevate privileges over a network.

CVSS: HIGH (8.7)

EPSS Score: 0.09%

Source: CVE
February 7th, 2025 (5 months ago)

CVE-2025-20094

Description: Unprotected Windows messaging channel ('Shatter') issue exists in Defense Platform Home Edition Ver.3.9.51.x and earlier. If an attacker sends a specially crafted message to the specific process of the Windows system where the product is running, arbitrary code may be executed with SYSTEM privilege.

CVSS: HIGH (8.8)

EPSS Score: 0.04%

Source: CVE
February 7th, 2025 (5 months ago)