A vulnerability, which was classified as critical, was found in axboe fio up to 3.41. This impacts the function __parse_jobs_ini of the file init.c. Executing manipulation can lead to use after free.
This vulnerability is registered as CVE-2025-10824. The attack needs to be launched locally. Furthermore, an exploit is available.
A vulnerability, which was classified as problematic, has been found in axboe fio up to 3.41. This affects the function str_buffer_pattern_cb of the file options.c. Performing manipulation results in null pointer dereference.
This vulnerability is cataloged as CVE-2025-10823. The attack must be initiated from a local position. Furthermore, there is an exploit available.
A vulnerability classified as problematic was found in fuyang_lipengjun platform 1.0. The impacted element is the function SysSmsLogController of the file /sys/smslog/queryAll. Such manipulation leads to improper authorization.
This vulnerability is listed as CVE-2025-10822. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability classified as problematic has been found in fuyang_lipengjun platform 1.0. The affected element is the function TopicCategoryController of the file /topiccategory/queryAll. This manipulation causes improper authorization.
This vulnerability is tracked as CVE-2025-10821. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability described as problematic has been identified in fuyang_lipengjun platform 1.0. Impacted is the function TopicController of the file /topic/queryAll. The manipulation results in improper authorization.
This vulnerability is identified as CVE-2025-10820. The attack can be executed remotely. Additionally, an exploit exists.
A vulnerability marked as problematic has been reported in fuyang_lipengjun platform 1.0. This issue affects the function UserCouponController of the file /usercoupon/queryAll. The manipulation leads to improper authorization.
This vulnerability is referenced as CVE-2025-10819. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter SmokeLoader Rises From the Ashes Hive0154, aka Mustang Panda, drops updated Toneshell backdoor and novel SnakeDisk USB worm Popular Tinycolor npm Package Compromised in Supply Chain Attack Affecting 40+ Packages Self-replicating Shai-hulud worm spreads […]
A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press. A cyberattack on Collins Aerospace disrupted operations at major European airports CISA warns of malware deployed […]