A vulnerability marked as problematic has been reported in ruby-rmagick. This issue affects some unknown processing. This manipulation causes memory leak.
This vulnerability is tracked as CVE-2023-5349. The attack is only possible within the local network. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability was found in Download Manager Plugin up to 3.3.40 on WordPress. It has been classified as critical. Affected is the function updatePassword. This manipulation causes missing support for integrity check.
This vulnerability is tracked as CVE-2025-15364. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability labeled as critical has been found in Frappe up to 14.99.5/15.88.0. This affects an unknown function. Executing a manipulation can lead to path traversal.
This vulnerability is tracked as CVE-2025-68953. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.
A vulnerability has been found in Linux Kernel up to 6.12.62/6.17.12/6.18.1 and classified as critical. This affects the function mchp_eic_domain_alloc of the component mchp-eic. This manipulation causes out-of-bounds read.
This vulnerability is tracked as CVE-2025-68766. The attack is only possible within the local network. No exploit exists.
The affected component should be upgraded.
A vulnerability classified as critical was found in Linux Kernel up to 6.12.62/6.17.12/6.18.1. This affects the function mt7615_mcu_wtbl_sta_add of the component mt76. The manipulation results in memory leak.
This vulnerability was named CVE-2025-68765. The attack needs to be approached within the local network. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.12.62/6.17.12/6.18.1. This vulnerability affects the function sg_nents_for_len of the component crypto. This manipulation of the argument return causes unchecked return value.
The identification of this vulnerability is CVE-2025-68763. The attack needs to be done within the local network. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability was found in Appointment Booking and Scheduling Calendar Plugin up to 1.0.36 on WordPress. It has been declared as problematic. Impacted is the function update/register_routes of the component Booking Details Handler. Such manipulation leads to missing authorization.
This vulnerability is traded as CVE-2025-5919. The attack may be launched remotely. There is no exploit available.
A vulnerability was found in Quarkus. It has been classified as problematic. This issue affects some unknown processing of the component Hibernate Handler. This manipulation causes denial of service.
This vulnerability appears as CVE-2025-14969. The attack may be initiated remotely. There is no available exploit.
A vulnerability was found in Table Field Add-on for ACF and SCF Plugin up to 1.3.30 on WordPress and classified as problematic. This vulnerability affects unknown code. The manipulation results in cross site scripting.
This vulnerability is reported as CVE-2025-12067. The attack can be launched remotely. No exploit exists.