Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-02-10 CVE-2024-13011 The WP Foodbakery plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'upload_publisher_profile_image' function in versions up to, and including, 4.7.
network
low complexity
CWE-434
critical
9.8
2025-02-10 CVE-2024-27859 Unspecified vulnerability in Apple products
The issue was addressed with improved memory handling.
network
low complexity
apple
8.8
2025-02-10 CVE-2024-54658 Unspecified vulnerability in Apple products
The issue was addressed with improved memory handling.
network
low complexity
apple
6.5
2025-02-10 CVE-2025-1153 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in GNU Binutils 2.43/2.44
A vulnerability classified as problematic was found in GNU Binutils 2.43/2.44.
network
high complexity
gnu CWE-119
5.9
2025-02-10 CVE-2025-24200 Incorrect Authorization vulnerability in Apple Ipados
An authorization issue was addressed with improved state management.
low complexity
apple CWE-863
6.1
2025-02-10 CVE-2024-48170 Cross-site Scripting vulnerability in PHPgurukul Small CRM 3.0
PHPGurukul Small CRM 3.0 is vulnerable to Cross Site Scripting (XSS) via a crafted payload injected into the name in the profile.php.
network
low complexity
phpgurukul CWE-79
5.4
2025-02-10 CVE-2025-1152 Memory Leak vulnerability in GNU Binutils 2.43
A vulnerability classified as problematic has been found in GNU Binutils 2.43.
network
high complexity
gnu CWE-401
3.7
2025-02-10 CVE-2025-1150 A vulnerability was found in GNU Binutils 2.43.
network
high complexity
CWE-401
3.1
2025-02-10 CVE-2025-1151 A vulnerability was found in GNU Binutils 2.43.
network
high complexity
CWE-401
3.1
2025-02-10 CVE-2024-57950 Divide By Zero vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Initialize denominator defaults to 1 [WHAT & HOW] Variables, used as denominators and maybe not assigned to other values, should be initialized to non-zero to avoid DIVIDE_BY_ZERO, as reported by Coverity. (cherry picked from commit e2c4c6c10542ccfe4a0830bb6c9fd5b177b7bbb7)
local
low complexity
linux CWE-369
5.5