LOW3.4CVE-2025-0167EPSS 0.33%When asked to use a `.netrc` file for credentials **and** to follow HTTP redirects, curl could leak the password used for the first host to…
LOW3.6EPSS 0.07%The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not al…
LOW3.4EPSS 1.4%When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, curl could leak the password used for the first host t…
LOW3.7EPSS 0.34%PostgreSQL libpq retains an error message from man-in-the-middle
LOW3.3EPSS 0.10%A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the --allow-fs-write flag is used.
LOW2.9EPSS 0.22%A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the --allow-fs-read flag is used.
LOW2.8EPSS 0.03%Hardware logic contains race conditions in some Intel(R) Processors may allow an authenticated user to potentially enable partial informati…
LOW3.3EPSS 0.18%Cloning local Git repository by untrusted user allows the untrusted user to modify objects in the cloned repository at will
LOW3.3EPSS 10.9%util-linux - security update
LOW3.5EPSS 0.91%When a protocol selection parameter option disables all protocols without adding any then the default set of protocols would remain in the…
LOW3.3EPSS 0.08%Arm provides multiple helpers to clean & invalidate the cache for a given region.
LOW3.3EPSS 0.06%Arm provides multiple helpers to clean & invalidate the cache for a given region.
LOW3.6EPSS 0.58%Redis Unix-domain socket may have be exposed with the wrong permissions for a short time window.
LOW3.7EPSS 0.44%This flaw allows an attacker to insert cookies at will into a running program using libcurl, if the specific series of conditions are met.
LOW3.9EPSS 0.12%Undici's cookie header not cleared on cross-origin redirect in fetch
LOW3.3EPSS 0.82%Redis SORT_RO may bypass ACL configuration
LOW3.3EPSS 0.01%Under some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability to write almost unli…
LOW3.3EPSS 0.02%libcap2 - security update
LOW3.7EPSS 0.63%curl - security update
LOW3.3EPSS 0.07%Mishandling of guest SSBD selection on AMD hardware The current logic to set SSBD on AMD Family 17h and Hygon Family 18h processors require…
LOW2.2EPSS 0.10%In Git for Windows, the Windows port of Git, no localized messages are shipped with the installer.
LOW3.7EPSS 0.32%In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos transport encryption.
LOW3.3EPSS 2.3%lxc - security update
LOW3.3EPSS 0.32%Redis Crash Report debug.c sigsegvHandler denial of service
LOW3.8EPSS 0.03%Arm: unbounded memory consumption for 2nd-level page tables Certain actions require e.g.