NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2025-23311 NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a stack overflow through specially crafted HTTP requests. A succ... 2025-08-06 9.8 NETWORK CRITICAL NVD
CVE-2025-23310 NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause stack buffer overflow by specially crafted... 2025-08-06 9.8 NETWORK CRITICAL NVD
CVE-2025-5197 A Regular Expression Denial of Service (ReDoS) vulnerability exists in the Hugging Face Transformers library, specifically in the `convert_tf_weight_n... 2025-08-06 N/A None None NVD
CVE-2025-46391 CWE-284: Improper Access Control 2025-08-06 6.5 NETWORK MEDIUM NVD
CVE-2025-46390 CWE-204: Observable Response Discrepancy 2025-08-06 7.5 NETWORK HIGH NVD
CVE-2025-46389 CWE-620: Unverified Password Change 2025-08-06 6.5 NETWORK MEDIUM NVD
CVE-2025-46388 CWE-200 Exposure of Sensitive Information to an Unauthorized Actor 2025-08-06 4.3 NETWORK MEDIUM NVD
CVE-2025-46387 CWE-639 Authorization Bypass Through User-Controlled Key 2025-08-06 8.8 NETWORK HIGH NVD
CVE-2025-46386 CWE-639 Authorization Bypass Through User-Controlled Key 2025-08-06 8.8 NETWORK HIGH NVD
CVE-2025-8620 The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including,... 2025-08-06 5.3 NETWORK MEDIUM NVD
CVE-2025-7771 ThrottleStop.sys, a legitimate driver, exposes two IOCTL interfaces that allow arbitrary read and write access to physical memory via the MmMapIoSpace... 2025-08-06 8.7 LOCAL HIGH NVD
CVE-2025-6013 Vault and Vault Enterprise’s (“Vault”) ldap auth method may not have correctly enforced MFA if username_as_alias was set to true and a user had multip... 2025-08-06 6.5 NETWORK MEDIUM NVD
CVE-2025-22470 CL4/6NX Plus and CL4/6NX-J Plus (Japan model) with the firmware versions prior to 1.15.5-r1 allow crafted dangerous files to be uploaded. An arbitrary... 2025-08-06 9.3 NETWORK CRITICAL NVD
CVE-2025-22469 OS command injection vulnerability exists in CL4/6NX Plus and CL4/6NX-J Plus (Japan model) with the firmware versions prior to 1.15.5-r1. An arbitrary... 2025-08-06 6.9 NETWORK MEDIUM NVD
CVE-2025-8556 A flaw was found in CIRCL's implementation of the FourQ elliptic curve. This vulnerability allows an attacker to compromise session security via low-o... 2025-08-06 3.7 NETWORK LOW NVD