Common Vulnerabilities and Exposures (CVE)

CVE-2025-66372

Nov 28, 2025 03:28:41 UTC

Mustang before 2.16.3 allows exfiltrating files via XXE attacks.

CVE-2025-13737

Nov 28, 2025 03:27:06 UTC

The Nextend Social Login and Register plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.21. This is due to missing or incorrect nonce validation on the 'unlinkUser' function. This mak...

CVE-2025-64312

Nov 28, 2025 03:09:45 UTC

Permission control vulnerability in the file management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

CVE-2025-58311

Nov 28, 2025 03:08:31 UTC

UAF vulnerability in the USB driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

CVE-2025-58308

Nov 28, 2025 03:04:29 UTC

Vulnerability of improper criterion security check in the call module. Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.

CVE-2025-58305

Nov 28, 2025 02:59:49 UTC

Identity authentication bypass vulnerability in the Gallery app. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

CVE-2025-58304

Nov 28, 2025 02:58:34 UTC

Permission control vulnerability in the file management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

CVE-2025-58302

Nov 28, 2025 02:56:00 UTC

Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

CVE-2025-58294

Nov 28, 2025 02:50:08 UTC

Permission control vulnerability in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

CVE-2025-64313

Nov 28, 2025 02:49:02 UTC

Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability.

CVE-2025-64311

Nov 28, 2025 02:47:19 UTC

Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

CVE-2025-58315

Nov 28, 2025 02:43:36 UTC

Permission control vulnerability in the Wi-Fi module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

CVE-2025-58314

Nov 28, 2025 02:40:16 UTC

Vulnerability of accessing invalid memory in the component driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

CVE-2025-58312

Nov 28, 2025 02:37:44 UTC

Permission control vulnerability in the App Lock module. Impact: Successful exploitation of this vulnerability may affect availability.

CVE-2025-58310

Nov 28, 2025 02:36:41 UTC

Permission control vulnerability in the distributed component. Impact: Successful exploitation of this vulnerability may affect service confidentiality.