Search CVE reports


Toggle filters

181 – 190 of 36210 results

Status is adjusted based on your filters.


CVE-2025-69871

Medium priority
Needs evaluation

A race condition vulnerability exists in MedusaJS Medusa v2.12.2 and earlier in the registerUsage() function of the promotion module. The function performs a non-atomic read-check-update operation when enforcing promotion usage...

1 affected package

medusa

Package 22.04 LTS
medusa Needs evaluation
Show less packages

CVE-2025-14594

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.11 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user to view...

2 affected packages

gitlab, gitlab-agent

Package 22.04 LTS
gitlab Not in release
gitlab-agent Not in release
Show less packages

CVE-2025-14592

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user to...

2 affected packages

gitlab, gitlab-agent

Package 22.04 LTS
gitlab Not in release
gitlab-agent Not in release
Show less packages

CVE-2025-14560

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.1 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user to...

2 affected packages

gitlab, gitlab-agent

Package 22.04 LTS
gitlab Not in release
gitlab-agent Not in release
Show less packages

CVE-2025-12575

Medium priority

Not in release

GitLab has remediated an issue in GitLab EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user with...

2 affected packages

gitlab, gitlab-agent

Package 22.04 LTS
gitlab Not in release
gitlab-agent Not in release
Show less packages

CVE-2025-12474

Low priority
Needs evaluation

A specially-crafted file can cause libjxl's decoder to read pixel data from uninitialized (but allocated) memory. This can be done by causing the decoder to reference an outside-image-bound area in a subsequent patches. An...

1 affected package

graphicsmagick

Package 22.04 LTS
graphicsmagick Needs evaluation
Show less packages

CVE-2025-12073

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions, could have allowed an authenticated user to...

2 affected packages

gitlab, gitlab-agent

Package 22.04 LTS
gitlab Not in release
gitlab-agent Not in release
Show less packages

CVE-2025-54514

Medium priority
Needs evaluation

Improper isolation of shared resources on a system on a chip by a malicious local attacker with high privileges could potentially lead to a partial loss of integrity.

1 affected package

amd64-microcode

Package 22.04 LTS
amd64-microcode Needs evaluation
Show less packages

CVE-2025-52536

Medium priority
Needs evaluation

Improper Prevention of Lock Bit Modification in SEV firmware could allow a privileged attacker to downgrade firmware potentially resulting in a loss of integrity.

1 affected package

amd64-microcode

Package 22.04 LTS
amd64-microcode Needs evaluation
Show less packages

CVE-2025-52534

Medium priority
Needs evaluation

Improper bound check within AMD CPU microcode can allow a malicious guest to write to host memory, potentially resulting in loss of integrity.

1 affected package

amd64-microcode

Package 22.04 LTS
amd64-microcode Needs evaluation
Show less packages