|
2671
|
4.3 |
MEDIUM
Network
|
-
|
-
|
Capgo before 12.128.2 fails to delete previously uploaded profile images from backend storage when users replace or remove them. Attackers can access orphaned image files through previously generated…
|
CWE-459
Incomplete Cleanup
|
CVE-2026-53867
|
2026-06-16 05:50 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2672
|
7.5 |
HIGH
Network
|
-
|
-
|
Capgo before 12.128.2 contains a denial of service vulnerability allowing attackers to register accounts using arbitrary email addresses without verification, then initiate deletion to lock emails in…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2026-53868
|
2026-06-16 05:50 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2673
|
- |
|
-
|
-
|
The Iptanus File Upload WordPress plugin before 5.1.7 does not implement proper file handling when the duplicatepolicy setting is configured to "maintain both." Due to a Time-of-Check to Time-of-Use …
|
-
|
CVE-2025-15546
|
2026-06-16 05:50 |
2026-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2674
|
7.8 |
HIGH
Local
|
-
|
-
|
Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed PDF file may allow Local Execution of Code or Denial-of-Service of the antivirus engine process.
This…
|
CWE-125
Out-of-bounds Read
|
CVE-2025-7002
|
2026-06-16 05:49 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2675
|
7.8 |
HIGH
Local
|
-
|
-
|
Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed PDF file may allow Local Execution of Code or Denial-of-Service of the antivirus engine process.
This…
|
CWE-125
Out-of-bounds Read
|
CVE-2025-7003
|
2026-06-16 05:49 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2676
|
7.8 |
HIGH
Local
|
-
|
-
|
Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed Windows MSI file may allow Local Execution of Code or Denial-of-Service of the antivirus engine proces…
|
CWE-125
Out-of-bounds Read
|
CVE-2025-7017
|
2026-06-16 05:49 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2677
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Null pointer dereference vulnerability in Avira Antivirus engine when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus engine process.
This issue affects Avira Antiv…
|
CWE-476
NULL Pointer Dereference
|
CVE-2025-7018
|
2026-06-16 05:49 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2678
|
7.8 |
HIGH
Local
|
-
|
-
|
Heap buffer out-of-bounds write vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Local Execution of Code or Denial-of-Service of the antivirus process.
This issue…
|
CWE-787
Out-of-bounds Write
|
CVE-2025-7004
|
2026-06-16 05:49 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2679
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Uncontrolled recursion vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus process.
This issue affects Avast Antivirus, AVG Antivi…
|
CWE-674
Uncontrolled Recursion
|
CVE-2025-7005
|
2026-06-16 05:49 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2680
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Use of stack memory after free vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus process.
This issue affects Avast Antivirus, AV…
|
CWE-590
Free of Memory not on the Heap
|
CVE-2025-7006
|
2026-06-16 05:49 |
2026-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|