Unauthenticated attackers can obtain restricted information about a user's smart device collections (i.e., "rooms").
Publication date: Tue, 15 Apr 2025 21:03:00 +0000
Cyber News related to CVE-2025-27938
CVE-2025-27938 - Unauthenticated attackers can obtain restricted information about a user's smart device collections (i.e., "rooms"). ...
5 months ago
CVE-2021-27938 - A vulnerability has been identified in the Silverstripe CMS 3 and 4 version of the symbiote/silverstripe-queuedjobs module. A Cross Site Scripting vulnerability allows an attacker to inject an arbitrary payload in the CreateQueuedJobTask dev task via ...
4 years ago
CVE-2020-27938 - A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 ...
4 years ago
CVE-2022-27938 - stb_image.h (aka the stb image loader) 2.19, as used in libsixel and other products, has a reachable assertion in stbi__create_png_image_raw. ...
3 years ago
CVE-2023-27938 - An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in GarageBand for macOS 10.4.8. Parsing a maliciously crafted MIDI file may lead to an unexpected application termination or arbitrary code execution. ...
2 years ago
CVE-2024-27938 - Postal is an open source SMTP server. Postal versions less than 3.0.0 are vulnerable to SMTP Smuggling attacks which may allow incoming e-mails to be spoofed. This, in conjunction with a cooperative outgoing SMTP service, would allow for an incoming ...
1 year ago