SEARCHSearch the cs-graph

CVE-#### · MITRE T#### · CWE-#### · ATLAS AML.T#### · D3-XX · compliance article references. Authored by Adam Lundqvist.

40 results for “kev-cve-2025-14611” · 0.93 s · cached

Facets · 1 entity types

40 CVE
CVE-2025-59611CVE

CVE-2025-59611

Memory corruption in diagnostic services due to absence of input validation

CVSS 6.7EPSS 0.1%qualcomm
Match for kev-cve-2025-14611
CVE-2025-24260CVE

CVE-2025-24260

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An attacker in a privileged position may be able to perfor…

CVSS 9.8EPSS 0.9%
Match for kev-cve-2025-14611
CVE-2025-55050CVE

CVE-2025-55050

CWE-1242: Inclusion of Undocumented Features

CVSS 9.8EPSS 0.3%
Match for kev-cve-2025-14611
CVE-2026-46264CVE

CVE-2026-46264

In the Linux kernel, the following vulnerability has been resolved: drm/xe/pf: Fix sysfs initialization In case of devm_add_action_or_reset() failure the provided cleanup action will be run immedia…

CVSS 8.8EPSS 0.2%linux
Match for kev-cve-2025-14611
CVE-2025-21411CVE

CVE-2025-21411

Windows Telephony Service Remote Code Execution Vulnerability

CVSS 8.8EPSS 1.1%
Match for kev-cve-2025-14611
CVE-2026-2596CVE

CVE-2026-2596

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2025-14611
CVE-2026-43011CVE

CVE-2026-43011

In the Linux kernel, the following vulnerability has been resolved: net/x25: Fix potential double free of skb When alloc_skb fails in x25_queue_rx_frame it calls kfree_skb(skb) at line 48 and retur…

CVSS 9.8EPSS 0.9%linux
Match for kev-cve-2025-14611
CVE-2025-50106CVE

CVE-2025-50106

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D). Supported versions that are affected are Oracle Java SE: 8u4…

CVSS 8.1EPSS 0.7%
Match for kev-cve-2025-14611
CVE-2025-41426CVE

CVE-2025-41426

Affected Vertiv products contain a stack based buffer overflow vulnerability. An attacker could exploit this vulnerability to gain code execution on the device.

CVSS 9.8EPSS 0.8%
Match for kev-cve-2025-14611
CVE-2025-6111CVE

CVE-2025-6111

A vulnerability classified as critical was found in Tenda FH1205 2.0.0.7(775). This vulnerability affects the function fromVirtualSer of the file /goform/VirtualSer. The manipulation of the argument …

CVSS 8.8EPSS 1.0%
Match for kev-cve-2025-14611
CVE-2026-45760CVE

CVE-2026-45760

(Externally Controlled Reference to a Resource in Another Sphere), (Authorization Bypass Through User-Controlled Key) vulnerability in Apache Camel K. Authorized users in a Kubernetes namespace can c…

CVSS 8.1EPSS 0.4%
Match for kev-cve-2025-14611
CVE-2025-49655CVE

CVE-2025-49655

Deserialization of untrusted data can occur in versions of the Keras framework running versions 3.11.0 up to but not including 3.11.3, enabling a maliciously uploaded Keras file containing a TorchMod…

CVSS 9.8EPSS 0.8%
Match for kev-cve-2025-14611
CVE-2025-54951CVE

CVE-2025-54951

A group of related buffer overflow vulnerabilities in the loading of ExecuTorch models can cause the runtime to crash and potentially result in code execution or other undesirable effects. This issue…

CVSS 9.8EPSS 0.7%
Match for kev-cve-2025-14611
CVE-2025-0611CVE

CVE-2025-0611

Object corruption in V8 in Google Chrome prior to 132.0.6834.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVSS 8.2EPSS 0.4%
Match for kev-cve-2025-14611
CVE-2025-49214CVE

CVE-2025-49214

An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a post-authentication remote code execution on affected installations. Please note: an attac…

CVSS 8.8EPSS 0.8%
Match for kev-cve-2025-14611
CVE-2025-1011CVE

CVE-2025-1011

A bug in WebAssembly code generation could have lead to a crash. It may have been possible for an attacker to leverage this to achieve code execution. This vulnerability was fixed in Firefox 135, Fir…

CVSS 8.8EPSS 0.6%mozilla
Match for kev-cve-2025-14611
CVE-2025-41646CVE

CVE-2025-41646

An unauthorized remote attacker can bypass the authentication of the affected software package by misusing an incorrect type conversion. This leads to full compromise of the device

CVSS 9.8EPSS 51.3%
Match for kev-cve-2025-14611
CVE-2025-14459CVE

CVE-2025-14459

A flaw was found in KubeVirt Containerized Data Importer (CDI). This vulnerability allows a user to clone PersistentVolumeClaims (PVCs) from unauthorized namespaces, resulting in unauthorized access …

CVSS 8.5EPSS 0.4%
Match for kev-cve-2025-14611
CVE-2026-6207CVE

CVE-2026-6207

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2025-14611
CVE-2026-48556CVE

CVE-2026-48556

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2025-14611
Hybrid search: an exact-match keyword pass (title + MITRE-ID + body-head) fused with Vertex AI semantic similarity (text-embedding-005, cosine vector search over the corpus) via reciprocal-rank fusion — exact IDs stay pinned, related concepts surface by meaning. Curated by Adam Lundqvist, Founder at SQUR.