CVE-2025-67844
AI description
Here are descriptions of different CVEs with the identifier CVE-2025-67844, CVE-2025-61844, CVE-2025-55182 and CVE-2025-37844 based on the search results: * **CVE-2025-6844:** This vulnerability affects Simple Forum 1.0 by code-projects. It involves an SQL injection vulnerability in the `/signin.php` file, specifically through the manipulation of the "User" argument. This vulnerability can be exploited remotely. * **CVE-2025-61844:** This vulnerability affects Format Plugins versions 1.1.1 and earlier. It is an out-of-bounds read flaw that could allow attackers to access sensitive information stored in memory. Exploitation requires user interaction, where victims must be tricked into opening a malicious file. * **CVE-2025-55182:** This critical vulnerability is found in React Server Components (RSC) and is related to insecure deserialization within the Flight protocol. It allows unauthenticated attackers to execute arbitrary code on the server by sending specially crafted HTTP requests. The attack complexity is low, requires no user interaction or privileges, and has near-100% reliability. * **CVE-2025-37844:** This vulnerability resides in the Linux kernel and involves a potential NULL pointer dereference in the `cifs_server_dbg` function within the CIFS filesystem module. The vulnerability can lead to a system crash if the CIFS debugging functionality is triggered when the server pointer is NULL.
- Description
- -
Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.
- Hype score
19