CVE Severity Distribution (Last 30 Days)
Found 10 CVEs in the last 30 days.
CVE-2025-27831
CRITICAL
CVSS: 9.8
EPSS: 0.6%
CWE-120
T1203
An issue was discovered in Artifex Ghostscript before 10.05.0. The DOCXWRITE TXTWRITE device has a text buffer overflow via long characters to devices/vector/doc_common.c.
Published: 2025-03-25
CVE-2025-27832
CRITICAL
CVSS: 9.8
EPSS: 0.8%
CWE-120
T1203
An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for contrib/japanese/gdevnpdl.c.
Published: 2025-03-25
CVE-2025-27836
CRITICAL
CVSS: 9.8
EPSS: 0.6%
CWE-120
T1203
An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.
Published: 2025-03-25
CVE-2025-27837
CRITICAL
CVSS: 9.8
EPSS: 0.6%
CWE-22
T1083
An issue was discovered in Artifex Ghostscript before 10.05.0. Access to arbitrary files can occur through a truncated path with invalid UTF-8 characters, for base/gp_mswin.c and base/winrtsup.cpp.
Published: 2025-03-25
CVE-2025-2783
HIGH
CVSS: 8.3
EPSS: 9.2%
VulnCheck KEV
PoC Available
ExploitDB
Incorrect handle provided in unspecified circumstances in Mojo in Google Chrome on Windows prior to 134.0.6998.177 allowed a remote attacker to perform a sandbox escape via a malicious file. (Chromium security severity: High)
Published: 2025-03-26
CVE-2025-27830
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-120
T1203
An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs during serialization of DollarBlend in a font, for base/write_t1.c and psi/zfapi.c.
Published: 2025-03-25
CVE-2025-27833
HIGH
CVSS: 7.8
EPSS: 0.2%
CWE-120
T1203
An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs for a long TTF font name to pdf/pdf_fmap.c.
Published: 2025-03-25
CVE-2025-27834
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-120
T1203
An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs via an oversized Type 4 function in a PDF document to pdf/pdf_func.c.
Published: 2025-03-25
CVE-2025-27835
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-120
T1203
An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs when converting glyphs to Unicode in psi/zbfont.c.
Published: 2025-03-25
CVE-2025-27839
LOW
CVSS: 3.2
EPSS: 0.4%
CWE-1025
operations/attestation/AttestationTask.kt in the Tangem SDK before 5.18.3 for Android has a logic flow in offline wallet attestation (genuineness check) that causes verification results to be disregarded during the first scan of a card. Exploitation may not have been possible.
Published: 2025-03-08