Patch data provided by:
|
 |
Identifier
|
Vendor/
Product
|
Affected Versions
|
Date Released
by Vendor
|
Vulnerability Info
|
Vender Severity / Our Recommedation
|
Multiple CVE's
|
Adobe Coldfusion
|
2025 Build 331385
2023 Update 12 earlier
2021 Update 18 and earlier
|
4/8/2025
|
Arbitrary Code Execution,
Arbitrary File System Read,
Security Feature Bypass |
Critical Priority 1: Update within 72 hours
|
Multiple CVE's
|
Adobe After Effects
|
24.6.4 and earlier
25.1 and earlier
|
4/8/2025
|
Application DoS,
Arbitrary Code Execution,
Memory Leak |
Critical Priority 3: Update at admins discretion
|
Multiple CVE's
|
Adobe Media Encoder
|
24.6.4 and earlier
25.1 and earlier
|
4/8/2025
|
Arbitrary Code Execution |
Critical Priority 3: Update at admins discretion
|
CVE-2025-27193
|
Adobe Bridge
|
14.1.5 and earlier
15.0.2 and earlier
|
4/8/2025
|
Arbitrary Code Execution |
Critical Priority 3: Update at admin's discretion
|
Multiple CVE's
|
Adobe Commerce
|
Commerce/Magento Open Source 2.4.8-beta2,
2.4.7-p4 and earlier,
2.4.6-p9 and earlier,
2.4.5-p11 and earlier,
2.4.4-p12 and earlier
Commerce B2B
1.5.1 and earlier,
1.4.2-p4 and earlier,
1.3.5-p9 and earlier,
1.3.4-p11 and earlier,
1.3.3-p12 and earlier
|
4/8/2025
|
Application DoS,
Privilege Escalation,
Security Feature Bypass |
Important Priority 2: Update within 30 days
|
Multiple CVE's
|
Adobe Experience Manager Forms
|
6.5.22.0 (AEMForms-6.5.0-0093) and earlier
|
4/8/2025
|
Case Sensitive Match Exception,
Path Traversal |
Priority 2: Update at admins discretion
|
CVE-2025-27196
|
Adobe Premiere Pro
|
24.6.4 and earlier
25.1 and earlier
|
4/8/2025
|
Arbitrary Code Execution |
Critical Priority 3: Update at admins discretion
|
CVE-2025-27198
|
Adobe Photoshop
|
2025 26.4.1 and earlier
2024 25.12.1 and earlier
|
4/8/2025
|
Arbitrary Code Execution |
Critical Priority 3: Update at admins discretion
|
Multiple CVE's
|
Adobe Animate
|
2023 23.0.10 and earlier
2024 24.0.7 and earlier
|
4/8/2025
|
Arbitrary Code Execution,
Memory Leak |
Critical Priority 3: Update at admins discretion
|
CVE-2025-27205
|
Adobe Experience Manager Screens
|
AEM 6.5 Screens FP11.3 and earlier
|
4/8/2025
|
Arbitrary Code Execution |
Important Priority 2: Update within 30 days
|
Multiple CVE's
|
Adobe FrameMaker
|
2020 Release Update 7 and earlier
2022 Release Update 5 and earlier
|
4/8/2025
|
Application DoS,
Arbitrary Code Execution,
Memory Leak |
Critical Priority 3: Update at admins discretion
|
Multiple CVE's
|
Adobe XMP Toolkit SDK
|
2023.12 and earlier
|
4/8/2025
|
Memory Leak |
Important Priority 3: Update at admins discretion
|
Multiple CVE's
|
Apple macOS Ventura
|
Before 13.7.5
|
3/31/2025
|
Arbitrary Code Execution,
Buffer Overflow,
Denial of Service,
Information Leak,
Memory Leak,
Out of Bounds Read/Write,
Privilege Escalation,
Race Condition,
Security Feature Bypass,
Type Confusion,
Unauthorized Access,
Use After Free |
Update ASAP |
Multiple CVE's
|
Apple macOS Sonoma
|
Before 14.7.5
|
3/31/2025
|
Arbitrary Code Execution,
Buffer Overflow,
Denial of Service,
Information Leak,
Library Injection,
Memory Leak,
Out of Bounds Read/Write,
Privilege Escalation,
Race Condition,
Security Feature Bypass,
Type Confusion,
Unauthorized Access,
Use After Free |
Update ASAP |
Multiple CVE's
|
Apple macOS Sequoia
|
Before 15.4.1
|
4/16/2025
|
Arbitrary Code Execution,
Buffer Overflow,
Denial of Service,
Information Leak,
Memory Leak,
Out of Bounds Read/Write,
Privilege Escalation,
Race Condition,
Security Feature Bypass,
Type Confusion,
Unauthorized Access,
Use After Free |
Update ASAP |
Multiple CVE's
|
Apple Safari
|
Before 18.4
|
3/31/2025
|
Buffer Overflow,
Cross Site Scripting,
Information Leak,
Security Feature Bypass,
Spoofing,
Type Confusion,
Unauthorized Access,
Use After Free |
Update after testing |
Multiple CVE's
|
Apple iOS
|
iOS/iPadOS before 18.4
|
3/31/2025
|
Arbitrary Code Execution,
Cross Site Scripting,
Data Leak,
Denial of Service,
Memory Leak,
Out of Bounds Read,
Security Feature Bypass
Type Confusion,
Unauthorized Access,
Use After Free |
Update ASAP |
Multiple CVE's
|
Apple watchOS
|
before 11.4
|
4/1/2025
|
xArbitrary Code Execution,
xBuffer Overflow,
Cross Site Scripting,
Data Leak,
Denial of Service,
xMemory Leak,
xOut of Bounds Read,
xSecurity Feature Bypass,
Type Confusion,
xUnauthorized Access,
Use After Free |
Update ASAP |
Multiple CVE's
|
Google
Chrome
|
Before 135.0.7049.114 (Linux)
Before 135.0.7049.114/115 (Windows/Mac)
|
4/22/2025
|
Heap Buffer Overflow,
Inappropriate Implementation,
Use After Free |
Update after testing |
Multiple CVE's
|
Mozilla Thunderbird
|
Before 138
|
4/29/2025
|
Arbitrary Code Execution,
Cross Site Forgery,
Information Leak,
Out of Bounds,
Privilege Escalation,
Spoofing,
Use After Free,
User Confusion |
Update after testing
|
Multiple CVE's
|
Mozilla Thunderbird ESR
|
Before 128.10
|
4/29/2025
|
Arbitrary Code Execution,
Information Disclosure,
Out of Bounds,
Privilege Escalation,
Spoofing,
Use After Free |
Update after testing
|
Multiple CVE's
|
Mozilla Firefox
|
Before 138
|
4/29/2025
|
Arbitrary Code Execution,
Cross Site Forgery,
Information Leak,
Out of Bounds,
Privilege Escalation,
Race Condition,
Spoofing,
Use After Free,
User Confusion |
Update after testing
|
Multiple CVE's
|
Mozilla Firefox ESR
|
Before 128.10
|
4/29/2025
|
Arbitrary Code Execution,
Out of Bounds,
Privilege Escalation,
Spoofing,
Use After Free |
Update after testing
|
CVE-2025-27443
|
Zoom Workplace Apps for Windows
|
Desktop App before 6.3.10
Rooms Controller before 6.4.0
Rooms Client before 6.4.0
Meeting SDK before 6.3.10
|
4/8/2025
|
Loss of Integrity |
Update after testing
|
Multiple CVE's
|
Zoom Workplace Apps for Windows
|
Desktop App before 6.3.10
Rooms Controller before 6.4.0
Rooms Client before 6.4.0
Meeting SDK before 6.3.10
|
4/8/2025
|
Denial of Service |
Update after testing
|
Multiple CVE's
|
Zoom Workplace Apps
|
Desktop App for Windows/macOS/Linux before 6.3.10
Workplace App for iOS/Android before 6.3.10
Workplace VDI Client for Windows before 6.2.12
Rooms Controller for Windows/macOS/Linux/Android before 6.4.0
Rooms Client for Windows/macOS/Android/iPad before 6.4.0
Meeting SDK for Windows/iOS/Android/macOS/Linux before 6.3.10
|
4/8/2025
|
Cross Site Scripting |
Update after testing
|