CVE-2025-65396Medium· 6.1▾ SunlitA vulnerability in the boot process of Blurams Flare Camera version 24.1114.151.929 and earlier allows a physically proximate attacker to hijack the boot mechanism and gain a bootloader shell via the UART interface. This is achieved by i…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 33.6 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 6.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.2%
0.2% → 0.2%
A vulnerability in the boot process of Blurams Flare Camera version 24.1114.151.929 and earlier allows a physically proximate attacker to hijack the boot mechanism and gain a bootloader shell via the UART interface. This is achieved by inducing a read error from the SPI flash memory during the boot, by shorting a data pin of the IC to ground. An attacker can then dump the entire firmware, leading to the disclosure of sensitive information including cryptographic keys and user configurations.
dome_flare_firmware <= 24.1114.151.929Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-65397Medium· 6.8An insecure authentication mechanism in the safe_exec.sh startup script of Blurams Flare Camera version 24.1114.151.929 and earlier allows an attacker with physical access to the device to execute arbitrary commands with root privileges,…
CVE-2026-90681Low· 3.3A weakness has been identified in Matthias-Wandel jhead up to 3.3
CVE-2026-86303High· 7.3A vulnerability was determined in 92181 markdown up to 058cab0cb7fb245a0ccc6b8446963ff8d573558f
CVE-2026-86288Medium· 6.3A vulnerability has been found in ModelCloud GPTQModel up to 7.2.0
CVE-2026-85522Medium· 5.3A vulnerability was detected in valkey-io valkey up to 9.5.4/9.1.0
CVE-2026-86227Low· 3.1A weakness has been identified in valkey-io valkey up to 9.0.5/9.1.1