CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-6494
3.3 LOW

A vulnerability was found in sparklemotion nokogiri c29c920907366cb74af13b4dc2230e9c9e23b833. It has been classified as problematic. This affects the function hashmap_get_with_hash of the file gumbo-parser/src/hashmap.c. The manipulation …

Jun 22, 2025
CVE-2025-6493
5.3 MEDIUM

A weakness has been identified in CodeMirror up to 5.65.20. Affected is an unknown function of the file mode/markdown/markdown.js of the component Markdown Mode. This …

Jun 22, 2025
CVE-2025-6492
5.3 MEDIUM

A vulnerability has been found in MarkText up to 0.17.1 and classified as problematic. Affected by this vulnerability is the function getRecommendTitleFromMarkdownString of the file …

Jun 22, 2025
CVE-2025-6490
3.3 LOW

A vulnerability was found in sparklemotion nokogiri c29c920907366cb74af13b4dc2230e9c9e23b833 and classified as problematic. This issue affects the function hashmap_set_with_hash of the file gumbo-parser/src/hashmap.c. The manipulation leads …

Jun 22, 2025
CVE-2025-6489
7.3 HIGH

A vulnerability has been found in itsourcecode Agri-Trading Online Shopping System 1.0 and classified as critical. This vulnerability affects unknown code of the file /transactionsave.php. …

Jun 22, 2025
CVE-2025-6487
8.8 HIGH

A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been rated as critical. This issue affects the function formRoute of the file /boafrm/formRoute. The …

Jun 22, 2025
CVE-2025-6486
8.8 HIGH

A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been declared as critical. This vulnerability affects the function formWlanMultipleAP of the file /boafrm/formWlanMultipleAP. The …

Jun 22, 2025
CVE-2025-6485
6.3 MEDIUM

A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been classified as critical. This affects the function formWlSiteSurvey of the file /boafrm/formWlSiteSurvey. The manipulation …

Jun 22, 2025
CVE-2025-6484
4.7 MEDIUM

A vulnerability was found in code-projects Online Shopping Store 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file …

Jun 22, 2025
CVE-2025-6483
7.3 HIGH

A vulnerability has been found in code-projects Simple Pizza Ordering System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of …

Jun 22, 2025
CVE-2025-6482
7.3 HIGH

A vulnerability, which was classified as critical, was found in code-projects Simple Pizza Ordering System 1.0. Affected is an unknown function of the file /edituser-exec.php. …

Jun 22, 2025
CVE-2025-6481
7.3 HIGH

A vulnerability, which was classified as critical, has been found in code-projects Simple Pizza Ordering System 1.0. This issue affects some unknown processing of the …

Jun 22, 2025
CVE-2025-6480
7.3 HIGH

A vulnerability classified as critical was found in code-projects Simple Pizza Ordering System 1.0. This vulnerability affects unknown code of the file /addcatexec.php. The manipulation …

Jun 22, 2025
CVE-2025-6479
7.3 HIGH

A vulnerability classified as critical has been found in code-projects Simple Pizza Ordering System 1.0. This affects an unknown part of the file /salesreport.php. The …

Jun 22, 2025
CVE-2025-6478
4.3 MEDIUM

A vulnerability was found in CodeAstro Expense Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality. The …

Jun 22, 2025
CVE-2025-6477
2.4 LOW

A vulnerability was found in SourceCodester Student Result Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality …

Jun 22, 2025
CVE-2025-6476
4.3 MEDIUM

A vulnerability was found in SourceCodester Gym Management System 1.0. It has been classified as problematic. Affected is an unknown function. The manipulation leads to …

Jun 22, 2025
CVE-2025-6475
2.4 LOW

A vulnerability was found in SourceCodester Student Result Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file /script/admin/manage_students …

Jun 22, 2025
CVE-2025-6474
7.3 HIGH

A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /changeUsername.php. The …

Jun 22, 2025
CVE-2025-6473
4.3 MEDIUM

A vulnerability, which was classified as problematic, was found in code-projects School Fees Payment System 1.0. This affects an unknown part of the file /fees.php. …

Jun 22, 2025
CVE-2025-6472
7.3 HIGH

A vulnerability, which was classified as critical, has been found in code-projects Online Bidding System 1.0. Affected by this issue is some unknown functionality of …

Jun 22, 2025
CVE-2025-6471
7.3 HIGH

A vulnerability classified as critical was found in code-projects Online Bidding System 1.0. Affected by this vulnerability is an unknown functionality of the file /administrator. …

Jun 22, 2025
CVE-2025-6470
7.3 HIGH

A vulnerability classified as critical has been found in code-projects Online Bidding System 1.0. Affected is an unknown function of the file /bidlog.php. The manipulation …

Jun 22, 2025
CVE-2025-6469
7.3 HIGH

A vulnerability was found in code-projects Online Bidding System 1.0. It has been rated as critical. This issue affects some unknown processing of the file …

Jun 22, 2025
CVE-2025-6468
7.3 HIGH

A vulnerability was found in code-projects Online Bidding System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /bidnow.php. …

Jun 22, 2025
CVE-2025-6467
7.3 HIGH

A vulnerability was found in code-projects Online Bidding System 1.0. It has been classified as critical. This affects an unknown part of the file /login.php. …

Jun 22, 2025
CVE-2025-6466
6.3 MEDIUM

A vulnerability was found in ageerle ruoyi-ai 2.0.0 and classified as critical. Affected by this issue is the function speechToTextTranscriptionsV2/upload of the file ruoyi-modules/ruoyi-system/src/main/java/org/ruoyi/system/service/impl/SseServiceImpl.java. The …

Jun 22, 2025
CVE-2025-6458
7.3 HIGH

A vulnerability has been found in code-projects Online Hotel Reservation System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/execedituser.php. …

Jun 22, 2025
CVE-2025-6457
7.3 HIGH

A vulnerability, which was classified as critical, was found in code-projects Online Hotel Reservation System 1.0. This affects an unknown part of the file /reservation/demo.php. …

Jun 22, 2025
CVE-2025-6456
7.3 HIGH

A vulnerability, which was classified as critical, has been found in code-projects Online Hotel Reservation System 1.0. Affected by this issue is some unknown functionality …

Jun 22, 2025
CVE-2025-6455
7.3 HIGH

A vulnerability classified as critical was found in code-projects Online Hotel Reservation System 1.0. Affected by this vulnerability is an unknown functionality of the file …

Jun 22, 2025
CVE-2025-6453
6.3 MEDIUM

A vulnerability classified as critical has been found in diyhi bbs 6.8. Affected is the function Add of the file /src/main/java/cms/web/action/template/ForumManageAction.java of the component API. …

Jun 22, 2025
CVE-2025-6452
2.4 LOW

A vulnerability was found in CodeAstro Patient Record Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the …

Jun 22, 2025
CVE-2025-6451
7.3 HIGH

A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical. This vulnerability affects unknown code of the …

Jun 22, 2025
CVE-2025-6450
7.3 HIGH

A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been classified as critical. This affects an unknown part of the …

Jun 22, 2025
CVE-2025-6449
7.3 HIGH

A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0 and classified as critical. Affected by this issue is some unknown functionality of …

Jun 22, 2025
CVE-2025-52923
4.3 MEDIUM

Sangfor aTrust through 2.4.10 allows users to modify the ExecStartPre command.

Jun 22, 2025
CVE-2025-6448
7.3 HIGH

A vulnerability has been found in code-projects Simple Online Hotel Reservation System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality …

Jun 22, 2025
CVE-2025-6447
7.3 HIGH

A vulnerability, which was classified as critical, was found in code-projects Simple Online Hotel Reservation System 1.0. Affected is an unknown function of the file …

Jun 22, 2025
CVE-2025-6446
7.3 HIGH

A vulnerability, which was classified as critical, has been found in code-projects Client Details System 1.0. This issue affects some unknown processing of the file …

Jun 21, 2025
CVE-2025-6422
6.3 MEDIUM

A vulnerability classified as critical was found in Campcodes Online Recruitment Management System 1.0. Affected by this vulnerability is an unknown functionality of the file …

Jun 21, 2025
CVE-2025-52919
4.3 MEDIUM

In Yealink RPS before 2025-05-26, the certificate upload function does not properly validate certificate content, potentially allowing invalid certificates to be uploaded.

Jun 21, 2025
CVE-2025-52918
5.0 MEDIUM

Yealink RPS before 2025-05-26 does not prevent OpenAPI access by frozen enterprise accounts, allowing unauthorized access to deactivated interfaces.

Jun 21, 2025
CVE-2025-52917
4.3 MEDIUM

The Yealink RPS API before 2025-05-26 lacks rate limiting, potentially enabling information disclosure via excessive requests.

Jun 21, 2025
CVE-2025-52916
2.2 LOW

Yealink RPS before 2025-06-04 lacks SN verification attempt limits, enabling brute-force enumeration (last five digits).

Jun 21, 2025
CVE-2025-6421
7.3 HIGH

A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been rated as critical. This issue affects some unknown processing of …

Jun 21, 2025
CVE-2025-6420
7.3 HIGH

A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical. This vulnerability affects unknown code of the …

Jun 21, 2025
CVE-2025-1987
6.1 MEDIUM

A Cross-Site Scripting (XSS) vulnerability has been identified in Psono-Client’s handling of vault entries of type website_password and bookmark, as used in Bitdefender SecurePass. The …

Jun 21, 2025
CVE-2025-6419
7.3 HIGH

A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been classified as critical. This affects an unknown part of the …

Jun 21, 2025
CVE-2025-6418
7.3 HIGH

A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0 and classified as critical. Affected by this issue is some unknown functionality of …

Jun 21, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.