CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-6304
7.3 HIGH

A vulnerability was found in code-projects Online Shoe Store 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file …

Jun 20, 2025
CVE-2025-6303
7.3 HIGH

A vulnerability has been found in code-projects Online Shoe Store 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the …

Jun 20, 2025
CVE-2025-6302
8.8 HIGH

A vulnerability, which was classified as critical, was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. Affected is the function setStaticDhcpConfig of the file /cgi-bin/cstecgi.cgi. The manipulation of …

Jun 20, 2025
CVE-2025-6301
2.4 LOW

A vulnerability, which was classified as problematic, has been found in PHPGurukul Notice Board System 1.0. This issue affects some unknown processing of the file …

Jun 20, 2025
CVE-2025-6300
7.3 HIGH

A vulnerability classified as critical was found in PHPGurukul Employee Record Management System 1.3. This vulnerability affects unknown code of the file /admin/editempeducation.php. The manipulation …

Jun 20, 2025
CVE-2025-6299
4.7 MEDIUM

A vulnerability classified as critical has been found in TOTOLINK N150RT 3.4.0-B20190525. This affects an unknown part of the file /boa/formWSC. The manipulation of the …

Jun 20, 2025
CVE-2025-6264
5.5 MEDIUM

Velociraptor allows collection of VQL queries packaged into Artifacts from endpoints. These artifacts can be used to do anything and usually run with elevated permissions. …

Jun 20, 2025
CVE-2025-6296
7.3 HIGH

A vulnerability was found in code-projects Hostel Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of …

Jun 20, 2025
CVE-2025-6295
7.3 HIGH

A vulnerability was found in code-projects Hostel Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of …

Jun 20, 2025
CVE-2025-6294
7.3 HIGH

A vulnerability was found in code-projects Hostel Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /contact.php. …

Jun 20, 2025
CVE-2025-6293
7.3 HIGH

A vulnerability was found in code-projects Hostel Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /contact_manager.php. The …

Jun 20, 2025
CVE-2025-6292
8.8 HIGH

A vulnerability has been found in D-Link DIR-825 2.03 and classified as critical. This vulnerability affects the function sub_4091AC of the component HTTP POST Request …

Jun 20, 2025
CVE-2025-6291
8.8 HIGH

A vulnerability, which was classified as critical, was found in D-Link DIR-825 2.03. This affects the function do_file of the component HTTP POST Request Handler. …

Jun 20, 2025
CVE-2025-6288
2.4 LOW

A vulnerability, which was classified as problematic, has been found in PHPGurukul Bus Pass Management System 1.0. Affected by this issue is some unknown functionality …

Jun 20, 2025
CVE-2025-49715
7.5 HIGH

Exposure of private personal information to an unauthorized actor in Dynamics 365 FastTrack Implementation Assets allows an unauthorized attacker to disclose information over a network.

Jun 20, 2025
CVE-2025-48058

PowSyBl (Power System Blocks) is a framework to build power system oriented software. Prior to version 6.7.2, there is a potential polynomial Regular Expression Denial …

Jun 20, 2025
CVE-2025-6287
3.5 LOW

A vulnerability classified as problematic was found in PHPGurukul COVID19 Testing Management System 1.0. Affected by this vulnerability is an unknown functionality of the file …

Jun 20, 2025
CVE-2025-47771

PowSyBl (Power System Blocks) is a framework to build power system oriented software. In versions 6.3.0 to 6.7.1, there is a deserialization issue in the …

Jun 20, 2025
CVE-2025-6286
3.5 LOW

A vulnerability classified as problematic has been found in PHPGurukul COVID19 Testing Management System 2021. Affected is an unknown function of the file /search-report-result.php. The …

Jun 19, 2025
CVE-2025-6285
4.3 MEDIUM

A vulnerability was found in PHPGurukul COVID19 Testing Management System 2021. It has been rated as problematic. This issue affects some unknown processing of the …

Jun 19, 2025
CVE-2025-6284
4.3 MEDIUM

A vulnerability was found in PHPGurukul Car Rental Portal 3.0. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to …

Jun 19, 2025
CVE-2025-6283
3.5 LOW

A vulnerability was found in xataio Xata Agent up to 0.3.0. It has been classified as problematic. This affects the function GET of the file …

Jun 19, 2025
CVE-2025-6282
5.5 MEDIUM

A vulnerability was found in xlang-ai OpenAgents up to ff2e46440699af1324eb25655b622c4a131265bb and classified as critical. Affected by this issue is the function create_upload_file of the file …

Jun 19, 2025
CVE-2025-6281
5.5 MEDIUM

A vulnerability has been found in OpenBMB XAgent up to 1.0.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the …

Jun 19, 2025
CVE-2025-6280
5.5 MEDIUM

A vulnerability, which was classified as critical, was found in TransformerOptimus SuperAGI up to 0.0.14. Affected is the function download_attachment of the file SuperAGI/superagi/helper/read_email.py of …

Jun 19, 2025
CVE-2025-47293

PowSyBl (Power System Blocks) is a framework to build power system oriented software. Prior to version 6.7.2, in certain places, powsybl-core XML parsing is vulnerable …

Jun 19, 2025
CVE-2025-6384
9.1 CRITICAL

Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of CrafterCMS allows authenticated developers to execute OS commands via Groovy Sandbox Bypass. By inserting …

Jun 19, 2025
CVE-2025-6279
5.5 MEDIUM

A vulnerability, which was classified as critical, has been found in Upsonic up to 0.55.6. This issue affects the function cloudpickle.loads of the file /tools/add_tool …

Jun 19, 2025
CVE-2025-6278
5.5 MEDIUM

A vulnerability classified as critical was found in Upsonic up to 0.55.6. This vulnerability affects the function os.path.join of the file markdown/server.py. The manipulation of …

Jun 19, 2025
CVE-2025-6277
6.3 MEDIUM

A vulnerability classified as critical has been found in Brilliance Golden Link Secondary System up to 20250609. This affects an unknown part of the file …

Jun 19, 2025
CVE-2025-6276
6.3 MEDIUM

A vulnerability was found in Brilliance Golden Link Secondary System up to 20250609. It has been rated as critical. Affected by this issue is some …

Jun 19, 2025
CVE-2025-6275
3.3 LOW

A vulnerability was found in WebAssembly wabt up to 1.0.37. It has been declared as problematic. Affected by this vulnerability is the function GetFuncOffset of …

Jun 19, 2025
CVE-2025-6274
3.3 LOW

A vulnerability was found in WebAssembly wabt up to 1.0.37. It has been classified as problematic. Affected is the function OnDataCount of the file src/interp/binary-reader-interp.cc. …

Jun 19, 2025
CVE-2025-6273
3.3 LOW

A vulnerability was found in WebAssembly wabt up to 1.0.37 and classified as problematic. This issue affects the function LogOpcode of the file src/binary-reader-objdump.cc. The …

Jun 19, 2025
CVE-2025-6272
3.3 LOW

A vulnerability has been found in wasm3 0.5.0 and classified as problematic. This vulnerability affects the function MarkSlotAllocated of the file source/m3_compile.c. The manipulation leads …

Jun 19, 2025
CVE-2025-6271
3.3 LOW

A vulnerability, which was classified as problematic, was found in swftools up to 0.9.2. This affects the function wav_convert2mono in the library lib/wav.c of the …

Jun 19, 2025
CVE-2025-36050
6.2 MEDIUM

IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 stores potentially sensitive information in log files that could be read by a local user.

Jun 19, 2025
CVE-2025-33121
7.1 HIGH

IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote …

Jun 19, 2025
CVE-2025-33117
9.1 CRITICAL

IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 could allow a privileged user to modify configuration files that would allow the upload of a …

Jun 19, 2025
CVE-2025-6270
5.3 MEDIUM

A vulnerability, which was classified as critical, has been found in HDF5 up to 1.14.6. Affected by this issue is the function H5FS__sect_find_node of the …

Jun 19, 2025
CVE-2025-50200
5.5 MEDIUM

RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and prior, RabbitMQ is logging authorization headers in plaintext encoded in base64. When querying RabbitMQ …

Jun 19, 2025
CVE-2025-6269
5.3 MEDIUM

A vulnerability classified as critical was found in HDF5 up to 1.14.6. Affected by this vulnerability is the function H5C__reconstruct_cache_entry of the file H5Cimage.c. The …

Jun 19, 2025
CVE-2025-52464
8.3 HIGH

Meshtastic is an open source mesh networking solution. In versions from 2.5.0 to before 2.6.11, the flashing procedure of several hardware vendors was resulting in …

Jun 19, 2025
CVE-2006-2192

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Jun 19, 2025
CVE-2025-6268
4.3 MEDIUM

A vulnerability classified as problematic has been found in Luna Imaging up to 7.5.5.6. Affected is an unknown function of the file /luna/servlet/view/search. The manipulation …

Jun 19, 2025
CVE-2025-49014

jq is a command-line JSON processor. In version 1.8.0 a heap use after free vulnerability exists within the function f_strflocaltime of /src/builtin.c. This issue has …

Jun 19, 2025
CVE-2025-48886
4.8 MEDIUM

Hydra is a layer-two scalability solution for Cardano. Prior to version 0.22.0, the process assumes L1 event finality and does not consider failed transactions. Currently, …

Jun 19, 2025
CVE-2025-6267
6.3 MEDIUM

A vulnerability was found in zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1.0.0. It has been rated as critical. This issue affects some unknown processing …

Jun 19, 2025
CVE-2024-24916
6.5 MEDIUM

Untrusted DLLs in the installer's directory may be loaded and executed, leading to potentially arbitrary code execution with the installer's privileges (admin).

Jun 19, 2025
CVE-2025-4738
9.8 CRITICAL

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yirmibes Software MY ERP allows SQL Injection.This issue affects MY ERP: …

Jun 19, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.