CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-44952
7.8 HIGH

A missing length check in `ogs_pfcp_subnet_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 and earlier, allows a local attacker …

Jun 18, 2025
CVE-2025-44951
7.1 HIGH

A missing length check in `ogs_pfcp_dev_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 and earlier, allows a local attacker …

Jun 18, 2025
CVE-2025-36049
8.8 HIGH

IBM webMethods Integration Server 10.5, 10.7, 10.11, and 10.15 is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote …

Jun 18, 2025
CVE-2025-36048
7.2 HIGH

IBM webMethods Integration Server 10.5, 10.7, 10.11, and 10.15 could allow a privileged user to escalate their privileges when handling external entities due to execution …

Jun 18, 2025
CVE-2024-54183
5.4 MEDIUM

IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 is vulnerable to cross-site scripting. This vulnerability allows an …

Jun 18, 2025
CVE-2025-6240

Improper Input Validation vulnerability in Profisee on Windows (filesystem modules) allows Path Traversal after authentication to the Profisee system.This issue affects Profisee: from 2020R1 before …

Jun 18, 2025
CVE-2025-46109
8.8 HIGH

SQL Injection vulnerability in pbootCMS v.3.2.5 and v.3.2.10 allows a remote attacker to obtain sensitive information via a crafted GET request

Jun 18, 2025
CVE-2025-45786
8.1 HIGH

Real Estate Management 1.0 is vulnerable to Cross Site Scripting (XSS) in /store/index.php.

Jun 18, 2025
CVE-2025-49015
4.9 MEDIUM

The Couchbase .NET SDK (client library) before 3.7.1 does not properly enable hostname verification for TLS certificates. In fact, the SDK was also using IP …

Jun 18, 2025
CVE-2025-46157
9.9 CRITICAL

An issue in EfroTech Time Trax v.1.0 allows a remote attacker to execute arbitrary code via the file attachment function in the leave request form

Jun 18, 2025
CVE-2025-45784
9.8 CRITICAL

D-Link DPH-400S/SE VoIP Phone v1.01 contains hardcoded provisioning variables, including PROVIS_USER_PASSWORD, which may expose sensitive user credentials. An attacker with access to the firmware image …

Jun 18, 2025
CVE-2025-45661
5.9 MEDIUM

A cross-site scripting (XSS) vulnerability in miniTCG v1.3.1 beta allows attackers to execute abritrary web scripts or HTML via injecting a crafted payload into the …

Jun 18, 2025
CVE-2025-6220
7.2 HIGH

The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'save_options' …

Jun 18, 2025
CVE-2022-50232
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: arm64: set UXN on swapper page tables [ This issue was fixed upstream by accident …

Jun 18, 2025
CVE-2022-50231
7.1 HIGH

In the Linux kernel, the following vulnerability has been resolved: crypto: arm64/poly1305 - fix a read out-of-bound A kasan error was reported during fuzzing: BUG: …

Jun 18, 2025
CVE-2022-50230
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: arm64: set UXN on swapper page tables [ This issue was fixed upstream by accident …

Jun 18, 2025
CVE-2022-50229
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: ALSA: bcd2000: Fix a UAF bug on the error path of probing When the driver …

Jun 18, 2025
CVE-2022-50228
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Don't BUG if userspace injects an interrupt with GIF=0 Don't BUG/WARN on interrupt …

Jun 18, 2025
CVE-2022-50227
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: KVM: x86/xen: Initialize Xen timer only once Add a check for existing xen timers before …

Jun 18, 2025
CVE-2022-50226
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Use kzalloc for sev ioctl interfaces to prevent kernel memory leak For …

Jun 18, 2025
CVE-2022-50225
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: riscv:uprobe fix SR_SPIE set/clear handling In riscv the process of uprobe going to clear spie …

Jun 18, 2025
CVE-2022-50224
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Treat NX as a valid SPTE bit for NPT Treat the NX bit …

Jun 18, 2025
CVE-2022-50223
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: LoongArch: cpuinfo: Fix a warning for CONFIG_CPUMASK_OFFSTACK When CONFIG_CPUMASK_OFFSTACK and CONFIG_DEBUG_PER_CPU_MAPS is selected, cpu_max_bits_warn() generates …

Jun 18, 2025
CVE-2022-50222
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: tty: vt: initialize unicode screen buffer syzbot reports kernel infoleak at vcs_read() [1], for buffer …

Jun 18, 2025
CVE-2022-50221
7.1 HIGH

In the Linux kernel, the following vulnerability has been resolved: drm/fb-helper: Fix out-of-bounds access Clip memory range to screen-buffer size to avoid out-of-bounds access in …

Jun 18, 2025
CVE-2022-50220
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: usbnet: Fix linkwatch use-after-free on disconnect usbnet uses the work usbnet_deferred_kevent() to perform tasks which …

Jun 18, 2025
CVE-2022-50219
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix KASAN use-after-free Read in compute_effective_progs Syzbot found a Use After Free bug in …

Jun 18, 2025
CVE-2022-50218
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: iio: light: isl29028: Fix the warning in isl29028_remove() The driver use the non-managed form of …

Jun 18, 2025
CVE-2022-50217
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: fuse: write inode in fuse_release() A race between write(2) and close(2) allows pages to be …

Jun 18, 2025
CVE-2022-50216

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Jun 18, 2025
CVE-2022-50215
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: scsi: sg: Allow waiting for commands to complete on removed device When a SCSI device …

Jun 18, 2025
CVE-2022-50214
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: coresight: Clear the connection field properly coresight devices track their connections (output connections) and hold …

Jun 18, 2025
CVE-2022-50213
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: do not allow SET_ID to refer to another table When doing lookups for …

Jun 18, 2025
CVE-2022-50212
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: do not allow CHAIN_ID to refer to another table When doing lookups for …

Jun 18, 2025
CVE-2022-50211
7.1 HIGH

In the Linux kernel, the following vulnerability has been resolved: md-raid10: fix KASAN warning There's a KASAN warning in raid10_remove_disk when running the lvm test …

Jun 18, 2025
CVE-2022-50210
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: MIPS: cpuinfo: Fix a warning for CONFIG_CPUMASK_OFFSTACK When CONFIG_CPUMASK_OFFSTACK and CONFIG_DEBUG_PER_CPU_MAPS is selected, cpu_max_bits_warn() generates …

Jun 18, 2025
CVE-2022-50209
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: meson-mx-socinfo: Fix refcount leak in meson_mx_socinfo_init of_find_matching_node() returns a node pointer with refcount incremented, we …

Jun 18, 2025
CVE-2022-50208
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: soc: amlogic: Fix refcount leak in meson-secure-pwrc.c In meson_secure_pwrc_probe(), there is a refcount leak in …

Jun 18, 2025
CVE-2022-50207
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ARM: bcm: Fix refcount leak in bcm_kona_smc_init of_find_matching_node() returns a node pointer with refcount incremented, …

Jun 18, 2025
CVE-2022-50206
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: arm64: fix oops in concurrently setting insn_emulation sysctls emulation_proc_handler() changes table->data for proc_dointvec_minmax and can …

Jun 18, 2025
CVE-2022-50205
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ext2: Add more validity checks for inode counts Add checks verifying number of inodes stored …

Jun 18, 2025
CVE-2022-50204
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ARM: OMAP2+: pdata-quirks: Fix refcount leak bug In pdata_quirks_init_clocks(), the loop contains of_find_node_by_name() but without …

Jun 18, 2025
CVE-2022-50203
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ARM: OMAP2+: display: Fix refcount leak bug In omapdss_init_fbdev(), of_find_node_by_name() will return a node pointer …

Jun 18, 2025
CVE-2022-50202
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: PM: hibernate: defer device probing when resuming from hibernation syzbot is reporting hung task at …

Jun 18, 2025
CVE-2022-50201
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: selinux: fix memleak in security_read_state_kernel() In this function, it directly returns the result of __security_read_policy …

Jun 18, 2025
CVE-2022-50200
7.1 HIGH

In the Linux kernel, the following vulnerability has been resolved: selinux: Add boundary check in put_entry() Just like next_entry(), boundary check is necessary to prevent …

Jun 18, 2025
CVE-2022-50199
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ARM: OMAP2+: Fix refcount leak in omapdss_init_of omapdss_find_dss_of_node() calls of_find_compatible_node() to get device node. of_find_compatible_node() …

Jun 18, 2025
CVE-2022-50198
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ARM: OMAP2+: Fix refcount leak in omap3xxx_prm_late_init of_find_matching_node() returns a node pointer with refcount incremented, …

Jun 18, 2025
CVE-2022-50197
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: cpufreq: zynq: Fix refcount leak in zynq_get_revision of_find_compatible_node() returns a node pointer with refcount incremented, …

Jun 18, 2025
CVE-2022-50196
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: soc: qcom: ocmem: Fix refcount leak in of_get_ocmem of_parse_phandle() returns a node pointer with refcount …

Jun 18, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.