CVE Database

9973+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-36540
9.8 CRITICAL

Insecure permissions in external-secrets v0.9.16 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.

Jul 24, 2024
CVE-2024-36539
9.8 CRITICAL

Insecure permissions in contour v1.28.3 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.

Jul 24, 2024
CVE-2024-40422
9.1 CRITICAL

The snapshot_path parameter in the /api/get-browser-snapshot endpoint in stitionai devika v1 is susceptible to a path traversal attack. An attacker can manipulate the snapshot_path parameter …

Jul 24, 2024
CVE-2024-6327
9.9 CRITICAL

In Progress® Telerik® Report Server versions prior to 2024 Q2 (10.1.24.709), a remote code execution attack is possible through an insecure deserialization vulnerability.

Jul 24, 2024
CVE-2023-45249
9.8 CRITICAL KEV

Remote command execution due to use of default passwords. The following products are affected: Acronis Cyber Infrastructure (ACI) before build 5.0.1-61, Acronis Cyber Infrastructure (ACI) …

Jul 24, 2024
CVE-2024-38164
9.6 CRITICAL

An improper access control vulnerability in GroupMe allows an a unauthenticated attacker to elevate privileges over a network by convincing a user to click on …

Jul 23, 2024
CVE-2024-41319
9.8 CRITICAL

TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the cmd parameter in the webcmd function.

Jul 23, 2024
CVE-2024-29070
9.1 CRITICAL

On versions before 2.1.4, session is not invalidated after logout. When the user logged in successfully, the Backend service returns "Authorization" as the front-end authentication …

Jul 23, 2024
CVE-2024-6912
9.8 CRITICAL

Use of hard-coded MSSQL credentials in PerkinElmer ProcessPlus on Windows allows an attacker to login remove on all prone installations.This issue affects ProcessPlus: through 1.11.6507.0.

Jul 22, 2024
CVE-2024-6806
9.8 CRITICAL

The NI VeriStand Gateway is missing authorization checks when an actor attempts to access Project resources. These missing checks may result in remote code execution. …

Jul 22, 2024
CVE-2024-6794
9.8 CRITICAL

A deserialization of untrusted data vulnerability exists in NI VeriStand Waveform Streaming Server that may result in remote code execution. Successful exploitation requires an attacker …

Jul 22, 2024
CVE-2024-6793
9.8 CRITICAL

A deserialization of untrusted data vulnerability exists in NI VeriStand DataLogging Server that may result in remote code execution. Successful exploitation requires an attacker to …

Jul 22, 2024
CVE-2024-40502
9.8 CRITICAL

SQL injection vulnerability in Hospital Management System Project in ASP.Net MVC 1 allows aremote attacker to execute arbitrary code via the btn_login_b_Click function of the …

Jul 22, 2024
CVE-2024-39250
9.8 CRITICAL

EfroTech Timetrax v8.3 was discovered to contain an unauthenticated SQL injection vulnerability via the q parameter in the search web interface.

Jul 22, 2024
CVE-2024-38944
9.8 CRITICAL

An issue in Intelight X-1L Traffic controller Maxtime v.1.9.6 allows a remote attacker to execute arbitrary code via the /cgi-bin/generateForm.cgi?formID=142 component.

Jul 22, 2024
CVE-2024-28698
9.8 CRITICAL

Directory Traversal vulnerability in Marimer LLC CSLA .Net before 8.0 allows a remote attacker to execute arbitrary code via a crafted script to the MobileFormatter …

Jul 22, 2024
CVE-2024-39686
9.8 CRITICAL

Bert-VITS2 is the VITS2 Backbone with multilingual bert. User input supplied to the data_dir variable is used directly in a command executed with subprocess.run(cmd, shell=True) …

Jul 22, 2024
CVE-2024-39685
9.8 CRITICAL

Bert-VITS2 is the VITS2 Backbone with multilingual bert. User input supplied to the data_dir variable is used directly in a command executed with subprocess.run(cmd, shell=True) …

Jul 22, 2024
CVE-2024-26020
9.6 CRITICAL

An arbitrary script execution vulnerability exists in the MPV functionality of Ankitects Anki 24.04. A specially crafted flashcard can lead to a arbitrary code execution. …

Jul 22, 2024
CVE-2024-21552
9.8 CRITICAL

All versions of `SuperAGI` are vulnerable to Arbitrary Code Execution due to unsafe use of the ‘eval’ function. An attacker could induce the LLM output …

Jul 22, 2024
CVE-2024-41318
9.8 CRITICAL

TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_wps_gen_pincode function.

Jul 22, 2024
CVE-2024-41316
9.8 CRITICAL

TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_cancel_wps function.

Jul 22, 2024
CVE-2024-37998
9.8 CRITICAL

A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V5.40), SICORE Base system (All versions < V1.4.0). The password of administrative accounts …

Jul 22, 2024
CVE-2024-38773
9.3 CRITICAL

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Adrian Tobey FormLift for Infusionsoft Web Forms allows Blind SQL Injection.This …

Jul 22, 2024
CVE-2024-41704
9.8 CRITICAL

LibreChat through 0.7.4-rc1 does not validate the normalized pathnames of images.

Jul 22, 2024
CVE-2024-41703
9.8 CRITICAL

LibreChat through 0.7.4-rc1 has incorrect access control for message updates.

Jul 22, 2024
CVE-2024-38438
9.8 CRITICAL

D-Link - CWE-294: Authentication Bypass by Capture-replay

Jul 21, 2024
CVE-2024-38437
9.8 CRITICAL

D-Link - CWE-288:Authentication Bypass Using an Alternate Path or Channel

Jul 21, 2024
CVE-2024-6636
9.8 CRITICAL

The WooCommerce - Social Login plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'woo_slg_login_email' function …

Jul 20, 2024
CVE-2024-41603
9.6 CRITICAL

Spina CMS v2.18.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the URI /admin/layout.

Jul 19, 2024
CVE-2024-39962
9.8 CRITICAL

D-Link DIR-823X AX3000 Dual-Band Gigabit Wireless Router v21_D240126 was discovered to contain a remote code execution (RCE) vulnerability in the ntp_zone_val parameter at /goform/set_ntp. This …

Jul 19, 2024
CVE-2024-29736
9.1 CRITICAL

A SSRF vulnerability in WADL service description in versions of Apache CXF before 4.0.5, 3.6.4 and 3.5.9 allows an attacker to perform SSRF style attacks …

Jul 19, 2024
CVE-2024-6205
9.8 CRITICAL

The PayPlus Payment Gateway WordPress plugin before 6.6.9 does not properly sanitise and escape a parameter before using it in a SQL statement via a …

Jul 19, 2024
CVE-2024-35198
9.8 CRITICAL

TorchServe is a flexible and easy-to-use tool for serving and scaling PyTorch models in production. TorchServe 's check on allowed_urls configuration can be by-passed if …

Jul 19, 2024
CVE-2024-39173
9.8 CRITICAL

calculator-boilerplate v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the eval function at /routes/calculator.js. This vulnerability allows attackers to execute arbitrary …

Jul 18, 2024
CVE-2024-0857
9.8 CRITICAL

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Universal Software Inc. FlexWater Corporate Water Management allows SQL Injection.This issue …

Jul 18, 2024
CVE-2024-5619
9.6 CRITICAL

Authorization Bypass Through User-Controlled Key vulnerability in PruvaSoft Informatics Apinizer Management Console allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Apinizer Management Console: …

Jul 18, 2024
CVE-2024-5618
9.9 CRITICAL

Incorrect Permission Assignment for Critical Resource vulnerability in PruvaSoft Informatics Apinizer Management Console allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Apinizer Management …

Jul 18, 2024
CVE-2024-40629
10.0 CRITICAL

JumpServer is an open-source Privileged Access Management (PAM) tool that provides DevOps and IT teams with on-demand and secure access to SSH, RDP, Kubernetes, Database …

Jul 18, 2024
CVE-2024-40628
10.0 CRITICAL

JumpServer is an open-source Privileged Access Management (PAM) tool that provides DevOps and IT teams with on-demand and secure access to SSH, RDP, Kubernetes, Database …

Jul 18, 2024
CVE-2024-39911
10.0 CRITICAL

1Panel is a web-based linux server management control panel. 1Panel contains an unspecified sql injection via User-Agent handling. This issue has been addressed in version …

Jul 18, 2024
CVE-2024-39907
9.8 CRITICAL

1Panel is a web-based linux server management control panel. There are many sql injections in the project, and some of them are not well filtered, …

Jul 18, 2024
CVE-2024-6164
9.8 CRITICAL

The Filter & Grids WordPress plugin before 2.8.33 is vulnerable to Local File Inclusion via the post_layout parameter. This makes it possible for an unauthenticated …

Jul 18, 2024
CVE-2024-41184
9.8 CRITICAL

In the vrrp_ipsets_handler handler (fglobal_parser.c) of keepalived through 2.3.1, an integer overflow can occur. NOTE: this CVE Record might not be worthwhile because an empty …

Jul 18, 2024
CVE-2024-20419
10.0 CRITICAL

A vulnerability in the authentication system of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to change the password of …

Jul 17, 2024
CVE-2024-20401
9.8 CRITICAL

A vulnerability in the content scanning and message filtering features of Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to overwrite arbitrary files …

Jul 17, 2024
CVE-2024-6834
9.0 CRITICAL

A vulnerability in APIML Spring Cloud Gateway which leverages user privileges by unexpected signing proxied request by Zowe's client certificate. This allows access to a …

Jul 17, 2024
CVE-2024-28074
9.6 CRITICAL

It was discovered that a previous vulnerability was not completely fixed with SolarWinds Access Rights Manager. While some controls were implemented the researcher was able …

Jul 17, 2024
CVE-2024-23475
9.6 CRITICAL

The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulnerability allows an unauthenticated user to perform arbitrary file …

Jul 17, 2024
CVE-2024-23472
9.6 CRITICAL

SolarWinds Access Rights Manager (ARM) is susceptible to Directory Traversal vulnerability. This vulnerability allows an authenticated user to arbitrary read and delete files in ARM.

Jul 17, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.