CVE Database

121775+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-30091
7.8 HIGH

Win32k Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30090
7.0 HIGH

Microsoft Streaming Service Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30089
7.8 HIGH

Microsoft Streaming Service Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30088
7.0 HIGH KEV

Windows Kernel Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30087
7.8 HIGH

Win32k Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30086
7.8 HIGH

Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30085
7.8 HIGH

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30084
7.0 HIGH

Windows Kernel-Mode Driver Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30083
7.5 HIGH

Windows Standards-Based Storage Management Service Denial of Service Vulnerability

Jun 11, 2024
CVE-2024-30082
7.8 HIGH

Win32k Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30080
9.8 CRITICAL

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

Jun 11, 2024
CVE-2024-30078
8.8 HIGH

Windows Wi-Fi Driver Remote Code Execution Vulnerability

Jun 11, 2024
CVE-2024-30077
8.0 HIGH

Windows OLE Remote Code Execution Vulnerability

Jun 11, 2024
CVE-2024-30076
6.8 MEDIUM

Windows Container Manager Service Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30075
8.0 HIGH

Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability

Jun 11, 2024
CVE-2024-30074
8.0 HIGH

Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability

Jun 11, 2024
CVE-2024-30072
7.8 HIGH

Microsoft Event Trace Log File Parsing Remote Code Execution Vulnerability

Jun 11, 2024
CVE-2024-30070
7.5 HIGH

DHCP Server Service Denial of Service Vulnerability

Jun 11, 2024
CVE-2024-30069
4.7 MEDIUM

Windows Remote Access Connection Manager Information Disclosure Vulnerability

Jun 11, 2024
CVE-2024-30068
8.8 HIGH

Windows Kernel Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30067
5.5 MEDIUM

Winlogon Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30066
5.5 MEDIUM

Winlogon Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30065
5.5 MEDIUM

Windows Themes Denial of Service Vulnerability

Jun 11, 2024
CVE-2024-30064
8.8 HIGH

Windows Kernel Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-30063
6.7 MEDIUM

Windows Distributed File System (DFS) Remote Code Execution Vulnerability

Jun 11, 2024
CVE-2024-30062
7.8 HIGH

Windows Standards-Based Storage Management Service Remote Code Execution Vulnerability

Jun 11, 2024
CVE-2024-30052
4.7 MEDIUM

Visual Studio Remote Code Execution Vulnerability

Jun 11, 2024
CVE-2024-29060
6.7 MEDIUM

Visual Studio Elevation of Privilege Vulnerability

Jun 11, 2024
CVE-2024-26330
6.5 MEDIUM

An issue was discovered in Kape CyberGhostVPN 8.4.3.12823 on Windows. After a successful logout, user credentials remain in memory while the process is still open, …

Jun 11, 2024
CVE-2024-23518
4.3 MEDIUM

Missing Authorization vulnerability in Navneil Naicker ACF Photo Gallery Field.This issue affects ACF Photo Gallery Field: from n/a through 2.6.

Jun 11, 2024
CVE-2023-52227
4.3 MEDIUM

Missing Authorization vulnerability in MailerLite MailerLite – WooCommerce integration.This issue affects MailerLite – WooCommerce integration: from n/a through 2.0.8.

Jun 11, 2024
CVE-2023-52224
4.3 MEDIUM

Missing Authorization vulnerability in Revolut Revolut Gateway for WooCommerce.This issue affects Revolut Gateway for WooCommerce: from n/a through 4.9.7.

Jun 11, 2024
CVE-2023-48273
5.3 MEDIUM

Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Preloader for Website.This issue affects Preloader for Website: from n/a through 1.2.2.

Jun 11, 2024
CVE-2024-5813
5.9 MEDIUM

A medium severity vulnerability in BIPS has been identified where an authenticated attacker with high privileges can access the SSH private keys via an information …

Jun 11, 2024
CVE-2024-5812
3.3 LOW

A low severity vulnerability in BIPS has been identified where an attacker with high privileges or a compromised high privilege account can overwrite Read-Only smart …

Jun 11, 2024
CVE-2024-36650
7.5 HIGH

TOTOLINK AC1200 Wireless Dual Band Gigabit Router firmware A3100R V4.1.2cu.5247_B20211129, in the cgi function `setNoticeCfg` of the file `/lib/cste_modules/system.so`, the length of the user input …

Jun 11, 2024
CVE-2024-34822
5.3 MEDIUM

Missing Authorization vulnerability in weDevs weMail.This issue affects weMail: from n/a through 1.14.2.

Jun 11, 2024
CVE-2024-34821
5.3 MEDIUM

Missing Authorization vulnerability in Anssi Laitila Contact List contact-list.This issue affects Contact List: from n/a through <= 2.9.87.

Jun 11, 2024
CVE-2024-34819
5.3 MEDIUM

Missing Authorization vulnerability in Moreconvert Team MC Woocommerce Wishlist smart-wishlist-for-more-convert.This issue affects MC Woocommerce Wishlist: from n/a through <= 1.7.2.

Jun 11, 2024
CVE-2024-34753
5.3 MEDIUM

Missing Authorization vulnerability in SoftLab Radio Player.This issue affects Radio Player: from n/a through 2.0.73.

Jun 11, 2024
CVE-2024-32144
5.4 MEDIUM

Missing Authorization vulnerability in Welcart Inc. Welcart e-Commerce.This issue affects Welcart e-Commerce: from n/a through 2.9.14.

Jun 11, 2024
CVE-2024-23521
5.3 MEDIUM

Missing Authorization vulnerability in Happyforms.This issue affects Happyforms: from n/a through 1.25.10.

Jun 11, 2024
CVE-2024-23503
4.3 MEDIUM

Missing Authorization vulnerability in WPManageNinja LLC Ninja Tables.This issue affects Ninja Tables: from n/a through 5.0.6.

Jun 11, 2024
CVE-2023-52233
8.6 HIGH

Missing Authorization vulnerability in Post SMTP Post SMTP Mailer/Email Log.This issue affects Post SMTP Mailer/Email Log: from n/a through 2.8.6.

Jun 11, 2024
CVE-2023-51682
5.3 MEDIUM

Missing Authorization vulnerability in ibericode MC4WP.This issue affects MC4WP: from n/a through 4.9.9.

Jun 11, 2024
CVE-2023-51519
4.3 MEDIUM

Missing Authorization vulnerability in Soliloquy Team Slider by Soliloquy.This issue affects Slider by Soliloquy: from n/a through 2.7.2.

Jun 11, 2024
CVE-2024-37296
5.3 MEDIUM

The Aimeos HTML client provides Aimeos HTML components for e-commerce projects. Starting in version 2020.04.1 and prior to versions 2020.10.27, 2021.10.21, 2022.10.12, 2023.10.14, and 2024.04.5, …

Jun 11, 2024
CVE-2024-37295
7.2 HIGH

Aimeos is an Open Source e-commerce framework for online shops. Starting in version 2024.01.1 and prior to version 2024.04.5, a user with administrative privileges can …

Jun 11, 2024
CVE-2024-37294
5.5 MEDIUM

Aimeos is an Open Source e-commerce framework for online shops. All SaaS and marketplace setups using Aimeos version from 2022/2023/2024 are affected by a potential …

Jun 11, 2024
CVE-2024-37161
4.0 MEDIUM

MeterSphere is an open source continuous testing platform. Prior to version 1.10.1-lts, the system's step editor stores cross-site scripting vulnerabilities. Version 1.10.1-lts fixes this issue.

Jun 11, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.