CVE Database

38971+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-11327
8.8 HIGH

A security vulnerability has been detected in Tenda AC18 15.03.05.19(6318). This vulnerability affects unknown code of the file /goform/SetUpnpCfg. The manipulation of the argument upnpEn …

Oct 6, 2025
CVE-2025-11326
8.8 HIGH

A weakness has been identified in Tenda AC18 15.03.05.19(6318). This affects an unknown part of the file /goform/WifiMacFilterSet. Executing a manipulation of the argument wifi_chkHz …

Oct 6, 2025
CVE-2025-11325
8.8 HIGH

A security flaw has been discovered in Tenda AC18 15.03.05.19(6318). Affected by this issue is some unknown functionality of the file /goform/fast_setting_pppoe_set. Performing a manipulation …

Oct 6, 2025
CVE-2025-11324
8.8 HIGH

A vulnerability was identified in Tenda AC18 15.03.05.19(6318). Affected by this vulnerability is an unknown functionality of the file /goform/setNotUpgrade. Such manipulation of the argument …

Oct 6, 2025
CVE-2025-57781
7.8 HIGH

The installers of DENSO TEN drive recorder viewer contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries. …

Oct 6, 2025
CVE-2025-11323
8.8 HIGH

A vulnerability was determined in UTT 1250GW up to v2v3.2.2-200710. Affected is the function strcpy of the file /goform/formUserStatusRemark. This manipulation of the argument Username …

Oct 6, 2025
CVE-2025-11318
7.3 HIGH

A security flaw has been discovered in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This vulnerability affects unknown code of the file uploadWxFile.do. The …

Oct 6, 2025
CVE-2025-11317
7.3 HIGH

A vulnerability was identified in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This affects the function findRolePage of the file findSingConfigPage.do. The manipulation of …

Oct 6, 2025
CVE-2025-11316
7.3 HIGH

A vulnerability was determined in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected by this issue is the function findCategoryPage of the file findCategoryPage.do. …

Oct 6, 2025
CVE-2025-50538
8.2 HIGH

Flowise before 3.0.5 allows XSS via an IFRAME element when an admin views the chat log.

Oct 6, 2025
CVE-2025-29192
8.2 HIGH

Flowise before 3.0.5 allows XSS via a FORM element and an INPUT element when an admin views the chat log.

Oct 6, 2025
CVE-2025-11315
7.3 HIGH

A vulnerability was found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected by this vulnerability is the function findUserPage of the file findUserPage.do. …

Oct 6, 2025
CVE-2025-11314
7.3 HIGH

A vulnerability has been found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected is the function findRolePage of the file findSingConfigPage.do. Such manipulation …

Oct 6, 2025
CVE-2025-11313
7.3 HIGH

A flaw has been found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This impacts the function findRolePage of the file findRolePage.do. This manipulation …

Oct 6, 2025
CVE-2025-11312
7.3 HIGH

A vulnerability was detected in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This affects the function findModulePage of the file findModulePage.do. The manipulation of …

Oct 6, 2025
CVE-2025-11311
7.3 HIGH

A security vulnerability has been detected in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. The impacted element is the function findTenantPage of the file …

Oct 6, 2025
CVE-2025-11310
7.3 HIGH

A weakness has been identified in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. The affected element is the function findFileServerPage of the file findFileServerPage.do. …

Oct 6, 2025
CVE-2025-11309
7.3 HIGH

A security flaw has been discovered in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Impacted is the function doFilter of the file findDeptPage.do. Performing …

Oct 5, 2025
CVE-2025-11305
8.8 HIGH

A vulnerability has been found in UTT HiPER 840G up to 3.1.1-190328. Affected by this issue is the function strcpy of the file /goform/formTaskEdit. The …

Oct 5, 2025
CVE-2025-11302
8.8 HIGH

A security vulnerability has been detected in Belkin F9K1015 1.00.10. This impacts an unknown function of the file /goform/formWpsStart. Such manipulation of the argument pinCode …

Oct 5, 2025
CVE-2025-11301
8.8 HIGH

A weakness has been identified in Belkin F9K1015 1.00.10. This affects an unknown function of the file /goform/formWlanSetupWPS. This manipulation of the argument webpage causes …

Oct 5, 2025
CVE-2025-11300
8.8 HIGH

A security flaw has been discovered in Belkin F9K1015 1.00.10. The impacted element is an unknown function of the file /goform/formWlanMP. The manipulation of the …

Oct 5, 2025
CVE-2025-11299
8.8 HIGH

A vulnerability was identified in Belkin F9K1015 1.00.10. The affected element is an unknown function of the file /goform/formWanTcpipSetup. The manipulation of the argument pppUserName …

Oct 5, 2025
CVE-2025-11297
8.8 HIGH

A vulnerability was found in Belkin F9K1015 1.00.10. This issue affects some unknown processing of the file /goform/formSetLanguage. Performing a manipulation of the argument webpage …

Oct 5, 2025
CVE-2025-11296
8.8 HIGH

A vulnerability has been found in Belkin F9K1015 1.00.10. This vulnerability affects unknown code of the file /goform/formPPTPSetup. Such manipulation of the argument pptpUserName leads …

Oct 5, 2025
CVE-2025-11295
8.8 HIGH

A flaw has been found in Belkin F9K1015 1.00.10. This affects an unknown part of the file /goform/formPPPoESetup. This manipulation of the argument pppUserName causes …

Oct 5, 2025
CVE-2025-11294
8.8 HIGH

A vulnerability was detected in Belkin F9K1015 1.00.10. Affected by this issue is some unknown functionality of the file /goform/formL2TPSetup. The manipulation of the argument …

Oct 5, 2025
CVE-2025-11293
8.8 HIGH

A security vulnerability has been detected in Belkin F9K1015 1.00.10. Affected by this vulnerability is an unknown functionality of the file /goform/formConnectionSetting. The manipulation of …

Oct 5, 2025
CVE-2025-8406
7.8 HIGH

ZenML version 0.83.1 is affected by a path traversal vulnerability in the `PathMaterializer` class. The `load` function uses `is_path_within_directory` to validate files during `data.tar.gz` extraction, …

Oct 5, 2025
CVE-2025-11287
7.3 HIGH

A vulnerability was identified in samanhappy MCPHub up to 0.9.10. This vulnerability affects the function handleSseConnectionfunction of the file src/services/sseService.ts. Such manipulation leads to improper …

Oct 5, 2025
CVE-2025-11284
7.3 HIGH

A vulnerability has been found in Zytec Dalian Zhuoyun Technology Central Authentication Service 3. Affected by this vulnerability is an unknown functionality of the file …

Oct 5, 2025
CVE-2023-53616
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: jfs: fix invalid free of JFS_IP(ipimap)->i_imap in diUnmount syzbot found an invalid-free in diUnmount: BUG: …

Oct 4, 2025
CVE-2023-53613
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: dax: Fix dax_mapping_release() use after free A CONFIG_DEBUG_KOBJECT_RELEASE test of removing a device-dax region provider …

Oct 4, 2025
CVE-2023-53608
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix potential UAF of struct nilfs_sc_info in nilfs_segctor_thread() The finalization of nilfs_segctor_thread() can race …

Oct 4, 2025
CVE-2023-53604
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path Otherwise the journal_io_cache will leak if dm_register_target() …

Oct 4, 2025
CVE-2023-53600
7.1 HIGH

In the Linux kernel, the following vulnerability has been resolved: tunnels: fix kasan splat when generating ipv4 pmtu error If we try to emit an …

Oct 4, 2025
CVE-2023-53596
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: drivers: base: Free devm resources when unregistering a device In the current code, devres_release_all() only …

Oct 4, 2025
CVE-2023-53587
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Sync IRQ works before buffer destruction If something was written to the buffer just …

Oct 4, 2025
CVE-2023-53578
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: net: qrtr: Fix an uninit variable access bug in qrtr_tx_resume() Syzbot reported a bug as …

Oct 4, 2025
CVE-2023-53577
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: bpf, cpumap: Make sure kthread is running before map update returns The following warning was …

Oct 4, 2025
CVE-2023-53575
7.1 HIGH

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix potential array out of bounds access Account for IWL_SEC_WEP_KEY_OFFSET when needed …

Oct 4, 2025
CVE-2023-53572
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: clk: imx: scu: use _safe list iterator to avoid a use after free This loop …

Oct 4, 2025
CVE-2023-53570
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: fix integer overflow in nl80211_parse_mbssid_elems() nl80211_parse_mbssid_elems() uses a u8 variable num_elems to count …

Oct 4, 2025
CVE-2023-53569
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: ext2: Check block size validity during mount Check that log of block size stored in …

Oct 4, 2025
CVE-2023-53560
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: tracing/histograms: Add histograms to hist_vars if they have referenced variables Hist triggers can have referenced …

Oct 4, 2025
CVE-2023-53559
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: ip_vti: fix potential slab-use-after-free in decode_session6 When ip_vti device is set to the qdisc of …

Oct 4, 2025
CVE-2023-53556
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: iavf: Fix use-after-free in free_netdev We do netif_napi_add() for all allocated q_vectors[], but potentially do …

Oct 4, 2025
CVE-2023-53554
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: staging: ks7010: potential buffer overflow in ks_wlan_set_encode_ext() The "exc->key_len" is a u16 that comes from …

Oct 4, 2025
CVE-2023-53552
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: drm/i915: mark requests for GuC virtual engines to avoid use-after-free References to i915_requests may be …

Oct 4, 2025
CVE-2023-53544
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: cpufreq: davinci: Fix clk use after free The remove function first frees the clks and …

Oct 4, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.