CVE Database

4634+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2023-28903
3.3 LOW

An integer overflow in the image processing binary of the MIB3 infotainment unit allows an attacker with local access to the vehicle to cause a …

Jun 28, 2025
CVE-2023-28902
3.3 LOW

An integer underflow in the image processing binary of the MIB3 infotainment unit allows an attacker with local access to the vehicle to cause denial-of-service …

Jun 28, 2025
CVE-2025-6817
3.3 LOW

A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affects the function H5C__load_entry of the file /src/H5Centry.c. The manipulation …

Jun 28, 2025
CVE-2025-6816
3.3 LOW

A vulnerability classified as problematic was found in HDF5 1.14.6. This vulnerability affects the function H5O__fsinfo_encode of the file /src/H5Ofsinfo.c. The manipulation leads to heap-based …

Jun 28, 2025
CVE-2025-6778
2.4 LOW

A vulnerability, which was classified as problematic, was found in code-projects Food Distributor Site 1.0. Affected is an unknown function of the file /admin/save_settings.php. The …

Jun 27, 2025
CVE-2025-52992
3.2 LOW

The Nix, Lix, and Guix package managers fail to properly set permissions when a derivation build fails. This may allow arbitrary processes to modify the …

Jun 27, 2025
CVE-2025-52991
3.2 LOW

The Nix, Lix, and Guix package managers default to using temporary build directories in a world-readable and world-writable location. This allows standard users to deceive …

Jun 27, 2025
CVE-2025-46416
2.9 LOW

The Nix, Lix, and Guix package managers allow a bypass of build isolation in which a user can elevate their privileges to the build user …

Jun 27, 2025
CVE-2025-46415
3.2 LOW

A race condition in the Nix, Lix, and Guix package managers allows the removal of content from arbitrary folders. This affects Nix before 2.24.15, 2.26.4, …

Jun 27, 2025
CVE-2025-53018
3.0 LOW

Lychee is a free, open-source photo-management tool. Prior to version 6.6.13, a critical Server-Side Request Forgery (SSRF) vulnerability exists in the `/api/v2/Photo::fromUrl` endpoint. This flaw …

Jun 27, 2025
CVE-2025-6750
3.3 LOW

A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. Affected by this issue is the function H5O__mtime_new_encode of the file src/H5Omtime.c. …

Jun 27, 2025
CVE-2025-47824
2.0 LOW

Flock Safety LPR (License Plate Reader) devices with firmware through 2.2 have cleartext storage of code.

Jun 27, 2025
CVE-2025-47823
2.2 LOW

Flock Safety LPR (License Plate Reader) devices with firmware through 2.2 have a hardcoded password for a system.

Jun 27, 2025
CVE-2025-47821
2.2 LOW

Flock Safety Gunshot Detection devices before 1.3 have a hardcoded password for a system.

Jun 27, 2025
CVE-2025-6748
2.1 LOW

A vulnerability classified as problematic has been found in Bharti Airtel Thanks App 4.105.4 on Android. Affected is an unknown function of the file /Android/data/com.myairtelapp/files/. …

Jun 27, 2025
CVE-2025-47820
2.0 LOW

Flock Safety Gunshot Detection devices before 1.3 have cleartext storage of code.

Jun 27, 2025
CVE-2025-47818
2.2 LOW

Flock Safety Gunshot Detection devices before 1.3 have a hard-coded password for a connection.

Jun 27, 2025
CVE-2015-0849
3.9 LOW

pycode-browser before version 1.0 is prone to a predictable temporary file vulnerability.

Jun 26, 2025
CVE-2025-6701
3.5 LOW

A vulnerability, which was classified as problematic, has been found in Xuxueli xxl-sso 1.1.0. This issue affects some unknown processing of the file /xxl-sso-server/doLogin. The …

Jun 26, 2025
CVE-2025-6699
3.5 LOW

A vulnerability classified as problematic has been found in LabRedesCefetRJ WeGIA 3.4.0. This affects an unknown part of the file /html/funcionario/cadastro_funcionario.php of the component Cadastro …

Jun 26, 2025
CVE-2025-6698
3.5 LOW

A vulnerability was found in LabRedesCefetRJ WeGIA 3.4.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file …

Jun 26, 2025
CVE-2025-6697
3.5 LOW

A vulnerability was found in LabRedesCefetRJ WeGIA 3.4.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file …

Jun 26, 2025
CVE-2025-6696
3.5 LOW

A vulnerability was found in LabRedesCefetRJ WeGIA 3.4.0. It has been classified as problematic. Affected is an unknown function of the file /html/atendido/Cadastro_Atendido.php of the …

Jun 26, 2025
CVE-2025-6695
3.5 LOW

A vulnerability was found in LabRedesCefetRJ WeGIA 3.4.0 and classified as problematic. This issue affects some unknown processing of the file /html/matPat/adicionar_categoria.php of the component …

Jun 26, 2025
CVE-2025-6694
3.5 LOW

A vulnerability has been found in LabRedesCefetRJ WeGIA 3.4.0 and classified as problematic. This vulnerability affects unknown code of the file /html/matPat/adicionar_unidade.php of the component …

Jun 26, 2025
CVE-2025-5846
2.7 LOW

An issue has been discovered in GitLab EE affecting all versions from 16.10 before 17.11.5, 18.0 before 18.0.3, and 18.1 before 18.1.1 that could have …

Jun 26, 2025
CVE-2025-2938
3.1 LOW

An issue has been discovered in GitLab CE/EE affecting all versions from 17.3 before 17.11.5, 18.0 before 18.0.3, and 18.1 before 18.1.1 that could have …

Jun 26, 2025
CVE-2025-6669
3.7 LOW

A vulnerability was found in gooaclok819 sublinkX up to 1.8. It has been declared as problematic. This vulnerability affects unknown code of the file middlewares/jwt.go. …

Jun 25, 2025
CVE-2025-6662
3.3 LOW

PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-6658
3.3 LOW

PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-6657
3.3 LOW

PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-6656
3.3 LOW

PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-6655
3.3 LOW

PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-6653
3.3 LOW

PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-6652
3.3 LOW

PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-6650
3.3 LOW

PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-6649
3.3 LOW

PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-6648
3.3 LOW

PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-6646
3.3 LOW

PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User …

Jun 25, 2025
CVE-2025-6643
3.3 LOW

PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-6641
3.3 LOW

PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. …

Jun 25, 2025
CVE-2025-49549
2.7 LOW

Adobe Commerce versions 2.4.8, 2.4.7-p5, 2.4.6-p10, 2.4.5-p12, 2.4.4-p13 and earlier are affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. …

Jun 25, 2025
CVE-2025-52889
3.4 LOW

Incus is a system container and virtual machine manager. When using an ACL on a device connected to a bridge, Incus version 6.12 and 6.13 …

Jun 25, 2025
CVE-2025-4656
3.1 LOW

Vault Community and Vault Enterprise rekey and recovery key operations can lead to a denial of service due to uncontrolled cancellation by a Vault operator. …

Jun 25, 2025
CVE-2025-6613
3.5 LOW

A vulnerability classified as problematic was found in PHPGurukul Hospital Management System 4.0. Affected by this vulnerability is an unknown functionality of the file /doctor/manage-patient.php. …

Jun 25, 2025
CVE-2025-48463
3.1 LOW

Successful exploitation of the vulnerability could allow an attacker to intercept data and conduct session hijacking on the exposed data as the vulnerable product uses …

Jun 24, 2025
CVE-2025-6551
3.5 LOW

A vulnerability was found in java-aodeng Hope-Boot 1.0.0 and classified as problematic. This issue affects the function Login of the file /src/main/java/com/hope/controller/WebController.java. The manipulation of …

Jun 24, 2025
CVE-2025-6536
3.3 LOW

A vulnerability has been found in Tarantool up to 3.3.1 and classified as problematic. Affected by this vulnerability is the function tm_to_datetime in the library …

Jun 24, 2025
CVE-2025-6527
3.1 LOW

A vulnerability, which was classified as problematic, was found in 70mai M300 up to 20250611. Affected is an unknown function of the component Web Server. …

Jun 23, 2025
CVE-2025-6526
3.1 LOW

A vulnerability, which was classified as problematic, has been found in 70mai M300 up to 20250611. This issue affects some unknown processing of the component …

Jun 23, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.