CVE Database

46169+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-23331
7.5 HIGH

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause a memory allocation with excessive size value, leading to …

Aug 6, 2025
CVE-2025-23327
7.5 HIGH

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause an integer overflow through specially crafted inputs. A successful …

Aug 6, 2025
CVE-2025-23326
7.5 HIGH

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause an integer overflow through a specially crafted input. A …

Aug 6, 2025
CVE-2025-23325
7.5 HIGH

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause uncontrolled recursion through a specially crafted input. A successful …

Aug 6, 2025
CVE-2025-23324
7.5 HIGH

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause an integer overflow or wraparound, leading to a segmentation …

Aug 6, 2025
CVE-2025-23323
7.5 HIGH

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause an integer overflow or wraparound, leading to a segmentation …

Aug 6, 2025
CVE-2025-23322
7.5 HIGH

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where multiple requests could cause a double free when a stream is cancelled before …

Aug 6, 2025
CVE-2025-23321
7.5 HIGH

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause a divide by zero issue by issuing an invalid …

Aug 6, 2025
CVE-2025-23320
7.5 HIGH

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause the shared memory limit to …

Aug 6, 2025
CVE-2025-23319
8.1 HIGH

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of-bounds write by sending …

Aug 6, 2025
CVE-2025-23318
8.1 HIGH

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of-bounds write. A successful …

Aug 6, 2025
CVE-2025-46390
7.5 HIGH

CWE-204: Observable Response Discrepancy

Aug 6, 2025
CVE-2025-46387
8.8 HIGH

CWE-639 Authorization Bypass Through User-Controlled Key

Aug 6, 2025
CVE-2025-46386
8.8 HIGH

CWE-639 Authorization Bypass Through User-Controlled Key

Aug 6, 2025
CVE-2025-22469
7.3 HIGH

OS command injection vulnerability exists in CL4/6NX Plus and CL4/6NX-J Plus (Japan model) with the firmware versions prior to 1.15.5-r1. An arbitrary OS command may …

Aug 6, 2025
CVE-2025-7954
8.1 HIGH

A race condition vulnerability has been identified in Shopware's voucher system of Shopware v6.6.10.4 that allows attackers to bypass intended voucher restrictions and exceed usage …

Aug 6, 2025
CVE-2025-47324
7.5 HIGH

Information disclosure while accessing and modifying the PIB file of a remote device via powerline.

Aug 6, 2025
CVE-2025-27076
7.8 HIGH

Memory corruption while processing simultaneous requests via escape path.

Aug 6, 2025
CVE-2025-27075
7.8 HIGH

Memory corruption while processing IOCTL command with larger buffer in Bluetooth Host.

Aug 6, 2025
CVE-2025-27073
7.5 HIGH

Transient DOS while creating NDP instance.

Aug 6, 2025
CVE-2025-27071
7.3 HIGH

Memory corruption while processing specific files in Powerline Communication Firmware.

Aug 6, 2025
CVE-2025-27069
7.8 HIGH

Memory corruption while processing DDI command calls.

Aug 6, 2025
CVE-2025-27068
7.8 HIGH

Memory corruption while processing an IOCTL command with an arbitrary address.

Aug 6, 2025
CVE-2025-27067
7.8 HIGH

Memory corruption while processing DDI call with invalid buffer.

Aug 6, 2025
CVE-2025-27066
7.5 HIGH

Transient DOS while processing an ANQP message.

Aug 6, 2025
CVE-2025-27065
7.5 HIGH

Transient DOS while processing a frame with malformed shared-key descriptor.

Aug 6, 2025
CVE-2025-27062
7.8 HIGH

Memory corruption while handling client exceptions, allowing unauthorized channel access.

Aug 6, 2025
CVE-2025-21477
7.5 HIGH

Transient DOS while processing CCCH data when NW sends data with invalid length.

Aug 6, 2025
CVE-2025-21474
7.8 HIGH

Memory corruption while processing commands from A2dp sink command queue.

Aug 6, 2025
CVE-2025-21473
7.8 HIGH

Memory corruption when using Virtual cdm (Camera Data Mover) to write registers.

Aug 6, 2025
CVE-2025-21461
7.8 HIGH

Memory corruption when programming registers through virtual CDM.

Aug 6, 2025
CVE-2025-21458
7.8 HIGH

Memory corruption when IOCTL interface is called to map and unmap buffers simultaneously.

Aug 6, 2025
CVE-2025-21456
7.8 HIGH

Memory corruption while processing IOCTL command when multiple threads are called to map/unmap buffer concurrently.

Aug 6, 2025
CVE-2025-21455
7.8 HIGH

Memory corruption while submitting blob data to kernel space though IOCTL.

Aug 6, 2025
CVE-2025-21452
7.5 HIGH

Transient DOS while processing a random-access response (RAR) with an invalid PDU length on LTE network.

Aug 6, 2025
CVE-2025-8420
8.1 HIGH

Multiple plugins for WordPress by emarket-design with the 'emd-form-builder-lite' package are vulnerable to Remote Code Execution in various versions via the emd_form_builder_lite_pagenum function. This is …

Aug 6, 2025
CVE-2025-54634
8.0 HIGH

Vulnerability of improper processing of abnormal conditions in huge page separation. Impact: Successful exploitation of this vulnerability may affect availability.

Aug 6, 2025
CVE-2025-54627
8.8 HIGH

Out-of-bounds write vulnerability in the skia module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Aug 6, 2025
CVE-2025-8654
8.8 HIGH

Kenwood DMX958XR ReadMVGImage Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. …

Aug 6, 2025
CVE-2025-8653
8.8 HIGH

Kenwood DMX958XR JKRadioService Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Kenwood DMX958XR. …

Aug 6, 2025
CVE-2025-7036
7.5 HIGH

The CleverReach® WP plugin for WordPress is vulnerable to time-based SQL Injection via the ‘title’ parameter in all versions up to, and including, 1.5.20 due …

Aug 6, 2025
CVE-2025-54622
8.3 HIGH

Binding authentication bypass vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Aug 6, 2025
CVE-2025-54611
7.3 HIGH

EXTRA_REFERRER resource read vulnerability in the Gallery module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Aug 6, 2025
CVE-2025-54607
7.7 HIGH

Authentication management vulnerability in the ArkWeb module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

Aug 6, 2025
CVE-2025-54606
7.3 HIGH

Status verification vulnerability in the lock screen module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

Aug 6, 2025
CVE-2025-54655
8.1 HIGH

Race condition vulnerability in the virtualization base module. Successful exploitation of this vulnerability may affect the confidentiality and integrity of the virtualization graphics module.

Aug 6, 2025
CVE-2025-54653
8.4 HIGH

Path traversal vulnerability in the virtualization file module. Successful exploitation of this vulnerability may affect the confidentiality of the virtualization file module.

Aug 6, 2025
CVE-2025-54652
8.4 HIGH

Path traversal vulnerability in the virtualization base module. Successful exploitation of this vulnerability may affect the confidentiality of the virtualization module.

Aug 6, 2025
CVE-2025-54801
7.5 HIGH

Fiber is an Express inspired web framework written in Go. In versions 2.52.8 and below, when using Fiber's Ctx.BodyParser to parse form data containing a …

Aug 6, 2025
CVE-2013-10065
7.5 HIGH

A denial-of-service vulnerability exists in Sysax Multi-Server version 6.10 via its SSH daemon. A specially crafted SSH key exchange packet can trigger a crash in …

Aug 5, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.