CVE Database

52888+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-20623
5.6 MEDIUM

Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel(R) Core™ processors (10th Generation) may allow an authenticated …

May 13, 2025
CVE-2025-20616
5.5 MEDIUM

Uncontrolled resource consumption for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an authenticated user to potentially enable escalation of privilege via …

May 13, 2025
CVE-2025-20612
5.5 MEDIUM

Incorrect execution-assigned permissions for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an authenticated user to potentially enable escalation of privilege via …

May 13, 2025
CVE-2025-20611
4.7 MEDIUM

Exposure of sensitive information to an unauthorized actor for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an authenticated user to potentially …

May 13, 2025
CVE-2025-20108
6.7 MEDIUM

Uncontrolled search path element for some Intel(R) Network Adapter Driver installers for Windows 11 before version 29.4 may allow an authenticated user to potentially enable …

May 13, 2025
CVE-2025-20103
6.5 MEDIUM

Insufficient resource pool in the core management mechanism for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via local …

May 13, 2025
CVE-2025-20095
6.7 MEDIUM

Incorrect Default Permissions for some Intel(R) RealSense™ SDK software before version 2.56.2 may allow an authenticated user to potentially enable escalation of privilege via local …

May 13, 2025
CVE-2025-20079
6.7 MEDIUM

Uncontrolled search path for some Intel(R) Advisor software may allow an authenticated user to potentially enable escalation of privilege via local access.

May 13, 2025
CVE-2025-20076
5.0 MEDIUM

Improper access control for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an unauthenticated user to potentially enable escalation of privilege via …

May 13, 2025
CVE-2025-20071
6.5 MEDIUM

NULL pointer dereference for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denial of service via local access.

May 13, 2025
CVE-2025-20062
6.1 MEDIUM

Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service …

May 13, 2025
CVE-2025-20054
6.5 MEDIUM

Uncaught exception in the core management mechanism for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via local access.

May 13, 2025
CVE-2025-20047
5.7 MEDIUM

Improper locking in the Intel(R) Integrated Connectivity I/O interface (CNVi) for some Intel(R) Core™ Ultra Processors may allow an unauthenticated user to potentially enable escalation …

May 13, 2025
CVE-2025-20043
6.7 MEDIUM

Uncontrolled search path for some Intel(R) RealSense™ SDK software before version 2.56.2 may allow an authenticated user to potentially enable escalation of privilege via local …

May 13, 2025
CVE-2025-20041
6.7 MEDIUM

Uncontrolled search path for some Intel(R) Graphics software for Intel(R) Arc™ graphics and Intel(R) Iris(R) Xe graphics before version 32.0.101.6325/32.0.101.6252 may allow an authenticated user …

May 13, 2025
CVE-2025-20039
6.6 MEDIUM

Race condition for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via …

May 13, 2025
CVE-2025-20034
5.3 MEDIUM

Improper input validation in the BackupBiosUpdate UEFI firmware SmiVariable driver for the Intel(R) Server D50DNP and M50FCP boards before version R01.02.0003 may allow a privileged …

May 13, 2025
CVE-2025-20031
6.5 MEDIUM

Improper input validation for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denial of service via local access.

May 13, 2025
CVE-2025-20026
6.1 MEDIUM

Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially enable denial of service via …

May 13, 2025
CVE-2025-20022
5.7 MEDIUM

Insufficient control flow management for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow a privileged user to potentially enable information disclosure via …

May 13, 2025
CVE-2025-20015
6.7 MEDIUM

Uncontrolled search path element for some Intel(R) Ethernet Connection software before version 29.4 may allow an authenticated user to potentially enable escalation of privilege via …

May 13, 2025
CVE-2025-20013
5.5 MEDIUM

Exposure of sensitive information to an unauthorized actor for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an authenticated user to potentially …

May 13, 2025
CVE-2025-20012
4.9 MEDIUM

Incorrect behavior order for some Intel(R) Core™ Ultra Processors may allow an unauthenticated user to potentially enable information disclosure via physical access.

May 13, 2025
CVE-2025-20009
4.1 MEDIUM

Improper input validation in the UEFI firmware GenerationSetup module for the Intel(R) Server D50DNP and M50FCP boards may allow a privileged user to potentially enable …

May 13, 2025
CVE-2024-48869
6.1 MEDIUM

Improper restriction of software interfaces to hardware features for some Intel(R) Xeon(R) 6 processor with E-cores when using Intel(R) Trust Domain Extensions (Intel(R) TDX) or …

May 13, 2025
CVE-2024-47800
6.7 MEDIUM

Uncontrolled search path for some Intel(R) Graphics Driver software may allow an authenticated user to potentially enable escalation of privilege via local access.

May 13, 2025
CVE-2024-47795
6.7 MEDIUM

Uncontrolled search path for some Intel(R) oneAPI DPC++/C++ Compiler software before version 2025.0.0 may allow an authenticated user to potentially enable escalation of privilege via …

May 13, 2025
CVE-2024-47550
6.7 MEDIUM

Incorrect default permissions for some Endurance Gaming Mode software installers may allow an authenticated user to potentially enable escalation of privilege via local access.

May 13, 2025
CVE-2024-46895
6.7 MEDIUM

Uncontrolled search path for some Intel(R) Arc™ & Iris(R) Xe graphics software before version 32.0.101.6083/32.0.101.5736 may allow an authenticated user to potentially enable escalation of …

May 13, 2025
CVE-2024-45371
6.7 MEDIUM

Improper access control for some Intel(R) Arc™ & Iris(R) Xe graphics software before version 32.0.101.6077 may allow an authenticated user to potentially enable denial of …

May 13, 2025
CVE-2024-45332
5.6 MEDIUM

Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution in the indirect branch predictors for some Intel(R) Processors may allow …

May 13, 2025
CVE-2024-43420
5.6 MEDIUM

Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel Atom(R) processors may allow an authenticated user to …

May 13, 2025
CVE-2024-43101
5.3 MEDIUM

Improper access control for some Intel(R) Data Center GPU Flex Series for Windows driver software before version 31.0.101.4255 may allow an authenticated user to potentially …

May 13, 2025
CVE-2024-39833
6.7 MEDIUM

Uncontrolled search path for some Intel(R) QAT software before version 2.3.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

May 13, 2025
CVE-2024-39758
5.9 MEDIUM

Improper access control for some Intel(R) Arc™ & Iris(R) Xe graphics software before version 31.0.101.4032 may allow an authenticated user to potentially enable denial of …

May 13, 2025
CVE-2024-31073
6.7 MEDIUM

Uncontrolled search path for some Intel(R) oneAPI Level Zero software may allow an authenticated user to potentially enable escalation of privilege via local access.

May 13, 2025
CVE-2024-29222
6.1 MEDIUM

Out-of-bounds write for some Intel(R) Graphics Driver software may allow an authenticated user to potentially enable denial of service via local access.

May 13, 2025
CVE-2024-28956
5.6 MEDIUM

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure …

May 13, 2025
CVE-2024-28954
6.7 MEDIUM

Incorrect default permissions for some Intel(R) Graphics Driver installers may allow an authenticated user to potentially enable escalation of privilege via local access.

May 13, 2025
CVE-2024-28036
5.6 MEDIUM

Improper conditions check for some Intel(R) Arc™ GPU may allow an authenticated user to potentially enable denial of service via local access.

May 13, 2025
CVE-2025-45746
6.5 MEDIUM

In ZKT ZKBio CVSecurity 6.4.1_R an unauthenticated attacker can craft JWT token using the hardcoded secret to authenticate to the service console. NOTE: the Supplier …

May 13, 2025
CVE-2025-30329
5.5 MEDIUM

Animate versions 24.0.8, 23.0.11 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this …

May 13, 2025
CVE-2025-47280
6.1 MEDIUM

Umbraco Forms is a form builder that integrates with the Umbraco content management system. Starting in the 7.x branch and prior to versions 13.4.2 and …

May 13, 2025
CVE-2025-32703
5.5 MEDIUM

Insufficient granularity of access control in Visual Studio allows an authorized attacker to disclose information locally.

May 13, 2025
CVE-2025-30394
5.9 MEDIUM

Sensitive data storage in improperly locked memory in Remote Desktop Gateway Service allows an unauthorized attacker to deny service over a network.

May 13, 2025
CVE-2025-30320
5.5 MEDIUM

InDesign Desktop versions ID19.5.2, ID20.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit …

May 13, 2025
CVE-2025-30319
5.5 MEDIUM

InDesign Desktop versions ID19.5.2, ID20.2 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit …

May 13, 2025
CVE-2025-29974
5.7 MEDIUM

Integer underflow (wrap or wraparound) in Windows Kernel allows an unauthorized attacker to disclose information over an adjacent network.

May 13, 2025
CVE-2025-29968
6.5 MEDIUM

Improper input validation in Active Directory Certificate Services (AD CS) allows an authorized attacker to deny service over a network.

May 13, 2025
CVE-2025-29961
6.5 MEDIUM

Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

May 13, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.