CVE Database

5223+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-4878
3.6 LOW

A vulnerability was found in libssh, where an uninitialized variable exists under certain conditions in the privatekey_from_file() function. This flaw can be triggered if the …

Jul 22, 2025
CVE-2025-52580
2.4 LOW

Insertion of sensitive information into log file issue exists in "region PAY" App for Android prior to 1.5.28. If exploited, sensitive user information may be …

Jul 22, 2025
CVE-2025-7953
3.5 LOW

A vulnerability, which was classified as problematic, has been found in Sanluan PublicCMS up to 5.202506.a. This issue affects some unknown processing of the file …

Jul 22, 2025
CVE-2025-7951
3.5 LOW

A vulnerability classified as problematic has been found in code-projects Public Chat Room 1.0. This affects an unknown part of the file /send_message.php. The manipulation …

Jul 22, 2025
CVE-2025-7949
3.5 LOW

A vulnerability was found in Sanluan PublicCMS up to 5.202506.a. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of …

Jul 22, 2025
CVE-2025-7942
3.5 LOW

A vulnerability has been found in PHPGurukul Taxi Stand Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of …

Jul 21, 2025
CVE-2025-7941
3.5 LOW

A vulnerability, which was classified as problematic, was found in PHPGurukul Time Table Generator System 1.0. Affected is an unknown function of the file /admin/profile.php. …

Jul 21, 2025
CVE-2025-44657
3.9 LOW

In Linksys EA6350 V2.1.2, the chroot_local_user option is enabled in the dynamically generated vsftpd configuration file. This could lead to unauthorized access to system files, …

Jul 21, 2025
CVE-2025-7926
3.5 LOW

A vulnerability, which was classified as problematic, was found in PHPGurukul Online Banquet Booking System 1.0. This affects an unknown part of the file /admin/booking-search.php. …

Jul 21, 2025
CVE-2025-7924
3.5 LOW

A vulnerability classified as problematic was found in PHPGurukul Online Banquet Booking System 1.0. Affected by this vulnerability is an unknown functionality of the file …

Jul 21, 2025
CVE-2025-54352
3.7 LOW

WordPress 3.5 through 6.8.2 allows remote attackers to guess titles of private and draft posts via pingback.ping XML-RPC requests. NOTE: the Supplier is not changing …

Jul 21, 2025
CVE-2025-7902
3.5 LOW

A vulnerability classified as problematic has been found in yangzongzhuan RuoYi up to 4.8.1. Affected is the function addSave of the file com/ruoyi/web/controller/system/SysNoticeController.java. The manipulation …

Jul 20, 2025
CVE-2025-7884
3.3 LOW

A vulnerability classified as problematic was found in Eluktronics Control Center 5.23.51.41. Affected by this vulnerability is an unknown functionality of the component REG File …

Jul 20, 2025
CVE-2025-7882
3.1 LOW

A vulnerability was found in Mercusys MW301R 1.0.2 Build 190726 Rel.59423n. It has been rated as problematic. This issue affects some unknown processing of the …

Jul 20, 2025
CVE-2025-7881
2.7 LOW

A vulnerability was found in Mercusys MW301R 1.0.2 Build 190726 Rel.59423n. It has been declared as problematic. This vulnerability affects unknown code of the component …

Jul 20, 2025
CVE-2025-7872
3.5 LOW

A vulnerability was found in Portabilis i-Diario 1.5.0 and classified as problematic. This issue affects some unknown processing of the file /justificativas-de-falta. The manipulation of …

Jul 20, 2025
CVE-2025-7871
3.5 LOW

A vulnerability has been found in Portabilis i-Diario 1.5.0 and classified as problematic. This vulnerability affects unknown code of the file /conteudos. The manipulation of …

Jul 20, 2025
CVE-2025-7870
3.5 LOW

A vulnerability, which was classified as problematic, was found in Portabilis i-Diario 1.5.0. This affects an unknown part of the component justificativas-de-falta Endpoint. The manipulation …

Jul 20, 2025
CVE-2025-7869
3.5 LOW

A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar 2.9.0. Affected by this issue is some unknown functionality of the file …

Jul 20, 2025
CVE-2025-7868
3.5 LOW

A vulnerability was found in Portabilis i-Educar up to 2.10. This issue affects some unknown processing of the file /intranet/educar_calendario_dia_motivo_cad.php of the component Calendar Module. …

Jul 20, 2025
CVE-2025-7867
3.5 LOW

A vulnerability has been found in Portabilis i-Educar 2.9.0/2.10.0. This vulnerability affects unknown code of the file /intranet/agenda.php of the component Agenda Module. The manipulation …

Jul 20, 2025
CVE-2025-7866
3.5 LOW

A vulnerability was found in Portabilis i-Educar 2.9.0. It has been rated as problematic. This issue affects some unknown processing of the file /intranet/educar_deficiencia_lst.php of …

Jul 20, 2025
CVE-2025-7865
3.5 LOW

A vulnerability was found in thinkgem JeeSite up to 5.12.0. It has been declared as problematic. This vulnerability affects the function xssFilter of the file …

Jul 20, 2025
CVE-2025-7863
3.5 LOW

A vulnerability was found in thinkgem JeeSite up to 5.12.0 and classified as problematic. Affected by this issue is the function redirectUrl of the file …

Jul 20, 2025
CVE-2025-54314
2.8 LOW

Thor before 1.4.0 can construct an unsafe shell command from library input. NOTE: this is disputed by the Supplier because "the method that was fixed …

Jul 20, 2025
CVE-2025-7858
3.5 LOW

A vulnerability classified as problematic has been found in PHPGurukul Apartment Visitors Management System 1.0. This affects an unknown part of the file /admin-profile.php of …

Jul 20, 2025
CVE-2025-7857
3.5 LOW

A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality …

Jul 19, 2025
CVE-2025-7856
3.5 LOW

A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality …

Jul 19, 2025
CVE-2025-7840
3.5 LOW

A vulnerability was found in Campcodes Online Movie Theater Seat Reservation System 1.0. It has been classified as problematic. This affects an unknown part of …

Jul 19, 2025
CVE-2025-7819
2.4 LOW

A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. It has been classified as problematic. This affects an unknown part of the file …

Jul 19, 2025
CVE-2025-7818
3.5 LOW

A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the …

Jul 19, 2025
CVE-2025-7817
3.5 LOW

A vulnerability has been found in PHPGurukul Apartment Visitors Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of …

Jul 19, 2025
CVE-2025-7816
3.5 LOW

A vulnerability, which was classified as problematic, was found in PHPGurukul Apartment Visitors Management System 1.0. Affected is an unknown function of the file /visitor-detail.php …

Jul 19, 2025
CVE-2025-7815
2.4 LOW

A vulnerability, which was classified as problematic, has been found in PHPGurukul Apartment Visitors Management System 1.0. This issue affects some unknown processing of the …

Jul 19, 2025
CVE-2025-7803
3.5 LOW

A vulnerability was found in descreekert wx-discuz up to 12bd4745c63ec203cb32119bf77ead4a923bf277. It has been classified as problematic. This affects the function validToken of the file /wx.php. …

Jul 18, 2025
CVE-2025-7802
3.5 LOW

A vulnerability was found in PHPGurukul Complaint Management System 2.0 and classified as problematic. Affected by this issue is some unknown functionality of the file …

Jul 18, 2025
CVE-2025-7800
3.5 LOW

A vulnerability classified as problematic was found in cgpandey hotelmis up to c572198e6c4780fccc63b1d3e8f3f72f825fc94e. This vulnerability affects unknown code of the file admin.php of the component …

Jul 18, 2025
CVE-2025-53901
3.5 LOW

Wasmtime is a runtime for WebAssembly. Prior to versions 24.0.4, 33.0.2, and 34.0.2, a bug in Wasmtime's implementation of the WASIp1 set of import functions …

Jul 18, 2025
CVE-2025-7791
3.5 LOW

A vulnerability was found in PHPGurukul Online Security Guards Hiring System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the …

Jul 18, 2025
CVE-2025-7789
3.7 LOW

A vulnerability was found in Xuxueli xxl-job up to 3.1.1 and classified as problematic. Affected by this issue is the function makeToken of the file …

Jul 18, 2025
CVE-2025-7786
3.5 LOW

A vulnerability, which was classified as problematic, has been found in Gnuboard g6 up to 6.0.10. This issue affects some unknown processing of the file …

Jul 18, 2025
CVE-2025-6227
2.2 LOW

Mattermost versions 10.5.x <= 10.5.7, 9.11.x <= 9.11.16 fail to negotiate a new token when accepting the invite which allows a user that intercepts both …

Jul 18, 2025
CVE-2025-7767
3.5 LOW

A vulnerability, which was classified as problematic, has been found in PHPGurukul Art Gallery Management System 1.1. Affected by this issue is some unknown functionality …

Jul 18, 2025
CVE-2025-2818
3.5 LOW

A vulnerability was reported in version 1.0 of the Bluetooth Transmission Alliance protocol adopted by Motorola Smart Connect Android Application that could allow a nearby …

Jul 17, 2025
CVE-2024-42209
3.5 LOW

HCL Connections is vulnerable to an information disclosure vulnerability that could allow a user to obtain sensitive information they are not entitled to, which is …

Jul 17, 2025
CVE-2025-7748
3.5 LOW

A vulnerability classified as problematic was found in ZCMS 3.6.0. This vulnerability affects unknown code of the component Create Article Page. The manipulation of the …

Jul 17, 2025
CVE-2025-7339
3.4 LOW

on-headers is a node.js middleware for listening to when a response writes headers. A bug in on-headers versions `<1.1.0` may result in response headers being …

Jul 17, 2025
CVE-2025-7729
3.5 LOW

A vulnerability classified as problematic was found in Scada-LTS up to 2.7.8.1. Affected by this vulnerability is an unknown functionality of the file usersProfiles.shtm. The …

Jul 17, 2025
CVE-2025-7728
3.5 LOW

A vulnerability classified as problematic has been found in Scada-LTS up to 2.7.8.1. Affected is an unknown function of the file users.shtm. The manipulation of …

Jul 17, 2025
CVE-2025-53840
2.4 LOW

Icinga DB Web provides a graphical interface for Icinga monitoring. Starting in version 1.2.0 and prior to version 1.2.2, users with access to Icinga Dependency …

Jul 16, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.