CVE Database

4634+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-22855
2.7 LOW

An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in Fortinet FortiClient before 7.4.1 may allow the EMS administrator to send …

Apr 8, 2025
CVE-2024-50565
3.1 LOW

A improper restriction of communication channel to intended endpoints vulnerability [CWE-923] in Fortinet FortiOS version 7.4.0 through 7.4.3, 7.2.0 through 7.2.7, 7.0.0 through 7.0.14, 6.4.0 …

Apr 8, 2025
CVE-2024-32122
2.3 LOW

A storing passwords in a recoverable format in Fortinet FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions …

Apr 8, 2025
CVE-2025-3403
2.7 LOW

A vulnerability was found in Vivotek NVR ND8422P, NVR ND9525P and NVR ND9541P 2.4.0.204/3.3.0.104/4.2.0.101. It has been classified as problematic. Affected is an unknown function …

Apr 8, 2025
CVE-2025-3393
3.5 LOW

A vulnerability was found in mrcen springboot-ucan-admin up to 5f35162032cbe9288a04e429ef35301545143509. It has been classified as problematic. This affects an unknown part of the file /ucan-admin/index …

Apr 8, 2025
CVE-2025-3392
3.5 LOW

A vulnerability was found in hailey888 oa_system up to 2025.01.01 and classified as problematic. Affected by this issue is the function Save of the file …

Apr 8, 2025
CVE-2025-3391
3.5 LOW

A vulnerability has been found in hailey888 oa_system up to 2025.01.01 and classified as problematic. Affected by this vulnerability is the function outAddress of the …

Apr 8, 2025
CVE-2025-3390
3.5 LOW

A vulnerability, which was classified as problematic, was found in hailey888 oa_system up to 2025.01.01. Affected is the function addandchangeday of the file cn/gson/oass/controller/daymanager/DaymanageController.java of …

Apr 8, 2025
CVE-2025-3389
3.5 LOW

A vulnerability, which was classified as problematic, has been found in hailey888 oa_system up to 2025.01.01. This issue affects the function testMess of the file …

Apr 8, 2025
CVE-2025-3387
3.5 LOW

A vulnerability classified as problematic has been found in renrenio renren-security up to 5.4.0. This affects an unknown part of the component JSON Handler. The …

Apr 7, 2025
CVE-2025-3386
2.4 LOW

A vulnerability was found in LinZhaoguan pb-cms 2.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file …

Apr 7, 2025
CVE-2025-3385
2.4 LOW

A vulnerability was found in LinZhaoguan pb-cms 2.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component …

Apr 7, 2025
CVE-2025-29087
3.2 LOW

In SQLite 3.44.0 through 3.49.0 before 3.49.1, the concat_ws() SQL function can cause memory to be written beyond the end of a malloc-allocated buffer. If …

Apr 7, 2025
CVE-2025-27686
2.7 LOW

Dell Unisphere for PowerMax, version(s) prior to 10.2.0.9 and PowerMax version(s) prior to PowerMax 9.2.4.15, contain an Improper Neutralization of Special Elements used in an …

Apr 7, 2025
CVE-2025-3360
3.7 LOW

A flaw was found in GLib. An integer overflow and buffer under-read occur when parsing a long invalid ISO 8601 timestamp with the g_date_time_new_from_iso8601() function.

Apr 7, 2025
CVE-2025-27534
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker case DOS through missing release of memory.

Apr 7, 2025
CVE-2025-25057
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker case DOS through missing release of memory.

Apr 7, 2025
CVE-2025-24304
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds write.

Apr 7, 2025
CVE-2025-22842
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.

Apr 7, 2025
CVE-2025-22452
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.

Apr 7, 2025
CVE-2025-20102
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.

Apr 7, 2025
CVE-2025-3329
3.1 LOW

A vulnerability classified as problematic has been found in Consumer Comanda Mobile up to 14.9.3.2/15.0.0.8. This affects an unknown part of the component Restaurant Order …

Apr 7, 2025
CVE-2025-3327
3.5 LOW

A vulnerability was found in iteaj iboot 物联网网关 1.1.3 and classified as problematic. This issue affects some unknown processing of the file /common/upload/batch of the …

Apr 7, 2025
CVE-2025-3326
3.5 LOW

A vulnerability has been found in iteaj iboot 物联网网关 1.1.3 and classified as problematic. This vulnerability affects unknown code of the file /common/upload of the …

Apr 7, 2025
CVE-2025-3297
3.5 LOW

A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0. Affected is an unknown function of the file /classes/Master.php?f=save_product. The …

Apr 5, 2025
CVE-2025-3253
3.5 LOW

A vulnerability was found in xujiangfei admintwo 1.0 and classified as problematic. This issue affects some unknown processing of the file /ztree/insertTree. The manipulation of …

Apr 4, 2025
CVE-2025-3252
3.5 LOW

A vulnerability has been found in xujiangfei admintwo 1.0 and classified as problematic. This vulnerability affects unknown code of the file /resource/add. The manipulation of …

Apr 4, 2025
CVE-2025-3251
3.5 LOW

A vulnerability, which was classified as problematic, was found in xujiangfei admintwo 1.0. This affects an unknown part of the file /user/updateSet. The manipulation of …

Apr 4, 2025
CVE-2025-3219
3.5 LOW

A vulnerability was found in CodeCanyon Perfex CRM 3.2.1. It has been classified as problematic. Affected is an unknown function of the file /perfex/clients/project/2 of …

Apr 4, 2025
CVE-2024-42208
3.5 LOW

HCL Connections is vulnerable to an information disclosure vulnerability which could allow a user to obtain sensitive information they are not entitled to, caused by …

Apr 4, 2025
CVE-2025-3198
3.3 LOW

A vulnerability has been found in GNU Binutils 2.43/2.44 and classified as problematic. Affected by this vulnerability is the function display_info of the file binutils/bucomm.c …

Apr 4, 2025
CVE-2025-32054
3.3 LOW

In JetBrains IntelliJ IDEA before 2024.3, 2024.2.4 source code could be logged in the idea.log file

Apr 3, 2025
CVE-2025-3160
3.3 LOW

A vulnerability has been found in Open Asset Import Library Assimp 5.4.3 and classified as problematic. This vulnerability affects the function Assimp::SceneCombiner::AddNodeHashes of the file …

Apr 3, 2025
CVE-2025-3157
2.4 LOW

A vulnerability was found in Intelbras WRN 150 1.0.15_pt_ITB01. It has been rated as problematic. This issue affects some unknown processing of the component Wireless …

Apr 3, 2025
CVE-2025-3152
3.5 LOW

A vulnerability classified as problematic has been found in caipeichao ThinkOX 1.0. This affects an unknown part of the file /ThinkOX-master/index.php?s=/Weibo/Index/search.html of the component Search. …

Apr 3, 2025
CVE-2025-3149
2.4 LOW

A vulnerability was found in itning Student Homework Management System up to 1.2.7. It has been classified as problematic. Affected is an unknown function of …

Apr 3, 2025
CVE-2025-3148
3.3 LOW

A vulnerability was found in codeprojects Product Management System 1.0 and classified as problematic. This issue affects some unknown processing of the component Login. The …

Apr 3, 2025
CVE-2025-3145
3.3 LOW

A vulnerability, which was classified as problematic, has been found in MindSpore 2.5.0. Affected by this issue is the function mindspore.numpy.fft.rfft2. The manipulation leads to …

Apr 3, 2025
CVE-2025-3144
3.3 LOW

A vulnerability classified as problematic was found in MindSpore 2.5.0. Affected by this vulnerability is the function mindspore.numpy.fft.hfftn. The manipulation leads to memory corruption. It …

Apr 3, 2025
CVE-2025-3136
3.3 LOW

A vulnerability, which was classified as problematic, has been found in PyTorch 2.6.0. This issue affects the function torch.cuda.memory.caching_allocator_delete of the file c10/cuda/CUDACachingAllocator.cpp. The manipulation …

Apr 3, 2025
CVE-2025-29991
2.2 LOW

Yubico YubiKey 5.4.1 through 5.7.3 before 5.7.4 has an incorrect FIDO CTAP PIN/UV Auth Protocol Two implementation. It uses the signature length from CTAP PIN/UV …

Apr 3, 2025
CVE-2025-3122
3.1 LOW

A vulnerability classified as problematic was found in WebAssembly wabt 1.0.36. Affected by this vulnerability is the function BinaryReaderInterp::BeginFunctionBody of the file src/interp/binary-reader-interp.cc. The manipulation …

Apr 2, 2025
CVE-2025-3121
3.3 LOW

A vulnerability classified as problematic has been found in PyTorch 2.6.0. Affected is the function torch.jit.jit_module_from_flatbuffer. The manipulation leads to memory corruption. Local access is …

Apr 2, 2025
CVE-2024-42325
3.5 LOW

Zabbix API user.get returns all users that share common group with the calling user. This includes media and other information, such as login attempts, etc.

Apr 2, 2025
CVE-2024-36469
3.1 LOW

Execution time for an unsuccessful login differs when using a non-existing username compared to using an existing one.

Apr 2, 2025
CVE-2025-3082
3.1 LOW

A user authorized to access a view may be able to alter the intended collation, allowing them to access to a different or unintended view …

Apr 1, 2025
CVE-2025-30469
2.4 LOW

This issue was addressed through improved state management. This issue is fixed in iOS 18.4 and iPadOS 18.4. A person with physical access to an …

Mar 31, 2025
CVE-2025-24193
2.4 LOW

This issue was addressed with improved authentication. This issue is fixed in iOS 18.4 and iPadOS 18.4. An attacker with a USB-C connection to an …

Mar 31, 2025
CVE-2024-40864
2.7 LOW

The issue was addressed with improved handling of protocols. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, macOS Sonoma 14.7.5, …

Mar 31, 2025
CVE-2025-3036
2.4 LOW

A vulnerability, which was classified as problematic, was found in yzk2356911358 StudentServlet-JSP cc0cdce25fbe43b6c58b60a77a2c85f52d2102f5/d4d7a0643f1dae908a4831206f2714b21820f991. This affects an unknown part of the component Student Management Handler. The …

Mar 31, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.