CVE Database

46519+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-32409
8.1 HIGH

Ratta SuperNote A6 X2 Nomad before December 2024 allows remote code execution because an arbitrary firmware image (signed with debug keys) can be sent to …

Apr 7, 2025
CVE-2025-0942
8.6 HIGH

The DB chooser functionality in Jalios JPlatform 10 SP6 before 10.0.6 improperly neutralizes special elements used in an SQL command allows for unauthenticated users to …

Apr 7, 2025
CVE-2025-3384
7.3 HIGH

A vulnerability was found in 1000 Projects Human Resource Management System 1.0. It has been classified as critical. Affected is an unknown function of the …

Apr 7, 2025
CVE-2025-3383
7.3 HIGH

A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0 and classified as critical. This issue affects some unknown processing of the file …

Apr 7, 2025
CVE-2025-32034
7.5 HIGH

The Apollo Router Core is a configurable, high-performance graph router written in Rust to run a federated supergraph that uses Apollo Federation 2. Prior to …

Apr 7, 2025
CVE-2025-32033
7.5 HIGH

The Apollo Router Core is a configurable, high-performance graph router written in Rust to run a federated supergraph that uses Apollo Federation 2. Prior to …

Apr 7, 2025
CVE-2025-32032
7.5 HIGH

The Apollo Router Core is a configurable, high-performance graph router written in Rust to run a federated supergraph that uses Apollo Federation 2. A vulnerability …

Apr 7, 2025
CVE-2025-32031
7.5 HIGH

Apollo Gateway provides utilities for combining multiple GraphQL microservices into a single GraphQL endpoint. Prior to 2.10.1, a vulnerability in Apollo Gateway allowed queries with …

Apr 7, 2025
CVE-2025-32030
7.5 HIGH

Apollo Gateway provides utilities for combining multiple GraphQL microservices into a single GraphQL endpoint. Prior to 2.10.1, a vulnerability in Apollo Gateway allowed queries with …

Apr 7, 2025
CVE-2025-31496
7.5 HIGH

apollo-compiler is a query-based compiler for the GraphQL query language. Prior to 1.27.0, a vulnerability in Apollo Compiler allowed queries with deeply nested and reused …

Apr 7, 2025
CVE-2025-3380
7.3 HIGH

A vulnerability, which was classified as critical, has been found in PCMan FTP Server 2.0.7. Affected by this issue is some unknown functionality of the …

Apr 7, 2025
CVE-2025-3379
7.3 HIGH

A vulnerability classified as critical was found in PCMan FTP Server 2.0.7. Affected by this vulnerability is an unknown functionality of the component EPSV Command …

Apr 7, 2025
CVE-2025-3378
7.3 HIGH

A vulnerability classified as critical has been found in PCMan FTP Server 2.0.7. Affected is an unknown function of the component EPRT Command Handler. The …

Apr 7, 2025
CVE-2025-3377
7.3 HIGH

A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. This issue affects some unknown processing of the component ENC …

Apr 7, 2025
CVE-2025-3376
7.3 HIGH

A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. This vulnerability affects unknown code of the component CONF Command …

Apr 7, 2025
CVE-2025-3375
7.3 HIGH

A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. This affects an unknown part of the component CDUP Command …

Apr 7, 2025
CVE-2025-3374
7.3 HIGH

A vulnerability was found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this issue is some unknown functionality of the component CCC …

Apr 7, 2025
CVE-2025-3373
7.3 HIGH

A vulnerability has been found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this vulnerability is an unknown functionality of the component …

Apr 7, 2025
CVE-2025-28409
8.8 HIGH

An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the add method of the /add/{parentId} endpoint does not properly validate whether …

Apr 7, 2025
CVE-2025-28407
8.8 HIGH

An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the edit method of the /edit/{dictId} endpoint does not properly validate whether …

Apr 7, 2025
CVE-2025-28403
7.2 HIGH

An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the editSave method does not properly validate whether the requesting user has …

Apr 7, 2025
CVE-2025-3372
7.3 HIGH

A vulnerability, which was classified as critical, was found in PCMan FTP Server 2.0.7. Affected is an unknown function of the component MKDIR Command Handler. …

Apr 7, 2025
CVE-2025-3371
7.3 HIGH

A vulnerability, which was classified as critical, has been found in PCMan FTP Server 2.0.7. This issue affects some unknown processing of the component DELETE …

Apr 7, 2025
CVE-2025-3370
7.3 HIGH

A vulnerability classified as critical has been found in PHPGurukul Men Salon Management System 1.0. This affects an unknown part of the file /admin/admin-profile.php. The …

Apr 7, 2025
CVE-2025-30195
7.5 HIGH

An attacker can publish a zone containing specific Resource Record Sets. Processing and caching results for these sets can lead to an illegal memory accesses …

Apr 7, 2025
CVE-2025-3353
7.3 HIGH

A vulnerability was found in PHPGurukul Men Salon Management System 1.0. It has been classified as critical. This affects an unknown part of the file …

Apr 7, 2025
CVE-2025-3352
7.3 HIGH

A vulnerability was found in PHPGurukul Old Age Home Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of …

Apr 7, 2025
CVE-2025-3351
7.3 HIGH

A vulnerability has been found in PHPGurukul Old Age Home Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality …

Apr 7, 2025
CVE-2025-3350
7.3 HIGH

A vulnerability, which was classified as critical, was found in PHPGurukul Old Age Home Management System 1.0. Affected is an unknown function of the file …

Apr 7, 2025
CVE-2025-3349
7.3 HIGH

A vulnerability, which was classified as critical, has been found in PCMan FTP Server 2.0.7. This issue affects some unknown processing of the component SYST …

Apr 7, 2025
CVE-2025-21448
7.5 HIGH

Transient DOS may occur while parsing SSID in action frames.

Apr 7, 2025
CVE-2025-21447
7.8 HIGH

Memory corruption may occur while processing device IO control call for session control.

Apr 7, 2025
CVE-2025-21443
7.8 HIGH

Memory corruption while processing message content in eAVB.

Apr 7, 2025
CVE-2025-21442
7.8 HIGH

Memory corruption while transmitting packet mapping information with invalid header payload size.

Apr 7, 2025
CVE-2025-21441
7.8 HIGH

Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.

Apr 7, 2025
CVE-2025-21440
7.8 HIGH

Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.

Apr 7, 2025
CVE-2025-21439
7.8 HIGH

Memory corruption may occur while reading board data via IOCTL call when the WLAN driver copies the content to the provided output buffer.

Apr 7, 2025
CVE-2025-21438
7.8 HIGH

Memory corruption while IOCTL call is invoked from user-space to read board data.

Apr 7, 2025
CVE-2025-21437
7.8 HIGH

Memory corruption while processing memory map or unmap IOCTL operations simultaneously.

Apr 7, 2025
CVE-2025-21436
7.8 HIGH

Memory corruption may occur while initiating two IOCTL calls simultaneously to create processes from two different threads.

Apr 7, 2025
CVE-2025-21435
7.5 HIGH

Transient DOS may occur while parsing extended IE in beacon.

Apr 7, 2025
CVE-2025-21434
7.5 HIGH

Transient DOS may occur while parsing EHT operation IE or EHT capability IE.

Apr 7, 2025
CVE-2025-21430
7.5 HIGH

Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.

Apr 7, 2025
CVE-2025-21429
7.5 HIGH

Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request.

Apr 7, 2025
CVE-2025-21428
7.5 HIGH

Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSpec session.

Apr 7, 2025
CVE-2025-21425
7.3 HIGH

Memory corruption may occur due top improper access control in HAB process.

Apr 7, 2025
CVE-2025-21423
7.8 HIGH

Memory corruption occurs when handling client calls to EnableTestMode through an Escape call.

Apr 7, 2025
CVE-2025-21421
7.8 HIGH

Memory corruption while processing escape code in API.

Apr 7, 2025
CVE-2024-45557
7.8 HIGH

Memory corruption can occur when TME processes addresses from TZ and MPSS requests without proper validation.

Apr 7, 2025
CVE-2024-45552
8.2 HIGH

Information disclosure may occur during a video call if a device resets due to a non-conforming RTCP packet that doesn`t adhere to RFC standards.

Apr 7, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.