CVE Database

5223+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-2049
3.5 LOW

A vulnerability classified as problematic has been found in code-projects Blood Bank System 1.0. Affected is an unknown function of the file AB+.php. The manipulation …

Mar 6, 2025
CVE-2025-2047
3.5 LOW

A vulnerability was found in PHPGurukul Art Gallery Management System 1.0. It has been classified as problematic. This affects an unknown part of the file …

Mar 6, 2025
CVE-2025-2032
3.5 LOW

A vulnerability classified as problematic was found in ChestnutCMS 1.5.2. This vulnerability affects the function renameFile of the file /cms/file/rename. The manipulation of the argument …

Mar 6, 2025
CVE-2024-13902
2.4 LOW

A vulnerability, which was classified as problematic, was found in huang-yk student-manage 1.0. This affects an unknown part of the component Edit a Student Information …

Mar 6, 2025
CVE-2025-1540
3.1 LOW

An issue has been discovered in GitLab CE/EE for Self-Managed and Dedicated instances affecting all versions from 17.5 prior to 17.6.5, 17.7 prior to 17.7.4, …

Mar 6, 2025
CVE-2024-11035
2.5 LOW

Carbon Black Cloud Windows Sensor, prior to 4.0.3, may be susceptible to an Information Leak vulnerability, which s a type of issue whereby sensitive information …

Mar 5, 2025
CVE-2025-22212
2.7 LOW

A SQL injection vulnerability in the Convert Forms component versions 1.0.0-1.0.0 - 4.4.9 for Joomla allows authenticated attackers (administrator) to execute arbitrary SQL commands in …

Mar 5, 2025
CVE-2025-1967
3.5 LOW

A vulnerability, which was classified as problematic, has been found in code-projects Blood Bank Management System 1.0. Affected by this issue is some unknown functionality …

Mar 5, 2025
CVE-2025-1957
3.5 LOW

A vulnerability classified as problematic was found in code-projects Blood Bank System 1.0. This vulnerability affects unknown code of the file /BBfile/Blood/o+.php. The manipulation of …

Mar 4, 2025
CVE-2025-1955
3.5 LOW

A vulnerability was found in code-projects Online Class and Exam Scheduling System 1.0. It has been rated as problematic. Affected by this issue is some …

Mar 4, 2025
CVE-2025-1953
2.6 LOW

A vulnerability has been found in vLLM AIBrix 0.2.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file pkg/plugins/gateway/prefixcacheindexer/hash.go …

Mar 4, 2025
CVE-2025-1939
3.9 LOW

Android apps can load web pages using the Custom Tabs feature. This feature supports a transition animation that could have been used to trick a …

Mar 4, 2025
CVE-2024-47259
3.5 LOW

Girishunawane, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API dynamicoverlay.cgi did not have a sufficient input validation allowing for …

Mar 4, 2025
CVE-2025-1905
3.5 LOW

A vulnerability, which was classified as problematic, was found in SourceCodester Employee Management System 1.0. This affects an unknown part of the file employee.php. The …

Mar 4, 2025
CVE-2025-1904
3.5 LOW

A vulnerability, which was classified as problematic, has been found in code-projects Blood Bank System 1.0. Affected by this issue is some unknown functionality of …

Mar 4, 2025
CVE-2025-24309
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vulnerability can be exploited only …

Mar 4, 2025
CVE-2025-24301
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free. This vulnerability can be exploited …

Mar 4, 2025
CVE-2025-23420
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vulnerability can be exploited only …

Mar 4, 2025
CVE-2025-23418
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.

Mar 4, 2025
CVE-2025-23414
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free. This vulnerability can be exploited …

Mar 4, 2025
CVE-2025-23409
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free. This vulnerability can be exploited …

Mar 4, 2025
CVE-2025-23240
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vulnerability can be exploited only …

Mar 4, 2025
CVE-2025-23234
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through buffer overflow.

Mar 4, 2025
CVE-2025-22897
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through buffer overflow.

Mar 4, 2025
CVE-2025-22847
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.

Mar 4, 2025
CVE-2025-22841
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.

Mar 4, 2025
CVE-2025-22837
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through NULL pointer dereference.

Mar 4, 2025
CVE-2025-22835
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vulnerability can be exploited only …

Mar 4, 2025
CVE-2025-22443
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.

Mar 4, 2025
CVE-2025-21097
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through NULL pointer dereference.

Mar 4, 2025
CVE-2025-21089
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.

Mar 4, 2025
CVE-2025-21084
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through through NULL pointer dereference.. This vulnerability can be …

Mar 4, 2025
CVE-2025-20626
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free. This vulnerability can be exploited …

Mar 4, 2025
CVE-2025-20091
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free. This vulnerability can be exploited …

Mar 4, 2025
CVE-2025-20081
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free. This vulnerability can be exploited …

Mar 4, 2025
CVE-2025-20024
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through integer overflow. This vulnerability can be exploited only …

Mar 4, 2025
CVE-2025-20021
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.

Mar 4, 2025
CVE-2025-20011
3.3 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker case DOS through missing release of memory.

Mar 4, 2025
CVE-2025-0587
3.8 LOW

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through integer overflow. This vulnerability can be exploited only …

Mar 4, 2025
CVE-2025-1892
2.4 LOW

A vulnerability was found in shishuocms 1.1. It has been classified as problematic. Affected is an unknown function of the file /manage/folder/add.json of the component …

Mar 4, 2025
CVE-2025-27221
3.2 LOW

In the URI gem before 1.0.3 for Ruby, the URI handling methods (URI.join, URI#merge, URI#+) have an inadvertent leakage of authentication credentials because userinfo is …

Mar 4, 2025
CVE-2025-1880
2.0 LOW

A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been classified as problematic. Affected is an unknown function of the …

Mar 3, 2025
CVE-2025-1879
2.4 LOW

A vulnerability was found in i-Drive i11 and i12 up to 20250227 and classified as problematic. This issue affects some unknown processing of the component …

Mar 3, 2025
CVE-2025-1878
3.1 LOW

A vulnerability has been found in i-Drive i11 and i12 up to 20250227 and classified as problematic. This vulnerability affects unknown code of the component …

Mar 3, 2025
CVE-2025-24023
3.7 LOW

Flask-AppBuilder is an application development framework. Prior to 4.5.3, Flask-AppBuilder allows unauthenticated users to enumerate existing usernames by timing the response time from the server …

Mar 3, 2025
CVE-2025-1830
2.4 LOW

A vulnerability was found in zj1983 zz up to 2024-8. It has been rated as problematic. This issue affects some unknown processing of the component …

Mar 2, 2025
CVE-2025-0895
2.4 LOW

IBM Cognos Analytics Mobile 1.1 for Android could allow a user with physical access to the device, to obtain sensitive information from debugging code log …

Mar 2, 2025
CVE-2024-55907
2.0 LOW

IBM Cognos Analytics Mobile 1.1 for iOS application could allow an attacker to reverse engineer the codebase to gain knowledge about the programming technique, interface, …

Mar 2, 2025
CVE-2025-1817
2.4 LOW

A vulnerability classified as problematic was found in Mini-Tmall up to 20250211. This vulnerability affects unknown code of the file /admin of the component Admin …

Mar 2, 2025
CVE-2025-1807
3.5 LOW

A vulnerability, which was classified as problematic, was found in Eastnets PaymentSafe 2.5.26.0. This affects an unknown part of the file /directRouter.rfc of the component …

Mar 2, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.