CVE Database

9968+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-43879
9.8 CRITICAL

WRH-733GBK and WRH-733GWH contain an improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in the telnet function. If a …

Jun 24, 2025
CVE-2024-56731
10.0 CRITICAL

Gogs is an open source self-hosted Git service. Prior to version 0.13.3, it's still possible to delete files under the .git directory and achieve remote …

Jun 24, 2025
CVE-2025-6560
9.8 CRITICAL

Multiple wireless router models from Sapido have an Exposure of Sensitive Information vulnerability, allowing unauthenticated remote attackers to directly access a system configuration file and …

Jun 24, 2025
CVE-2025-6559
9.8 CRITICAL

Multiple wireless router models from Sapido have an OS Command Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary OS commands and execute them on …

Jun 24, 2025
CVE-2025-48469
9.6 CRITICAL

Successful exploitation of the vulnerability could allow an unauthenticated attacker to upload firmware through a public update page, potentially leading to backdoor installation or privilege …

Jun 24, 2025
CVE-2025-34036
9.8 CRITICAL

An OS command injection vulnerability exists in white-labeled DVRs manufactured by TVT, affecting a custom HTTP service called "Cross Web Server" that listens on TCP …

Jun 24, 2025
CVE-2025-34035
9.8 CRITICAL

An OS command injection vulnerability exists in EnGenius EnShare Cloud Service version 1.4.11 and earlier. The usbinteract.cgi script fails to properly sanitize user input passed …

Jun 24, 2025
CVE-2025-52562
10.0 CRITICAL

Convoy is a KVM server management panel for hosting businesses. In versions 3.9.0-rc3 to before 4.4.1, there is a directory traversal vulnerability in the LocaleController …

Jun 23, 2025
CVE-2025-2828
10.0 CRITICAL

A Server-Side Request Forgery (SSRF) vulnerability exists in the RequestsToolkit component of the langchain-community package (specifically, langchain_community.agent_toolkits.openapi.toolkit.RequestsToolkit) in langchain-ai/langchain version 0.0.27. This vulnerability occurs because …

Jun 23, 2025
CVE-2023-47030
9.8 CRITICAL

An issue in NCR Terminal Handler v.1.5.1 allows a remote attacker to execute arbitrary code and obtain sensitive information via a GET request to a …

Jun 23, 2025
CVE-2023-47029
9.8 CRITICAL

An issue in NCR Terminal Handler v.1.5.1 allows a remote attacker to execute arbitrary code and obtain sensitive information via a crafted POST request to …

Jun 23, 2025
CVE-2023-47031
9.8 CRITICAL

An issue in NCR Terminal Handler v.1.5.1 allows a remote attacker to escalate privileges via a crafted POST request to the grantRolesToUsers, grantRolesToGroups, and grantRolesToOrganization …

Jun 23, 2025
CVE-2023-47295
9.8 CRITICAL

A CSV injection vulnerability in NCR Terminal Handler v1.5.1 allows attackers to execute arbitrary commands via injecting a crafted payload into any text field that …

Jun 23, 2025
CVE-2023-47032
9.8 CRITICAL

Password Vulnerability in NCR Terminal Handler v.1.5.1 allows a remote attacker to execute arbitrary code via a crafted script to the UserService SOAP API function.

Jun 23, 2025
CVE-2025-46101
9.8 CRITICAL

SQL Injection vulnerability in Beakon Software Beakon Learning Management System Sharable Content Object Reference Model (SCORM) version before 5.4.3 allows a remote attacker to obtain …

Jun 23, 2025
CVE-2023-48978
9.8 CRITICAL

An issue in NCR ITM Web terminal v.4.4.0 and v.4.4.4 allows a remote attacker to execute arbitrary code via a crafted script to the IP …

Jun 23, 2025
CVE-2023-47297
9.8 CRITICAL

A settings manipulation vulnerability in NCR Terminal Handler v1.5.1 allows attackers to execute arbitrary commands, including editing system security auditing configurations.

Jun 23, 2025
CVE-2025-6513
9.3 CRITICAL

Standard Windows users can access the configuration file for database access of the BRAIN2 application and decrypt it.

Jun 23, 2025
CVE-2025-6512
10.0 CRITICAL

On a client with a non-admin user, a script can be integrated into a report. The reports could later be executed on the BRAIN2 server …

Jun 23, 2025
CVE-2025-52921
9.9 CRITICAL

In Innoshop through 0.4.1, an authenticated attacker could exploit the File Manager functions in the admin panel to achieve code execution on the server, by …

Jun 23, 2025
CVE-2024-45347
9.6 CRITICAL

An unauthorized access vulnerability exists in the Xiaomi Mi Connect Service APP. The vulnerability is caused by the validation logic is flawed and can be …

Jun 23, 2025
CVE-2025-6216
9.8 CRITICAL

Allegra calculateTokenExpDate Password Recovery Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Allegra. Authentication is not required to …

Jun 21, 2025
CVE-2025-25038
9.8 CRITICAL

An OS command injection vulnerability exists in MiniDVBLinux version 5.4 and earlier. The system’s web-based management interface fails to properly sanitize user-supplied input before passing …

Jun 20, 2025
CVE-2025-49132
10.0 CRITICAL

Pterodactyl is a free, open-source game server management panel. Prior to version 1.11.11, using the /locales/locale.json with the locale and namespace query parameters, a malicious …

Jun 20, 2025
CVE-2025-44635
9.8 CRITICAL

There are multiple unauthorized remote command execution vulnerabilities in the H3C ER2200G2, ERG2-450W, ERG2-1200W, ERG2-1350W, NR1200W series routers before ERG2AW-MNW100-R1117; H3C ER3100G2, ER3200G2, ER3260G2, ER5100G2, …

Jun 20, 2025
CVE-2025-45890
9.8 CRITICAL

Directory Traversal vulnerability in novel plus before v.5.1.0 allows a remote attacker to execute arbitrary code via the filePath parameter

Jun 20, 2025
CVE-2025-46179
9.8 CRITICAL

A SQL Injection vulnerability was discovered in the askquery.php file of CloudClassroom-PHP Project v1.0. The squeryx parameter accepts unsanitized input, which is passed directly into …

Jun 20, 2025
CVE-2025-48706
9.1 CRITICAL

An issue was discovered in COROS PACE 3 through 3.0808.0. Due to an out-of-bounds read vulnerability, sending a crafted BLE message forces the device to …

Jun 20, 2025
CVE-2025-32880
9.8 CRITICAL

An issue was discovered on COROS PACE 3 devices through 3.0808.0. It implements a function to connect the watch to a WLAN. With WLAN access, …

Jun 20, 2025
CVE-2025-32878
9.8 CRITICAL

An issue was discovered on COROS PACE 3 devices through 3.0808.0. It implements a function to connect the watch to a WLAN. This function is …

Jun 20, 2025
CVE-2025-32877
9.8 CRITICAL

An issue was discovered on COROS PACE 3 devices through 3.0808.0. It identifies itself as a device without input or output capabilities, which results in …

Jun 20, 2025
CVE-2024-53298
9.8 CRITICAL

Dell PowerScale OneFS, versions 9.5.0.0 through 9.10.0.1, contains a missing authorization vulnerability in the NFS export. An unauthenticated attacker with remote access could potentially exploit …

Jun 20, 2025
CVE-2025-4981
9.9 CRITICAL

Mattermost versions 10.5.x <= 10.5.5, 9.11.x <= 9.11.15, 10.8.x <= 10.8.0, 10.7.x <= 10.7.2, 10.6.x <= 10.6.5 fail to sanitize filenames in the archive extractor …

Jun 20, 2025
CVE-2025-6384
9.1 CRITICAL

Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of CrafterCMS allows authenticated developers to execute OS commands via Groovy Sandbox Bypass. By inserting …

Jun 19, 2025
CVE-2025-33117
9.1 CRITICAL

IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 could allow a privileged user to modify configuration files that would allow the upload of a …

Jun 19, 2025
CVE-2025-4738
9.8 CRITICAL

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yirmibes Software MY ERP allows SQL Injection.This issue affects MY ERP: …

Jun 19, 2025
CVE-2025-52474
9.8 CRITICAL

WeGIA is a web manager for charitable institutions. Prior to version 3.4.2, a SQL Injection vulnerability was identified in the id parameter of the /WeGIA/controle/control.php …

Jun 19, 2025
CVE-2025-50201
9.8 CRITICAL

WeGIA is a web manager for charitable institutions. Prior to version 3.4.2, an OS Command Injection vulnerability was identified in the /html/configuracao/debug_info.php endpoint. The branch …

Jun 19, 2025
CVE-2025-52467
9.1 CRITICAL

pgai is a Python library that transforms PostgreSQL into a retrieval engine for RAG and Agentic applications. Prior to commit 8eb3567, the pgai repository was …

Jun 19, 2025
CVE-2025-24288
9.8 CRITICAL

The Versa Director software exposes a number of services by default and allow attackers an easy foothold due to default credentials and multiple accounts (most …

Jun 19, 2025
CVE-2024-45208
9.8 CRITICAL

The Versa Director SD-WAN orchestration platform which makes use of Cisco NCS application service. Active and Standby Directors communicate over TCP ports 4566 and 4570 …

Jun 19, 2025
CVE-2025-49591
9.1 CRITICAL

CryptPad is a collaboration suite. Prior to version 2025.3.0, enforcement of Two-Factor Authentication (2FA) in CryptPad can be trivially bypassed, due to weak implementation of …

Jun 18, 2025
CVE-2025-26199
9.8 CRITICAL

CloudClassroom-PHP-Project v1.0 is affected by an insecure credential transmission vulnerability. The application transmits passwords over unencrypted HTTP during the login process, exposing sensitive credentials to …

Jun 18, 2025
CVE-2025-26198
9.8 CRITICAL

CloudClassroom-PHP-Project v1.0 contains a critical SQL Injection vulnerability in the loginlinkadmin.php component. The application fails to sanitize user-supplied input in the admin login form before …

Jun 18, 2025
CVE-2025-20260
9.8 CRITICAL

A vulnerability in the PDF scanning processes of ClamAV could allow an unauthenticated, remote attacker to cause a buffer overflow condition, cause a denial of …

Jun 18, 2025
CVE-2025-46157
9.9 CRITICAL

An issue in EfroTech Time Trax v.1.0 allows a remote attacker to execute arbitrary code via the file attachment function in the leave request form

Jun 18, 2025
CVE-2025-45784
9.8 CRITICAL

D-Link DPH-400S/SE VoIP Phone v1.01 contains hardcoded provisioning variables, including PROVIS_USER_PASSWORD, which may expose sensitive user credentials. An attacker with access to the firmware image …

Jun 18, 2025
CVE-2025-1562
9.8 CRITICAL

The Recover WooCommerce Cart Abandonment, Newsletter, Email Marketing, Marketing Automation By FunnelKit plugin for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a …

Jun 18, 2025
CVE-2025-51381
9.8 CRITICAL

An authentication bypass vulnerability exists in KCM3100 Ver1.4.2 and earlier. If this vulnerability is exploited, an attacker may bypass the authentication of the product from …

Jun 18, 2025
CVE-2025-49825
9.8 CRITICAL

Teleport provides connectivity, authentication, access controls and audit for infrastructure. Community Edition versions before and including 17.5.1 are vulnerable to remote authentication bypass. At time …

Jun 17, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.