CVE Database

116527+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-2793
5.4 MEDIUM

IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.6, 6.2.0.0 through 6.2.0.4, IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6, and 6.2.0.0 through 6.2.0.4 is vulnerable to cross-site …

Jul 8, 2025
CVE-2025-29267
6.5 MEDIUM

SQL Injection vulnerability in Abis, Inc Adjutant Core Accounting ERP build v.PreBeta250F allows a remote attacker to obtain a sensitive information via the cid parameter …

Jul 8, 2025
CVE-2025-24474
2.7 LOW

An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiManager 7.6.0 through 7.6.1, 7.4.0 through 7.4.6, 7.2 all …

Jul 8, 2025
CVE-2024-55599
5.3 MEDIUM

An Improperly Implemented Security Check for Standard vulnerability [CWE-358] in FortiOS version 7.6.0, version 7.4.7 and below, 7.0 all versions, 6.4 all versions and FortiProxy …

Jul 8, 2025
CVE-2024-52965
7.2 HIGH

A missing critical step in authentication vulnerability [CWE-304] in Fortinet FortiOS version 7.6.0 through 7.6.1, 7.4.0 through 7.4.5, 7.2.0 through 7.2.10, and before 7.0.16 & …

Jul 8, 2025
CVE-2025-7345
7.5 HIGH

A flaw exists in gdk‑pixbuf within the gdk_pixbuf__jpeg_image_load_increment function (io-jpeg.c) and in glib’s g_base64_encode_step (glib/gbase64.c). When processing maliciously crafted JPEG images, a heap buffer overflow …

Jul 8, 2025
CVE-2025-7181
6.3 MEDIUM

A vulnerability, which was classified as critical, was found in code-projects Staff Audit System 1.0. Affected is an unknown function of the file /test.php. The …

Jul 8, 2025
CVE-2025-7180
7.3 HIGH

A vulnerability, which was classified as critical, has been found in code-projects Staff Audit System 1.0. This issue affects some unknown processing of the file …

Jul 8, 2025
CVE-2025-47422
7.5 HIGH

Advanced Installer before 22.6 has an uncontrolled search path element local privilege escalation vulnerability. When running as SYSTEM in certain configurations, Advanced Installer looks in …

Jul 8, 2025
CVE-2025-7179
7.3 HIGH

A vulnerability classified as critical was found in code-projects Library System 1.0. This vulnerability affects unknown code of the file /add-teacher.php. The manipulation of the …

Jul 8, 2025
CVE-2025-7178
7.3 HIGH

A vulnerability classified as critical has been found in code-projects Food Distributor Site 1.0. This affects an unknown part of the file /admin/login.php. The manipulation …

Jul 8, 2025
CVE-2025-50130
7.8 HIGH

A heap-based buffer overflow vulnerability exists in VS6Sim.exe contained in V-SFT and TELLUS provided by FUJI ELECTRIC CO., LTD. Opening V9 files or X1 files …

Jul 8, 2025
CVE-2025-27061
7.8 HIGH

Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware.

Jul 8, 2025
CVE-2025-27058
7.8 HIGH

Memory corruption while processing packet data with exceedingly large packet.

Jul 8, 2025
CVE-2025-27057
7.5 HIGH

Transient DOS while handling beacon frames with invalid IE header length.

Jul 8, 2025
CVE-2025-27056
7.8 HIGH

Memory corruption during sub-system restart while processing clean-up to free up resources.

Jul 8, 2025
CVE-2025-27055
7.8 HIGH

Memory corruption during the image encoding process.

Jul 8, 2025
CVE-2025-27052
7.8 HIGH

Memory corruption while processing data packets in diag received from Unix clients.

Jul 8, 2025
CVE-2025-27051
7.8 HIGH

Memory corruption while processing command message in WLAN Host.

Jul 8, 2025
CVE-2025-27050
7.8 HIGH

Memory corruption while processing event close when client process terminates abruptly.

Jul 8, 2025
CVE-2025-27047
7.8 HIGH

Memory corruption while processing the TESTPATTERNCONFIG escape path.

Jul 8, 2025
CVE-2025-27046
7.8 HIGH

Memory corruption while processing multiple simultaneous escape calls.

Jul 8, 2025
CVE-2025-27044
7.8 HIGH

Memory corruption while executing timestamp video decode command with large input values.

Jul 8, 2025
CVE-2025-27043
7.8 HIGH

Memory corruption while processing manipulated payload in video firmware.

Jul 8, 2025
CVE-2025-27042
7.8 HIGH

Memory corruption while processing video packets received from video firmware.

Jul 8, 2025
CVE-2025-21466
7.8 HIGH

Memory corruption while processing a private escape command in an event trigger.

Jul 8, 2025
CVE-2025-21454
7.5 HIGH

Transient DOS while processing received beacon frame.

Jul 8, 2025
CVE-2025-21450
9.1 CRITICAL

Cryptographic issue occurs due to use of insecure connection method while downloading.

Jul 8, 2025
CVE-2025-21449
7.5 HIGH

Transient DOS may occur while processing malformed length field in SSID IEs.

Jul 8, 2025
CVE-2025-21446
7.5 HIGH

Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.

Jul 8, 2025
CVE-2025-21445
7.8 HIGH

Memory corruption while copying the result to the transmission queue which is shared between the virtual machine and the host.

Jul 8, 2025
CVE-2025-21444
7.8 HIGH

Memory corruption while copying the result to the transmission queue in EMAC.

Jul 8, 2025
CVE-2025-21433
6.2 MEDIUM

Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.

Jul 8, 2025
CVE-2025-21432
7.8 HIGH

Memory corruption while retrieving the CBOR data from TA.

Jul 8, 2025
CVE-2025-21427
8.2 HIGH

Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.

Jul 8, 2025
CVE-2025-21426
6.6 MEDIUM

Memory corruption while processing camera TPG write request.

Jul 8, 2025
CVE-2025-21422
7.1 HIGH

Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.

Jul 8, 2025
CVE-2024-53009
5.3 MEDIUM

Memory corruption while operating the mailbox in Automotive.

Jul 8, 2025
CVE-2025-7177
4.7 MEDIUM

A vulnerability was found in PHPGurukul Car Washing Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality …

Jul 8, 2025
CVE-2025-7176
7.3 HIGH

A vulnerability was found in PHPGurukul Hospital Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of …

Jul 8, 2025
CVE-2025-40721
5.4 MEDIUM

Reflected Cross-site Scripting (XSS) vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to execute JavaScript code in …

Jul 8, 2025
CVE-2025-40720
6.1 MEDIUM

Reflected Cross-site Scripting (XSS) vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to execute JavaScript code in …

Jul 8, 2025
CVE-2025-40719
6.1 MEDIUM

Reflected Cross-site Scripting (XSS) vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to execute JavaScript code in …

Jul 8, 2025
CVE-2025-40718
7.5 HIGH

Improper error handling vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to send malformed payloads to generate …

Jul 8, 2025
CVE-2025-40717
9.8 CRITICAL

SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases …

Jul 8, 2025
CVE-2025-40716
9.8 CRITICAL

SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases …

Jul 8, 2025
CVE-2025-40715
9.8 CRITICAL

SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases …

Jul 8, 2025
CVE-2025-40714
9.8 CRITICAL

SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases …

Jul 8, 2025
CVE-2025-40713
9.8 CRITICAL

SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases …

Jul 8, 2025
CVE-2025-40712
9.8 CRITICAL

SQL injection vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to retrieve, create, update and delete databases …

Jul 8, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.