CVE Database

116527+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-53074
9.1 CRITICAL

Out-of-bounds Read vulnerability in Samsung Open Source rLottie allows Overflow Buffers.This issue affects rLottie: V0.2.

Jun 30, 2025
CVE-2025-6881
8.8 HIGH

A vulnerability was found in D-Link DI-8100 16.07.21. It has been rated as critical. Affected by this issue is some unknown functionality of the file …

Jun 30, 2025
CVE-2025-53075
9.8 CRITICAL

Improper Input Validation vulnerability in Samsung Open Source rLottie allows Path Traversal.This issue affects rLottie: V0.2.

Jun 30, 2025
CVE-2025-46014
8.8 HIGH

Several services in Honor Device Co., Ltd Honor PC Manager v16.0.0.118 was discovered to connect services to the named pipe iMateBookAssistant with default or overly …

Jun 30, 2025
CVE-2025-0634
9.8 CRITICAL

Use After Free vulnerability in Samsung Open Source rLottie allows Remote Code Inclusion.This issue affects rLottie: V0.2.

Jun 30, 2025
CVE-2025-6880
6.3 MEDIUM

A vulnerability classified as critical has been found in SourceCodester Best Salon Management System 1.0. Affected is an unknown function of the file /panel/edit-tax.php. The …

Jun 30, 2025
CVE-2025-6879
6.3 MEDIUM

A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the …

Jun 30, 2025
CVE-2025-6878
6.3 MEDIUM

A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file …

Jun 30, 2025
CVE-2025-6877
6.3 MEDIUM

A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been classified as critical. This affects an unknown part of the file …

Jun 30, 2025
CVE-2025-6876
6.3 MEDIUM

A vulnerability was found in SourceCodester Best Salon Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the …

Jun 29, 2025
CVE-2025-6875
6.3 MEDIUM

A vulnerability has been found in SourceCodester Best Salon Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of …

Jun 29, 2025
CVE-2025-6874
6.3 MEDIUM

A vulnerability, which was classified as critical, was found in SourceCodester Best Salon Management System 1.0. Affected is an unknown function of the file /panel/add_subscribe.php. …

Jun 29, 2025
CVE-2025-6873
4.7 MEDIUM

A vulnerability, which was classified as critical, has been found in SourceCodester Simple Company Website 1.0. This issue affects some unknown processing of the file …

Jun 29, 2025
CVE-2025-6872
4.7 MEDIUM

A vulnerability classified as critical was found in SourceCodester Simple Company Website 1.0. This vulnerability affects unknown code of the file /classes/SystemSettings.php?f=update_settings. The manipulation of …

Jun 29, 2025
CVE-2025-6871
7.3 HIGH

A vulnerability classified as critical has been found in SourceCodester Simple Company Website 1.0. This affects an unknown part of the file /classes/Login.php. The manipulation …

Jun 29, 2025
CVE-2015-20112
3.4 LOW

RLPx 5 has two CTR streams based on the same key, IV, and nonce. This can facilitate decryption on a private network.

Jun 29, 2025
CVE-2025-6870
4.7 MEDIUM

A vulnerability was found in SourceCodester Simple Company Website 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of …

Jun 29, 2025
CVE-2025-6869
4.7 MEDIUM

A vulnerability was found in SourceCodester Simple Company Website 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of …

Jun 29, 2025
CVE-2025-24292
6.8 MEDIUM

A misconfigured query in UniFi Network (v9.1.120 and earlier) could allow users to authenticate to Enterprise WiFi or VPN Server (l2tp and OpenVPN) using a …

Jun 29, 2025
CVE-2025-24290
9.9 CRITICAL

Multiple Authenticated SQL Injection vulnerabilities found in UISP Application (Version 2.4.206 and earlier) could allow a malicious actor with low privileges to escalate privileges.

Jun 29, 2025
CVE-2025-24289
7.5 HIGH

A Cross-Site Request Forgery (CSRF) leading to Cross-Site Scripting (XSS) vulnerability in the UCRM Client Signup Plugin (v1.3.4 and earlier) could allow privilege escalation if …

Jun 29, 2025
CVE-2025-6868
4.7 MEDIUM

A vulnerability was found in SourceCodester Simple Company Website 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/clients/manage.php. …

Jun 29, 2025
CVE-2025-6867
4.7 MEDIUM

A vulnerability was found in SourceCodester Simple Company Website 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/services/manage.php. The …

Jun 29, 2025
CVE-2025-6866
4.3 MEDIUM

A vulnerability has been found in code-projects Simple Forum 1.0 and classified as critical. This vulnerability affects unknown code of the file /forum_downloadfile.php. The manipulation …

Jun 29, 2025
CVE-2025-6865
4.3 MEDIUM

A vulnerability, which was classified as problematic, was found in DaiCuo up to 1.3.13. This affects an unknown part of the file /admin.php/addon/index. The manipulation …

Jun 29, 2025
CVE-2025-6864
4.3 MEDIUM

A vulnerability, which was classified as problematic, has been found in SeaCMS up to 13.2. Affected by this issue is some unknown functionality of the …

Jun 29, 2025
CVE-2025-6863
7.3 HIGH

A vulnerability classified as critical was found in PHPGurukul Local Services Search Engine Management System 2.1. Affected by this vulnerability is an unknown functionality of …

Jun 29, 2025
CVE-2025-6862
6.3 MEDIUM

A vulnerability classified as critical has been found in SourceCodester Best Salon Management System 1.0. Affected is an unknown function of the file /panel/edit_plan.php. The …

Jun 29, 2025
CVE-2025-6861
6.3 MEDIUM

A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the …

Jun 29, 2025
CVE-2025-6860
6.3 MEDIUM

A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file …

Jun 29, 2025
CVE-2025-6859
6.3 MEDIUM

A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been classified as critical. This affects an unknown part of the file …

Jun 29, 2025
CVE-2025-5878
7.3 HIGH

A vulnerability was found in ESAPI esapi-java-legacy and classified as problematic. This issue affects the interface Encoder.encodeForSQL of the SQL Injection Defense. An attack leads …

Jun 29, 2025
CVE-2024-24915
6.1 MEDIUM

Credentials are not cleared from memory after being used. A user with Administrator permissions can execute memory dump for SmartConsole process and fetch them.

Jun 29, 2025
CVE-2025-6858
3.3 LOW

A vulnerability was found in HDF5 1.14.6 and classified as problematic. Affected by this issue is the function H5C__flush_single_entry of the file src/H5Centry.c. The manipulation …

Jun 29, 2025
CVE-2025-6857
3.3 LOW

A vulnerability has been found in HDF5 1.14.6 and classified as problematic. Affected by this vulnerability is the function H5G__node_cmp3 of the file src/H5Gnode.c. The …

Jun 29, 2025
CVE-2025-6856
3.3 LOW

A vulnerability, which was classified as problematic, was found in HDF5 1.14.6. Affected is the function H5FL__reg_gc_list of the file src/H5FL.c. The manipulation leads to …

Jun 29, 2025
CVE-2025-6855
5.5 MEDIUM

A vulnerability, which was classified as critical, has been found in chatchat-space Langchain-Chatchat up to 0.3.1. This issue affects some unknown processing of the file …

Jun 29, 2025
CVE-2025-6854
4.3 MEDIUM

A vulnerability classified as problematic was found in chatchat-space Langchain-Chatchat up to 0.3.1. This vulnerability affects unknown code of the file /v1/files?purpose=assistants. The manipulation leads …

Jun 29, 2025
CVE-2025-6853
6.3 MEDIUM

A vulnerability classified as critical has been found in chatchat-space Langchain-Chatchat up to 0.3.1. This affects the function upload_temp_docs of the file /knowledge_base/upload_temp_docs of the …

Jun 29, 2025
CVE-2025-6850
6.3 MEDIUM

A vulnerability has been found in code-projects Simple Forum 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file …

Jun 29, 2025
CVE-2025-6849
3.5 LOW

A vulnerability, which was classified as problematic, was found in code-projects Simple Forum 1.0. Affected is an unknown function of the file /forum_edit1.php. The manipulation …

Jun 29, 2025
CVE-2025-6848
6.3 MEDIUM

A vulnerability, which was classified as critical, has been found in code-projects Simple Forum 1.0. This issue affects some unknown processing of the file /forum1.php. …

Jun 29, 2025
CVE-2025-6847
6.3 MEDIUM

A vulnerability classified as critical was found in code-projects Simple Forum 1.0. This vulnerability affects unknown code of the file /forum_edit.php. The manipulation of the …

Jun 29, 2025
CVE-2025-6846
7.3 HIGH

A vulnerability classified as critical has been found in code-projects Simple Forum 1.0. This affects an unknown part of the file /forum_viewfile.php. The manipulation of …

Jun 29, 2025
CVE-2025-6845
7.3 HIGH

A vulnerability was found in code-projects Simple Forum 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the …

Jun 29, 2025
CVE-2025-6462
6.4 MEDIUM

The EZ SQL Reports Shortcode Widget and DB Backup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's SQLREPORT shortcode in all …

Jun 29, 2025
CVE-2025-6844
7.3 HIGH

A vulnerability was found in code-projects Simple Forum 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the …

Jun 29, 2025
CVE-2025-6843
7.3 HIGH

A vulnerability was found in code-projects Simple Photo Gallery 1.0. It has been classified as critical. Affected is an unknown function of the file /upload-photo.php. …

Jun 29, 2025
CVE-2025-6842
4.7 MEDIUM

A vulnerability was found in code-projects Product Inventory System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/edit_user.php. The …

Jun 29, 2025
CVE-2025-6841
4.7 MEDIUM

A vulnerability has been found in code-projects Product Inventory System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/edit_product.php. The …

Jun 29, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.