CVE Database

117544+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-46593
5.1 MEDIUM

Process residence vulnerability in abnormal scenarios in the print module Impact: Successful exploitation of this vulnerability may affect availability.

May 6, 2025
CVE-2025-46592
4.4 MEDIUM

Null pointer dereference vulnerability in the USB HDI driver module Impact: Successful exploitation of this vulnerability may affect availability.

May 6, 2025
CVE-2025-46591
6.2 MEDIUM

Out-of-bounds data read vulnerability in the authorization module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

May 6, 2025
CVE-2025-46590
6.3 MEDIUM

Bypass vulnerability in the network search instruction authentication module Impact: Successful exploitation of this vulnerability can bypass authentication and enable access to some network search …

May 6, 2025
CVE-2025-46589
4.4 MEDIUM

Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.

May 6, 2025
CVE-2025-46588
4.4 MEDIUM

Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.

May 6, 2025
CVE-2025-46587
6.2 MEDIUM

Permission control vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

May 6, 2025
CVE-2025-3281
5.3 MEDIUM

The User Registration & Membership – Custom Registration Form, Login Form, and User Profile plugin for WordPress is vulnerable to Insecure Direct Object Reference in …

May 6, 2025
CVE-2025-3020
5.4 MEDIUM

An low privileged remote Attacker can execute arbitrary web scripts or HTML via a crafted payload injected into several fields of the configuration webpage with …

May 6, 2025
CVE-2024-58252
6.2 MEDIUM

Vulnerability of insufficient information protection in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

May 6, 2025
CVE-2025-4329
4.3 MEDIUM

A vulnerability was found in 74CMS up to 3.33.0. It has been rated as problematic. Affected by this issue is the function index of the …

May 6, 2025
CVE-2025-4328
3.5 LOW

A vulnerability was found in fp2952 spring-cloud-base up to 7f050dc6db9afab82c5ce1d41cd74ed255ec9bfa. It has been declared as problematic. Affected by this vulnerability is the function sendBack of …

May 6, 2025
CVE-2025-4327
4.3 MEDIUM

A vulnerability was found in MRCMS 3.1.2. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross-site request forgery. …

May 6, 2025
CVE-2025-46586
5.1 MEDIUM

Permission control vulnerability in the contacts module Impact: Successful exploitation of this vulnerability may affect availability.

May 6, 2025
CVE-2025-46585
7.5 HIGH

Out-of-bounds array read/write vulnerability in the kernel module Impact: Successful exploitation of this vulnerability may affect availability.

May 6, 2025
CVE-2025-46584
7.8 HIGH

Vulnerability of improper authentication logic implementation in the file system module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

May 6, 2025
CVE-2025-4326
2.4 LOW

A vulnerability was found in MRCMS 3.1.2 and classified as problematic. This issue affects some unknown processing of the file /admin/chip/add.do of the component Add …

May 6, 2025
CVE-2025-4325
2.4 LOW

A vulnerability has been found in MRCMS 3.1.2 and classified as problematic. This vulnerability affects unknown code of the file /admin/category/add.do of the component Category …

May 6, 2025
CVE-2025-4324
2.4 LOW

A vulnerability, which was classified as problematic, was found in MRCMS 3.1.2. This affects an unknown part of the file /admin/link/edit.do of the component External …

May 6, 2025
CVE-2025-4337
4.3 MEDIUM

The AHAthat Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.6. This is due to missing …

May 6, 2025
CVE-2025-4323
2.4 LOW

A vulnerability, which was classified as problematic, has been found in MRCMS 3.1.2. Affected by this issue is some unknown functionality of the component Edit …

May 6, 2025
CVE-2025-4314
7.3 HIGH

A vulnerability has been found in SourceCodester Advanced Web Store 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the …

May 6, 2025
CVE-2025-4313
7.3 HIGH

A vulnerability, which was classified as critical, was found in SourceCodester Advanced Web Store 1.0. Affected is an unknown function of the file /admin/admin_addnew_product.php. The …

May 6, 2025
CVE-2025-2802
7.3 HIGH

The LayoutBoxx plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 0.3.1. This is due to the software …

May 6, 2025
CVE-2025-4312
7.3 HIGH

A vulnerability, which was classified as critical, has been found in SourceCodester Advanced Web Store 1.0. This issue affects some unknown processing of the file …

May 6, 2025
CVE-2025-4311
7.3 HIGH

A vulnerability classified as critical was found in itsourcecode Content Management System 1.0. This vulnerability affects unknown code of the file /admin/update_main_topic_img.php?topic_id=529. The manipulation of …

May 6, 2025
CVE-2025-4310
4.7 MEDIUM

A vulnerability classified as critical has been found in itsourcecode Content Management System 1.0. This affects an unknown part of the file /admin/add_topic.php?category=BBS. The manipulation …

May 6, 2025
CVE-2025-4309
7.3 HIGH

A vulnerability was found in PHPGurukul Art Gallery Management System 1.1. It has been rated as critical. Affected by this issue is some unknown functionality …

May 6, 2025
CVE-2025-47303

Rejected reason: Not used

May 6, 2025
CVE-2025-47302

Rejected reason: Not used

May 6, 2025
CVE-2025-47301

Rejected reason: Not used

May 6, 2025
CVE-2025-47300

Rejected reason: Not used

May 6, 2025
CVE-2025-47299

Rejected reason: Not used

May 6, 2025
CVE-2025-47298

Rejected reason: Not used

May 6, 2025
CVE-2025-47297

Rejected reason: Not used

May 6, 2025
CVE-2025-47296

Rejected reason: Not used

May 6, 2025
CVE-2023-46716

Rejected reason: Not used

May 6, 2025
CVE-2021-43069

Rejected reason: Not used

May 6, 2025
CVE-2025-4308
7.3 HIGH

A vulnerability was found in PHPGurukul Art Gallery Management System 1.1. It has been declared as critical. Affected by this vulnerability is an unknown functionality …

May 6, 2025
CVE-2025-4307
7.3 HIGH

A vulnerability was found in PHPGurukul Art Gallery Management System 1.1. It has been classified as critical. Affected is an unknown function of the file …

May 6, 2025
CVE-2025-4306
7.3 HIGH

A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0 and classified as critical. This issue affects some unknown processing of the file …

May 6, 2025
CVE-2025-3610
8.8 HIGH

The Reales WP STPT plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 2.1.2. This is …

May 6, 2025
CVE-2025-3609
5.3 MEDIUM

The Reales WP STPT plugin for WordPress is vulnerable to unauthorized user registration in all versions up to, and including, 2.1.2. This is due to …

May 6, 2025
CVE-2025-4305
6.3 MEDIUM

A vulnerability has been found in kefaming mayi up to 1.3.9 and classified as critical. This vulnerability affects the function Upload of the file app/tools/controller/File.php. …

May 6, 2025
CVE-2025-4304
7.3 HIGH

A vulnerability, which was classified as critical, was found in PHPGurukul Cyber Cafe Management System 1.0. This affects an unknown part of the file /adminprofile.php. …

May 6, 2025
CVE-2024-39442
6.2 MEDIUM

In sprd ssense service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

May 6, 2025
CVE-2025-4303
7.3 HIGH

A vulnerability, which was classified as critical, has been found in PHPGurukul Human Metapneumovirus Testing Management System 1.0. Affected by this issue is some unknown …

May 6, 2025
CVE-2025-4301
7.3 HIGH

A vulnerability classified as critical was found in itsourcecode Content Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /search-notice.php. …

May 6, 2025
CVE-2025-46728
7.5 HIGH

cpp-httplib is a C++ header-only HTTP/HTTPS server and client library. Prior to version 0.20.1, the library fails to enforce configured size limits on incoming request …

May 6, 2025
CVE-2025-2509
7.8 HIGH

Out-of-Bounds Read in Virglrenderer in ChromeOS 16093.57.0 allows a malicious guest VM to achieve arbitrary address access within the crosvm sandboxed process, potentially leading to …

May 6, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.