CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-13113
5.9 MEDIUM

The Countdown Timer for Elementor WordPress plugin before 1.3.7 does not sanitise and escape some parameters when outputting them on the page, which could allow …

Feb 26, 2025
CVE-2024-12878
7.1 HIGH

The Custom Block Builder WordPress plugin before 3.8.3 does not sanitise and escape a parameter before outputting it back in the page, leading to a …

Feb 26, 2025
CVE-2024-12737
6.1 MEDIUM

The WP BASE Booking of Appointments, Services and Events WordPress plugin before 5.0.0 does not sanitise and escape a parameter before outputting it back in …

Feb 26, 2025
CVE-2024-12434
5.3 MEDIUM

The SureMembers plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.10.6 via the REST API. This makes …

Feb 26, 2025
CVE-2024-10563
5.4 MEDIUM

The WooCommerce Cart Count Shortcode WordPress plugin before 1.1.0 does not validate and escape some of its shortcode attributes before outputting them back in a …

Feb 26, 2025
CVE-2024-10483
7.1 HIGH

The Simple:Press Forum WordPress plugin before 6.10.11 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected …

Feb 26, 2025
CVE-2024-10152
7.1 HIGH

The Simple Certain Time to Show Content WordPress plugin before 1.3.1 does not sanitise and escape a parameter before outputting it back in the page, …

Feb 26, 2025
CVE-2022-25773
4.3 MEDIUM

This advisory addresses a file placement vulnerability that could allow assets to be uploaded to unintended directories on the server. * Improper Limitation of a …

Feb 26, 2025
CVE-2025-22881
7.8 HIGH

Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. If a target visits …

Feb 26, 2025
CVE-2025-22869
7.5 HIGH

SSH servers which implement file transfer protocols are vulnerable to a denial of service attack from clients which complete the key exchange slowly, or not …

Feb 26, 2025
CVE-2025-22868
7.5 HIGH

An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing.

Feb 26, 2025
CVE-2025-0889
7.8 HIGH

Prior to 25.2, a local authenticated attacker can elevate privileges on a system with Privilege Management for Windows installed, via the manipulation of COM objects …

Feb 26, 2025
CVE-2025-0236
5.3 MEDIUM

Out-of-bounds vulnerability in slope processing during curve rendering in Generic PCL6 V4 Printer Driver / Generic UFR II V4 Printer Driver / Generic LIPSLX V4 …

Feb 26, 2025
CVE-2025-0235
5.3 MEDIUM

Out-of-bounds vulnerability due to improper memory release during image rendering in Generic PCL6 V4 Printer Driver / Generic UFR II V4 Printer Driver / Generic …

Feb 26, 2025
CVE-2025-0234
5.3 MEDIUM

Out-of-bounds vulnerability in curve segmentation processing of Generic PCL6 V4 Printer Driver / Generic UFR II V4 Printer Driver / Generic LIPSLX V4 Printer Driver.

Feb 26, 2025
CVE-2022-49731
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ata: libata-core: fix NULL pointer deref in ata_host_alloc_pinfo() In an unlikely (and probably wrong?) case …

Feb 26, 2025
CVE-2022-49730

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Feb 26, 2025
CVE-2022-49729
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: nfc: nfcmrvl: Fix memory leak in nfcmrvl_play_deferred Similar to the handling of play_deferred in commit …

Feb 26, 2025
CVE-2022-49728
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix signed integer overflow in __ip6_append_data Resurrect ubsan overflow checks and ubsan report this …

Feb 26, 2025
CVE-2022-49727
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix signed integer overflow in l2tp_ip6_sendmsg When len >= INT_MAX - transhdrlen, ulen = …

Feb 26, 2025
CVE-2022-49726
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: clocksource: hyper-v: unexport __init-annotated hv_init_clocksource() EXPORT_SYMBOL and __init is a bad combination because the .init.text …

Feb 26, 2025
CVE-2022-49725
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: i40e: Fix call trace in setup_tx_descriptors After PF reset and ethtool -t there was call …

Feb 26, 2025
CVE-2022-49724
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: tty: goldfish: Fix free_irq() on remove Pass the correct dev_id to free_irq() to fix this …

Feb 26, 2025
CVE-2022-49723
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/i915/reset: Fix error_state_read ptr + offset use Fix our pointer offset usage in error_state_read when …

Feb 26, 2025
CVE-2022-49722
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: ice: Fix memory corruption in VF driver Disable VF's RX/TX queues, when it's disabled. VF …

Feb 26, 2025
CVE-2022-49721
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: arm64: ftrace: consistently handle PLTs. Sometimes it is necessary to use a PLT entry to …

Feb 26, 2025
CVE-2022-49720
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: block: Fix handling of offline queues in blk_mq_alloc_request_hctx() This patch prevents that test nvme/004 triggers …

Feb 26, 2025
CVE-2022-49719
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: irqchip/gic/realview: Fix refcount leak in realview_gic_of_init of_find_matching_node_and_match() returns a node pointer with refcount incremented, we …

Feb 26, 2025
CVE-2022-49718
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: irqchip/apple-aic: Fix refcount leak in aic_of_ic_init of_get_child_by_name() returns a node pointer with refcount incremented, we …

Feb 26, 2025
CVE-2022-49717
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: irqchip/apple-aic: Fix refcount leak in build_fiq_affinity of_find_node_by_phandle() returns a node pointer with refcount incremented, we …

Feb 26, 2025
CVE-2022-49716
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v3: Fix error handling in gic_populate_ppi_partitions of_get_child_by_name() returns a node pointer with refcount incremented, we …

Feb 26, 2025
CVE-2022-49715
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v3: Fix refcount leak in gic_populate_ppi_partitions of_find_node_by_phandle() returns a node pointer with refcount incremented, we …

Feb 26, 2025
CVE-2022-49714
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: irqchip/realtek-rtl: Fix refcount leak in map_interrupts of_find_node_by_phandle() returns a node pointer with refcount incremented, we …

Feb 26, 2025
CVE-2022-49713
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: usb: dwc2: Fix memory leak in dwc2_hcd_init usb_create_hcd will alloc memory for hcd, and we …

Feb 26, 2025
CVE-2022-49712
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: lpc32xx_udc: Fix refcount leak in lpc32xx_udc_probe of_parse_phandle() returns a node pointer with refcount …

Feb 26, 2025
CVE-2022-49711
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc-bus: fix KASAN use-after-free in fsl_mc_bus_remove() In fsl_mc_bus_remove(), mc->root_mc_bus_dev->mc_io is passed to fsl_destroy_mc_io(). However, …

Feb 26, 2025
CVE-2022-49710
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: dm mirror log: round up region bitmap size to BITS_PER_LONG The code in dm-log rounds …

Feb 26, 2025
CVE-2022-49709
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: cfi: Fix __cfi_slowpath_diag RCU usage with cpuidle RCU_NONIDLE usage during __cfi_slowpath_diag can result in an …

Feb 26, 2025
CVE-2022-49708
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ext4: fix bug_on ext4_mb_use_inode_pa Hulk Robot reported a BUG_ON: ================================================================== kernel BUG at fs/ext4/mballoc.c:3211! [...] …

Feb 26, 2025
CVE-2022-49707
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ext4: add reserved GDT blocks check We capture a NULL pointer issue when resizing a …

Feb 26, 2025
CVE-2022-49706
7.1 HIGH

In the Linux kernel, the following vulnerability has been resolved: zonefs: fix zonefs_iomap_begin() for reads If a readahead is issued to a sequential zone file …

Feb 26, 2025
CVE-2022-49705
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: 9p: fix fid refcount leak in v9fs_vfs_atomic_open_dotl We need to release directory fid if we …

Feb 26, 2025
CVE-2022-49704
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: 9p: fix fid refcount leak in v9fs_vfs_get_link we check for protocol version later than required, …

Feb 26, 2025
CVE-2022-49703
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: scsi: ibmvfc: Store vhost pointer during subcrq allocation Currently the back pointer from a queue …

Feb 26, 2025
CVE-2022-49702
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix hang during unmount when block group reclaim task is running When we start …

Feb 26, 2025
CVE-2022-49701
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: scsi: ibmvfc: Allocate/free queue resource only during probe/remove Currently, the sub-queues and event pool resources …

Feb 26, 2025
CVE-2022-49700
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: mm/slub: add missing TID updates on slab deactivation The fastpath in slab_alloc_node() assumes that c->slab …

Feb 26, 2025
CVE-2022-49699
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: filemap: Handle sibling entries in filemap_get_read_batch() If a read races with an invalidation followed by …

Feb 26, 2025
CVE-2022-49698
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: netfilter: use get_random_u32 instead of prandom bh might occur while updating per-cpu rnd_state from user …

Feb 26, 2025
CVE-2022-49697
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix request_sock leak in sk lookup helpers A customer reported a request_socket leak in …

Feb 26, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.