CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-20617
7.2 HIGH

Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in UD-LT2 firmware Ver.1.00.008_SE and earlier. If an attacker logs …

Jan 22, 2025
CVE-2024-12879
4.3 MEDIUM

The WPBot Pro Wordpress Chatbot plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'qc_wp_latest_update_check_pro' function …

Jan 22, 2025
CVE-2024-11218
8.6 HIGH

A vulnerability was found in `podman build` and `buildah.` This issue occurs in a container breakout by using --jobs=2 and a race condition when building …

Jan 22, 2025
CVE-2024-13590
6.4 MEDIUM

The Ketchup Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'spacer' shortcode in all versions up to, and including, 0.1.2 …

Jan 22, 2025
CVE-2024-13584
6.4 MEDIUM

The Picture Gallery – Frontend Image Uploads, AJAX Photo List plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'videowhisper_pictures' shortcode in …

Jan 22, 2025
CVE-2024-13426
5.4 MEDIUM

The WP-Polls plugin for WordPress is vulnerable to SQL Injection via COOKIE in all versions up to, and including, 2.77.2 due to insufficient escaping on …

Jan 22, 2025
CVE-2025-23090

Rejected reason: This CVE record has been withdrawn due to a duplicate entry CVE-2025-23083.

Jan 22, 2025
CVE-2025-23089

Rejected reason: This Record was REJECTED after determining it is not in compliance with CVE Program requirements regarding assignment for vulnerabilities

Jan 22, 2025
CVE-2025-23088

Rejected reason: This Record was REJECTED after determining it is not in compliance with CVE Program requirements regarding assignment for vulnerabilities

Jan 22, 2025
CVE-2025-23087

Rejected reason: This Record was REJECTED after determining it is not in compliance with CVE Program requirements regarding assignment for vulnerabilities

Jan 22, 2025
CVE-2025-23083
7.7 HIGH

With the aid of the diagnostics_channel utility, an event can be hooked into whenever a worker thread is created. This is not limited only to …

Jan 22, 2025
CVE-2025-0625
3.1 LOW

A vulnerability, which was classified as problematic, was found in CampCodes School Management Software 1.0. This affects an unknown part of the component Attachment Handler. …

Jan 22, 2025
CVE-2024-13091
9.8 CRITICAL

The WPBot Pro Wordpress Chatbot plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'qcld_wpcfb_file_upload' function in …

Jan 22, 2025
CVE-2023-37039
6.5 MEDIUM

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allow network-adjacent attackers to crash …

Jan 22, 2025
CVE-2024-49749
8.8 HIGH

In DGifSlurp of dgif_lib.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with …

Jan 21, 2025
CVE-2024-49748
9.8 CRITICAL

In gatts_process_primary_service_req of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution …

Jan 21, 2025
CVE-2024-49747
9.8 CRITICAL

In gatts_process_read_by_type_req of gatt_sr.cc, there is a possible out of bounds write due to a logic error in the code. This could lead to remote …

Jan 21, 2025
CVE-2024-49745
7.8 HIGH

In growData of Parcel.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of …

Jan 21, 2025
CVE-2024-49744
7.8 HIGH

In checkKeyIntentParceledCorrectly of AccountManagerService.java, there is a possible way to bypass parcel mismatch mitigation due to unsafe deserialization. This could lead to local escalation of …

Jan 21, 2025
CVE-2024-49742
7.8 HIGH

In onCreate of NotificationAccessConfirmationActivity.java , there is a possible way to hide an app with notification access in Settings due to a missing permission check. …

Jan 21, 2025
CVE-2024-49738
7.8 HIGH

In writeInplace of Parcel.cpp, there is a possible out of bounds write. This could lead to local escalation of privilege with no additional execution privileges …

Jan 21, 2025
CVE-2024-49737
7.8 HIGH

In applyTaskFragmentOperation of WindowOrganizerController.java, there is a possible way to launch arbitrary activities as the system UID due to a logic error in the code. …

Jan 21, 2025
CVE-2024-49736
5.5 MEDIUM

In onClick of MainClear.java, there is a possible way to trigger factory reset without explicit user consent due to a logic error in the code. …

Jan 21, 2025
CVE-2024-49735
7.8 HIGH

In multiple locations, there is a possible failure to persist permissions settings due to resource exhaustion. This could lead to local escalation of privilege with …

Jan 21, 2025
CVE-2024-49734
7.5 HIGH

In multiple functions of ConnectivityService.java, there is a possible way for a Wi-Fi AP to determine what site a device has connected to through a …

Jan 21, 2025
CVE-2024-49733
5.5 MEDIUM

In reload of ServiceListing.java , there is a possible way to allow a malicious app to hide an NLS from Settings due to a logic …

Jan 21, 2025
CVE-2024-49732
7.8 HIGH

In multiple functions of CompanionDeviceManagerService.java, there is a possible way to grant permissions without user consent due to a missing permission check. This could lead …

Jan 21, 2025
CVE-2024-49724
7.0 HIGH

In multiple functions of AccountManagerService.java, there is a possible way to bypass permissions and launch protected activities due to a race condition. This could lead …

Jan 21, 2025
CVE-2024-43771
8.8 HIGH

In gatts_process_read_req of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code …

Jan 21, 2025
CVE-2024-43770
8.8 HIGH

In gatts_process_find_info of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code …

Jan 21, 2025
CVE-2024-43765
7.8 HIGH

In multiple locations, there is a possible way to obtain access to a folder due to a tapjacking/overlay attack. This could lead to local escalation …

Jan 21, 2025
CVE-2024-43763
6.5 MEDIUM

In build_read_multi_rsp of gatt_sr.cc, there is a possible denial of service due to a logic error in the code. This could lead to remote (proximal/adjacent) …

Jan 21, 2025
CVE-2024-43096
8.8 HIGH

In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code …

Jan 21, 2025
CVE-2024-43095
7.8 HIGH

In multiple locations, there is a possible way to obtain any system permission due to a logic error in the code. This could lead to …

Jan 21, 2025
CVE-2024-34730
7.8 HIGH

In multiple locations, there is a possible bypass of user consent to enabling new Bluetooth HIDs due to a logic error in the code. This …

Jan 21, 2025
CVE-2024-24443
6.5 MEDIUM

An uninitialized pointer dereference in the ngap_handle_pdu_session_resource_setup_response routine of OpenAirInterface CN5G AMF (oai-cn5g-amf) up to v2.0.0 allows attackers to cause a Denial of Service (DoS) …

Jan 21, 2025
CVE-2024-24428
7.5 HIGH

A reachable assertion in the oai_nas_5gmm_decode function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service (DoS) via a crafted NGAP packet.

Jan 21, 2025
CVE-2024-24427
7.5 HIGH

A reachable assertion in the amf_ue_set_suci function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service (DoS) via a crafted NAS packet.

Jan 21, 2025
CVE-2024-24424
7.5 HIGH

A reachable assertion in the decode_access_point_name_ie function of Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows attackers to cause a Denial of Service (DoS) …

Jan 21, 2025
CVE-2024-24423
7.5 HIGH

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_esm_message_container function at /nas/ies/EsmMessageContainer.cpp. This …

Jan 21, 2025
CVE-2024-24422
7.5 HIGH

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a stack overflow in the decode_protocol_configuration_options function at /3gpp/3gpp_24.008_sm_ies.c. This …

Jan 21, 2025
CVE-2024-24421
9.8 CRITICAL

A type confusion in the nas_message_decode function of Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows attackers to execute arbitrary code or cause a …

Jan 21, 2025
CVE-2024-24420
7.5 HIGH

A reachable assertion in the decode_linked_ti_ie function of Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows attackers to cause a Denial of Service (DoS) …

Jan 21, 2025
CVE-2024-24419
7.5 HIGH

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_traffic_flow_template_packet_filter function at /3gpp/3gpp_24.008_sm_ies.c. This …

Jan 21, 2025
CVE-2024-24418
7.5 HIGH

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_pdn_address function at /nas/ies/PdnAddress.cpp. This …

Jan 21, 2025
CVE-2024-24417
7.5 HIGH

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_protocol_configuration_options function at /3gpp/3gpp_24.008_sm_ies.c. This …

Jan 21, 2025
CVE-2024-24416
7.5 HIGH

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_access_point_name_ie function at /3gpp/3gpp_24.008_sm_ies.c. This …

Jan 21, 2025
CVE-2023-40132
7.8 HIGH

In setActualDefaultRingtoneUri of RingtoneManager.java, there is a possible way to bypass content providers read permissions due to a missing permission check. This could lead to …

Jan 21, 2025
CVE-2023-40108
5.5 MEDIUM

In multiple locations, there is a possible way to access media content belonging to another user due to a missing permission check. This could lead …

Jan 21, 2025
CVE-2023-37038
6.5 MEDIUM

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash …

Jan 21, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.