CVE Database

10843+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-6602
9.8 CRITICAL

A mismatch between allocator and deallocator could have led to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, …

Jul 9, 2024
CVE-2024-3596
9.0 CRITICAL

RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a local attacker who can modify any valid Response (Access-Accept, Access-Reject, or Access-Challenge) to …

Jul 9, 2024
CVE-2024-39872
9.6 CRITICAL

A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application does not properly assign rights to temporary …

Jul 9, 2024
CVE-2024-37424
9.9 CRITICAL

Unrestricted Upload of File with Dangerous Type vulnerability in Automattic Newspack Blocks allows Upload a Web Shell to a Web Server.This issue affects Newspack Blocks: …

Jul 9, 2024
CVE-2024-37420
9.9 CRITICAL

Unrestricted Upload of File with Dangerous Type vulnerability in WPZita Zita Elementor Site Library allows Upload a Web Shell to a Web Server.This issue affects …

Jul 9, 2024
CVE-2024-37418
9.9 CRITICAL

Unrestricted Upload of File with Dangerous Type vulnerability in andy_moyle Church Admin church-admin.This issue affects Church Admin: from n/a through <= 4.4.6.

Jul 9, 2024
CVE-2023-3287
9.9 CRITICAL

A BOLA vulnerability in POST /admins allows a low privileged user to create a high privileged user (admin) in the system. This results in privilege …

Jul 9, 2024
CVE-2023-38055
9.6 CRITICAL

A BOLA vulnerability in GET, PUT, DELETE /services/{serviceId} allows a low privileged user to fetch, modify or delete the services of any user (including admin). …

Jul 9, 2024
CVE-2023-38054
9.9 CRITICAL

A BOLA vulnerability in GET, PUT, DELETE /customers/{customerId} allows a low privileged user to fetch, modify or delete a low privileged user (customer). This results …

Jul 9, 2024
CVE-2023-38053
9.9 CRITICAL

A BOLA vulnerability in GET, PUT, DELETE /settings/{settingName} allows a low privileged user to fetch, modify or delete the settings of any user (including admin). …

Jul 9, 2024
CVE-2023-38052
9.9 CRITICAL

A BOLA vulnerability in GET, PUT, DELETE /admins/{adminId} allows a low privileged user to fetch, modify or delete a high privileged user (admin). This results …

Jul 9, 2024
CVE-2023-38051
9.9 CRITICAL

A BOLA vulnerability in GET, PUT, DELETE /secretaries/{secretaryId} allows a low privileged user to fetch, modify or delete a low privileged user (secretary). This results …

Jul 9, 2024
CVE-2023-38050
9.1 CRITICAL

A BOLA vulnerability in GET, PUT, DELETE /webhooks/{webhookId} allows a low privileged user to fetch, modify or delete a webhook of any user (including admin). …

Jul 9, 2024
CVE-2023-38049
9.9 CRITICAL

A BOLA vulnerability in GET, PUT, DELETE /appointments/{appointmentId} allows a low privileged user to fetch, modify or delete an appointment of any user (including admin). …

Jul 9, 2024
CVE-2023-38048
9.9 CRITICAL

A BOLA vulnerability in GET, PUT, DELETE /providers/{providerId} allows a low privileged user to fetch, modify or delete a privileged user (provider). This results in …

Jul 9, 2024
CVE-2024-3604
9.9 CRITICAL

The OSM – OpenStreetMap plugin for WordPress is vulnerable to SQL Injection via the 'tagged_filter' attribute of the 'osm_map_v3' shortcode in all versions up to, …

Jul 9, 2024
CVE-2024-37112
10.0 CRITICAL

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Membership Software WishList Member X.This issue affects WishList Member X: from …

Jul 9, 2024
CVE-2024-6314
9.8 CRITICAL

The IQ Testimonials plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'process_image_upload' function in versions up …

Jul 9, 2024
CVE-2024-6313
9.8 CRITICAL

The Gutenberg Forms plugin for WordPress is vulnerable to arbitrary file uploads due to the users can specify the allowed file types in the 'upload' …

Jul 9, 2024
CVE-2024-37555
9.1 CRITICAL

Unrestricted Upload of File with Dangerous Type vulnerability in ZealousWeb Generate PDF using Contact Form 7 generate-pdf-using-contact-form-7.This issue affects Generate PDF using Contact Form 7: …

Jul 9, 2024
CVE-2024-28751
9.1 CRITICAL

An high privileged remote attacker can enable telnet access that accepts hardcoded credentials.

Jul 9, 2024
CVE-2024-28747
9.8 CRITICAL

An unauthenticated remote attacker can use the hard-coded credentials to access the SmartSPS devices with high privileges.

Jul 9, 2024
CVE-2024-5488
9.8 CRITICAL

The SEOPress WordPress plugin before 7.9 does not properly protect some of its REST API routes, which combined with another Object Injection vulnerability can allow …

Jul 9, 2024
CVE-2024-6365
9.8 CRITICAL

The Product Table by WBW plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.0.1 via the 'saveCustomTitle' …

Jul 9, 2024
CVE-2024-1305
9.8 CRITICAL

tap-windows6 driver version 9.26 and earlier does not properly check the size data of incomming write operations which an attacker can use to overflow memory …

Jul 8, 2024
CVE-2023-46685
9.8 CRITICAL

A hard-coded password vulnerability exists in the telnetd functionality of LevelOne WBR-6013 RER4_A_v3411b_2T2R_LEV_09_170623. A set of specially crafted network packets can lead to arbitrary command …

Jul 8, 2024
CVE-2024-27903
9.8 CRITICAL

OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be loaded from any directory, which allows an attacker to load an arbitrary plug-in which …

Jul 8, 2024
CVE-2024-40614
9.8 CRITICAL

EGroupware before 23.1.20240624 mishandles an ORDER BY clause. This leads to json.php?menuaction=EGroupware\Api\Etemplate\Widget\Nextmatch::ajax_get_rows sort.id SQL injection by authenticated users for Address Book or InfoLog sorting.

Jul 7, 2024
CVE-2024-27712
9.8 CRITICAL

An issue in Eskooly Free Online School management Software v.3.0 and before allows a remote attacker to escalate privileges via the User Account Mangemnt component …

Jul 5, 2024
CVE-2024-27710
9.8 CRITICAL

An issue in Eskooly Free Online School management Software v.3.0 and before allows a remote attacker to escalate privileges via the authentication mechanism.

Jul 5, 2024
CVE-2024-27709
9.8 CRITICAL

SQL Injection vulnerability in Eskooly Web Product v.3.0 allows a remote attacker to execute arbitrary code via the searchby parameter of the allstudents.php component and …

Jul 5, 2024
CVE-2024-37768
9.1 CRITICAL

14Finger v1.1 was discovered to contain an arbitrary user deletion vulnerability via the component /api/admin/user?id.

Jul 5, 2024
CVE-2024-29319
9.8 CRITICAL

Volmarg Personal Management System 1.4.64 is vulnerable to SSRF (Server Side Request Forgery) via uploading a SVG file. The server can make unintended HTTP and …

Jul 5, 2024
CVE-2024-23998
9.6 CRITICAL

goanother Another Redis Desktop Manager =<1.6.1 is vulnerable to Cross Site Scripting (XSS) via src/components/Setting.vue.

Jul 5, 2024
CVE-2024-23997
9.6 CRITICAL

Lukas Bach yana =<1.0.16 is vulnerable to Cross Site Scripting (XSS) via src/electron-main.ts.

Jul 5, 2024
CVE-2024-39864
9.8 CRITICAL

The CloudStack integration API service allows running its unauthenticated API server (usually on port 8096 when configured and enabled via integration.api.port global setting) for internal …

Jul 5, 2024
CVE-2024-39028
9.8 CRITICAL

An issue was discovered in SeaCMS <=12.9 which allows remote attackers to execute arbitrary code via admin_ping.php.

Jul 5, 2024
CVE-2024-38346
9.8 CRITICAL

The CloudStack cluster service runs on unauthenticated port (default 9090) that can be misused to run arbitrary commands on targeted hypervisors and CloudStack management server …

Jul 5, 2024
CVE-2024-6298
10.0 CRITICAL

Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v3.08.01; NEXUS Series v3.08.01 ; MATRIX Series v3.08.01 allows Attacker to execute arbitrary code …

Jul 5, 2024
CVE-2024-6209
10.0 CRITICAL

Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v3.08.01; NEXUS Series v3.08.01 ; MATRIX Series v3.08.01 allows Attacker to access files unauthorized

Jul 5, 2024
CVE-2024-39943
9.9 CRITICAL

rejetto HFS (aka HTTP File Server) 3 before 0.52.10 on Linux, UNIX, and macOS allows OS command execution by remote authenticated users (if they have …

Jul 4, 2024
CVE-2024-39932
9.9 CRITICAL

Gogs through 0.13.0 allows argument injection during the previewing of changes.

Jul 4, 2024
CVE-2024-39931
9.9 CRITICAL

Gogs through 0.13.0 allows deletion of internal files.

Jul 4, 2024
CVE-2024-39930
9.9 CRITICAL

The built-in SSH server of Gogs through 0.13.0 allows argument injection in internal/ssh/ssh.go, leading to remote code execution. Authenticated attackers can exploit this by opening …

Jul 4, 2024
CVE-2024-39165
9.8 CRITICAL

QR/demoapp/qr_image.php in Asial JpGraph Professional through 4.2.6-pro allows remote attackers to execute arbitrary code via a PHP payload in the data parameter in conjunction with …

Jul 4, 2024
CVE-2024-39844
9.8 CRITICAL

In ZNC before 1.9.1, remote code execution can occur in modtcl via a KICK.

Jul 3, 2024
CVE-2024-39223
9.8 CRITICAL

An authentication bypass in the SSH service of gost v2.11.5 allows attackers to intercept communications via setting the HostKeyCallback function to ssh.InsecureIgnoreHostKey

Jul 3, 2024
CVE-2024-37082
9.1 CRITICAL

When deploying Cloud Foundry together with the haproxy-boshrelease and using a non default configuration, it might be possible to craft HTTP requests that bypass mTLS …

Jul 3, 2024
CVE-2024-4708
9.8 CRITICAL

mySCADA myPRO uses a hard-coded password which could allow an attacker to remotely execute code on the affected device.

Jul 2, 2024
CVE-2023-24531
9.8 CRITICAL

Command go env is documented as outputting a shell script containing the Go environment. However, go env doesn't sanitize values, so executing its output as …

Jul 2, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.