117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.
SQL Injection vulnerability in CRMEB crmeb_java v.1.3.4 and before allows a remote attacker to obtain sensitive information via the latitude and longitude parameters in the …
An issue was discovered in Yealink Configuration Encrypt Tool (AES version) and Yealink Configuration Encrypt Tool (RSA version before 1.2). There is a single hardcoded …
ZKteco ZKBio WDMS before 9.0.2 Build 20250526 allows an attacker to download a database backup via the /files/backup/ component because the filename is based on …
Insufficient sanitization in MLflow leads to XSS when running a recipe that uses an untrusted dataset. This issue leads to a client-side RCE when running …
Insufficient sanitization in MLflow leads to XSS when running an untrusted recipe. This issue leads to a client-side RCE when running an untrusted recipe in …
Hitron CODA-4582 and CODA-4589 devices have default PSKs that are generated from 5-digit hex values concatenated with a "Hitron" substring, resulting in insufficient entropy (only …
In the module "Generate barcode on invoice / delivery slip" (ecgeneratebarcode) from Ether Creation <= 1.2.0 for PrestaShop, a guest can perform SQL injection.
In the module "Survey TMA" (ecomiz_survey_tma) up to version 2.0.0 from Ecomiz for PrestaShop, a guest can download personal information without restriction.
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Improper access control in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may allow an authenticated user to potentially enable escalation of …
Improper input validation in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may allow a privileged user to potentially enable escalation of …
Rejected reason: This is unused.
Improper neutralization in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may allow a privileged user to potentially enable escalation of privilege …
Insufficient control flow management in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may allow a privileged user to potentially enable escalation …
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Improper input validation in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may allow an unauthenticated user to potentially enable information disclosure …
Uncaught exception in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may allow a privileged user to potentially enable escalation of privilege …
Rejected reason: This is unused.
Rejected reason: This is unused.
Improper input validation in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may allow a privileged user to potentially enable denial of …
Improper input validation in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may allow an unauthenticated user to potentially enable denial of …
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Rejected reason: This is unused.
Free website and port scanning — find vulnerabilities before attackers do.