CVE Database

121173+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2023-38827
6.1 MEDIUM

Cross Site Scripting vulnerability in Follet School Solutions Destiny v.20_0_1_AU4 and later allows a remote attacker to run arbitrary code via presentonesearchresultsform.do.

Jan 9, 2024
CVE-2024-0345
4.3 MEDIUM

A vulnerability, which was classified as problematic, was found in CodeAstro Vehicle Booking System 1.0. This affects an unknown part of the file usr/usr-register.php of …

Jan 9, 2024
CVE-2024-0344
5.5 MEDIUM

A vulnerability, which was classified as critical, has been found in soxft TimeMail up to 1.1. Affected by this issue is some unknown functionality of …

Jan 9, 2024
CVE-2024-21664
4.3 MEDIUM

jwx is a Go module implementing various JWx (JWA/JWE/JWK/JWS/JWT, otherwise known as JOSE) technologies. Calling `jws.Parse` with a JSON serialized payload where the `signature` field …

Jan 9, 2024
CVE-2024-0343
4.3 MEDIUM

A vulnerability classified as problematic was found in CodeAstro Simple House Rental System 5.6. Affected by this vulnerability is an unknown functionality of the component …

Jan 9, 2024
CVE-2024-0342
6.3 MEDIUM

A vulnerability classified as critical has been found in Inis up to 2.0.1. Affected is an unknown function of the file /app/api/controller/default/Sqlite.php. The manipulation of …

Jan 9, 2024
CVE-2023-7032
7.8 HIGH

A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker logged in with a user level account to gain higher privileges by …

Jan 9, 2024
CVE-2024-21668
4.4 MEDIUM

react-native-mmkv is a library that allows easy use of MMKV inside React Native applications. Before version 2.11.0, the react-native-mmkv logged the optional encryption key for …

Jan 9, 2024
CVE-2024-21319
6.8 MEDIUM

Microsoft Identity Denial of service vulnerability

Jan 9, 2024
CVE-2024-0341
3.5 LOW

A vulnerability was found in Inis up to 2.0.1. It has been rated as problematic. This issue affects some unknown processing of the file /app/api/controller/default/File.php …

Jan 9, 2024
CVE-2024-21325
7.8 HIGH

Microsoft Printer Metadata Troubleshooter Tool Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-21320
6.5 MEDIUM

Windows Themes Spoofing Vulnerability

Jan 9, 2024
CVE-2024-21318
8.8 HIGH

Microsoft SharePoint Server Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-21316
6.1 MEDIUM

Windows Server Key Distribution Service Security Feature Bypass

Jan 9, 2024
CVE-2024-21314
6.5 MEDIUM

Microsoft Message Queuing Information Disclosure Vulnerability

Jan 9, 2024
CVE-2024-21313
5.3 MEDIUM

Windows TCP/IP Information Disclosure Vulnerability

Jan 9, 2024
CVE-2024-21312
7.5 HIGH

.NET Framework Denial of Service Vulnerability

Jan 9, 2024
CVE-2024-21311
5.5 MEDIUM

Windows Cryptographic Services Information Disclosure Vulnerability

Jan 9, 2024
CVE-2024-21310
7.8 HIGH

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-21309
7.8 HIGH

Windows Kernel-Mode Driver Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-21307
7.5 HIGH

Remote Desktop Client Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-21306
5.7 MEDIUM

Microsoft Bluetooth Driver Spoofing Vulnerability

Jan 9, 2024
CVE-2024-21305
4.4 MEDIUM

Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass Vulnerability

Jan 9, 2024
CVE-2024-20700
7.5 HIGH

Windows Hyper-V Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-20699
5.5 MEDIUM

Windows Hyper-V Denial of Service Vulnerability

Jan 9, 2024
CVE-2024-20698
7.8 HIGH

Windows Kernel Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20697
7.3 HIGH

Windows libarchive Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-20696
7.3 HIGH

Windows libarchive Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-20694
5.5 MEDIUM

Windows CoreMessaging Information Disclosure Vulnerability

Jan 9, 2024
CVE-2024-20692
5.7 MEDIUM

Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability

Jan 9, 2024
CVE-2024-20691
4.7 MEDIUM

Windows Themes Information Disclosure Vulnerability

Jan 9, 2024
CVE-2024-20690
6.5 MEDIUM

Windows Nearby Sharing Spoofing Vulnerability

Jan 9, 2024
CVE-2024-20687
7.5 HIGH

Microsoft AllJoyn API Denial of Service Vulnerability

Jan 9, 2024
CVE-2024-20686
7.8 HIGH

Win32k Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20683
7.8 HIGH

Win32k Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20682
7.8 HIGH

Windows Cryptographic Services Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-20681
7.8 HIGH

Windows Subsystem for Linux Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20680
6.5 MEDIUM

Windows Message Queuing Client (MSMQC) Information Disclosure

Jan 9, 2024
CVE-2024-20677
7.8 HIGH

A security vulnerability exists in FBX that could lead to remote code execution. To mitigate this vulnerability, the ability to insert FBX files has been …

Jan 9, 2024
CVE-2024-20676
8.0 HIGH

Azure Storage Mover Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-20674
8.8 HIGH

Windows Kerberos Security Feature Bypass Vulnerability

Jan 9, 2024
CVE-2024-20672
7.5 HIGH

.NET Denial of Service Vulnerability

Jan 9, 2024
CVE-2024-20666
6.6 MEDIUM

BitLocker Security Feature Bypass Vulnerability

Jan 9, 2024
CVE-2024-20664
6.5 MEDIUM

Microsoft Message Queuing Information Disclosure Vulnerability

Jan 9, 2024
CVE-2024-20663
6.5 MEDIUM

Windows Message Queuing Client (MSMQC) Information Disclosure

Jan 9, 2024
CVE-2024-20662
4.9 MEDIUM

Windows Online Certificate Status Protocol (OCSP) Information Disclosure Vulnerability

Jan 9, 2024
CVE-2024-20661
7.5 HIGH

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Jan 9, 2024
CVE-2024-20660
6.5 MEDIUM

Microsoft Message Queuing Information Disclosure Vulnerability

Jan 9, 2024
CVE-2024-20658
7.8 HIGH

Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20657
7.0 HIGH

Windows Group Policy Elevation of Privilege Vulnerability

Jan 9, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.