CVE Database

54420+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-53910
4.0 MEDIUM

Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers to create a channel subscription without …

Aug 11, 2025
CVE-2025-53514
5.9 MEDIUM

Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the plugin via constant hit to server webhook endpoint …

Aug 11, 2025
CVE-2025-51824
6.5 MEDIUM

libcsp 2.0 is vulnerable to Buffer Overflow in the csp_usart_open() function at drivers/usart/zephyr.c.

Aug 11, 2025
CVE-2025-51823
6.5 MEDIUM

libcsp 2.0 is vulnerable to Buffer Overflow in the csp_eth_init() function due to improper handling of the ifname parameter. The function uses strcpy to copy …

Aug 11, 2025
CVE-2025-48731
6.4 MEDIUM

Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the Confluence space which allows attackers to edit a subscription for …

Aug 11, 2025
CVE-2025-44001
4.0 MEDIUM

Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers to get channel subscription details without …

Aug 11, 2025
CVE-2025-25229
5.4 MEDIUM

Omnissa Workspace ONE UEM contains a Server-Side Request Forgery (SSRF) Vulnerability. A malicious actor with user privileges may be able to access restricted internal system …

Aug 11, 2025
CVE-2025-38499
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: clone_private_mnt(): make sure that caller has CAP_SYS_ADMIN in the right userns What we want is …

Aug 11, 2025
CVE-2025-8859
6.3 MEDIUM

A vulnerability was identified in code-projects eBlog Site 1.0. Affected by this vulnerability is an unknown functionality of the file /native/admin/save-slider.php of the component File …

Aug 11, 2025
CVE-2025-8852
4.3 MEDIUM

A vulnerability was identified in WuKongOpenSource WukongCRM 11.0. This affects an unknown part of the file /adminFile/upload of the component API Response Handler. The manipulation …

Aug 11, 2025
CVE-2025-8851
5.3 MEDIUM

A vulnerability was determined in LibTIFF up to 4.5.1. Affected by this issue is the function readSeparateStripsetoBuffer of the file tools/tiffcrop.c of the component tiffcrop. …

Aug 11, 2025
CVE-2025-8846
5.3 MEDIUM

A vulnerability has been found in NASM Netwide Assember 2.17rc0. Affected is the function parse_line of the file parser.c. The manipulation leads to stack-based buffer …

Aug 11, 2025
CVE-2025-8845
5.3 MEDIUM

A vulnerability was identified in NASM Netwide Assember 2.17rc0. This issue affects the function assemble_file of the file nasm.c. The manipulation leads to stack-based buffer …

Aug 11, 2025
CVE-2025-8843
5.3 MEDIUM

A vulnerability was found in NASM Netwide Assember 2.17rc0. This affects the function macho_no_dead_strip of the file outmacho.c. The manipulation leads to heap-based buffer overflow. …

Aug 11, 2025
CVE-2025-8842
5.3 MEDIUM

A vulnerability has been found in NASM Netwide Assember 2.17rc0. Affected by this issue is the function do_directive of the file preproc.c. The manipulation leads …

Aug 11, 2025
CVE-2025-8841
6.3 MEDIUM

A vulnerability was identified in zlt2000 microservices-platform up to 6.0.0. Affected by this vulnerability is the function Upload of the file zlt-business/file-center/src/main/java/com/central/file/controller/FileController.java. The manipulation leads …

Aug 11, 2025
CVE-2025-8840
5.4 MEDIUM

A vulnerability was determined in jshERP up to 3.5. Affected is an unknown function of the file /jshERP-boot/user/deleteBatch of the component Endpoint. The manipulation of …

Aug 11, 2025
CVE-2025-8839
6.3 MEDIUM

A vulnerability was found in jshERP up to 3.5. This issue affects some unknown processing of the file /jshERP-boot/user/addUser of the component Endpoint. The manipulation …

Aug 11, 2025
CVE-2025-8837
5.3 MEDIUM

A vulnerability was identified in JasPer up to 4.2.5. This affects the function jpc_dec_dump of the file src/libjasper/jpc/jpc_dec.c of the component JPEG2000 File Handler. The …

Aug 11, 2025
CVE-2025-8661
6.1 MEDIUM

A stored Cross-Site Scripting vulnerability (XSS) occurs when the server does not properly validate or encode the data entered by the user.

Aug 11, 2025
CVE-2025-7965
4.3 MEDIUM

The CBX Restaurant Booking WordPress plugin through 1.2.1 does not have CSRF check in place when updating its settings, which could allow attackers to make …

Aug 11, 2025
CVE-2025-8830
6.3 MEDIUM

A vulnerability has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected by this issue is the function sub_3517C …

Aug 11, 2025
CVE-2025-8829
6.3 MEDIUM

A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected by this vulnerability is the function um_red of …

Aug 11, 2025
CVE-2025-8828
6.3 MEDIUM

A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected is the function ipv6cmd of the file /goform/setIpv6. …

Aug 11, 2025
CVE-2025-8827
6.3 MEDIUM

A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This issue affects the function um_inspect_cross_band of the file …

Aug 11, 2025
CVE-2025-8825
6.3 MEDIUM

A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This affects the function RP_setBasicAuto of the file /goform/RP_setBasicAuto. …

Aug 11, 2025
CVE-2025-8823
6.3 MEDIUM

A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected by this vulnerability is the function setDeviceName of …

Aug 11, 2025
CVE-2025-8821
6.3 MEDIUM

A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This issue affects the function RP_setBasic of the file …

Aug 11, 2025
CVE-2025-8818
6.3 MEDIUM

A vulnerability has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected by this issue is the function setDFSSetting …

Aug 10, 2025
CVE-2025-8814
4.3 MEDIUM

A vulnerability was found in atjiu pybbs up to 6.0.0 and classified as problematic. This issue affects the function setCookie of the file src/main/java/co/yiiu/pybbs/util/CookieUtil.java. The …

Aug 10, 2025
CVE-2025-8808
4.3 MEDIUM

A vulnerability was found in xujeff tianti 天梯 up to 2.3. It has been rated as problematic. This issue affects the function exportOrder of the …

Aug 10, 2025
CVE-2025-8807
6.3 MEDIUM

A vulnerability was found in xujeff tianti 天梯 up to 2.3. It has been declared as critical. This vulnerability affects unknown code of the file …

Aug 10, 2025
CVE-2025-8806
6.3 MEDIUM

A vulnerability was found in zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1.0.0. It has been classified as critical. This affects an unknown part of …

Aug 10, 2025
CVE-2025-8805
5.3 MEDIUM

A vulnerability was determined in Open5GS up to 2.7.5. Affected by this issue is the function smf_gsm_state_wait_pfcp_deletion of the file src/smf/gsm-sm.c of the component SMF. …

Aug 10, 2025
CVE-2025-8804
5.3 MEDIUM

A vulnerability was found in Open5GS up to 2.7.5. Affected by this vulnerability is the function ngap_build_downlink_nas_transport of the component AMF. The manipulation leads to …

Aug 10, 2025
CVE-2025-8803
5.3 MEDIUM

A vulnerability has been found in Open5GS up to 2.7.5. Affected is the function gmm_state_de_registered/gmm_state_exception of the file src/amf/gmm-sm.c of the component AMF. The manipulation …

Aug 10, 2025
CVE-2025-8802
5.3 MEDIUM

A vulnerability was determined in Open5GS up to 2.7.5. This vulnerability affects the function smf_state_operational of the file src/smf/smf-sm.c of the component SMF. The manipulation …

Aug 10, 2025
CVE-2025-8801
5.3 MEDIUM

A vulnerability was found in Open5GS up to 2.7.5. This affects the function gmm_state_exception of the file src/amf/gmm-sm.c of the component AMF. The manipulation leads …

Aug 10, 2025
CVE-2025-8800
5.3 MEDIUM

A vulnerability has been found in Open5GS up to 2.7.5. Affected by this issue is the function esm_handle_pdn_connectivity_request of the file src/mme/esm-handler.c of the component …

Aug 10, 2025
CVE-2025-8799
5.3 MEDIUM

A vulnerability was identified in Open5GS up to 2.7.5. Affected by this vulnerability is the function amf_npcf_am_policy_control_build_create/amf_nsmf_pdusession_build_create_sm_context of the file src/amf/npcf-build.c of the component AMF. …

Aug 10, 2025
CVE-2025-8797
6.3 MEDIUM

A vulnerability was found in LitmusChaos Litmus up to 3.19.0 and classified as critical. This issue affects some unknown processing of the component LocalStorage Handler. …

Aug 10, 2025
CVE-2025-8796
5.4 MEDIUM

A vulnerability has been found in LitmusChaos Litmus up to 3.19.0 and classified as problematic. This vulnerability affects unknown code of the file /auth/delete_project/ of …

Aug 10, 2025
CVE-2025-8795
6.3 MEDIUM

A vulnerability, which was classified as critical, was found in LitmusChaos Litmus up to 3.19.0. This affects an unknown part of the file /auth/login. The …

Aug 10, 2025
CVE-2025-8794
5.3 MEDIUM

A vulnerability, which was classified as problematic, has been found in LitmusChaos Litmus up to 3.19.0. Affected by this issue is some unknown functionality of …

Aug 10, 2025
CVE-2025-8793
4.3 MEDIUM

A vulnerability classified as problematic was found in LitmusChaos Litmus up to 3.19.0. Affected by this vulnerability is an unknown functionality. The manipulation of the …

Aug 10, 2025
CVE-2025-8792
4.3 MEDIUM

A vulnerability classified as problematic has been found in LitmusChaos Litmus up to 3.19.0. Affected is an unknown function. The manipulation leads to client-side enforcement …

Aug 10, 2025
CVE-2025-8791
6.3 MEDIUM

A vulnerability was found in LitmusChaos Litmus up to 3.19.0. It has been rated as critical. This issue affects some unknown processing of the file …

Aug 10, 2025
CVE-2025-8790
4.3 MEDIUM

A vulnerability was found in Portabilis i-Educar up to 2.9.0. It has been declared as critical. This vulnerability affects unknown code of the file /module/Api/pessoa …

Aug 10, 2025
CVE-2025-8789
4.3 MEDIUM

A vulnerability was found in Portabilis i-Educar up to 2.9.0. It has been classified as problematic. This affects an unknown part of the file /module/Api/Diario …

Aug 10, 2025
CVE-2025-8775
6.3 MEDIUM

A vulnerability was found in Qiyuesuo Eelectronic Signature Platform up to 4.34 and classified as critical. Affected by this issue is the function execute of …

Aug 9, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.