CVE Database

114379+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-11758
6.5 MEDIUM

The All in One Time Clock Lite plugin for WordPress is vulnerable to unauthorized access due to a missing authorization check in all versions up …

Nov 4, 2025
CVE-2025-11753
4.4 MEDIUM

The Bootstrap Multi-language Responsive Portfolio plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.0 …

Nov 4, 2025
CVE-2025-11733
7.2 HIGH

The Footnotes Made Easy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via plugin settings in all versions up to, and including, 3.0.7 due …

Nov 4, 2025
CVE-2025-11724
8.8 HIGH

The EM Beer Manager plugin for WordPress is vulnerable to arbitrary file upload leading to remote code execution in all versions up to, and including, …

Nov 4, 2025
CVE-2025-11704
7.5 HIGH

The Elegance Menu plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.9 via the 'elegance-menu' attribute of …

Nov 4, 2025
CVE-2025-10896
8.8 HIGH

Multiple plugins for WordPress with the Jewel Theme Recommended Plugins Library are vulnerable to Unrestricted Upload of File with Dangerous Type via arbitrary plugin installation …

Nov 4, 2025
CVE-2025-47370
6.5 MEDIUM

Transient DOS when a remote device sends an invalid connection request during BT connectable LE scan.

Nov 4, 2025
CVE-2025-47368
7.8 HIGH

Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing.

Nov 4, 2025
CVE-2025-47367
7.8 HIGH

Memory corruption while accessing a buffer during IOCTL processing.

Nov 4, 2025
CVE-2025-47365
7.8 HIGH

Memory corruption while processing large input data from a remote source via a communication interface.

Nov 4, 2025
CVE-2025-47362
6.1 MEDIUM

Information disclosure while processing message from client with invalid payload.

Nov 4, 2025
CVE-2025-47361
7.8 HIGH

Memory corruption when triggering a subsystem crash with an out-of-range identifier.

Nov 4, 2025
CVE-2025-47360
7.8 HIGH

Memory corruption while processing client message during device management.

Nov 4, 2025
CVE-2025-47357
8.0 HIGH

Information Disclosure when a user-level driver performs QFPROM read or write operations on Fuse regions.

Nov 4, 2025
CVE-2025-47353
7.8 HIGH

Memory corruption while processing request sent from GVM.

Nov 4, 2025
CVE-2025-47352
7.8 HIGH

Memory corruption while processing audio streaming operations.

Nov 4, 2025
CVE-2025-27074
8.8 HIGH

Memory corruption while processing a GP command response.

Nov 4, 2025
CVE-2025-27070
7.8 HIGH

Memory corruption while performing encryption and decryption commands.

Nov 4, 2025
CVE-2025-27064
6.1 MEDIUM

Information disclosure while registering commands from clients with diag through diagHal.

Nov 4, 2025
CVE-2025-12401
6.1 MEDIUM

The Label Plugins plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.5. This is due to missing …

Nov 4, 2025
CVE-2025-12070
4.3 MEDIUM

The ViaAds plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.1.2. This is due to missing nonce …

Nov 4, 2025
CVE-2025-12069
4.3 MEDIUM

The WP Global Screen Options plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.2. This is due …

Nov 4, 2025
CVE-2025-11008
9.8 CRITICAL

The CE21 Suite plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.3.1 via the log file. This …

Nov 4, 2025
CVE-2025-11007
9.8 CRITICAL

The CE21 Suite plugin for WordPress is vulnerable to unauthorized plugin settings update due to a missing capability check on the wp_ajax_nopriv_ce21_single_sign_on_save_api_settings AJAX action in …

Nov 4, 2025
CVE-2025-12324
6.4 MEDIUM

The TablePress – Tables in WordPress made easy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's `table` shortcode attributes in all …

Nov 4, 2025
CVE-2025-11841
6.4 MEDIUM

The Greenshift – animation and page builder blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Chart Data attributes in all versions …

Nov 4, 2025
CVE-2025-43507
6.5 MEDIUM

A privacy issue was addressed by moving sensitive data. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS …

Nov 4, 2025
CVE-2025-43505
8.8 HIGH

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Xcode 26.1. Processing a maliciously crafted file may lead to …

Nov 4, 2025
CVE-2025-43504
4.9 MEDIUM

A buffer overflow was addressed with improved bounds checking. This issue is fixed in Xcode 26.1. A user in a privileged network position may be …

Nov 4, 2025
CVE-2025-43503
4.3 MEDIUM

An inconsistent user interface issue was addressed with improved state management. This issue is fixed in Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 …

Nov 4, 2025
CVE-2025-43502
7.5 HIGH

A privacy issue was addressed by removing sensitive data. This issue is fixed in Safari 26.1, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, visionOS …

Nov 4, 2025
CVE-2025-43500
7.5 HIGH

A privacy issue was addressed with improved handling of user preferences. This issue is fixed in iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, visionOS …

Nov 4, 2025
CVE-2025-43499
5.5 MEDIUM

This issue was addressed with additional entitlement checks. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS …

Nov 4, 2025
CVE-2025-43498
5.5 MEDIUM

An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.1 and iPadOS 26.1, macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, …

Nov 4, 2025
CVE-2025-43496
7.5 HIGH

The issue was addressed by adding additional logic. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Sequoia …

Nov 4, 2025
CVE-2025-43495
5.4 MEDIUM

The issue was addressed with improved checks. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1. An app may …

Nov 4, 2025
CVE-2025-43493
4.3 MEDIUM

The issue was addressed with improved checks. This issue is fixed in Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS …

Nov 4, 2025
CVE-2025-43481
5.2 MEDIUM

This issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.2, macOS Tahoe 26.1. An app may be able to break …

Nov 4, 2025
CVE-2025-43480
8.1 HIGH

The issue was addressed with improved checks. This issue is fixed in Safari 26.1, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS …

Nov 4, 2025
CVE-2025-43479
5.5 MEDIUM

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.1. An app may …

Nov 4, 2025
CVE-2025-43478
5.5 MEDIUM

A use after free issue was addressed with improved memory management. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.1. …

Nov 4, 2025
CVE-2025-43477
5.5 MEDIUM

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS …

Nov 4, 2025
CVE-2025-43476
7.8 HIGH

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.1. An app may …

Nov 4, 2025
CVE-2025-43474
7.8 HIGH

An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.1. An app …

Nov 4, 2025
CVE-2025-43472
7.8 HIGH

A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.1. An app …

Nov 4, 2025
CVE-2025-43469
5.5 MEDIUM

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.1. An app may …

Nov 4, 2025
CVE-2025-43468
5.5 MEDIUM

A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS …

Nov 4, 2025
CVE-2025-43462
7.5 HIGH

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, …

Nov 4, 2025
CVE-2025-43460
4.6 MEDIUM

A logic issue was addressed with improved checks. This issue is fixed in iOS 26.1 and iPadOS 26.1. An attacker with physical access to a …

Nov 4, 2025
CVE-2025-43459
4.6 MEDIUM

An authentication issue was addressed with improved state management. This issue is fixed in watchOS 26.1. An attacker with physical access to a locked Apple …

Nov 4, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.