CVE Database

39204+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-26228
7.8 HIGH

Windows Cryptographic Services Security Feature Bypass Vulnerability

Apr 9, 2024
CVE-2024-26227
7.2 HIGH

Windows DNS Server Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26224
7.2 HIGH

Windows DNS Server Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26223
7.2 HIGH

Windows DNS Server Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26222
7.2 HIGH

Windows DNS Server Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26221
7.2 HIGH

Windows DNS Server Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26219
7.5 HIGH

HTTP.sys Denial of Service Vulnerability

Apr 9, 2024
CVE-2024-26218
7.8 HIGH

Windows Kernel Elevation of Privilege Vulnerability

Apr 9, 2024
CVE-2024-26216
7.3 HIGH

Windows File Server Resource Management Service Elevation of Privilege Vulnerability

Apr 9, 2024
CVE-2024-26215
7.5 HIGH

DHCP Server Service Denial of Service Vulnerability

Apr 9, 2024
CVE-2024-26214
8.8 HIGH

Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26213
7.0 HIGH

Microsoft Brokering File System Elevation of Privilege Vulnerability

Apr 9, 2024
CVE-2024-26212
7.5 HIGH

DHCP Server Service Denial of Service Vulnerability

Apr 9, 2024
CVE-2024-26211
7.8 HIGH

Windows Remote Access Connection Manager Elevation of Privilege Vulnerability

Apr 9, 2024
CVE-2024-26210
8.8 HIGH

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26208
7.2 HIGH

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26205
8.8 HIGH

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26202
7.2 HIGH

DHCP Server Service Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26200
8.8 HIGH

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26195
7.2 HIGH

DHCP Server Service Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26194
7.4 HIGH

Secure Boot Security Feature Bypass Vulnerability

Apr 9, 2024
CVE-2024-26189
8.0 HIGH

Secure Boot Security Feature Bypass Vulnerability

Apr 9, 2024
CVE-2024-26180
8.0 HIGH

Secure Boot Security Feature Bypass Vulnerability

Apr 9, 2024
CVE-2024-26179
8.8 HIGH

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-26175
7.8 HIGH

Secure Boot Security Feature Bypass Vulnerability

Apr 9, 2024
CVE-2024-26158
7.8 HIGH

Microsoft Install Service Elevation of Privilege Vulnerability

Apr 9, 2024
CVE-2024-21447
7.8 HIGH

Windows Authentication Elevation of Privilege Vulnerability

Apr 9, 2024
CVE-2024-21409
7.3 HIGH

.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-21324
7.2 HIGH

Microsoft Defender for IoT Elevation of Privilege Vulnerability

Apr 9, 2024
CVE-2024-21323
8.8 HIGH

Microsoft Defender for IoT Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-21322
7.2 HIGH

Microsoft Defender for IoT Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-20693
7.8 HIGH

Windows Kernel Elevation of Privilege Vulnerability

Apr 9, 2024
CVE-2024-20689
7.1 HIGH

Secure Boot Security Feature Bypass Vulnerability

Apr 9, 2024
CVE-2024-20688
7.1 HIGH

Secure Boot Security Feature Bypass Vulnerability

Apr 9, 2024
CVE-2024-20678
8.8 HIGH

Remote Procedure Call Runtime Remote Code Execution Vulnerability

Apr 9, 2024
CVE-2024-20670
8.1 HIGH

Outlook for Windows Spoofing Vulnerability

Apr 9, 2024
CVE-2024-3281
8.8 HIGH

A vulnerability was discovered in the firmware builds after 8.0.2.3267 and prior to 8.1.3.1301 in CCX devices. A flaw in the firmware build process did …

Apr 9, 2024
CVE-2024-28235
8.3 HIGH

Contao is an open source content management system. Starting in version 4.9.0 and prior to versions 4.13.40 and 5.3.4, when checking for broken links on …

Apr 9, 2024
CVE-2024-23671
8.1 HIGH

A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.3, FortiSandbox 4.2.1 through 4.2.6, FortiSandbox 4.0.0 …

Apr 9, 2024
CVE-2024-21756
8.8 HIGH

A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.3, FortiSandbox 4.2.1 through 4.2.6, …

Apr 9, 2024
CVE-2024-21755
8.8 HIGH

A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.3, FortiSandbox 4.2.1 through 4.2.6, …

Apr 9, 2024
CVE-2023-49913
7.2 HIGH

A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build …

Apr 9, 2024
CVE-2023-49912
7.2 HIGH

A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build …

Apr 9, 2024
CVE-2023-49911
7.2 HIGH

A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build …

Apr 9, 2024
CVE-2023-49910
7.2 HIGH

A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build …

Apr 9, 2024
CVE-2023-49909
7.2 HIGH

A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build …

Apr 9, 2024
CVE-2023-49908
7.2 HIGH

A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build …

Apr 9, 2024
CVE-2023-49907
7.2 HIGH

A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build …

Apr 9, 2024
CVE-2023-49906
7.2 HIGH

A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build …

Apr 9, 2024
CVE-2023-49134
8.1 HIGH

A command execution vulnerability exists in the tddpd enable_test_mode functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926 and Tp-Link …

Apr 9, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.