54613+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ajay Knowledge Base knowledgebase allows Stored XSS.This issue affects Knowledge Base: from n/a …
Server-Side Request Forgery (SSRF) vulnerability in Noor Alam Magical Addons For Elementor magical-addons-for-elementor allows Server Side Request Forgery.This issue affects Magical Addons For Elementor: from …
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Bna Informatics PosPratik allows XSS Through HTTP Query Strings.This issue affects …
This vulnerability exists in the Wave 2.0 due to improper exception handling for invalid inputs at certain API endpoint. An authenticated remote attacker could exploit …
This vulnerability exists in the Wave 2.0 due to improper authorization checks on certain API endpoints. An authenticated remote attacker could exploit this vulnerability by …
This vulnerability exists in the Wave 2.0 due to missing rate limiting on OTP requests in an API endpoint. An authenticated remote attacker could exploit …
This vulnerability exists in the Wave 2.0 due to insufficient encryption of sensitive data received at the API response. An authenticated remote attacker could exploit …
This vulnerability exists in TP-Link IoT Smart Hub due to storage of Wi-Fi credentials in plain text within the device firmware. An attacker with physical …
Memory corruption while processing IOCTL calls to unmap the buffers.
Memory corruption when the user application modifies the same shared memory asynchronously when kernel is accessing it.
Memory corruption while processing the update SIM PB records request.
Memory corruption while parsing IPC frequency table parameters for LPLH that has size greater than expected size.
Memory corruption while handling the PDR in driver for getting the remote heap maps.
memory corruption when WiFi display APIs are invoked with large random inputs.
Memory corruption while invoking IOCTL command from user-space, when a user modifies the original packet size of the command after system properties have been already …
A vulnerability was found in Umbraco CMS up to 10.7.7/12.3.6/13.5.2/14.3.1/15.1.1. It has been classified as problematic. Affected is an unknown function of the file /Umbraco/preview/frame?id{} …
A vulnerability was found in code-projects University Event Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /dodelete.php. …
A vulnerability has been found in itsourcecode Farm Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /edit-pig.php. The …
In vdec, there is a possible out of bounds read due to improper structure design. This could lead to local information disclosure with System execution …
In vdec, there is a possible out of bounds read due to improper structure design. This could lead to local information disclosure with System execution …
In vdec, there is a possible out of bounds read due to improper structure design. This could lead to local information disclosure with System execution …
In KeyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
In KeyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
In mms, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with …
In mms, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with …
In vdec, there is a possible out of bounds read due to improper structure design. This could lead to local information disclosure with System execution …
In ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
In ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
In ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
In isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with …
In ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
In ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
In ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
In atci, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
In da, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no …
In m4u, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …
A vulnerability was found in Codezips ISP Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file …
A vulnerability has been found in Tenda i22 1.0.0.3(4687) and classified as problematic. Affected by this vulnerability is the function websReadEvent of the file /goform/GetIPTV?fgHPOST/goform/SysToo. …
A vulnerability, which was classified as critical, was found in ThinkAdmin up to 6.1.67. Affected is the function script of the file /app/admin/controller/api/Plugs.php. The manipulation …
A vulnerability was found in code-projects Wazifa System 1.0 and classified as critical. This issue affects some unknown processing of the file /controllers/control.php. The manipulation …
A vulnerability, which was classified as critical, was found in code-projects E-Health Care System up to 1.0. This affects an unknown part of the file …
A vulnerability classified as critical was found in itsourcecode Farm Management System 1.0. Affected by this vulnerability is an unknown functionality of the file manage-breed.php. …
A vulnerability was found in Project Worlds Life Insurance Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the …
A vulnerability was found in Project Worlds Life Insurance Management System 1.0. It has been classified as critical. This affects an unknown part of the …
A vulnerability has been found in Tongda OA 2017 up to 11.10 and classified as critical. Affected by this vulnerability is an unknown functionality of …
A vulnerability, which was classified as critical, was found in Tongda OA up to 11.10. Affected is an unknown function of the file /pda/appcenter/check_seal.php. The …
A vulnerability, which was classified as critical, has been found in Tongda OA up to 11.6. This issue affects some unknown processing of the file …
A vulnerability was found in code-projects University Event Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file …
A vulnerability has been found in Tenda AC6 15.03.05.19 and classified as critical. Affected by this vulnerability is the function formWriteFacMac of the file /goform/WriteFacMac …
The BBP Core – Expand bbPress powered forums with useful features plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of …
Free website and port scanning — find vulnerabilities before attackers do.