CVE Database

115581+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-27073
7.5 HIGH

Transient DOS while creating NDP instance.

Aug 6, 2025
CVE-2025-27072
5.5 MEDIUM

Information disclosure while processing a packet at EAVB BE side with invalid header length.

Aug 6, 2025
CVE-2025-27071
7.3 HIGH

Memory corruption while processing specific files in Powerline Communication Firmware.

Aug 6, 2025
CVE-2025-27069
7.8 HIGH

Memory corruption while processing DDI command calls.

Aug 6, 2025
CVE-2025-27068
7.8 HIGH

Memory corruption while processing an IOCTL command with an arbitrary address.

Aug 6, 2025
CVE-2025-27067
7.8 HIGH

Memory corruption while processing DDI call with invalid buffer.

Aug 6, 2025
CVE-2025-27066
7.5 HIGH

Transient DOS while processing an ANQP message.

Aug 6, 2025
CVE-2025-27065
7.5 HIGH

Transient DOS while processing a frame with malformed shared-key descriptor.

Aug 6, 2025
CVE-2025-27062
7.8 HIGH

Memory corruption while handling client exceptions, allowing unauthorized channel access.

Aug 6, 2025
CVE-2025-21477
7.5 HIGH

Transient DOS while processing CCCH data when NW sends data with invalid length.

Aug 6, 2025
CVE-2025-21474
7.8 HIGH

Memory corruption while processing commands from A2dp sink command queue.

Aug 6, 2025
CVE-2025-21473
7.8 HIGH

Memory corruption when using Virtual cdm (Camera Data Mover) to write registers.

Aug 6, 2025
CVE-2025-21472
5.5 MEDIUM

Information disclosure while capturing logs as eSE debug messages are logged.

Aug 6, 2025
CVE-2025-21465
6.5 MEDIUM

Information disclosure while processing the hash segment in an MBN file.

Aug 6, 2025
CVE-2025-21464
6.5 MEDIUM

Information disclosure while reading data from an image using specified offset and size parameters.

Aug 6, 2025
CVE-2025-21461
7.8 HIGH

Memory corruption when programming registers through virtual CDM.

Aug 6, 2025
CVE-2025-21458
7.8 HIGH

Memory corruption when IOCTL interface is called to map and unmap buffers simultaneously.

Aug 6, 2025
CVE-2025-21457
6.1 MEDIUM

Information disclosure while opening a fastrpc session when domain is not sanitized.

Aug 6, 2025
CVE-2025-21456
7.8 HIGH

Memory corruption while processing IOCTL command when multiple threads are called to map/unmap buffer concurrently.

Aug 6, 2025
CVE-2025-21455
7.8 HIGH

Memory corruption while submitting blob data to kernel space though IOCTL.

Aug 6, 2025
CVE-2025-21452
7.5 HIGH

Transient DOS while processing a random-access response (RAR) with an invalid PDU length on LTE network.

Aug 6, 2025
CVE-2025-7727
6.4 MEDIUM

The Gutenverse plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Animated Text and Fun Fact blocks in all versions up to, …

Aug 6, 2025
CVE-2025-7376
5.9 MEDIUM

Windows Shortcut Following (.LNK) vulnerability in multiple processes of Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mitsubishi …

Aug 6, 2025
CVE-2025-21024
3.3 LOW

Use of Implicit Intent for Sensitive Communication in Smart View prior to Android 16 allows local attackers to access sensitive information.

Aug 6, 2025
CVE-2025-21023
3.3 LOW

Improper access control in WcsExtension for Galaxy Watch prior to Android Watch 16 allows local attackers to access sensitive information.

Aug 6, 2025
CVE-2025-21022
3.3 LOW

Improper access control in Galaxy Wearable prior to version 2.2.63.25042861 allows local attackers to access sensitive information.

Aug 6, 2025
CVE-2025-21021
5.7 MEDIUM

Out-of-bounds write in drawing pinpad in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-bounds memory.

Aug 6, 2025
CVE-2025-21020
5.7 MEDIUM

Out-of-bounds write in creating bitmap images in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-bounds memory.

Aug 6, 2025
CVE-2025-21019
5.5 MEDIUM

Improper authorization in Samsung Health prior to version 6.30.1.003 allows local attackers to access data in Samsung Health. User interaction is required for triggering this …

Aug 6, 2025
CVE-2025-21018
4.4 MEDIUM

Out-of-bounds read in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to read out-of-bounds memory.

Aug 6, 2025
CVE-2025-21017
6.3 MEDIUM

Out-of-bounds write in detaching crypto box in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to write out-of-bounds memory.

Aug 6, 2025
CVE-2025-21016
4.3 MEDIUM

Improper access control in PkgPredictorService prior to SMR Aug-2025 Release 1 in Chinese Android 13, 14, 15 and 16 allows local attackers to use the …

Aug 6, 2025
CVE-2025-21015
4.0 MEDIUM

Path Traversal in Document scanner prior to SMR Aug-2025 Release 1 allows local attackers to delete file with Document scanner's privilege.

Aug 6, 2025
CVE-2025-21014
4.3 MEDIUM

Improper export of android application component in Emergency SoS prior to SMR Aug-2025 Release 1 allows local attackers to access sensitive information.

Aug 6, 2025
CVE-2025-21013
6.2 MEDIUM

Improper access control in SemSensorManager for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to access sensitive information related to outdoor exercise …

Aug 6, 2025
CVE-2025-21012
5.5 MEDIUM

Improper access control in fall detection for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to modify fall detection configuration.

Aug 6, 2025
CVE-2025-21011
5.5 MEDIUM

Improper access control in SemSensorService for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to access sensitive information related to motion and …

Aug 6, 2025
CVE-2025-21010
6.0 MEDIUM

Improper privilege management in SamsungAccount prior to SMR Aug-2025 Release 1 allows local privileged attackers to deactivate Samsung account.

Aug 6, 2025
CVE-2025-20990
4.0 MEDIUM

Improper access control in accessing system device node prior to SMR Aug-2025 Release 1 allows local attackers to access device identifier.

Aug 6, 2025
CVE-2025-8100
5.4 MEDIUM

The Element Pack Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'marker_content' parameter in versions up to, and …

Aug 6, 2025
CVE-2025-7498
6.4 MEDIUM

The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown Widget in all versions up to, and including, …

Aug 6, 2025
CVE-2025-7399
6.4 MEDIUM

The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via an Elementor display setting in all versions up to, and including, 28.1.3 due …

Aug 6, 2025
CVE-2025-6994
9.8 CRITICAL

The Reveal Listing plugin by smartdatasoft for WordPress is vulnerable to privilege escalation in versions up to, and including, 3.3. This is due to the …

Aug 6, 2025
CVE-2025-55027

Rejected reason: Not used

Aug 6, 2025
CVE-2025-55026

Rejected reason: Not used

Aug 6, 2025
CVE-2025-55025

Rejected reason: Not used

Aug 6, 2025
CVE-2025-55024

Rejected reason: Not used

Aug 6, 2025
CVE-2025-55023

Rejected reason: Not used

Aug 6, 2025
CVE-2025-55022

Rejected reason: Not used

Aug 6, 2025
CVE-2025-55021

Rejected reason: Not used

Aug 6, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.