Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2025-53690 KEV |
|
[KEV] Unsafe Deserialization in Sitecore multiple-products (CVE-2025-53690)
vulnerability in Sitecore multiple-products (CVE-2025-53690). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-9377 KEV |
|
[KEV] OS Command Injection in Tp-link multiple-routers (CVE-2025-9377)
OS command injection in Tp-link multiple-routers (CVE-2025-9377). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-50224 KEV |
|
[KEV] Vulnerability in Tp-link tl-wr841n (CVE-2023-50224)
vulnerability in Tp-link tl-wr841n (CVE-2023-50224). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-55177 KEV |
|
[KEV] Authorization Flaw in Meta platforms meta-platforms (CVE-2025-55177)
vulnerability in Meta platforms meta-platforms (CVE-2025-55177). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-24363 KEV |
|
[KEV] Vulnerability in Tp-link tl-wa855re (CVE-2020-24363)
vulnerability in Tp-link tl-wa855re (CVE-2020-24363). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-38677 |
|
Out-of-Bounds Read in c (CVE-2025-38677)
vulnerability in c (CVE-2025-38677). Confidential information can be exposed externally.
|
| CVE-2025-57819 KEV |
|
[KEV] SQL Injection in Sangoma freepbx (CVE-2025-57819)
SQL injection in Sangoma freepbx (CVE-2025-57819). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-58240 |
|
Use-After-Free in linux (CVE-2024-58240)
vulnerability in linux (CVE-2024-58240). Successful exploitation can lead to full system takeover.
|
| CVE-2025-38676 |
|
Out-of-Bounds Write in linux (CVE-2025-38676)
out-of-bounds write in linux (CVE-2025-38676). Successful exploitation can lead to full system takeover.
|
| CVE-2025-7775 KEV |
|
[KEV] Buffer Overflow in Citrix netscaler (CVE-2025-7775)
vulnerability in Citrix netscaler (CVE-2025-7775). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-48384 KEV |
|
[KEV] Vulnerability in git (CVE-2025-48384)
vulnerability in git (CVE-2025-48384). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-8069 KEV |
|
[KEV] Unsafe Deserialization in Citrix session-recording (CVE-2024-8069)
vulnerability in Citrix session-recording (CVE-2024-8069). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-8068 KEV |
|
[KEV] Privilege Escalation in Citrix session-recording (CVE-2024-8068)
vulnerability in Citrix session-recording (CVE-2024-8068). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-38670 |
|
Vulnerability in linux (CVE-2025-38670)
vulnerability in linux (CVE-2025-38670). Confidential information can be exposed externally.
|
| CVE-2025-43300 KEV |
|
[KEV] Out-of-Bounds Write in Apple ios (CVE-2025-43300)
out-of-bounds write in Apple ios (CVE-2025-43300). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-38614 |
|
Vulnerability in linux (CVE-2025-38614)
vulnerability in linux (CVE-2025-38614). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-54948 KEV |
|
[KEV] OS Command Injection in Trend micro trend-micro (CVE-2025-54948)
OS command injection in Trend micro trend-micro (CVE-2025-54948). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-38552 |
|
Vulnerability in linux (CVE-2025-38552)
vulnerability in linux (CVE-2025-38552). Successful exploitation can lead to full system takeover.
|
| CVE-2025-38502 |
|
Out-of-Bounds Read in linux (CVE-2025-38502)
vulnerability in linux (CVE-2025-38502). Confidential information can be exposed externally.
|
| CVE-2025-48989 |
|
Vulnerability in org.apache.tomcat:tomcat-coyote (CVE-2025-48989)
vulnerability in org.apache.tomcat:tomcat-coyote (CVE-2025-48989). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `9.0.108` or later.
|
| CVE-2025-8916 |
|
Vulnerability in org.bouncycastle:bcpkix-fips (CVE-2025-8916)
vulnerability in org.bouncycastle:bcpkix-fips (CVE-2025-8916). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.0.8` or later.
|
| CVE-2025-8876 KEV |
|
[KEV] Vulnerability in N-able n-central (CVE-2025-8876)
vulnerability in N-able n-central (CVE-2025-8876). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-8875 KEV |
|
[KEV] Vulnerability in N-able n-central (CVE-2025-8875)
vulnerability in N-able n-central (CVE-2025-8875). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-8088 KEV |
|
[KEV] Vulnerability in Rarlab winrar (CVE-2025-8088)
vulnerability in Rarlab winrar (CVE-2025-8088). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2013-3893 KEV |
|
[KEV] Vulnerability in Microsoft internet-explorer (CVE-2013-3893)
vulnerability in Microsoft internet-explorer (CVE-2013-3893). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2007-0671 KEV |
|
[KEV] Vulnerability in Microsoft office (CVE-2007-0671)
vulnerability in Microsoft office (CVE-2007-0671). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-38499 |
|
Vulnerability in linux (CVE-2025-38499)
vulnerability in linux (CVE-2025-38499). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-25078 KEV |
|
[KEV] Vulnerability in D-link dcs-2530l-and-dcs-2670l-devices (CVE-2020-25078)
vulnerability in D-link dcs-2530l-and-dcs-2670l-devices (CVE-2020-25078). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-25079 KEV |
|
[KEV] Command Injection in D-link dcs-2530l-and-dcs-2670l-devices (CVE-2020-25079)
command injection in D-link dcs-2530l-and-dcs-2670l-devices (CVE-2020-25079). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2022-40799 KEV |
|
[KEV] Vulnerability in D-link dnr-322l (CVE-2022-40799)
vulnerability in D-link dnr-322l (CVE-2022-40799). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-38498 |
|
Vulnerability in linux (CVE-2025-38498)
vulnerability in linux (CVE-2025-38498). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38491 |
|
Vulnerability in c (CVE-2025-38491)
vulnerability in c (CVE-2025-38491). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38477 |
|
Vulnerability in linux (CVE-2025-38477)
vulnerability in linux (CVE-2025-38477). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38468 |
|
Vulnerability in linux (CVE-2025-38468)
vulnerability in linux (CVE-2025-38468). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38470 |
|
Vulnerability in c (CVE-2025-38470)
vulnerability in c (CVE-2025-38470). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38471 |
|
Use-After-Free in c (CVE-2025-38471)
vulnerability in c (CVE-2025-38471). Successful exploitation can lead to full system takeover.
|
| CVE-2025-20337 KEV |
|
[KEV] Vulnerability in Cisco identity-services-engine (CVE-2025-20337)
vulnerability in Cisco identity-services-engine (CVE-2025-20337). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-2533 KEV |
|
[KEV] Cross-Site Request Forgery (CSRF) in Papercut ngmf (CVE-2023-2533)
vulnerability in Papercut ngmf (CVE-2023-2533). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-20281 KEV |
|
[KEV] Vulnerability in Cisco identity-services-engine (CVE-2025-20281)
vulnerability in Cisco identity-services-engine (CVE-2025-20281). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-8224 |
|
Vulnerability in c (CVE-2025-8224)
vulnerability in c (CVE-2025-8224). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38465 |
|
Vulnerability in linux (CVE-2025-38465)
vulnerability in linux (CVE-2025-38465). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38466 |
|
Vulnerability in linux (CVE-2025-38466)
vulnerability in linux (CVE-2025-38466). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38457 |
|
Vulnerability in linux (CVE-2025-38457)
vulnerability in linux (CVE-2025-38457). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38451 |
|
Vulnerability in linux (CVE-2025-38451)
vulnerability in linux (CVE-2025-38451). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38430 |
|
Vulnerability in linux (CVE-2025-38430)
vulnerability in linux (CVE-2025-38430). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38400 |
|
Vulnerability in c (CVE-2025-38400)
vulnerability in c (CVE-2025-38400). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38393 |
|
Vulnerability in linux (CVE-2025-38393)
vulnerability in linux (CVE-2025-38393). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-38364 |
|
Vulnerability in linux (CVE-2025-38364)
vulnerability in linux (CVE-2025-38364). Risk of unauthorized operations or information disclosure.
|
| CVE-2025-2775 KEV |
|
[KEV] XXE (XML External Entity) in sysaid (CVE-2025-2775)
vulnerability in sysaid (CVE-2025-2775). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-6558 KEV |
|
[KEV] Vulnerability in Google chromium (CVE-2025-6558)
vulnerability in Google chromium (CVE-2025-6558). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|