|
cve-2025-68645
|
Synacor Zimbra Collaboration Suite (ZCS) PHP Remote File Inclusion Vulnerability |
HIGH
|
N/A
|
48.87%
|
cvelistv5 |
2026-01-22 |
|
cve-2025-54313
|
eslint-config-prettier: Eslint-config-prettier Supply Chain Compromise |
HIGH
|
7.5
|
4.52%
|
cvelistv5 |
2026-06-30 |
|
cve-2025-34026
|
Versa Concerto Improper Authentication Vulnerability |
CRITICAL
|
9.2
|
81.94%
|
cvelistv5 |
2026-01-22 |
|
cve-2025-31125
|
vite: Vite has a `server.fs.deny` bypassed for `inline` and `raw` with `?import` query |
MEDIUM
|
5.3
|
64.69%
|
cvelistv5 |
2026-07-11 |
|
cve-2026-20045
|
Cisco Unified Communications Products Code Injection Vulnerability |
HIGH
|
N/A
|
4.54%
|
cvelistv5 |
2026-01-21 |
|
cve-2026-20805
|
Microsoft Windows Information Disclosure Vulnerability |
HIGH
|
N/A
|
7.20%
|
cvelistv5 |
2026-01-13 |
|
cve-2025-8110
|
Gogs Path Traversal Vulnerability |
HIGH
|
N/A
|
85.20%
|
cvelistv5 |
2026-01-12 |
|
cve-2025-37164
|
Hewlett Packard Enterprise (HPE) OneView Code Injection Vulnerability |
CRITICAL
|
10.0
|
90.19%
|
cvelistv5 |
2026-01-07 |
|
cve-2009-0556
|
Microsoft Office PowerPoint Code Injection Vulnerability |
HIGH
|
N/A
|
67.31%
|
cvelistv5 |
2026-01-07 |
|
cve-2025-14847
|
MongoDB and MongoDB Server Improper Handling of Length Parameter Inconsistency Vulnerability |
HIGH
|
8.7
|
83.22%
|
cvelistv5 |
2025-12-29 |
|
cve-2023-52163
|
Digiever DS-2105 Pro Missing Authorization Vulnerability |
HIGH
|
8.8
|
96.92%
|
cvelistv5 |
2025-12-22 |
|
cve-2025-14733
|
WatchGuard Firebox Out of Bounds Write Vulnerability |
CRITICAL
|
9.3
|
26.51%
|
cvelistv5 |
2025-12-19 |
|
cve-2025-59374
|
ASUS Live Update Embedded Malicious Code Vulnerability |
CRITICAL
|
9.3
|
1.20%
|
cvelistv5 |
2025-12-17 |
|
cve-2025-40602
|
SonicWall SMA1000 Missing Authorization Vulnerability |
HIGH
|
N/A
|
2.76%
|
cvelistv5 |
2025-12-17 |
|
cve-2025-20393
|
Cisco Multiple Products Improper Input Validation Vulnerability |
HIGH
|
N/A
|
32.39%
|
cvelistv5 |
2025-12-17 |
|
cve-2025-59718
|
Fortinet Multiple Products Improper Verification of Cryptographic Signature Vulnerability |
CRITICAL
|
9.1
|
68.29%
|
cvelistv5 |
2025-12-16 |
|
cve-2025-43529
|
webkitgtk: webkitgtk: Use-after-free due to improper memory management |
HIGH
|
8.8
|
8.76%
|
cvelistv5 |
2026-06-30 |
|
cve-2025-14611
|
Gladinet CentreStack and Triofox Hard Coded Cryptographic Vulnerability |
HIGH
|
7.1
|
53.30%
|
cvelistv5 |
2025-12-15 |
|
cve-2025-14174
|
SUSE CVE CVE-2025-14174 |
HIGH
|
8.8
|
22.33%
|
cvelistv5 |
2026-09-03 |
|
cve-2018-4063
|
Sierra Wireless AirLink ALEOS Unrestricted Upload of File with Dangerous Type Vulnerability |
HIGH
|
8.8
|
27.06%
|
cvelistv5 |
2025-12-12 |
|
cve-2025-58360
|
OSGeo GeoServer Improper Restriction of XML External Entity Reference Vulnerability |
HIGH
|
N/A
|
60.52%
|
cvelistv5 |
2025-12-11 |
|
cve-2025-62221
|
Microsoft Windows Use After Free Vulnerability |
HIGH
|
7.8
|
2.50%
|
cvelistv5 |
2025-12-09 |
|
cve-2025-6218
|
RARLAB WinRAR Path Traversal Vulnerability |
HIGH
|
N/A
|
90.48%
|
cvelistv5 |
2025-12-09 |
|
cve-2025-66644
|
Array Networks ArrayOS AG OS Command Injection Vulnerability |
HIGH
|
7.2
|
3.42%
|
cvelistv5 |
2025-12-08 |
|
cve-2022-37055
|
D-Link Routers Buffer Overflow Vulnerability |
CRITICAL
|
9.8
|
55.53%
|
cvelistv5 |
2025-12-08 |
|
cve-2025-55182
|
next: React Server Components: Pre-authentication remote code execution via unsafe deserialization |
CRITICAL
|
10.0
|
99.80%
|
cvelistv5 |
2026-08-04 |
|
cve-2021-26828
|
OpenPLC ScadaBR Unrestricted Upload of File with Dangerous Type Vulnerability |
HIGH
|
8.8
|
39.36%
|
cvelistv5 |
2025-12-03 |
|
cve-2025-48633
|
Android Framework Information Disclosure Vulnerability |
MEDIUM
|
5.5
|
0.26%
|
cvelistv5 |
2025-12-02 |
|
cve-2025-48572
|
Android Framework Privilege Escalation Vulnerability |
HIGH
|
7.8
|
0.26%
|
cvelistv5 |
2025-12-02 |
|
cve-2021-26829
|
OpenPLC ScadaBR Cross-site Scripting Vulnerability |
MEDIUM
|
5.4
|
48.05%
|
cvelistv5 |
2025-11-28 |