Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2025-27785
Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to arbitrary file read in train.py's `export_index` function. This …
Applio
after 3.2.8-bugfix
MEDIUM 5.8
CVE-2025-26485
A vulnerability in Beta80 Life 1st enables the retrieval of different error messages for failed authentication attempts
(in case of the usage of a w…
Mitigation only
MEDIUM 6.5
CVE-2025-29781
The Bare Metal Operator (BMO) implements a Kubernetes API for managing bare metal hosts in Metal3. Baremetal Operator enables users to load Secret fr…
Patch available
MEDIUM 5.0
CVE-2020-29010
An exposure of sensitive information to an unauthorized actor vulnerability in FortiOS version 6.2.4 and below, version 6.0.10 and belowmay allow rem…
Fortios
6.0.11 / 6.2.5+
MEDIUM 5.5
CVE-2025-2348
A vulnerability was found in IROAD Dash Cam FX2 up to 20250308. It has been classified as problematic. Affected is an unknown function of the file /m…
Fx2 Firmware
after 2025-03-08
HIGH 7.5
CVE-2025-2277
Exposure of password in web-based SSH authentication component in Devolutions Server 2024.3.13 and earlier allows a user to unadvertently leak his SS…
Devolutions Server
2025.1.3.0+
MEDIUM 6.5
CVE-2025-1635
Exposure of sensitive information in hub data source export feature in Devolutions Remote Desktop Manager 2024.3.29 and earlier on Windows allows a u…
Remote Desktop Manager
2024.3.31.0+
MEDIUM 6.5
CVE-2025-1636
Exposure of sensitive information in My Personal Credentials password history component in Devolutions Remote Desktop Manager 2024.3.29 and earlier o…
Remote Desktop Manager
2024.3.31.0+
HIGH 7.5
CVE-2025-25975
An issue in parse-git-config v.3.0.0 allows an attacker to obtain sensitive information via the expandKeys function
Parse Git Config
No fix yet
MEDIUM 5.3
CVE-2024-13498
The NEX-Forms – Ultimate Form Builder – Contact forms and much more plugin for WordPress is vulnerable to Sensitive Information Exposure in all versi…
Mitigation only
MEDIUM 6.5
CVE-2025-24071EPSS 25%
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a networ…
Windows 10 1507
10.0.10240.20947 / 10.0.14393.7876+
HIGH 8.1
CVE-2023-40723
An exposure of sensitive information to an unauthorized actor in Fortinet FortiSIEM version 6.7.0 through 6.7.4 and 6.6.0 through 6.6.3 and 6.5.0 thr…
Fortisiem
6.4.2 / 6.5.2+
MEDIUM 5.5
CVE-2022-48610
This issue was addressed through improved state management. This issue is fixed in macOS Ventura 13.1, watchOS 9.2, iOS 16.2 and iPadOS 16.2. An app …
Ipados
9.2 / 13.1+
HIGH 8.2
CVE-2025-27615
umatiGateway is software for connecting OPC Unified Architecture servers with an MQTT broker utilizing JSON messages. The user interface may possibly…
Patch available
MEDIUM 5.5
CVE-2024-54463
This issue was addressed with improved entitlements. This issue is fixed in macOS Sequoia 15. An app may be able to access removable volumes without …
macOS
15.0+
MEDIUM 6.5
CVE-2024-54467
A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18, iOS 18 and iPadOS 18, macOS Sequoia 15, tvO…
Safari
11.0 / 15.0+
MEDIUM 5.5
CVE-2024-54469
The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7, v…
Ipados
2.0 / 13.7+
MEDIUM 5.5
CVE-2024-54473
This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15. An app may be able to access user…
macOS
15.0+
MEDIUM 5.9
CVE-2024-13640
The Print Invoice & Delivery Notes for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in…
Mitigation only
HIGH 7.5
CVE-2025-27604
XWiki Confluence Migrator Pro helps admins to import confluence packages into their XWiki instance. The homepage of the application is public which e…
Confluence Migrator
1.11.7+
HIGH 7.5
CVE-2024-13086
An exposure of sensitive information vulnerability has been reported to affect product. If exploited, the vulnerability could allow remote attackers …
Qts
5.2.0.2851+
HIGH 7.5
CVE-2025-26167
Buffalo LS520D 4.53 is vulnerable to Arbitrary file read, which allows unauthenticated attackers to access the NAS web UI and read arbitrary internal…
Mitigation only
MEDIUM 6.9
CVE-2025-1714
Lack of Rate Limiting in Sign-up workflow in Perforce Gliffy prior to version 4.14.0-7 on Gliffy online allows attacker to enumerate valid user email…
Mitigation only
MEDIUM 5.3
CVE-2024-11153
The Content Control – The Ultimate Content Restriction Plugin! Restrict Content, Create Conditional Blocks & More plugin for WordPress is vulnerable …
No fix yet
CRITICAL 9.8
CVE-2025-27675
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Vulnerable OpenID Implementation V-2023-004.
Vasion Print
20.0.1923 / 22.0.843+
MEDIUM 5.3
CVE-2019-1815
A security vulnerability was discovered in the local status page functionality of Cisco Meraki’s MX67 and MX68 security appliance models that may all…
Mitigation only
MEDIUM 5.5
CVE-2024-58047
Permission verification vulnerability in the media library module
Impact: Successful exploitation of this vulnerability may affect service confidenti…
Harmonyos
No fix yet
MEDIUM 5.5
CVE-2024-58049
Permission verification vulnerability in the media library module
Impact: Successful exploitation of this vulnerability may affect service confidenti…
Harmonyos
Mitigation only
MEDIUM 6.8
CVE-2025-1868
Vulnerability of unauthorized exposure of confidential information affecting Advanced IP Scanner and Advanced Port Scanner. It occurs when these appl…
Mitigation only
HIGH 7.9
CVE-2024-53011
Information disclosure may occur due to improper permission and access controls to Video Analytics engine.
Snapdragon 8\+ Gen 1 Mobile Platform Firmware
No fix yet