Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 6.3
CVE-2025-5428
A vulnerability classified as critical has been found in juzaweb CMS up to 3.4.2. This affects an unknown part of the file /admin-cp/log-viewer of th…
Cms
after 3.4.2
MEDIUM 6.3
CVE-2025-5424
A vulnerability was found in juzaweb CMS up to 3.4.2 and classified as critical. This issue affects some unknown processing of the file /admin-cp/med…
Cms
after 3.4.2
MEDIUM 6.3
CVE-2025-5425
A vulnerability was found in juzaweb CMS up to 3.4.2. It has been classified as critical. Affected is an unknown function of the file /admin-cp/theme…
Cms
after 3.4.2
MEDIUM 6.3
CVE-2025-5426
A vulnerability was found in juzaweb CMS up to 3.4.2. It has been declared as critical. Affected by this vulnerability is an unknown functionality of…
Cms
after 3.4.2
MEDIUM 6.3
CVE-2025-5423
A vulnerability has been found in juzaweb CMS up to 3.4.2 and classified as critical. This vulnerability affects unknown code of the file /admin-cp/s…
Cms
after 3.4.2
MEDIUM 6.3
CVE-2025-5421
A vulnerability, which was classified as critical, has been found in juzaweb CMS up to 3.4.2. Affected by this issue is some unknown functionality of…
Cms
after 3.4.2
CRITICAL 9.8
CVE-2025-5409
A vulnerability was found in Mist Community Edition up to 4.7.1. It has been classified as critical. This affects the function create_token of the fi…
Mist
4.7.2+
CRITICAL 9.8
CVE-2025-5389
A vulnerability, which was classified as critical, has been found in JeeWMS up to 20250504. Affected by this issue is the function dogenerateOne2Many…
Jeewms
after 2025-05-04
CRITICAL 9.8
CVE-2025-5390
A vulnerability, which was classified as critical, was found in JeeWMS up to 20250504. This affects the function filedeal of the file /systemControll…
Jeewms
after 2025-05-04
CRITICAL 9.8
CVE-2025-5387
A vulnerability classified as critical has been found in JeeWMS up to 20250504. Affected is the function dogenerate of the file /generateController.d…
Jeewms
after 2025-05-04
MEDIUM 6.5
CVE-2025-4493
Improper privilege assignment in PAM JIT privilege sets in Devolutions
Server allows a PAM user to perform PAM JIT
requests on unauthorized groups …
Devolutions Server
after 2025.1.7.0
MEDIUM 5.5
CVE-2025-5175
A vulnerability was found in erdogant pypickle up to 1.1.5. It has been classified as critical. This affects the function Save of the file pypickle/p…
Pypickle
2.0.0+
MEDIUM 5.3
CVE-2025-5163
A vulnerability, which was classified as problematic, was found in yangshare 技术杨工 warehouseManager 仓库管理系统 1.0. This affects an unknown part…
Warehouse Management System
No fix yet
MEDIUM 6.8
CVE-2025-48741
A Broken Access Control vulnerability in StrangeBee TheHive 5.2.0 before 5.2.16, 5.3.0 before 5.3.11, and 5.4.0 before 5.4.10 allows remote, authenti…
Mitigation only
HIGH 8.8
CVE-2025-47631
Incorrect Privilege Assignment vulnerability in mojoomla Hospital Management System allows Privilege Escalation. This issue affects Hospital Manageme…
Mitigation only
CRITICAL 9.8
CVE-2025-47539EPSS 33%
Incorrect Privilege Assignment vulnerability in Arraytics Eventin wp-event-solution allows Privilege Escalation.This issue affects Eventin: from n/a …
Eventin
4.0.27+
CRITICAL 9.8
CVE-2025-39489
Incorrect Privilege Assignment vulnerability in pebas CouponXL couponxl allows Privilege Escalation.This issue affects CouponXL: from n/a through <= …
Mitigation only
CRITICAL 9.8
CVE-2025-31918
Incorrect Privilege Assignment vulnerability in quantumcloud Simple Business Directory Pro simple-business-directory-pro allows Privilege Escalation.…
Mitigation only
MEDIUM 6.4
CVE-2025-48695
An issue was discovered in CyberDAVA before 1.1.20. A privilege escalation vulnerability allows a low-privileged user to escalate their privilege by …
Mitigation only
MEDIUM 6.8
CVE-2025-4692
Actors can use a maliciously crafted JavaScript object notation (JSON) web token (JWT) to perform privilege escalation by submitting the malicious JW…
Mitigation only
HIGH 7.5
CVE-2025-47291
containerd is an open-source container runtime. A bug was found in the containerd's CRI implementation where containerd, starting in version 2.0.1 an…
Containerd
2.0.5+
HIGH 8.8
CVE-2025-39366
Incorrect Privilege Assignment vulnerability in Rocket Apps wProject.This issue affects wProject: from n/a before 5.8.0.
No fix yet
HIGH 7.3
CVE-2025-39459
Incorrect Privilege Assignment vulnerability in contempoinc Real Estate 7 realestate-7 allows Privilege Escalation.This issue affects Real Estate 7: …
Mitigation only
HIGH 8.8
CVE-2025-39405
Incorrect Privilege Assignment vulnerability in mojoomla WPAMS apartment-management allows Privilege Escalation.This issue affects WPAMS: from n/a th…
Mitigation only
HIGH 7.1
CVE-2025-0131
An incorrect privilege management vulnerability in the OPSWAT MetaDefender Endpoint Security SDK used by the Palo Alto Networks GlobalProtect™ app on…
Mitigation only
HIGH 7.6
CVE-2025-3744
Nomad Enterprise (“Nomad”) jobs using the policy override option are bypassing the mandatory sentinel policies. This vulnerability, identified as CVE…
Nomad
1.8.13 / 1.9.9+
MEDIUM 6.5
CVE-2025-4374
A flaw was found in Quay. When an organization acts as a proxy cache, and a user or robot pulls an image that hasn't been mirrored yet, they are gran…
Quay
after 3.14.0
HIGH 8.8
CVE-2025-2898
IBM Maximo Application Suite 9.0 could allow an attacker with some level of access to elevate their privileges due to a security configuration vulner…
Maximo Application Suite
Mitigation only
MEDIUM 5.3
CVE-2025-4269
A vulnerability was found in TOTOLINK A720R 4.1.5cu.374 and classified as critical. This issue affects some unknown processing of the file /cgi-bin/c…
A720r Firmware
No fix yet
MEDIUM 6.3
CVE-2025-3517
Incorrect privilege assignment in PAM JIT elevation feature in Devolutions Server 2025.1.5.0 and earlier allows a PAM user to elevate a previously co…
Devolutions Server
2025.1.6.0+