Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.8
CVE-2025-2858
Privilege escalation vulnerability in the saTECH BCU firmware version 2.1.3. An attacker with access to the CLI of the device could make use of the n…
Satech Bcu Firmware
Mitigation only
HIGH 7.8
CVE-2024-58104
A vulnerability in the Trend Micro Apex One Security Agent Plug-in User Interface Manager could allow a local attacker to bypass existing security a…
Apex One
14.0.14203 / 2019.13140+
MEDIUM 5.5
CVE-2022-1804
accountsservice no longer drops permissions when writting .pam_environment
Accountsservice
22.07.5-2ubuntu1.3+
HIGH 7.4
CVE-2024-53350
Insecure permissions in kubeslice v1.3.1 allow attackers to gain access to the service account's token, leading to escalation of privileges.
Kubeslice
after 1.3.1
HIGH 7.4
CVE-2024-53349
Insecure permissions in kuadrant v0.11.3 allow attackers to gain access to the service account's token, leading to escalation of privileges via the s…
Kuadrant
after 0.11.3
HIGH 7.5
CVE-2025-29924
XWiki Platform is a generic wiki platform. Prior to 15.10.14, 16.4.6, and 16.10.0-rc-1, it's possible for an user to get access to private informatio…
Xwiki
15.10.14 / 16.4.6+
HIGH 8.8
CVE-2025-2324
Improper Privilege Management vulnerability for users configured as Shared Accounts in Progress MOVEit Transfer (SFTP module) allows Privilege Escala…
Moveit Transfer
2023.1.12 / 2024.0.8+
MEDIUM 5.5
CVE-2024-48828
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Privilege Management vulnerability. A low p…
Smartfabric Os10
10.5.4.14 / 10.5.5.13+
MEDIUM 5.5
CVE-2025-25872
An issue in Open Panel v.0.3.4 allows a remote attacker to escalate privileges via the Fix Permissions function
Openpanel
No fix yet
CRITICAL 9.8
CVE-2025-2232
The Realteo - Real Estate Plugin by Purethemes plugin for WordPress, used by the Findeo Theme, is vulnerable to authentication bypass in all versions…
Realteo
1.2.9+
HIGH 8.8
CVE-2024-13376
The Industrial theme for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capabili…
Mitigation only
MEDIUM 6.7
CVE-2024-57062
An issue in SoundCloud IOS application v.7.65.2 allows a local attacker to escalate privileges and obtain sensitive information via the session handl…
Soundcloud
Mitigation only
MEDIUM 6.7
CVE-2025-21199
Improper privilege management in Azure Agent Installer allows an authorized attacker to elevate privileges locally.
Azure Agent
2.0.9940.0 / 9.30+
HIGH 7.5
CVE-2025-26705
Improper Privilege Management vulnerability in ZTE GoldenDB allows Privilege Escalation.This issue affects GoldenDB: from 6.1.03 through 6.1.03.05.
Goldendb
6.1.03.06+
MEDIUM 5.3
CVE-2025-26706
Improper Privilege Management vulnerability in ZTE GoldenDB allows Privilege Escalation.This issue affects GoldenDB: from 6.1.03 through 6.1.03.07.
Goldendb
after 6.1.03.07
MEDIUM 5.3
CVE-2025-26707
Improper Privilege Management vulnerability in ZTE GoldenDB allows Privilege Escalation.This issue affects GoldenDB: from 6.1.03 through 6.1.03.05.
Mitigation only
MEDIUM 5.5
CVE-2024-54560
A logic issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18, watchOS 11. A malicious app…
Ipados
11.0 / 15.0+
CRITICAL 9.8
CVE-2025-0177
The Javo Core plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 3.0.0.080. This is due to the plugin a…
Javo Core
3.0.0.266+
HIGH 7.2
CVE-2024-13835
The Post Meta Data Manager plugin for WordPress is vulnerable to multisite privilege escalation in all versions up to, and including, 1.4.4. This is …
Post Meta Data Manager
after 1.4.3
MEDIUM 6.8
CVE-2025-1121
Privilege escalation in Installer and Recovery image handling in Google ChromeOS version 15786.48.2 on device allows an attacker with physical access…
Chrome Os
Mitigation only
CRITICAL 9.8
CVE-2024-11951
The Homey Login Register plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 2.4.0. This is due to the p…
Mitigation only
CRITICAL 9.8
CVE-2024-12281
The Homey theme for WordPress is vulnerable to privilege escalation in all versions up to, and including, 2.4.2. This is due to the plugin allowing u…
Mitigation only
HIGH 8.8
CVE-2025-27639
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.1002 Application 20.0.2614 allows Privilege Escalation V-2024-015.
Vasion Print
20.0.2614 / 22.0.1002+
HIGH 7.8
CVE-2025-27644
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.933 Application 20.0.2368 allows Local Privilege Escalation V-2024-007.
Vasion Print
20.0.2368 / 22.0.933+
HIGH 8.6
CVE-2025-1424
A privilege escalation vulnerability in PocketBook InkPad Color 3 allows attackers to escalate to root privileges if they gain physical access to the…
Mitigation only
MEDIUM 6.5
CVE-2024-24778
Improper privilege management in a REST interface allowed registered users to access unauthorized resources if the resource ID was know.
This i…
Streampipes
0.97.0+
CRITICAL 9.8
CVE-2024-8420
The DHVC Form plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 2.4.7. This is due to the plugin allow…
Dhvc Form
2.4.8+
CRITICAL 9.8
CVE-2024-36046
Infoblox NIOS through 8.6.4 executes with more privileges than required.
Nios
after 8.6.4
HIGH 8.8
CVE-2024-2297
The Bricks theme for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.9.6.1. This is due to insufficient valid…
Bricks
1.9.7+
HIGH 8.8
CVE-2025-1295
The Templines Elementor Helper Core plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 2.7. This is due…
Mitigation only