Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
Admintwo HIGH 7.5
CVE-2025-3255

A vulnerability was found in xujiangfei admintwo 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality…

No fix yet
Fix from $1,950 2025-04-04
Web Based Pharmacy Product Management System HIGH 8.8
CVE-2025-3244

A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been declared as critical. Affected by this vuln…

No fix yet
Fix from $1,950 2025-04-04
Fh1202 Firmware MEDIUM 5.3
CVE-2025-3236

A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been declared as critical. This vulnerability affects unknown code of the file /gofor…

No fix yet
Fix from $1,600 2025-04-04
Fh1202 Firmware MEDIUM 5.3
CVE-2025-3237

A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been rated as critical. This issue affects some unknown processing of the file /gofor…

No fix yet
Fix from $1,600 2025-04-04
Unclassified HIGH 7.8
CVE-2025-1865

The kernel driver, accessible to low-privileged users, exposes a function that fails to properly validate the privileges of the calling process. This…

Mitigation only
Fix from $1,950 2025-04-04
Unclassified MEDIUM 5.3
CVE-2025-31486EPSS 41%

Vite is a frontend tooling framework for javascript. The contents of arbitrary files can be returned to the browser. By adding ?.svg with ?.wasm?init…

Patch available
Fix from $1,600 2025-04-03
Unclassified MEDIUM 5.0
CVE-2025-3169

A vulnerability was found in Projeqtor up to 12.0.2. It has been rated as critical. Affected by this issue is some unknown functionality of the file …

No fix yet
Fix from $1,600 2025-04-03
Wondercms HIGH 7.2
CVE-2025-3123

A vulnerability, which was classified as critical, has been found in WonderCMS 3.5.0. Affected by this issue is the function installUpdateModuleActio…

No fix yet
Fix from $1,950 2025-04-02
Unclassified CRITICAL 9.3
CVE-2025-31484

conda-forge infrastructure holds common configurations and settings for key pieces of the conda-forge infrastructure. Between 2025-02-10 and 2025-04-…

Patch available
Fix from $2,300 2025-04-02
Monitor Remote Job MEDIUM 5.5
CVE-2025-31725

Jenkins monitor-remote-job Plugin 1.0 stores passwords unencrypted in job config.xml files on the Jenkins controller where they can be viewed by user…

Mitigation only
Fix from $1,600 2025-04-02
Stack Hammer MEDIUM 5.5
CVE-2025-31726

Jenkins Stack Hammer Plugin 1.0.6 and earlier stores Stack Hammer API keys unencrypted in job config.xml files on the Jenkins controller where they c…

Fix: after 1.0.6
Fix from $1,600 2025-04-02
MongoDB MEDIUM 5.4
CVE-2025-3082

A user authorized to access a view may be able to alter the intended collation, allowing them to access to a different or unintended view of underlyi…

Fix: 5.0.31 / 6.0.20+
Fix from $1,600 2025-04-01
Online Time Table Generator CRITICAL 9.8
CVE-2025-3042

A vulnerability classified as critical was found in Project Worlds Online Time Table Generator 1.0. This vulnerability affects unknown code of the fi…

No fix yet
Fix from $2,300 2025-04-01
Online Time Table Generator CRITICAL 9.8
CVE-2025-3041

A vulnerability classified as critical has been found in Project Worlds Online Time Table Generator 1.0. This affects an unknown part of the file /ad…

No fix yet
Fix from $2,300 2025-04-01
Online Time Table Generator CRITICAL 9.8
CVE-2025-3040

A vulnerability was found in Project Worlds Online Time Table Generator 1.0. It has been rated as critical. Affected by this issue is some unknown fu…

No fix yet
Fix from $2,300 2025-03-31
macOS MEDIUM 5.5
CVE-2025-31187

This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An ap…

Fix: 13.7.5 / 14.7.5+
Fix from $1,600 2025-03-31
macOS HIGH 7.4
CVE-2025-30460

A permissions issue was addressed by removing vulnerable code and adding additional checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 1…

Fix: 13.7.5 / 14.7.5+
Fix from $1,950 2025-03-31
macOS CRITICAL 9.8
CVE-2025-30462

A library injection issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 1…

Fix: 13.7.5 / 14.7.5+
Fix from $2,300 2025-03-31
macOS MEDIUM 5.5
CVE-2025-30450

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. …

Fix: 13.7.5 / 14.7.5+
Fix from $1,600 2025-03-31
Ipados CRITICAL 9.8
CVE-2025-30433

This issue was addressed with improved access restrictions. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, macOS…

Fix: 2.4 / 13.7.5+
Fix from $2,300 2025-03-31
Ipados MEDIUM 5.5
CVE-2025-30438

This issue was addressed with improved access restrictions. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, macOS Sonoma 14.7.5,…

Fix: 2.4 / 11.4+
Fix from $1,600 2025-03-31
macOS MEDIUM 6.8
CVE-2025-24272

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be abl…

Fix: 13.7.5 / 14.7.5+
Fix from $1,600 2025-03-31
macOS CRITICAL 9.8
CVE-2025-24259

This issue was addressed with additional entitlement checks. This issue is fixed in iPadOS 17.7.7, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ven…

Fix: 13.7.5 / 14.7.5+
Fix from $2,300 2025-03-31
macOS CRITICAL 9.8
CVE-2025-24241

A configuration issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.…

Fix: 13.7.5 / 14.7.5+
Fix from $2,300 2025-03-31
macOS MEDIUM 5.0
CVE-2025-24248

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4. An app may be able to enumerate devices th…

Fix: 15.4+
Fix from $1,600 2025-03-31
macOS HIGH 7.4
CVE-2025-24229

A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. A sandboxed a…

Fix: 13.7.5 / 14.7.5+
Fix from $1,950 2025-03-31
macOS MEDIUM 5.5
CVE-2025-24236

An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5. An app may be abl…

Fix: 14.7.5 / 15.4+
Fix from $1,600 2025-03-31
Ipados MEDIUM 5.5
CVE-2025-24214

A privacy issue was addressed by not logging contents of text fields. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, tvOS 18.4,…

Fix: 2.4 / 15.4+
Fix from $1,600 2025-03-31
Ipados MEDIUM 5.5
CVE-2025-24215

The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.6, macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. A …

Fix: 13.7.5 / 14.7.5+
Fix from $1,600 2025-03-31
macOS MEDIUM 5.5
CVE-2025-24218

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15.4. An app may be able to …

Fix: 15.4+
Fix from $1,600 2025-03-31