Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.9
CVE-2025-12436
Policy bypass in Extensions in Google Chrome prior to 142.0.7444.59 allowed an attacker who convinced a user to install a malicious extension to obta…
Chrome
142.0.7444.59+
HIGH 7.2
CVE-2022-50595
Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP management tool that allows for remote attackers to bypa…
Iview
5.7.04.6425+
CRITICAL 9.8
CVE-2022-50591
Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP management tool that allows for remote attackers to bypa…
Iview
5.7.04.6425+
HIGH 7.2
CVE-2022-50592
Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP management tool that allows for remote attackers to bypa…
Iview
5.7.04.6425+
CRITICAL 9.8
CVE-2022-50593
Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP management tool that allows for remote attackers to bypa…
Iview
5.7.04.6425+
HIGH 7.5
CVE-2022-50594
Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP management tool that allows for remote attackers to bypa…
Iview
5.7.04.6425+
CRITICAL 9.8
CVE-2025-20358
A vulnerability in the Contact Center Express (CCX) Editor application of Cisco Unified CCX could allow an unauthenticated, remote attacker to bypass…
Unified Contact Center Express
12.5+
CRITICAL 10.0
CVE-2025-55108
The Control-M/Agent is vulnerable to unauthenticated remote code execution, arbitrary file read and write and similar unauthorized actions when mutua…
Mitigation only
CRITICAL 9.3
CVE-2025-12108
The Survision LPR Camera system does not enforce password protection by default. This allows access to the configuration wizard immediately without a…
Mitigation only
CRITICAL 9.8
CVE-2025-61945
Radiometrics VizAir is vulnerable to any remote attacker via access to the admin panel of the VizAir system without authentication. Once inside, the …
Vizair
2025-08+
CRITICAL 9.8
CVE-2025-61956
Radiometrics VizAir is vulnerable to a lack of authentication mechanisms for critical functions, such as admin access and API requests. Attackers can…
Vizair
2025-08+
HIGH 7.8
CVE-2025-47357
Information Disclosure when a user-level driver performs QFPROM read or write operations on Fuse regions.
Qam8255p Firmware
Mitigation only
CRITICAL 9.8
CVE-2025-11007
The CE21 Suite plugin for WordPress is vulnerable to unauthorized plugin settings update due to a missing capability check on the wp_ajax_nopriv_ce21…
Mitigation only
MEDIUM 5.4
CVE-2025-8558
Insider Threat Management (ITM) Server versions prior to 7.17.2 contain an authentication bypass vulnerability that allows unauthenticated users on a…
Insider Threat Management Server
7.17.2+
HIGH 7.1
CVE-2025-48397
The privileged user could log in without sufficient credentials after enabling an application protocol. This security issue has been fixed in the lat…
Mitigation only
CRITICAL 10.0
CVE-2025-52665EPSS 41%
A malicious actor with access to the management network could exploit a misconfiguration in UniFi’s door access application, UniFi Access, that expos…
Unifi Access
4.0.21+
CRITICAL 9.3
CVE-2023-7325
Anheng Mingyu Operation and Maintenance Audit and Risk Control System up to 2023-08-10 contains a server-side request forgery (SSRF) vulnerability in…
Mitigation only
CRITICAL 9.3
CVE-2021-4461
Seeyon Zhiyuan OA Web Application System versions up to and including 7.0 SP1 improperly decode and parse the `enc` parameter in thirdpartyController…
No fix yet
CRITICAL 9.8
CVE-2025-12476
Resource Lacking AuthN.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 .
Blu Ic2 Firmware
1.20+
CRITICAL 9.8
CVE-2025-12477
Server Version Disclosure.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 .
Blu Ic2 Firmware
1.20+
HIGH 7.6
CVE-2025-41090
microCLAUDIA in v3.2.0 and prior has an improper access control vulnerability.
This flaw allows an authenticated user to perform unauthorized action…
Mitigation only
HIGH 7.5
CVE-2025-43994
Dell Storage Center - Dell Storage Manager, version(s) DSM 20.1.21, contain(s) a Missing Authentication for Critical Function vulnerability. An unaut…
Storage Manager
2020+
MEDIUM 5.3
CVE-2025-62607
Nautobot Single Source of Truth (SSoT) is an app for Nautobot. Prior to version 3.10.0, an unauthenticated attacker could access this page to view th…
Patch available
HIGH 8.8
CVE-2025-41110
Encrypted WiFi and SSH credentials were found in the Ghost Robotics Vision 60 v0.27.2 APK. This vulnerability allows an attacker to connect to the ro…
Vision 60 Firmware
Mitigation only
HIGH 7.5
CVE-2025-61756
Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: S…
Financial Services Analytical Applications Infrastructure
Mitigation only
CRITICAL 9.8
CVE-2025-62481
Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected…
Marketing
after 12.2.14
MEDIUM 6.1
CVE-2025-62287
Vulnerability in the Oracle Life Sciences InForm product of Oracle Health Sciences Applications (component: Web Server). The supported version that…
Life Sciences Inform
Mitigation only
CRITICAL 9.8
CVE-2025-61757 KEVEPSS 88%
Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: REST WebServices). Supported versions that are affected are 12…
Identity Manager
Mitigation only
HIGH 7.5
CVE-2025-61752
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 14.1.1.0…
Weblogic Server
Mitigation only
CRITICAL 9.8
CVE-2025-53072
Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected…
Marketing
after 12.2.14