Vulnerability index

Browse CVEs

1,198 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Search Path (DLL Hijack)CWE-427 × clear
HIGH 7.8 CVE-2025-34424 MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini… Mailenable 10.54+ Fix from $1,9502025-12-10 HIGH 7.8 CVE-2025-34417 MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini… Mailenable 10.54+ Fix from $1,9502025-12-10 HIGH 7.8 CVE-2025-34418 MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini… Mailenable 10.54+ Fix from $1,9502025-12-10 HIGH 7.8 CVE-2025-34419 MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini… Mailenable 10.54+ Fix from $1,9502025-12-10 HIGH 7.8 CVE-2025-34420 MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini… Mailenable 10.54+ Fix from $1,9502025-12-10 HIGH 7.8 CVE-2025-34421 MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini… Mailenable 10.54+ Fix from $1,9502025-12-10 HIGH 7.8 CVE-2025-34422 MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini… Mailenable 10.54+ Fix from $1,9502025-12-10 HIGH 7.8 CVE-2025-34416 MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini… Mailenable 10.54+ Fix from $1,9502025-12-10 HIGH 7.8 CVE-2025-13152 A potential DLL hijacking vulnerability was reported in Lenovo One Client during an internal security assessment that could allow a local authenticat… Mitigation only Fix from $1,9502025-12-10 HIGH 7.8 CVE-2025-12046 A DLL hijacking vulnerability was reported in the Lenovo App Store and Lenovo Browser applications that could allow a local authenticated user to exe… Mitigation only Fix from $1,9502025-12-10 CRITICAL 9.8 CVE-2025-65741 Sublime Text 3 Build 3208 or prior for MacOS is vulnerable to Dylib Injection. An attacker could compile a .dylib file and force the execution of thi… Sublime Text 3 3.2.2+ Fix from $2,3002025-12-09 HIGH 7.3 CVE-2025-34396 MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini… Mailenable 10.54+ Fix from $1,9502025-12-09 HIGH 7.3 CVE-2025-5469 Uncontrolled Search Path Element vulnerability in Yandex Messenger on MacOS allows Search Order Hijacking.This issue affects Telemost: before 2.245 Mitigation only Fix from $1,9502025-12-09 HIGH 7.3 CVE-2025-5470 Uncontrolled Search Path Element vulnerability in Yandex Disk on MacOS allows Search Order Hijacking.This issue affects Disk: before 3.2.45.3275. Mitigation only Fix from $1,9502025-12-09 HIGH 7.8 CVE-2025-5471 Uncontrolled Search Path Element vulnerability in Yandex Telemost on MacOS allows Search Order Hijacking.This issue affects Telemost: before 2.19.1. Yandex Telemost 2.19.1+ Fix from $1,9502025-12-09 HIGH 8.8 CVE-2025-33208 NVIDIA TAO contains a vulnerability where an attacker may cause a resource to be loaded via an uncontrolled search path. A successful exploit of this… Tao Toolkit Patch available Fix from $1,9502025-12-03 HIGH 7.8 CVE-2025-66476 Vim is an open source, command line text editor. Prior to version 9.1.1947, an uncontrolled search path vulnerability on Windows allows Vim to execut… Vim 9.1.1947+ Fix from $1,9502025-12-02 MEDIUM 6.6 CVE-2025-11772 A carefully crafted DLL, copied to C:\ProgramData\Synaptics folder, allows a local user to execute arbitrary code with elevated privileges durin… Mitigation only Fix from $1,6002025-12-01 HIGH 7.8 CVE-2025-64772 The installer of INZONE Hub 1.0.10.3 to 1.0.17.0 contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Librar… Mitigation only Fix from $1,9502025-12-01 HIGH 7.8 CVE-2025-64695 Uncontrolled search path element issue exists in the installer of LogStare Collector (for Windows). If exploited, arbitrary code may be executed with… Logstare Collector 2.4.2+ Fix from $1,9502025-11-21 CRITICAL 9.3 CVE-2025-13051 When the service of ABP and AES is installed in a directory writable by non-administrative users, an attacker can replace or plant a DLL with the sam… Mitigation only Fix from $2,3002025-11-19 HIGH 8.4 CVE-2025-12852 DLL Loading vulnerability in NEC Corporation RakurakuMusen Start EX All Verisons allows a attacker to manipulate the PC environment to cause unintend… Mitigation only Fix from $1,9502025-11-19 HIGH 7.7 CVE-2025-10089 Uncontrolled Search Path Element Vulnerability in Setting and Operation Application for Lighting Control System MILCO.S Setting Application all versi… Mitigation only Fix from $1,9502025-11-18 HIGH 7.3 CVE-2025-64726 Socket Firewall is an HTTP/HTTPS proxy server that intercepts package manager requests and enforces security policies by blocking dangerous packages.… Mitigation only Fix from $1,9502025-11-13 HIGH 7.8 CVE-2025-40827 A vulnerability has been identified in Siemens Software Center (All versions < V3.5), Solid Edge SE2025 (All versions < V225.0 Update 10). The affect… Mitigation only Fix from $1,9502025-11-11 HIGH 7.8 CVE-2025-40763 A vulnerability has been identified in Altair Grid Engine (All versions < V2026.0.0). Affected products do not properly validate environment variable… Mitigation only Fix from $1,9502025-11-11 MEDIUM 6.7 CVE-2025-35972 Uncontrolled search path for the Intel MPI Library before version 2021.16 within Ring 3: User Applications may allow an escalation of privilege. Unpr… Mitigation only Fix from $1,6002025-11-11 MEDIUM 6.7 CVE-2025-32038 Uncontrolled search path for some FPGA Support Package for the Intel oneAPI DPC++C++ Compiler software before version 2025.0.1 within Ring 3: User Ap… Mitigation only Fix from $1,6002025-11-11 MEDIUM 6.7 CVE-2025-31931 Uncontrolled search path for the Instrumentation and Tracing Technology API (ITT API) software before version 3.25.4 within Ring 3: User Applications… Mitigation only Fix from $1,6002025-11-11 MEDIUM 6.7 CVE-2025-32001 Uncontrolled search path for the Intel(R) Processor Identification Utility before version 8.0.43 within Ring 3: User Applications may allow an escala… Mitigation only Fix from $1,6002025-11-11