Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.8
CVE-2025-8829EPSS 8%
A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected by this vulnerability is the fun…
Re6250 Firmware
No fix yet
HIGH 8.8
CVE-2025-8828EPSS 8%
A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected is the function ipv6cmd of the f…
Re6250 Firmware
No fix yet
HIGH 8.8
CVE-2025-8827EPSS 8%
A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This issue affects the function um_inspect_cro…
Re6250 Firmware
No fix yet
HIGH 8.8
CVE-2025-8825EPSS 8%
A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This affects the function RP_setBasicAuto…
Re6250 Firmware
No fix yet
HIGH 8.8
CVE-2025-8823EPSS 8%
A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected by this vulnerability is the function…
Re6250 Firmware
No fix yet
HIGH 8.8
CVE-2025-8821EPSS 8%
A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This issue affects the function RP_setBas…
Re6250 Firmware
No fix yet
HIGH 8.8
CVE-2025-8818EPSS 8%
A vulnerability has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected by this issue is the function se…
Re6250 Firmware
No fix yet
CRITICAL 9.8
CVE-2025-8752
A vulnerability was found in wangzhixuan spring-shiro-training up to 94812c1fd8f7fe796c931f4984ff1aa0671ab562. It has been declared as critical. This…
Spring Shiro Training
Mitigation only
HIGH 7.5
CVE-2025-53774
Microsoft 365 Copilot BizChat Information Disclosure Vulnerability
365 Copilot Chat
No fix yet
HIGH 7.5
CVE-2025-53787
Microsoft 365 Copilot BizChat Information Disclosure Vulnerability
365 Copilot Chat
No fix yet
MEDIUM 6.3
CVE-2025-8697
A vulnerability was found in agentUniverse up to 0.0.18 and classified as critical. This issue affects the function StdioServerParameters of the comp…
Mitigation only
MEDIUM 5.4
CVE-2025-54393
Netwrix Directory Manager (formerly Imanami GroupID) 11.0.0.0 before 11.1.25162.02 allows Static Code Injection. Authenticated users can obtain admin…
Directory Manager
11.1.25162.02+
MEDIUM 6.5
CVE-2025-47188EPSS 49%
A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones through 6.4 SP4 (R6.4.0.4006), and the 6970 Conference Unit throug…
Mitigation only
HIGH 8.7
CVE-2025-7769EPSS 16%
Tigo Energy's CCA is vulnerable to a command injection vulnerability in the /cgi-bin/mobile_api endpoint when the DEVICE_PING command is called, allo…
Mitigation only
MEDIUM 6.3
CVE-2025-8667
A vulnerability, which was classified as critical, was found in SkyworkAI DeepResearchAgent up to 08eb7f8eb9505d0094d75bb97ff7dacc3fa3bbf2. Affected …
Mitigation only
MEDIUM 6.3
CVE-2025-8665
A vulnerability, which was classified as critical, has been found in agno-agi agno up to 1.7.5. This issue affects the function MCPTools/MultiMCPTool…
Mitigation only
MEDIUM 6.5
CVE-2025-45512
A lack of signature verification in the bootloader of DENX Software Engineering Das U-Boot (U-Boot) v1.1.3 allows attackers to install crafted firmwa…
U Boot
No fix yet
MEDIUM 6.5
CVE-2025-50688
A command injection vulnerability exists in TwistedWeb (version 14.0.0) due to improper input sanitization in the file upload functionality. An attac…
Twistedweb
No fix yet
HIGH 7.5
CVE-2025-27211
An Improper Input Validation in EdgeMAX EdgeSwitch (Version 1.10.4 and earlier) could allow a Command Injection by a malicious actor with access to E…
Mitigation only
CRITICAL 9.8
CVE-2025-27212
An Improper Input Validation in certain UniFi Access devices could allow a Command Injection by a malicious actor with access to UniFi Access managem…
Mitigation only
HIGH 8.8
CVE-2025-54782EPSS 48%
Nest is a framework for building scalable Node.js server-side applications. In versions 0.2.0 and below, a critical Remote Code Execution (RCE) vulne…
Devtools Integration
0.2.1+
HIGH 8.8
CVE-2025-54131
Cursor is a code editor built for programming with AI. In versions below 1.3, an attacker can bypass the allow list in auto-run mode with a backtick …
Cursor
1.3+
CRITICAL 9.8
CVE-2025-54424
1Panel is a web interface and MCP Server that manages websites, files, containers, databases, and LLMs on a Linux server. In versions 2.0.5 and below…
1panel
2.0.6+
HIGH 7.8
CVE-2025-54564
uploadsm in ChargePoint Home Flex 5.5.4.13 does not validate a user-controlled string for bz2 decompression, which allows command execution as the no…
Mitigation only
CRITICAL 9.8
CVE-2025-26063
An issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to execute arbitrary code via injecting a crafted payload int…
Rx 1500 Firmware
Mitigation only
MEDIUM 6.5
CVE-2025-25691
A PHAR deserialization vulnerability in the component /themes/import of PrestaShop v8.2.0 allows attackers to execute arbitrary code via a crafted PO…
Prestashop
No fix yet
MEDIUM 6.5
CVE-2025-25692
A PHAR deserialization vulnerability in the _getHeaders function of PrestaShop v8.2.0 allows attackers to execute arbitrary code via a crafted POST r…
Prestashop
No fix yet
MEDIUM 6.5
CVE-2025-45619
An issue in Aver PTC310UV2 firmware v.0.1.0000.59 allows a remote attacker to execute arbitrary code via the SendAction function
Ptc310uv2 Firmware
No fix yet
MEDIUM 6.5
CVE-2025-52284
Totolink X6000R V9.4.0cu.1360_B20241207 was found to contain a command injection vulnerability in the sub_4184C0 function via the tz parameter. This …
X6000r Firmware
No fix yet
CRITICAL 9.8
CVE-2025-8259
A vulnerability was identified in Vaelsys VaelsysV4 up to 5.1.0/5.4.0. Affected by this issue is the function execute_DataObjectProc of the file /gri…
Vaelsys
Mitigation only