Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.1
CVE-2025-1949
A vulnerability, which was classified as problematic, has been found in ZZCMS 2025. This issue affects some unknown processing of the file /3/ucenter…
Zzcms
No fix yet
MEDIUM 6.5
CVE-2025-26182
An issue in xxyopen novel plus v.4.4.0 and before allows a remote attacker to execute arbitrary code via the PageController.java file
Novel Plus
after 4.4.0
CRITICAL 10.0
CVE-2024-50704
Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary code via a spec…
Tripleplay
24.1.2+
CRITICAL 10.0
CVE-2024-50707
Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary code via the X-…
Tripleplay
24.1.2+
MEDIUM 6.1
CVE-2025-1904
A vulnerability, which was classified as problematic, has been found in code-projects Blood Bank System 1.0. Affected by this issue is some unknown f…
Blood Bank System
No fix yet
MEDIUM 6.1
CVE-2025-1905
A vulnerability, which was classified as problematic, was found in SourceCodester Employee Management System 1.0. This affects an unknown part of the…
Employee Management System
No fix yet
CRITICAL 9.8
CVE-2025-26970
Improper Control of Generation of Code ('Code Injection') vulnerability in FRESHFACE Ark Theme Core ark-core allows Code Injection.This issue affects…
The Ark
after 1.70.0
MEDIUM 6.1
CVE-2024-53386
Stage.js through 0.8.10 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain JavaScript), b…
Stage.js
after 0.8.10
MEDIUM 5.4
CVE-2024-53382
Prism (aka PrismJS) through 1.29.0 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain Jav…
Prism
after 1.29.0
MEDIUM 5.4
CVE-2025-1817
A vulnerability classified as problematic was found in Mini-Tmall up to 20250211. This vulnerability affects unknown code of the file /admin of the c…
Mini Tmall
after 2025-02-11
MEDIUM 6.5
CVE-2024-13806
The The Authors List plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.0.6. This is due to …
Mitigation only
CRITICAL 9.9
CVE-2025-27554
ToDesktop before 2024-10-03, as used by Cursor before 2024-10-03 and other applications, allows remote attackers to execute arbitrary commands on the…
Mitigation only
HIGH 8.8
CVE-2025-26264EPSS 23%
GeoVision GV-ASWeb with the version 6.1.2.0 or less (fixed in 6.2.0), contains a Remote Code Execution (RCE) vulnerability within its Notification Se…
Mitigation only
CRITICAL 9.8
CVE-2024-53944EPSS 40%
An issue was discovered on Tuoshi/Dionlink LT15D 4G Wi-Fi devices through M7628NNxlSPv2xUI_v1.0.1802.10.08_P4 and LT21B devices through M7628xUSAxUIv…
Mitigation only
MEDIUM 6.1
CVE-2025-1742
A vulnerability, which was classified as problematic, has been found in pihome-shc PiHome 2.0. Affected by this issue is some unknown functionality o…
Maxair
No fix yet
CRITICAL 9.8
CVE-2025-25789
FoxCMS v1.2.5 was discovered to contain a remote code execution (RCE) vulnerability via the index() method at \controller\Sitemap.php.
Foxcms
No fix yet
MEDIUM 6.8
CVE-2024-52925
In OPSWAT MetaDefender Kiosk before 4.7.0, arbitrary code execution can be performed by an attacker via the MD Kiosk Unlock Device feature for softwa…
Mitigation only
CRITICAL 9.9
CVE-2024-47051
This advisory addresses two critical security vulnerabilities present in Mautic versions before 5.2.3. These vulnerabilities could be exploited by au…
Mautic
5.2.3+
MEDIUM 6.1
CVE-2025-1618
A vulnerability has been found in vTiger CRM 6.4.0/6.5.0 and classified as problematic. This vulnerability affects unknown code of the file /modules/…
Vtiger Crm
7.0+
MEDIUM 6.1
CVE-2025-1612
A vulnerability was found in Edimax BR-6288ACL 1.30. It has been declared as problematic. This vulnerability affects unknown code of the file wireles…
Br 6288acl Firmware
Mitigation only
MEDIUM 6.1
CVE-2025-1597
A vulnerability was found in SourceCodester Best Church Management Software 1.0. It has been classified as problematic. Affected is an unknown functi…
Best Church Management Software
No fix yet
MEDIUM 6.1
CVE-2025-1592
A vulnerability was found in SourceCodester Best Employee Management System 1.0. It has been rated as problematic. Affected by this issue is some unk…
Best Employee Management System
Mitigation only
MEDIUM 6.1
CVE-2025-1591
A vulnerability was found in SourceCodester Employee Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an…
Employee Management System
Mitigation only
MEDIUM 6.1
CVE-2025-1589
A vulnerability was found in SourceCodester E-Learning System 1.0 and classified as problematic. This issue affects some unknown processing of the fi…
E Learning System
Mitigation only
MEDIUM 6.1
CVE-2025-1586
A vulnerability was found in code-projects Blood Bank System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the…
Blood Bank System
No fix yet
MEDIUM 5.4
CVE-2025-1585
A vulnerability, which was classified as problematic, has been found in otale tale up to 2.0.5. This issue affects the function OptionsService of the…
Tale
after 2.0.5
MEDIUM 6.1
CVE-2025-1579
A vulnerability was found in code-projects Blood Bank System 1.0 and classified as problematic. This issue affects some unknown processing of the fil…
Blood Bank System
No fix yet
MEDIUM 5.4
CVE-2025-1577
A vulnerability, which was classified as problematic, has been found in code-projects Blood Bank System 1.0. Affected by this issue is some unknown f…
Blood Bank System
No fix yet
CRITICAL 9.8
CVE-2025-1510
The The Custom Post Type Date Archives plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.7.…
Custom Post Type Date Archives
after 2.7.1
CRITICAL 9.8
CVE-2025-1509
The The Show Me The Cookies plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.0. This is du…
Show Me The Cookies
Mitigation only