Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android CRITICAL 9.8
CVE-2025-36937

In AudioDecoder::HandleProduceRequest of audio_decoder.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead …

Mitigation only
Fix from $2,300 2025-12-11
Class And Exam Timetable Management System CRITICAL 9.8
CVE-2025-14536

A security flaw has been discovered in code-projects Class and Exam Timetable Management 1.0. Affected by this vulnerability is an unknown functional…

Mitigation only
Fix from $2,300 2025-12-11
512w Firmware CRITICAL 9.8
CVE-2025-14535EPSS 6%

A vulnerability was identified in UTT 进取 512W up to 3.1.7.7-171114. Affected is the function strcpy of the file /goform/formConfigFastDirectionW. T…

Fix: after 1.7.7-171114
Fix from $2,300 2025-12-11
512w Firmware CRITICAL 9.8
CVE-2025-14534EPSS 6%

A vulnerability was determined in UTT 进取 512W up to 3.1.7.7-171114. This impacts the function strcpy of the file /goform/formNatStaticMap of the co…

Fix: after 1.7.7-171114
Fix from $2,300 2025-12-11
Retro Basketball Shoes Online Store CRITICAL 9.8
CVE-2025-14529

A flaw has been found in Campcodes Retro Basketball Shoes Online Store 1.0. The affected element is an unknown function of the file /admin/admin_runn…

Mitigation only
Fix from $2,300 2025-12-11
Libbiosig CRITICAL 9.8
CVE-2025-66048

Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft…

Fix: 3.9.2+
Fix from $2,300 2025-12-11
Libbiosig CRITICAL 9.8
CVE-2025-66047

Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft…

Fix: 3.9.2+
Fix from $2,300 2025-12-11
Libbiosig CRITICAL 9.8
CVE-2025-66046

Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft…

Fix: 3.9.2+
Fix from $2,300 2025-12-11
Libbiosig CRITICAL 9.8
CVE-2025-66045

Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft…

Fix: 3.9.2+
Fix from $2,300 2025-12-11
Libbiosig CRITICAL 9.8
CVE-2025-66044

Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft…

Fix: 3.9.2+
Fix from $2,300 2025-12-11
Libbiosig CRITICAL 9.8
CVE-2025-66043

Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft…

Fix: 3.9.2+
Fix from $2,300 2025-12-11
Easyimages2.0 CRITICAL 9.8
CVE-2025-65474

An arbitrary file rename vulnerability in the /admin/manager.php component of EasyImages 2.0 v2.8.6 and below allows attackers to execute arbitrary c…

Fix: after 2.8.6
Fix from $2,300 2025-12-11
Easyimages2.0 CRITICAL 9.1
CVE-2025-65473

An arbitrary file rename vulnerability in the /admin/filer.php component of EasyImages 2.0 v2.8.6 and below allows attackers with Administrator privi…

Fix: after 2.8.6
Fix from $2,300 2025-12-11
Advanced Library Management System CRITICAL 9.8
CVE-2025-14527

A weakness has been identified in projectworlds Advanced Library Management System 1.0. This vulnerability affects unknown code of the file /view_boo…

Mitigation only
Fix from $2,300 2025-12-11
Hfly CRITICAL 9.8
CVE-2025-14522

A vulnerability was detected in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. The impacted element is an unknown function of the file /…

Fix: after 2016-05-11
Fix from $2,300 2025-12-11
Hfly CRITICAL 9.1
CVE-2025-14520

A weakness has been identified in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. Impacted is an unknown function of the file /admin/inde…

Fix: after 2016-05-11
Fix from $2,300 2025-12-11
Powerjob CRITICAL 9.8
CVE-2025-14518

A vulnerability was identified in PowerJob up to 5.1.2. This vulnerability affects the function checkConnectivity of the file src/main/java/tech/powe…

Fix: after 5.1.2
Fix from $2,300 2025-12-11
Screenconnect CRITICAL 9.1
CVE-2025-14265

In versions of ScreenConnect™ prior to 25.8, server-side validation and integrity checks within the extension subsystem could allow the installation …

Fix: 25.8.0.9438+
Fix from $2,300 2025-12-11
Supplier Management System CRITICAL 9.8
CVE-2025-14515

A vulnerability has been found in Campcodes Supplier Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /a…

Mitigation only
Fix from $2,300 2025-12-11
Supplier Management System CRITICAL 9.8
CVE-2025-14514

A flaw has been found in Campcodes Supplier Management System 1.0. Affected is an unknown function of the file /admin/add_distributor.php. This manip…

Mitigation only
Fix from $2,300 2025-12-11
Unclassified CRITICAL 9.8
CVE-2025-13764

The WP CarDealer plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.2.16. This is due to the 'WP_CarD…

Mitigation only
Fix from $2,300 2025-12-11
Cybersecurity Ai CRITICAL 9.6
CVE-2025-67511

Cybersecurity AI (CAI) is an open-source framework for building and deploying AI-powered offensive and defensive automation. Versions 0.5.9 and below…

Fix: after 0.5.9
Fix from $2,300 2025-12-11
Neuron CRITICAL 9.4
CVE-2025-67510

Neuron is a PHP framework for creating and orchestrating AI Agents. In versions 2.8.11 and below, the MySQLWriteTool executes arbitrary SQL provided …

Fix: 2.8.12+
Fix from $2,300 2025-12-10
Hub M2 Firmware CRITICAL 9.8
CVE-2025-65294

Aqara Hub devices including Camera Hub G3 4.1.9_0027, Hub M2 4.3.6_0027, and Hub M3 4.3.6_0025 contain an undocumented remote access mechanism enabli…

Mitigation only
Fix from $2,300 2025-12-10
Meatmeet CRITICAL 9.1
CVE-2025-65830

Due to a lack of certificate validation, all traffic from the mobile application can be intercepted. As a result, an adversary located "upstream" can…

Mitigation only
Fix from $2,300 2025-12-10
Meatmeet CRITICAL 9.1
CVE-2025-65827

The mobile application is configured to allow clear text traffic to all domains and communicates with an API server over HTTP. As a result, an advers…

Mitigation only
Fix from $2,300 2025-12-10
Meatmeet CRITICAL 9.8
CVE-2025-65826

The mobile application was found to contain stored credentials for the network it was developed on. If an attacker retrieved this, and found the phys…

Mitigation only
Fix from $2,300 2025-12-10
Meatmeet Pro Wifi \& Bluetooth Meat Thermometer Firmware CRITICAL 9.8
CVE-2025-65823

The Meatmeet Pro was found to be shipped with hardcoded Wi-Fi credentials in the firmware, for the test network it was developed on. If an attacker r…

Mitigation only
Fix from $2,300 2025-12-10
Meatmeet CRITICAL 9.8
CVE-2025-65820

An issue was discovered in Meatmeet Android Mobile Application 1.1.2.0. An exported activity can be spawned with the mobile application which opens a…

Mitigation only
Fix from $2,300 2025-12-10
Sft Dab 015\/c Firmware CRITICAL 9.8
CVE-2023-53740

Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to change the admin password without providing the current…

Mitigation only
Fix from $2,300 2025-12-10