Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2025-36937 In AudioDecoder::HandleProduceRequest of audio_decoder.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead … Android Mitigation only Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-14536 A security flaw has been discovered in code-projects Class and Exam Timetable Management 1.0. Affected by this vulnerability is an unknown functional… Class And Exam Timetable Management System Mitigation only Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-14535EPSS 6% A vulnerability was identified in UTT 进取 512W up to 3.1.7.7-171114. Affected is the function strcpy of the file /goform/formConfigFastDirectionW. T… 512w Firmware after 1.7.7-171114 Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-14534EPSS 6% A vulnerability was determined in UTT 进取 512W up to 3.1.7.7-171114. This impacts the function strcpy of the file /goform/formNatStaticMap of the co… 512w Firmware after 1.7.7-171114 Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-14529 A flaw has been found in Campcodes Retro Basketball Shoes Online Store 1.0. The affected element is an unknown function of the file /admin/admin_runn… Retro Basketball Shoes Online Store Mitigation only Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-66048 Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft… Libbiosig 3.9.2+ Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-66047 Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft… Libbiosig 3.9.2+ Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-66046 Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft… Libbiosig 3.9.2+ Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-66045 Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft… Libbiosig 3.9.2+ Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-66044 Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft… Libbiosig 3.9.2+ Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-66043 Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially craft… Libbiosig 3.9.2+ Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-65474 An arbitrary file rename vulnerability in the /admin/manager.php component of EasyImages 2.0 v2.8.6 and below allows attackers to execute arbitrary c… Easyimages2.0 after 2.8.6 Fix from $2,3002025-12-11 CRITICAL 9.1 CVE-2025-65473 An arbitrary file rename vulnerability in the /admin/filer.php component of EasyImages 2.0 v2.8.6 and below allows attackers with Administrator privi… Easyimages2.0 after 2.8.6 Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-14527 A weakness has been identified in projectworlds Advanced Library Management System 1.0. This vulnerability affects unknown code of the file /view_boo… Advanced Library Management System Mitigation only Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-14522 A vulnerability was detected in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. The impacted element is an unknown function of the file /… Hfly after 2016-05-11 Fix from $2,3002025-12-11 CRITICAL 9.1 CVE-2025-14520 A weakness has been identified in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. Impacted is an unknown function of the file /admin/inde… Hfly after 2016-05-11 Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-14518 A vulnerability was identified in PowerJob up to 5.1.2. This vulnerability affects the function checkConnectivity of the file src/main/java/tech/powe… Powerjob after 5.1.2 Fix from $2,3002025-12-11 CRITICAL 9.1 CVE-2025-14265 In versions of ScreenConnect™ prior to 25.8, server-side validation and integrity checks within the extension subsystem could allow the installation … Screenconnect 25.8.0.9438+ Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-14515 A vulnerability has been found in Campcodes Supplier Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /a… Supplier Management System Mitigation only Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-14514 A flaw has been found in Campcodes Supplier Management System 1.0. Affected is an unknown function of the file /admin/add_distributor.php. This manip… Supplier Management System Mitigation only Fix from $2,3002025-12-11 CRITICAL 9.8 CVE-2025-13764 The WP CarDealer plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.2.16. This is due to the 'WP_CarD… Mitigation only Fix from $2,3002025-12-11 CRITICAL 9.6 CVE-2025-67511 Cybersecurity AI (CAI) is an open-source framework for building and deploying AI-powered offensive and defensive automation. Versions 0.5.9 and below… Cybersecurity Ai after 0.5.9 Fix from $2,3002025-12-11 CRITICAL 9.4 CVE-2025-67510 Neuron is a PHP framework for creating and orchestrating AI Agents. In versions 2.8.11 and below, the MySQLWriteTool executes arbitrary SQL provided … Neuron 2.8.12+ Fix from $2,3002025-12-10 CRITICAL 9.8 CVE-2025-65294 Aqara Hub devices including Camera Hub G3 4.1.9_0027, Hub M2 4.3.6_0027, and Hub M3 4.3.6_0025 contain an undocumented remote access mechanism enabli… Hub M2 Firmware Mitigation only Fix from $2,3002025-12-10 CRITICAL 9.1 CVE-2025-65830 Due to a lack of certificate validation, all traffic from the mobile application can be intercepted. As a result, an adversary located "upstream" can… Meatmeet Mitigation only Fix from $2,3002025-12-10 CRITICAL 9.1 CVE-2025-65827 The mobile application is configured to allow clear text traffic to all domains and communicates with an API server over HTTP. As a result, an advers… Meatmeet Mitigation only Fix from $2,3002025-12-10 CRITICAL 9.8 CVE-2025-65826 The mobile application was found to contain stored credentials for the network it was developed on. If an attacker retrieved this, and found the phys… Meatmeet Mitigation only Fix from $2,3002025-12-10 CRITICAL 9.8 CVE-2025-65823 The Meatmeet Pro was found to be shipped with hardcoded Wi-Fi credentials in the firmware, for the test network it was developed on. If an attacker r… Meatmeet Pro Wifi \& Bluetooth Meat Thermometer Firmware Mitigation only Fix from $2,3002025-12-10 CRITICAL 9.8 CVE-2025-65820 An issue was discovered in Meatmeet Android Mobile Application 1.1.2.0. An exported activity can be spawned with the mobile application which opens a… Meatmeet Mitigation only Fix from $2,3002025-12-10 CRITICAL 9.8 CVE-2023-53740 Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to change the admin password without providing the current… Sft Dab 015\/c Firmware Mitigation only Fix from $2,3002025-12-10