Filter and search through 199,113 vulnerabilities
| CVE ID | Description | CVSS | Priority | Trend | Exploit | Patch |
|---|---|---|---|---|---|---|
| CVE-2025-9709 | On-Chip Debug and Test Interface With Improper Access Control and Improper Protection against Electromagnetic Fault Injection (EM-FI) in Nordic Semico... | 0.0 | 0 | Neutral | No |
| No |
| CVE-2025-9696 | The SunPower PVS6's BluetoothLE interface is vulnerable due to its use of hardcoded encryption parameters and publicly accessible protocol details. An... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9648 | A vulnerability in the CivetWeb library's function mg_handle_form_request allows remote attackers to trigger a denial of service (DoS) condition. By s... | 0.0 | 0 | Neutral | No | Yes |
| CVE-2025-9615 | A flaw was found in NetworkManager. The NetworkManager package allows access to files that may belong to other users. NetworkManager allows non-root u... | 0.0 | 0 | Neutral | No | Yes |
| CVE-2025-9611 | Microsoft Playwright MCP Server versions prior to 0.0.40 fails to validate the Origin header on incoming connections. This allows an attacker to perfo... | 0.0 | 0 | Neutral | No | Yes |
| CVE-2025-9578 | Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9573 | The ns_backup extension through 13.0.2 for TYPO3 allows command injection. | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9571 | A remote code execution (RCE) vulnerability exists in Google Cloud Data Fusion. A user with permissions to upload artifacts to a Data Fusion instance ... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9522 | Blind Server-Side Request Forgery (SSRF) in Omada Controllers through webhook functionality, enabling crafted requests to internal services, which may... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9521 | Password Confirmation Bypass vulnerability in Omada Controllers, allowing an attacker with a valid session token to bypass secondary verification, and... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9520 | An IDOR vulnerability exists in Omada Controllers that allows an attacker with Administrator permissions to manipulate requests and potentially hijack... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9495 | The Vitogate 300 web interface fails to enforce proper server-side authentication and relies on frontend-based authentication controls. This allows an... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9494 | An OS command injection vulnerability has been discovered in the Vitogate 300, which can be exploited by malicious users to compromise affected instal... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9467 | ### Description When the Vaadin Upload's start listener is used to validate metadata about an incoming upload, it is possible to bypass the upload val... | 0.0 | 0 | Neutral | No | Yes |
| CVE-2025-9466 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the Achilles EtherNet/IP and CIP g... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9465 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the Achilles Comprehensive grammar... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9464 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. This vulnerability is triggered during fuzzing of mult... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9437 | A security issue exists within the Studio 5000 Logix Designer add-on profile (AOP) for the ArmorStart Classic distributed motor controller, resulting ... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9427 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Lemonsoft WordPress add on allows Cross-S... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9375 | XML Injection vulnerability in xmltodict allows Input Data Manipulation.This issue affects xmltodict: 0.14.2. | 0.0 | 0 | Neutral | No | Yes |