Filter and search through 199,143 vulnerabilities
| CVE ID | Description | CVSS | Priority | Trend | Exploit | Patch |
|---|---|---|---|---|---|---|
| CVE-2025-9871 | Razer Synapse 3 Chroma Connect Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileg... | 0.0 | 0 | Neutral | No |
| No |
| CVE-2025-9870 | Razer Synapse 3 RazerPhilipsHueUninstall Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalat... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9869 | Razer Synapse 3 Macro Module Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9868 | Server-Side Request Forgery (SSRF) in the Remote Browser Plugin in Sonatype Nexus Repository 2.x up to and including 2.15.2 allows unauthenticated rem... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9864 | Rejected reason: This CVE ID was assigned in error to a vulnerability that was both introduced and fixed before the code landed in the Stable channel ... | 0.0 | 0 | Neutral | No | Yes |
| CVE-2025-9823 | ## Summary A Cross-Site Scripting (XSS) vulnerability allows an attacker to execute arbitrary JavaScript in the context of another user’s session. Th... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9785 | PaperCut Print Deploy is an optional component that integrates with PaperCut NG/MF which simplifies printer deployment and management. When the compon... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9709 | On-Chip Debug and Test Interface With Improper Access Control and Improper Protection against Electromagnetic Fault Injection (EM-FI) in Nordic Semico... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9696 | The SunPower PVS6's BluetoothLE interface is vulnerable due to its use of hardcoded encryption parameters and publicly accessible protocol details. An... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9648 | A vulnerability in the CivetWeb library's function mg_handle_form_request allows remote attackers to trigger a denial of service (DoS) condition. By s... | 0.0 | 0 | Neutral | No | Yes |
| CVE-2025-9615 | A flaw was found in NetworkManager. The NetworkManager package allows access to files that may belong to other users. NetworkManager allows non-root u... | 0.0 | 0 | Neutral | No | Yes |
| CVE-2025-9611 | Microsoft Playwright MCP Server versions prior to 0.0.40 fails to validate the Origin header on incoming connections. This allows an attacker to perfo... | 0.0 | 0 | Neutral | No | Yes |
| CVE-2025-9578 | Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9573 | The ns_backup extension through 13.0.2 for TYPO3 allows command injection. | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9571 | A remote code execution (RCE) vulnerability exists in Google Cloud Data Fusion. A user with permissions to upload artifacts to a Data Fusion instance ... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9522 | Blind Server-Side Request Forgery (SSRF) in Omada Controllers through webhook functionality, enabling crafted requests to internal services, which may... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9521 | Password Confirmation Bypass vulnerability in Omada Controllers, allowing an attacker with a valid session token to bypass secondary verification, and... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9520 | An IDOR vulnerability exists in Omada Controllers that allows an attacker with Administrator permissions to manipulate requests and potentially hijack... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9495 | The Vitogate 300 web interface fails to enforce proper server-side authentication and relies on frontend-based authentication controls. This allows an... | 0.0 | 0 | Neutral | No | No |
| CVE-2025-9494 | An OS command injection vulnerability has been discovered in the Vitogate 300, which can be exploited by malicious users to compromise affected instal... | 0.0 | 0 | Neutral | No | No |