Browse vulnerabilities
377,848 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2025-3935 | Act now | 3.4% | — | ● | ConnectWise ScreenConnect contains an improper authentication vulnerability. This vulnerab… |
| CVE-2018-0167 | Act now | 3.4% | — | ● | There is a buffer overflow vulnerability in the Link Layer Discovery Protocol (LLDP) subsy… |
| CVE-2025-8876 | Act now | 3.3% | — | ● | N-able N-Central contains a command injection vulnerability via improper sanitization of u… |
| CVE-2020-3569 | Act now | 3.3% | — | ● | Cisco IOS XR Distance Vector Multicast Routing Protocol (DVMRP) incorrectly handles Intern… |
| CVE-2009-2055 | Act now | 3.3% | — | ● | Cisco IOS XR,when BGP is the configured routing feature, allows remote attackers to cause … |
| CVE-2025-42599 | Act now | 3.3% | — | ● | Qualitia Active! Mail contains a stack-based buffer overflow vulnerability that allows a r… |
| CVE-2022-40139 | Act now | 3.3% | — | ● | Trend Micro Apex One and Apex One as a Service contain an improper validation of rollback … |
| CVE-2026-81578 | Act now | 3.3% | 9.8 | ● | An improper access control vulnerability exists in the web management interface of PaperCu… |
| CVE-2022-32894 | Act now | 3.3% | — | ● | Apple iOS and macOS contain an out-of-bounds write vulnerability that could allow an appli… |
| CVE-2020-0041 | Act now | 3.2% | — | ● | Android Kernel binder_transaction of binder.c contains an out-of-bounds write vulnerabilit… |
| CVE-2022-48503 | Act now | 3.2% | — | ● | Apple macOS, iOS, tvOS, Safari, and watchOS contain an unspecified vulnerability in JavaSc… |
| CVE-2013-2596 | Act now | 3.2% | — | ● | Linux kernel fb_mmap function in drivers/video/fbmem.c contains an integer overflow vulner… |
| CVE-2020-9934 | Act now | 3.2% | — | ● | Apple iOS, iPadOS, and macOS contain an unspecified vulnerability involving input validati… |
| CVE-2023-6548 | Act now | 3.2% | — | ● | Citrix NetScaler ADC and NetScaler Gateway contain a code injection vulnerability that all… |
| CVE-2017-0001 | Act now | 3.1% | — | ● | The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2; Windows Server 2008 SP… |
| CVE-2021-27562 | Act now | 3.1% | — | ● | Arm Trusted Firmware contains an out-of-bounds write vulnerability allowing the non-secure… |
| CVE-2021-43226 | Act now | 3.1% | 7.8 | ● | Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| CVE-2011-4723 | Act now | 3.1% | — | ● | The D-Link DIR-300 router stores cleartext passwords, which allows context-dependent attac… |
| CVE-2023-36584 | Act now | 3.1% | — | ● | Microsoft Windows Mark of the Web (MOTW) contains a security feature bypass vulnerability … |
| CVE-2020-0638 | Act now | 3.0% | 7.8 | ● | An elevation of privilege vulnerability exists in the way the Update Notification Manager … |
| CVE-2020-6819 | Act now | 3.0% | — | ● | Mozilla Firefox and Thunderbird contain a race condition vulnerability when running the ns… |
| CVE-2018-8589 | Act now | 3.0% | — | ● | A privilege escalation vulnerability exists when Windows improperly handles calls to Win32… |
| CVE-2022-41125 | Act now | 3.0% | 7.8 | ● | Windows CNG Key Isolation Service Elevation of Privilege Vulnerability |
| CVE-2021-30666 | Act now | 3.0% | — | ● | Apple iOS WebKit contains a buffer-overflow vulnerability that leads to code execution whe… |
| CVE-2021-29256 | Act now | 3.0% | — | ● | Arm Mali GPU Kernel Driver contains a use-after-free vulnerability that may allow a non-pr… |
| CVE-2024-32896 | Act now | 3.0% | — | ● | Android Pixel contains an unspecified vulnerability in the firmware that allows for privil… |
| CVE-2022-21919 | Act now | 3.0% | — | ● | Microsoft Windows User Profile Service contains an unspecified vulnerability that allows f… |
| CVE-2021-31199 | Act now | 3.0% | — | ● | Microsoft Enhanced Cryptographic Provider contains an unspecified vulnerability that allow… |
| CVE-2024-7262 | Act now | 2.9% | — | ● | Kingsoft WPS Office contains a path traversal vulnerability in promecefpluginhost.exe on W… |
| CVE-2024-11667 | Act now | 2.9% | 7.5 | ● | A directory traversal vulnerability in the web management interface of Zyxel ATP series fi… |
| CVE-2021-30983 | Act now | 2.9% | — | ● | Apple iOS and iPadOS contain a buffer overflow vulnerability that could allow an applicati… |
| CVE-2023-41992 | Act now | 2.9% | — | ● | Apple iOS, iPadOS, macOS, and watchOS contain an unspecified vulnerability that allows for… |
| CVE-2018-4344 | Act now | 2.9% | — | ● | Apple iOS, macOS, tvOS, and watchOS contain a memory corruption vulnerability which can al… |
| CVE-2023-38606 | Act now | 2.9% | — | ● | Apple iOS, iPadOS, macOS, tvOS, and watchOS contain an unspecified vulnerability allowing … |
| CVE-2021-38649 | Act now | 2.9% | 7.0 | ● | Open Management Infrastructure Elevation of Privilege Vulnerability |
| CVE-2021-25337 | Act now | 2.8% | — | ● | Samsung mobile devices contain an improper access control vulnerability in clipboard servi… |
| CVE-2020-16013 | Act now | 2.8% | — | ● | Google Chromium V8 Engine contains an inappropriate implementation vulnerability that allo… |
| CVE-2020-16017 | Act now | 2.7% | — | ● | Google Chrome contains a use-after-free vulnerability that allows a remote attacker, who h… |
| CVE-2021-38645 | Act now | 2.7% | 7.8 | ● | Open Management Infrastructure Elevation of Privilege Vulnerability |
| CVE-2022-42948 | Act now | 2.7% | — | ● | Fortra Cobalt Strike User Interface contains an unspecified vulnerability rooted in Java S… |
| CVE-2024-36971 | Act now | 2.7% | — | ● | Android contains an unspecified vulnerability in the kernel that allows for remote code ex… |
| CVE-2020-0878 | Act now | 2.7% | — | ● | Microsoft Edge and Internet Explorer contain a memory corruption vulnerability that allows… |
| CVE-2023-29492 | Act now | 2.7% | — | ● | Novi Survey contains an insecure deserialization vulnerability that allows remote attacker… |
| CVE-2025-59230 | Act now | 2.7% | — | ● | Microsoft Windows contains an improper access control vulnerability in Windows Remote Acce… |
| CVE-2024-38226 | Act now | 2.7% | 7.3 | ● | Microsoft Publisher Security Feature Bypass Vulnerability |
| CVE-2020-24557 | Act now | 2.7% | — | ● | Trend Micro Apex One, OfficeScan, and Worry-Free Business Security on Microsoft Windows co… |
| CVE-2019-6223 | Act now | 2.6% | — | ● | Apple iOS and macOS Group FaceTime contains an unspecified vulnerability where the call in… |
| CVE-2025-61932 | Act now | 2.6% | — | ● | Motex LANSCOPE Endpoint Manager contains an improper verification of source of a communica… |
| CVE-2021-31201 | Act now | 2.6% | — | ● | Microsoft Enhanced Cryptographic Provider contains an unspecified vulnerability that allow… |
| CVE-2023-35674 | Act now | 2.6% | — | ● | Android Framework contains an unspecified vulnerability that allows for privilege escalati… |