Browse vulnerabilities
377,708 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2018-8611 | Act now | 4.2% | — | ● | A privilege escalation vulnerability exists when the Windows kernel fails to properly hand… |
| CVE-2021-20035 | Act now | 4.2% | — | ● | SonicWall SMA100 appliances contain an OS command injection vulnerability in the managemen… |
| CVE-2023-32049 | Act now | 4.2% | — | ● | Microsoft Windows Defender SmartScreen contains a security feature bypass vulnerability th… |
| CVE-2019-0859 | Act now | 4.2% | — | ● | Microsoft Win32k fails to properly handle objects in memory causing privilege escalation. … |
| CVE-2021-30869 | Act now | 4.1% | — | ● | Apple iOS, iPadOS, and macOS contain a type confusion vulnerability in the XNU which may a… |
| CVE-2018-0161 | Act now | 4.1% | — | ● | A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS So… |
| CVE-2025-48384 | Act now | 4.1% | — | ● | Git contains a link following vulnerability that stems from Git’s inconsistent handling of… |
| CVE-2022-26501 | Act now | 4.1% | — | ● | The Veeam Distribution Service in the Backup & Replication application allows unauthentica… |
| CVE-2015-1769 | Act now | 4.1% | — | ● | A privilege escalation vulnerability exists when the Windows Mount Manager component impro… |
| CVE-2021-36955 | Act now | 4.0% | 7.8 | ● | Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| CVE-2024-26169 | Act now | 4.0% | — | ● | Microsoft Windows Error Reporting Service contains an improper privilege management vulner… |
| CVE-2019-7483 | Act now | 4.0% | — | ● | In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAF… |
| CVE-2024-39717 | Act now | 4.0% | — | ● | The Versa Director GUI contains an unrestricted upload of file with dangerous type vulnera… |
| CVE-2021-27137 | Act now | 4.0% | 8.1 | ● | An issue was discovered in router/upnp/src/ssdp.c in DD-WRT before 45724. An unsafe strcpy… |
| CVE-2025-2749 | Act now | 4.0% | — | ● | Kentico Xperience contains a path traversal vulnerability that could allow an authenticate… |
| CVE-2025-27915 | Act now | 4.0% | — | ● | Synacor Zimbra Collaboration Suite (ZCS) contains a cross-site scripting vulnerability tha… |
| CVE-2024-30040 | Act now | 3.9% | — | ● | Microsoft Windows MSHTML Platform contains an unspecified vulnerability that allows for a … |
| CVE-2024-20953 | Act now | 3.9% | — | ● | Oracle Agile Product Lifecycle Management (PLM) contains a deserialization vulnerability t… |
| CVE-2026-21533 | Act now | 3.9% | — | ● | Microsoft Windows Remote Desktop Services contains an improper privilege management vulner… |
| CVE-2023-43000 | Act now | 3.9% | — | ● | Apple macOS, iOS, iPadOS, and Safari 16.6 contain a use-after-free vulnerability due to th… |
| CVE-2020-9907 | Act now | 3.9% | — | ● | Apple iOS, iPadOS, and tvOS contain a memory corruption vulnerability that could allow an … |
| CVE-2025-24985 | Act now | 3.8% | — | ● | Microsoft Windows Fast FAT File System Driver contains an integer overflow or wraparound v… |
| CVE-2024-9537 | Act now | 3.8% | — | ● | ScienceLogic SL1 (formerly EM7) is affected by an unspecified vulnerability involving an u… |
| CVE-2025-24201 | Act now | 3.8% | — | ● | Apple iOS, iPadOS, macOS, and other Apple products contain an out-of-bounds write vulnerab… |
| CVE-2024-0519 | Act now | 3.8% | — | ● | Google Chromium V8 Engine contains an out-of-bounds memory access vulnerability that allow… |
| CVE-2023-41061 | Act now | 3.8% | — | ● | Apple iOS, iPadOS, and watchOS contain an unspecified vulnerability due to a validation is… |
| CVE-2020-3566 | Act now | 3.7% | — | ● | Cisco IOS XR Distance Vector Multicast Routing Protocol (DVMRP) incorrectly handles Intern… |
| CVE-2023-0266 | Act now | 3.7% | — | ● | Linux kernel contains a use-after-free vulnerability that allows for privilege escalation … |
| CVE-2021-30665 | Act now | 3.7% | — | ● | Apple iOS, iPadOS, macOS, watchOS, and tvOS WebKit contain a memory corruption vulnerabili… |
| CVE-2016-3643 | Act now | 3.7% | — | ● | SolarWinds Virtualization Manager allows for privilege escalation through leveraging a mis… |
| CVE-2021-31010 | Act now | 3.7% | — | ● | In affected versions of Apple iOS, macOS, and watchOS, a sandboxed process may be able to … |
| CVE-2018-19321 | Act now | 3.7% | 7.8 | ● | The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS … |
| CVE-2021-27102 | Act now | 3.7% | — | ● | Accellion FTA contains an OS command injection vulnerability exploited via a local web ser… |
| CVE-2016-8562 | Act now | 3.6% | — | ● | An improper privilege management vulnerability exists within the Siemens SIMATIC Communica… |
| CVE-2019-1385 | Act now | 3.6% | 7.8 | ● | An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions… |
| CVE-2018-19320 | Act now | 3.6% | 7.8 | ● | The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGI… |
| CVE-2026-82078 | Act now | 3.6% | 9.1 | ● | An unsafe dynamic class loading vulnerability exists in the database connection utilities … |
| CVE-2024-53197 | Act now | 3.6% | — | ● | Linux Kernel contains an out-of-bounds access vulnerability in the USB-audio driver that a… |
| CVE-2023-45727 | Act now | 3.5% | — | ● | North Grid Proself Enterprise/Standard, Gateway, and Mail Sanitize contain an improper res… |
| CVE-2021-30663 | Act now | 3.5% | — | ● | Apple iOS, iPadOS, macOS, tvOS, and Safari WebKit contain an integer overflow vulnerabilit… |
| CVE-2018-0175 | Act now | 3.5% | — | ● | Format string vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco… |
| CVE-2019-1315 | Act now | 3.5% | — | ● | A privilege escalation vulnerability exists when Windows Error Reporting manager improperl… |
| CVE-2021-35247 | Act now | 3.5% | — | ● | SolarWinds Serv-U versions 15.2.5 and earlier contain an improper input validation vulnera… |
| CVE-2018-8405 | Act now | 3.4% | — | ● | An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) … |
| CVE-2018-8406 | Act now | 3.4% | — | ● | An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) … |
| CVE-2025-66644 | Act now | 3.4% | — | ● | Array Networks ArrayOS AG contains an OS command injection vulnerability that could allow … |
| CVE-2024-53104 | Act now | 3.4% | — | ● | Linux kernel contains an out-of-bounds write vulnerability in the uvc_parse_streaming comp… |
| CVE-2025-3935 | Act now | 3.4% | — | ● | ConnectWise ScreenConnect contains an improper authentication vulnerability. This vulnerab… |
| CVE-2018-0167 | Act now | 3.4% | — | ● | There is a buffer overflow vulnerability in the Link Layer Discovery Protocol (LLDP) subsy… |
| CVE-2025-8876 | Act now | 3.3% | — | ● | N-able N-Central contains a command injection vulnerability via improper sanitization of u… |