Cut the noise.
Know which vulnerabilities demand action.

Monitor and prioritize what really matters — the 1% of vulnerabilities that can cause real impact.

Analytics

EPSS Trending (30d)

Threat Indicators

865
CISA KEV
251
Exploits
519
Proof-of-Concept
7.9%
Average EPSS

EPSS Hot Zone

|
Sort by:
KEV Prediction — Top%
EPSS Percentile — Top%

Emerging Vulnerabilities

19 Aug/26
CVE-2026-72530
CRITICAL

This vulnerability is a code injection flaw classified under CWE-94, caused by improper handling of user-supplied scripts within the TrueConf Server isolated environment. The root cause lies in insufficient validation and sanitization of input scripts processed on port 4307/TCP, allowing crafted payloads to escape sandbox restrictions. The affected component is the script execution environment in TrueConf Server versions 5.3.x through 5.5.5 on Windows and Linux platforms.

CVSS 9.0
EPSS 1.0%
KEV Pred in 25d
Product TrueConf Server trueconf
CVSS v3.1 CVSS v4.0 KEV CWE-94
19 Aug/26
CVE-2026-72529
CRITICAL

This vulnerability is an authentication bypass (CWE-306) affecting TrueConf Server's internal function handling. The root cause is the presence of an undocumented function accessible over network port 4307/TCP that lacks authentication controls, allowing unauthorized invocation. The affected component is the TrueConf Server software versions 5.3.x through 5.5.5 on both Windows and Linux platforms.

CVSS 9.8
EPSS 0.8%
KEV Pred in 25d
Product TrueConf Server trueconf
CVSS v3.1 CVSS v4.0 KEV CWE-306
13 Aug/26
CVE-2026-73570
HIGH

This vulnerability is a command injection flaw rooted in improper sanitization of untrusted input within the SNMP notification processing component of Zimbra Collaboration Suite (ZCS). Specifically, when the optional zimbra-snmp package is installed and SNMP notifications are enabled, maliciously crafted SMTP requests can inject operating system commands. The flaw arises from inadequate input validation during the handling of SNMP notifications in affected ZCS versions prior to 10.1.20.

CVSS 8.9
EPSS 1.0%
KEV Pred in 19d
Product Zimbra Collaboration zimbra
CVSS v3.1 KEV CWE-78
11 Aug/26
CVE-2026-20349
HIGH

A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition.  This vulnerability is due to insufficient error checking when processing HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to the Remote Access SSL VPN service on an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition.

CVSS 8.6
EPSS 1.0%
KEV Pred in 17d
Product Cisco Secure Firewall Adaptive Security Appliance (ASA) Software cisco
CVSS v3.1 KEV CWE-244
29 Jul/26
CVE-2026-20316
MEDIUM

This vulnerability is an authentication bypass caused by the presence of static user credentials embedded within the Cisco Secure Firewall Management Center (FMC) web interface. The root cause lies in the use of hardcoded low-privileged account credentials that allow unauthenticated remote access. The affected component is the FMC management software's web interface authentication mechanism, which fails to enforce unique or dynamic credential validation for this account.

CVSS 5.3
EPSS 0.8%
KEV Pred in 4d
Product Cisco Secure Firewall Management Center (FMC) cisco
CVSS v3.1 KEV CWE-259
27 Jul/26
CVE-2026-16812
CRITICAL

VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator. This functionality was intended to be for internal use only and is not intended to be remotely accessible. Hosted and Dedicated versions of VCO have already been patched in advance of this notice going out. This issue was discovered externally and is known to be actively exploited.

CVSS 10.0
EPSS 0.9%
KEV Pred in 2d
Product Arista Networks VeloCloud Orchestrator On-Prem arista
CVSS v3.1 CVSS v4.0 KEV CWE-78
16 Jul/26
CVE-2021-27137
HIGH

This vulnerability is a stack-based buffer overflow caused by the use of an unsafe strcpy operation within the UPnP handling code of DD-WRT's ssdp.c component. Specifically, the flaw exists in the ssdp_msearch function which processes M-SEARCH requests. The root cause is the lack of proper boundary checks when copying incoming data into a fixed-size internal buffer, affecting the UPnP feature of the router firmware.

CVSS 8.1
EPSS 16.5%
KEV Pred 73%
Product DD-WRT dd-wrt
CVSS v3.1 KEV CWE-121
14 Jul/26
CVE-2026-58644
CRITICAL

This vulnerability is a deserialization flaw occurring within Microsoft Office SharePoint's data processing components. It arises from improper handling of untrusted serialized input, allowing maliciously crafted data to be processed without sufficient validation. The affected component is the deserialization mechanism in Microsoft SharePoint Enterprise Server 2016 and related versions, which fails to securely parse incoming serialized objects over network interfaces.

CVSS 9.8
EPSS 45.5%
KEV Pred 78%
Product Microsoft SharePoint Enterprise Server 2016 microsoft
CVSS v3.1 KEV CWE-502 RANSOMWARE
18 Jun/26
CVE-2026-12569
CRITICAL

This vulnerability is a remote code execution flaw resulting from insecure deserialization of untrusted data within PTC Windchill PDMLink and FlexPLM components. Specifically, the deserialization process fails to properly validate or sanitize incoming serialized objects, allowing malicious payloads to be executed during object reconstruction. The affected components include all CPS versions and Windchill/FlexPLM releases prior to 11.0 M030, where the deserialization functionality is exposed to network input.

CVSS 9.8
EPSS 30.2%
KEV Pred 82%
Product PTC Windchill PDMLink ptc
CVSS v3.1 CVSS v4.0 KEV CWE-20 RANSOMWARE
27 May/26
CVE-2026-48027
CRITICAL

The vulnerability involves a supply chain compromise where a maliciously altered version (18.95.0) of the Nx Console extension was published briefly on the Visual Studio Marketplace and OpenVSX. This tampered package contains unauthorized code injected into the extension's distribution, affecting the integrity of the Nx Console user interface component for Nx & Lerna. The root cause is the introduction of malicious payload within the extension's published package, bypassing normal validation or review processes.

CVSS 9.8
EPSS 1.8%
KEV Pred 68%
Product nrwl nx-console nrwl
CVSS v3.1 CVSS v4.0 KEV CWE-506 RANSOMWARE
15 May/26
CVE-2026-8398
CRITICAL

This vulnerability is a supply chain compromise affecting the build and distribution process of AVB Disc Soft's DAEMON Tools Lite Windows installer packages, specifically versions 12.5.0.2421 through 12.5.0.2434. The root cause is unauthorized access to the vendor's build infrastructure, allowing attackers to inject malicious code into three signed binaries (DTHelper.exe, DiscSoftBusServiceLite.exe, DTShellHlp.exe). The trojanized binaries maintain valid digital signatures, impacting the integrity verification mechanism of the installation process.

CVSS 9.8
EPSS 1.5%
KEV Pred 40%
Product AVB Disc Soft DAEMON Tools Lite avb
CVSS v3.1 CVSS v4.0 KEV CWE-506
07 May/26
CVE-2026-6973
HIGH

This vulnerability is an improper input validation flaw within Ivanti Endpoint Manager Mobile's administrative interface. The root cause lies in insufficient sanitization of inputs processed by privileged functions, enabling crafted input to bypass validation controls. The affected component is the administrative access functionality in versions prior to 12.6.1.1, 12.7.0.1, and 12.8.0.1.

CVSS 7.2
EPSS 34.5%
KEV Pred 68%
Product Ivanti Endpoint Manager Mobile ivanti
CVSS v3.1 KEV CWE-20
25 Feb/26
CVE-2026-22719
HIGH

This vulnerability is a command injection flaw rooted in improper input validation within VMware Aria Operations. Specifically, the support-assisted product migration component fails to sanitize user-supplied input, allowing execution of arbitrary system commands. The affected feature processes migration-related commands without adequate filtering, enabling injection through crafted inputs during migration operations.

CVSS 8.1
EPSS 17.4%
KEV Pred 64%
Product VMware Aria Operations vmware
CVSS v3.1 KEV CWE-77
25 Feb/26
CVE-2026-20122
MEDIUM

This vulnerability is a file overwrite flaw caused by improper file handling in the API interface of Cisco Catalyst SD-WAN Manager. Specifically, the API allows authenticated users with read-only credentials to upload files without sufficient validation or restrictions, enabling arbitrary file overwrite on the local filesystem. The affected component is the API subsystem responsible for processing file uploads within the SD-WAN Manager product.

CVSS 5.4
EPSS 24.6%
KEV Pred 77%
Product Cisco Catalyst SD-WAN Manager cisco
CVSS v3.1 KEV CWE-648
25 Feb/26
CVE-2026-20133
HIGH

This vulnerability is an information disclosure flaw caused by insufficient file system access controls within Cisco Catalyst SD-WAN Manager. The root cause lies in the improper enforcement of access restrictions on API endpoints, allowing unauthorized read access to sensitive files on the underlying operating system. The affected component is the API interface of the Cisco Catalyst SD-WAN Manager software.

CVSS 7.5
EPSS 31.4%
KEV Pred 68%
Product Cisco Catalyst SD-WAN Manager cisco
CVSS v3.1 KEV CWE-200
17 Feb/26
CVE-2026-22769
CRITICAL

This vulnerability is a hardcoded credential flaw within Dell RecoverPoint for Virtual Machines prior to version 6.0.3.1 HF1. The root cause is the presence of static, embedded authentication credentials in the software, which are accessible without authentication. The affected component is the authentication mechanism of the RecoverPoint for Virtual Machines management interface, allowing unauthorized access to privileged functions.

CVSS 10.0
EPSS 13.1%
KEV Pred 69%
Product Dell RecoverPoint for Virtual Machines dell
CVSS v3.1 KEV CWE-798
13 Feb/26
CVE-2026-25108
HIGH

This vulnerability is an OS command injection flaw in Soliton Systems K.K. FileZen, specifically triggered when the FileZen Antivirus Check Option is enabled. The root cause lies in insufficient input validation of user-supplied data within HTTP requests, allowing injection of arbitrary operating system commands. The affected component is the FileZen web interface handling these specially crafted requests from authenticated users.

CVSS 8.8
EPSS 5.0%
KEV Pred 62%
Product Soliton Systems K.K. FileZen soliton
CVSS v3.1 CVSS v4.0 KEV CWE-78
10 Feb/26
CVE-2026-21513
HIGH

This vulnerability is a protection mechanism failure within the MSHTML Framework, specifically involving an improper enforcement of security boundaries. The root cause lies in the component's inability to correctly validate or restrict certain operations, allowing bypass of embedded security controls. The flaw affects MSHTML, the rendering engine responsible for processing HTML content in affected Windows 10 versions.

CVSS 8.8
EPSS 15.4%
KEV Pred 83%
Product Microsoft Windows 10 Version 1607 microsoft
CVSS v3.1 KEV CWE-693 RANSOMWARE
10 Feb/26
CVE-2025-68686
MEDIUM

An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.1, FortiOS 7.4.0 through 7.4.6, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions may allow a remote unauthenticated attacker to bypass the patch developed for the symbolic link persistency mechanism observed in some post-exploit cases, via crafted HTTP requests. An attacker would need first to have compromised the product via another vulnerability, at filesystem level.

CVSS 5.9
EPSS 1.3%
KEV Pred 70%
Product Fortinet FortiOS fortinet
CVSS v3.1 KEV CWE-200
05 Jan/26
CVE-2025-66376
MEDIUM

This vulnerability is a stored Cross-Site Scripting (XSS) flaw affecting the Classic UI component of Zimbra Collaboration Suite (ZCS). The root cause lies in improper sanitization of Cascading Style Sheets (CSS) @import directives embedded within HTML email messages, allowing malicious CSS to be stored and later executed in the user interface. The flaw exists in ZCS versions prior to 10.0.18 and 10.1.13, specifically in the handling of HTML email content rendering.

CVSS 6.1
EPSS 22.0%
KEV Pred 82%
Product Zimbra Collaboration zimbra
CVSS v3.1 KEV CWE-79
17 Dec/25
CVE-2025-59374
CRITICAL

This vulnerability originates from unauthorized modifications introduced into specific builds of the ASUS Live Update client through a supply chain compromise. The root cause is the presence of altered code within the update client binary that triggers unintended actions under certain targeting conditions. The affected component is the ASUS Live Update client software, which has reached End-of-Support as of October 2021.

CVSS 9.8
EPSS 1.2%
KEV Pred 83%
Product ASUS live update asus
CVSS v3.1 CVSS v4.0 KEV CWE-506
05 Dec/25
CVE-2025-66644
CRITICAL

This vulnerability is a command injection flaw rooted in improper input validation within Array Networks ArrayOS AG versions prior to 9.4.5.9. The issue arises from insufficient sanitization of user-supplied data passed to system-level commands in the VPN appliance's management interface. The affected component is the ArrayOS AG software responsible for handling administrative command inputs, enabling attackers with elevated privileges to inject arbitrary commands.

CVSS 9.8
EPSS 3.5%
KEV Pred 82%
Product Array Networks ArrayOS AG array
CVSS v3.1 KEV CWE-78
17 Nov/25
CVE-2025-13223
HIGH

This vulnerability is a type confusion flaw within the V8 JavaScript engine component of Google Chrome. The root cause lies in improper handling of object types during runtime, which leads to heap corruption when executing crafted JavaScript code. The flaw specifically affects V8's internal type system prior to Chrome version 142.0.7444.175, enabling inconsistent memory interpretation within the engine's execution context.

CVSS 8.8
EPSS 5.0%
KEV Pred 79%
Product Google Chrome google
CVSS v3.1 KEV CWE-843
05 Nov/25
CVE-2023-43000
HIGH

This vulnerability is a use-after-free flaw arising from improper memory management in the processing of web content within Apple’s Safari browser and underlying OS components. The root cause involves the premature release of memory objects that are subsequently accessed, leading to memory corruption. Affected components include the Safari browser engine and web content processing modules in macOS Ventura, iOS, and iPadOS.

CVSS 8.8
EPSS 3.9%
KEV Pred 78%
Product Apple macOS apple
CVSS v3.1 KEV CWE-416
20 Oct/25
CVE-2025-61932
CRITICAL

The vulnerability in MOTEX Inc. Lanscope Endpoint Manager (On-Premises) arises from improper verification of the origin of incoming network requests. Specifically, the Client program (MR) and Detection agent (DA) components fail to validate the authenticity of packets received, enabling an attacker to craft and send malicious packets that are processed without adequate origin checks. This flaw is rooted in insufficient input validation within the network communication handling modules of the endpoint management system.

CVSS 9.8
EPSS 2.6%
KEV Pred 82%
Product MOTEX Inc. Lanscope Endpoint Manager (On-Premises) (Client program (MR) and Detection agent (DA)) motex
CVSS v3.1 CVSS v4.0 KEV CWE-940
15 Oct/25
CVE-2025-53521
CRITICAL

This vulnerability is a remote code execution flaw arising from improper handling of specific malicious traffic within the Access Policy Manager (APM) feature of F5 BIG-IP virtual servers. The root cause lies in the APM access policy processing logic failing to adequately validate or sanitize crafted input, enabling execution of arbitrary code. The affected component is the BIG-IP APM access policy configured on virtual servers.

CVSS 9.8
EPSS 2.2%
KEV Pred 75%
Product F5 BIG-IP f5
CVSS v3.1 CVSS v4.0 KEV CWE-121
19 Sep/25
CVE-2025-59689
MEDIUM

This vulnerability is a command injection flaw rooted in improper input validation of compressed email attachments processed by Libraesva Email Security Gateway. The affected component fails to sanitize or securely handle shell commands embedded within these attachments, allowing crafted data to be executed on the underlying system. The flaw specifically impacts versions 4.5 through 5.5.x prior to designated patch releases, compromising the email attachment processing module.

CVSS 6.1
EPSS 1.9%
KEV Pred 80%
Product Libraesva Email Security Gateway libraesva
CVSS v3.1 KEV CWE-77
12 Sep/25
CVE-2025-21043
CRITICAL

This vulnerability is an out-of-bounds write occurring in the libimagecodec.quram.so library component of Samsung Mobile Devices. The root cause is improper bounds checking during image codec processing, which allows memory corruption by writing data outside the allocated buffer. This flaw exists in versions of the Android OS on Samsung devices prior to the SMR September 2025 Release 1.

CVSS 9.8
EPSS 1.9%
KEV Pred 83%
Product Samsung Mobile Devices samsung
CVSS v3.1 KEV CWE-787
29 Aug/25
CVE-2025-9377
HIGH

This vulnerability is an authenticated remote command injection in the Parental Control feature of TP-Link Archer C7(EU) V2 and TL-WR841N/ND(MS) V9 firmware. The root cause lies in improper input validation on the Parental Control page, allowing shell commands to be injected and executed with elevated privileges. The flaw resides specifically in the firmware component handling user inputs on the Parental Control management interface.

CVSS 7.2
EPSS 11.8%
KEV Pred 75%
Product TP-Link Systems Inc. Archer C7(EU) V2 tp-link
CVSS v3.1 CVSS v4.0 KEV CWE-78
14 Aug/25
CVE-2025-8876
HIGH

This vulnerability is a command injection flaw caused by improper input validation in N-able N-central. The root cause lies in the failure to sanitize user-supplied inputs in specific components, enabling crafted inputs to be interpreted as operating system commands. The affected component is the N-central management platform prior to version 2025.3.1, where input handling mechanisms do not adequately restrict command execution vectors.

CVSS 8.8
EPSS 3.1%
KEV Pred 69%
Product N-able N-central n-able
CVSS v3.1 CVSS v4.0 KEV CWE-20
05 Aug/25
CVE-2025-54948
CRITICAL

This vulnerability is a command injection flaw rooted in insufficient input validation within the Trend Micro Apex One on-premise management console. The flaw allows unauthenticated remote attackers to upload and execute arbitrary code by exploiting the console's file upload handling mechanism. The affected component is the management console interface responsible for processing incoming requests without proper authentication checks or sanitization.

CVSS 9.8
EPSS 20.8%
KEV Pred 76%
Product Trend Micro, Inc. Trend Micro Apex One trend
CVSS v3.1 KEV CWE-78
24 Jun/25
CVE-2025-32975
CRITICAL

This vulnerability is an authentication bypass caused by improper validation in the Single Sign-On (SSO) authentication mechanism of Quest KACE Systems Management Appliance (SMA). The root cause lies in the flawed handling of authentication tokens or session states, allowing the system to incorrectly grant access without verifying legitimate credentials. The affected component is the SSO authentication handler across multiple SMA software versions prior to specified patch levels.

CVSS 10.0
EPSS 2.4%
KEV Pred 41%
Product Quest KACE Systems Management Appliance (SMA) quest
CVSS v3.1 KEV CWE-287
23 Jun/25
CVE-2025-48700
MEDIUM

This vulnerability is a Cross-Site Scripting (XSS) flaw rooted in insufficient sanitization of HTML content within the Zimbra Classic UI. The issue arises from improper handling of crafted tag structures and attribute values that include @import directives and other script injection vectors. The affected component is the Classic UI rendering engine that processes email message content, failing to neutralize malicious JavaScript payloads embedded in email bodies.

CVSS 6.1
EPSS 1.7%
KEV Pred 65%
Product synacor zimbra collaboration suite synacor
CVSS v3.1 KEV CWE-79
16 Jun/25
CVE-2025-43200
MEDIUM

This vulnerability is a logic flaw in the media processing component of Apple iOS and iPadOS, specifically when handling photos or videos shared via iCloud Link. The root cause lies in insufficient validation and improper processing logic for maliciously crafted media files, leading to incorrect handling of input data within the media parsing routines. This flaw affects the media handling subsystem across multiple Apple operating systems including iOS, iPadOS, macOS, visionOS, and watchOS.

CVSS 4.2
EPSS 1.0%
KEV Pred 80%
Product Apple iOS and iPadOS apple
CVSS v3.1 KEV
03 Jun/25
CVE-2025-27038
HIGH

This vulnerability is a use-after-free memory corruption occurring within the Adreno GPU driver component used by Qualcomm Snapdragon devices. The flaw arises from improper management of memory objects during graphics rendering operations in the Chrome environment, specifically related to the handling of GPU command buffers. The affected component is the Adreno GPU driver firmware across multiple Qualcomm firmware versions, leading to unsafe memory access conditions.

CVSS 7.5
EPSS 0.8%
KEV Pred 72%
Product Qualcomm, Inc. Snapdragon qualcomm,
CVSS v3.1 KEV CWE-416
28 May/25
CVE-2025-48927
MEDIUM

This vulnerability is an information disclosure flaw stemming from an exposed heap dump endpoint in the TeleMessage service's Spring Boot Actuator configuration. The root cause is the unsecured exposure of the /heapdump URI, which allows unauthenticated access to JVM heap memory dumps. The affected component is the Spring Boot Actuator's heap dump feature within TeleMessage service versions prior to 2025-05-05.

CVSS 5.3
EPSS 9.1%
KEV Pred 79%
Product TeleMessage service telemessage
CVSS v3.1 KEV CWE-1188
13 May/25
CVE-2025-42999
CRITICAL

This vulnerability is a deserialization flaw in the SAP NetWeaver Visual Composer Metadata Uploader component. The root cause is improper validation and handling of serialized metadata content uploaded by privileged users, allowing untrusted or malicious data to be deserialized. This flaw affects the Visual Composer development server within SAP NetWeaver 7.5, specifically the metadata upload functionality that processes serialized input without sufficient integrity checks.

CVSS 9.1
EPSS 12.4%
KEV Pred 70%
Product SAP_SE SAP NetWeaver (Visual Composer development server) sap_se
CVSS v3.1 KEV CWE-502 RANSOMWARE
08 May/25
CVE-2025-47729
MEDIUM

The vulnerability is an information exposure flaw caused by the TeleMessage archiving backend storing message data in cleartext form. This occurs within the backend component responsible for archiving messages from the TM SGNL (Archive Signal) application. The root cause is the backend's failure to apply end-to-end encryption to archived messages, contrary to the documented encryption claims.

CVSS 4.9
EPSS 0.4%
KEV Pred 68%
Product TeleMessage archiving backend telemessage
CVSS v3.1 KEV CWE-912
07 May/25
CVE-2025-35939
MEDIUM

This vulnerability is a server-side file injection issue rooted in improper handling of session data in Craft CMS. The system stores arbitrary content from unauthenticated users directly into session files located on the server without sanitization. The affected component is the session management mechanism that writes user-supplied return URLs into session files named with predictable patterns under '/var/lib/php/sessions'.

CVSS 5.3
EPSS 1.3%
KEV Pred 69%
Product Craft CMS craft
CVSS v3.1 CVSS v4.0 KEV CWE-472
05 May/25
CVE-2025-27920
HIGH

This vulnerability is a directory traversal flaw caused by improper sanitization of file path parameters in Srimax Output Messenger versions prior to 2.0.63. The affected component fails to correctly validate or normalize user-supplied input containing "../" sequences, allowing traversal outside the intended directory scope. This weakness resides in the file handling routines responsible for managing resource access within the messaging application.

CVSS 8.8
EPSS 1.8%
KEV Pred 69%
Product Srimax Output Messenger srimax
CVSS v3.1 KEV CWE-24 RANSOMWARE
25 Apr/25
CVE-2025-3935
HIGH

This vulnerability is a ViewState code injection issue affecting ASP.NET Web Forms used by ConnectWise ScreenConnect versions 25.2.3 and earlier. The root cause lies in the reliance on ViewState, which encodes page and control state data in Base64 and protects it using machine keys. If an attacker obtains these machine keys, they can craft malicious ViewState payloads that the server deserializes, leading to code injection via the ViewState mechanism.

CVSS 7.2
EPSS 3.4%
KEV Pred 69%
Product ConnectWise ScreenConnect connectwise
CVSS v3.1 KEV CWE-502
25 Apr/25
CVE-2025-3928
HIGH

This vulnerability is a remote authenticated code execution flaw in the Commvault Web Server caused by improper input validation allowing attackers to upload and execute malicious webshells. The root cause lies in the webserver's failure to restrict file upload or execution permissions, enabling crafted requests to deploy arbitrary code. The affected component is the webserver module handling file creation and execution on both Windows and Linux platforms.

CVSS 8.8
EPSS 2.1%
KEV Pred 76%
Product Commvault Web Server commvault
CVSS v3.1 CVSS v4.0 KEV
18 Apr/25
CVE-2025-42599
CRITICAL

The vulnerability is a stack-based buffer overflow in QUALITIA CO., LTD. Active! mail 6, specifically in BuildInfo versions 6.60.05008561 and earlier. The root cause lies in improper bounds checking when processing incoming requests, allowing excessive data to overwrite stack memory. This flaw affects the request handling component of the Active! mail 6 server, enabling memory corruption through crafted input.

CVSS 9.8
EPSS 3.2%
KEV Pred 67%
Product QUALITIA CO., LTD. Active! mail 6 qualitia
CVSS v3.1 KEV CWE-121
16 Apr/25
CVE-2025-31201
CRITICAL

This vulnerability is a bypass of Pointer Authentication implemented in Apple operating systems. The root cause lies in the presence of vulnerable code that allows an attacker with arbitrary memory read and write capabilities to circumvent the integrity checks enforced by Pointer Authentication. The affected components include Apple iOS, iPadOS, macOS Sequoia, tvOS, and visionOS, where Pointer Authentication is used to protect against memory corruption attacks.

CVSS 9.8
EPSS 14.7%
KEV Pred 79%
Product Apple iOS and iPadOS apple
CVSS v3.1 KEV CWE-1220
24 Mar/25
CVE-2025-2749
HIGH

This vulnerability is an authenticated path traversal and arbitrary file upload flaw in Kentico Xperience's Staging Sync Server component. The root cause lies in insufficient validation of user-supplied file paths during the upload process, allowing traversal to unintended directories. This improper sanitization enables attackers to place files outside the intended storage location, including executable content, within affected versions through 13.0.178.

CVSS 7.2
EPSS 4.0%
KEV Pred 56%
Product Kentico Xperience kentico
CVSS v3.1 KEV CWE-22
19 Mar/25
CVE-2025-30154
HIGH

The vulnerability is a supply chain compromise involving the reviewdog/action-setup GitHub Action, where malicious code was injected into the version v1 of the action. The root cause is unauthorized modification of the action's source code repository, resulting in the inclusion of code that exfiltrates secrets. This affects the reviewdog/action-setup component and all other reviewdog GitHub Actions that depend on reviewdog/action-setup@v1, regardless of version pinning.

CVSS 8.6
EPSS 2.4%
KEV Pred 69%
Product reviewdog reviewdog
CVSS v3.1 KEV CWE-506
12 Mar/25
CVE-2025-27915
MEDIUM

This vulnerability is a stored cross-site scripting (XSS) flaw arising from insufficient sanitization of HTML content within ICS calendar files processed by the Classic Web Client of Zimbra Collaboration Suite versions 9.0, 10.0, and 10.1. The root cause lies in the improper handling of embedded JavaScript triggered by the ontoggle event inside the <details> HTML tag when rendering ICS file contents in email messages. This flaw affects the email rendering component responsible for displaying calendar invitations and related ICS data.

CVSS 5.4
EPSS 3.9%
KEV Pred 72%
Product Synacor Zimbra Collaboration Suite (ZCS) synacor
CVSS v3.1 KEV CWE-79
11 Mar/25
CVE-2025-24984
MEDIUM

This vulnerability is an information disclosure issue caused by improper handling of sensitive data within the Windows NTFS logging mechanism. Specifically, sensitive information is inserted into log files without adequate protection or sanitization. The flaw resides in the logging component of Microsoft Windows 10 versions 1507, 1607, and 1809, affecting both x64 and x86 architectures, allowing unauthorized physical access to retrieve sensitive data from logs.

CVSS 4.6
EPSS 2.0%
KEV Pred 79%
Product Microsoft Windows 10 Version 1507 microsoft
CVSS v3.1 KEV CWE-532 RANSOMWARE
19 Feb/25
CVE-2025-24989
CRITICAL

This vulnerability is an improper access control flaw within Microsoft Power Pages, specifically affecting the user registration control mechanism. The root cause lies in the failure to enforce proper authorization checks on registration-related network requests, enabling unauthorized privilege escalation. The affected component is the registration control feature of Power Pages that manages user sign-up and access permissions.

CVSS 9.8
EPSS 1.6%
KEV Pred 73%
Product Microsoft Power Pages microsoft
CVSS v3.1 KEV CWE-284 RANSOMWARE
12 Feb/25
CVE-2025-0111
MEDIUM

This vulnerability is an authenticated file read flaw in Palo Alto Networks PAN-OS software, specifically affecting the management web interface component. The root cause lies in improper access control allowing an authenticated user with network access to read arbitrary files on the PAN-OS filesystem that are accessible by the "nobody" user. The flaw arises from insufficient restrictions on file read operations within the management interface's authentication context.

CVSS 6.5
EPSS 2.0%
KEV Pred 60%
Product Palo Alto Networks Cloud NGFW palo
CVSS v3.1 CVSS v4.0 KEV CWE-73
Page 1 of 5 (233 total)