33,897 indexed

CVECVE vulnerabilities

33,897 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.

Showing 8,251–8,300 of 8,314 in Critical · page 166 of 167

IDTitleSummary
CVE-2025-0541CVE-2025-0541
CVSS 9.8
A vulnerability was found in Codezips Gym Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /dashboard/a…
CVE-2025-0540CVE-2025-0540
CVSS 9.8
A vulnerability has been found in itsourcecode Tailoring Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file …
CVE-2025-0536CVE-2025-0536
CVSS 9.8
A vulnerability classified as critical was found in 1000 Projects Attendance Tracking Management System 1.0. This vulnerability affects unknown code of the fil…
CVE-2025-0535CVE-2025-0535
CVSS 9.8
A vulnerability classified as critical has been found in Codezips Gym Management System 1.0. This affects an unknown part of the file /dashboard/admin/edit_mem…
CVE-2025-0534CVE-2025-0534
CVSS 9.8
A vulnerability was found in 1000 Projects Campaign Management System Platform for Women 1.0. It has been rated as critical. Affected by this issue is some unk…
CVE-2025-0533CVE-2025-0533
CVSS 9.8
A vulnerability was found in 1000 Projects Campaign Management System Platform for Women 1.0. It has been declared as critical. Affected by this vulnerability …
CVE-2025-0532CVE-2025-0532
CVSS 9.8
A vulnerability was found in Codezips Gym Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /dashboard/adm…
CVE-2025-0527CVE-2025-0527
CVSS 9.8
A vulnerability classified as critical was found in code-projects Admission Management System 1.0. Affected by this vulnerability is an unknown functionality o…
CVE-2025-0505CVE-2025-0505
CVSS 10.0
On Arista CloudVision systems (virtual or physical on-premise deployments), Zero Touch Provisioning can be used to gain admin privileges on the CloudVision sys…
CVE-2025-0502CVE-2025-0502
CVSS 9.1
Transmission of Private Resources into a New Sphere ('Resource Leak') vulnerability in CrafterCMS Engine on Linux, MacOS, x86, Windows, 64 bit, ARM allows Dire…
CVE-2025-0498CVE-2025-0498
CVSS 9.8
A data exposure vulnerability exists in all versions prior to V15.00.001 of Rockwell Automation FactoryTalk® AssetCentre. The vulnerability exists due to insec…
CVE-2025-0497CVE-2025-0497
CVSS 9.8
A data exposure vulnerability exists in all versions prior to V15.00.001 of Rockwell Automation FactoryTalk® AssetCentre. The vulnerability exists due to stori…
CVE-2025-0493CVE-2025-0493
CVSS 9.8
The MultiVendorX – The Ultimate WooCommerce Multivendor Marketplace Solution plugin for WordPress is vulnerable to Limited Local File Inclusion in all version…
CVE-2025-0491CVE-2025-0491
CVSS 9.8
A vulnerability, which was classified as critical, was found in Fanli2012 native-php-cms 1.0. Affected is an unknown function of the file /fladmin/cat_dodel.ph…
CVE-2025-0487CVE-2025-0487
CVSS 9.8
A vulnerability was found in Fanli2012 native-php-cms 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /fla…
CVE-2025-0486CVE-2025-0486
CVSS 9.8
A vulnerability was found in Fanli2012 native-php-cms 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the …
CVE-2025-0477CVE-2025-0477
CVSS 9.8
An encryption vulnerability exists in all versions prior to V15.00.001 of Rockwell Automation FactoryTalk® AssetCentre. The vulnerability exists due to a weak …
CVE-2025-0471CVE-2025-0471
CVSS 9.8
Unrestricted file upload vulnerability in the PMB platform, affecting versions 4.0.10 and above. This vulnerability could allow an attacker to upload a file to…
CVE-2025-0463CVE-2025-0463
CVSS 9.8
A vulnerability was found in Shanghai Lingdang Information Technology Lingdang CRM up to 8.6.0.0. It has been classified as critical. Affected is an unknown fu…
CVE-2025-0462CVE-2025-0462
CVSS 9.8
A vulnerability was found in Shanghai Lingdang Information Technology Lingdang CRM up to 8.6.0.0 and classified as critical. This issue affects some unknown pr…
CVE-2025-0456CVE-2025-0456
CVSS 9.8
The airPASS from NetVision Information has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to access the specific administrat…
CVE-2025-0455CVE-2025-0455
CVSS 9.8
The airPASS from NetVision Information has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, m…
CVE-2025-0377CVE-2025-0377
CVSS 9.1
HashiCorp’s go-slug library is vulnerable to a zip-slip style attack when a non-existing user-provided path is extracted from the tar entry.
CVE-2025-0364CVE-2025-0364
CVSS 9.8
BigAntSoft BigAnt Server, up to and including version 5.6.06, is vulnerable to unauthenticated remote code execution via account registration. An unauthenticat…
CVE-2025-0357CVE-2025-0357
CVSS 9.8
The WPBookit plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'WPB_Profile_controller::handle_image…
CVE-2025-0349CVE-2025-0349
CVSS 9.8
A vulnerability classified as critical has been found in Tenda AC6 15.03.05.16. Affected is the function GetParentControlInfo of the file /goform/GetParentCont…
CVE-2025-0347CVE-2025-0347
CVSS 9.8
A vulnerability was found in code-projects Admission Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the fi…
CVE-2025-0341CVE-2025-0341
CVSS 9.8
A vulnerability, which was classified as critical, has been found in CampCodes Computer Laboratory Management System 1.0. Affected by this issue is some unknow…
CVE-2025-0340CVE-2025-0340
CVSS 9.8
A vulnerability classified as critical was found in code-projects Cinema Seat Reservation System 1.0. Affected by this vulnerability is an unknown functionalit…
CVE-2025-0336CVE-2025-0336
CVSS 9.8
A vulnerability was found in Codezips Project Management System 1.0. It has been classified as critical. This affects an unknown part of the file /pages/forms/…
CVE-2025-0335CVE-2025-0335
CVSS 9.8
A vulnerability was found in code-projects Online Bike Rental System 1.0 and classified as critical. Affected by this issue is some unknown functionality of th…
CVE-2025-0332CVE-2025-0332
CVSS 9.8
In Progress® Telerik® UI for WinForms, versions prior to 2025 Q1 (2025.1.211), using the improper limitation of a target path can lead to decompressing an arch…
CVE-2025-0316CVE-2025-0316
CVSS 9.8
The WP Directorybox Manager plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.5. This is due to incorrect authent…
CVE-2025-0299CVE-2025-0299
CVSS 9.8
A vulnerability classified as critical has been found in code-projects Online Book Shop 1.0. Affected is an unknown function of the file /search_result.php. Th…
CVE-2025-0298CVE-2025-0298
CVSS 9.8
A vulnerability was found in code-projects Online Book Shop 1.0. It has been rated as critical. This issue affects some unknown processing of the file /process…
CVE-2025-0296CVE-2025-0296
CVSS 9.8
A vulnerability was found in code-projects Online Book Shop 1.0. It has been classified as critical. This affects an unknown part of the file /booklist.php. Th…
CVE-2025-0282Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability
KEVCVSS 9.0Ivanti
Ivanti Connect Secure, Policy Secure, and ZTA Gateways contain a stack-based buffer overflow which can lead to unauthenticated remote code execution.
CVE-2025-0247CVE-2025-0247
CVSS 9.8
Memory safety bugs present in Firefox 133 and Thunderbird 133. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s…
CVE-2025-0233CVE-2025-0233
CVSS 9.8
A vulnerability was found in Codezips Project Management System 1.0. It has been classified as critical. This affects an unknown part of the file /pages/forms/…
CVE-2025-0230CVE-2025-0230
CVSS 9.8
A vulnerability, which was classified as critical, was found in code-projects Responsive Hotel Site 1.0. Affected is an unknown function of the file /admin/pri…
CVE-2025-0229CVE-2025-0229
CVSS 9.8
A vulnerability, which was classified as critical, has been found in code-projects Travel Management System 1.0. This issue affects some unknown processing of …
CVE-2025-0213CVE-2025-0213
CVSS 9.8
A vulnerability was found in Campcodes Project Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /fo…
CVE-2025-0212CVE-2025-0212
CVSS 9.8
A vulnerability was found in Campcodes Student Grading System 1.0. It has been classified as critical. This affects an unknown part of the file /view_students.…
CVE-2025-0211CVE-2025-0211
CVSS 9.8
A vulnerability was found in Campcodes School Faculty Scheduling System 1.0 and classified as critical. Affected by this issue is some unknown functionality of…
CVE-2025-0210CVE-2025-0210
CVSS 9.8
A vulnerability has been found in Campcodes School Faculty Scheduling System 1.0 and classified as critical. Affected by this vulnerability is an unknown funct…
CVE-2025-0208CVE-2025-0208
CVSS 9.8
A vulnerability, which was classified as critical, was found in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /summary.php. The…
CVE-2025-0207CVE-2025-0207
CVSS 9.8
A vulnerability, which was classified as critical, has been found in code-projects Online Shoe Store 1.0. Affected by this issue is some unknown functionality …
CVE-2025-0205CVE-2025-0205
CVSS 9.8
A vulnerability classified as critical has been found in code-projects Online Shoe Store 1.0. Affected is an unknown function of the file /details2.php. The ma…
CVE-2025-0204CVE-2025-0204
CVSS 9.8
A vulnerability was found in code-projects Online Shoe Store 1.0. It has been rated as critical. This issue affects some unknown processing of the file /detail…
CVE-2025-0203CVE-2025-0203
CVSS 9.8
A vulnerability was found in code-projects Student Management System 1.0. It has been declared as critical. This vulnerability affects the function showSubject…
Sourced from NVD + CISA KEV + FIRST EPSS. Curated by Adam Lundqvist, Founder at SQUR.