92,816 indexed

CVECVE vulnerabilities

92,816 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.

Showing 7,101–7,150 of 8,161 in High · page 143 of 164

IDTitleSummary
CVE-2025-21248CVE-2025-21248
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21246CVE-2025-21246
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21245CVE-2025-21245
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21244CVE-2025-21244
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21243CVE-2025-21243
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21241CVE-2025-21241
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21240CVE-2025-21240
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21239CVE-2025-21239
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21238CVE-2025-21238
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21237CVE-2025-21237
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21236CVE-2025-21236
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21233CVE-2025-21233
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21224CVE-2025-21224
CVSS 8.1
Windows Line Printer Daemon (LPD) Service Remote Code Execution Vulnerability
CVE-2025-21223CVE-2025-21223
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21222CVE-2025-21222
CVSS 8.8
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
CVE-2025-21221CVE-2025-21221
CVSS 8.8
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
CVE-2025-2121CVE-2025-2121
CVSS 8.8
A vulnerability classified as critical has been found in Thinkware Car Dashcam F800 Pro up to 20250226. Affected is an unknown function of the component File S…
CVE-2025-21208CVE-2025-21208
CVSS 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-21205CVE-2025-21205
CVSS 8.8
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
CVE-2025-21201CVE-2025-21201
CVSS 8.8
Windows Telephony Server Remote Code Execution Vulnerability
CVE-2025-21200CVE-2025-21200
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21190CVE-2025-21190
CVSS 8.8
Windows Telephony Service Remote Code Execution Vulnerability
CVE-2025-21178CVE-2025-21178
CVSS 8.8
Visual Studio Remote Code Execution Vulnerability
CVE-2025-21177CVE-2025-21177
CVSS 8.8
Server-side request forgery (ssrf) in Microsoft Dynamics 365 Sales allows an authorized attacker to elevate privileges over a network.
CVE-2025-21176CVE-2025-21176
CVSS 8.8
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
CVE-2025-2110CVE-2025-2110
CVSS 8.8
The WP Compress – Instant Performance & Speed Optimization plugin for WordPress is vulnerable to unauthorized access, modification, and loss of data due to mis…
CVE-2025-21079CVE-2025-21079
CVSS 8.1
Improper input validation in Samsung Members prior to version 5.5.01.3 allows remote attackers to connect arbitrary URL and launch arbitrary activity with Sams…
CVE-2025-2105CVE-2025-2105
CVSS 8.1
The Jupiter X Core plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 4.8.11 via deserialization of untrusted inp…
CVE-2025-2103CVE-2025-2103
CVSS 8.8
The SoundRise Music plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability c…
CVE-2025-2101CVE-2025-2101
CVSS 8.1
The Edumall theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 4.2.4 via the 'template' parameter of the 'edumall_…
CVE-2025-20946CVE-2025-20946
CVSS 8.8
Improper handling of exceptional conditions in pairing specific bluetooth devices in Galaxy Watch Bluetooth pairing prior to SMR Apr-2025 Release 1 allows loca…
CVE-2025-2075CVE-2025-2075
CVSS 8.8
The Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin for WordPress is vulnerable to Privilege Escalation in all versions up…
CVE-2025-20742CVE-2025-20742
CVSS 8.0
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privil…
CVE-2025-2073CVE-2025-2073
CVSS 8.8
Out-of-Bounds Read in netfilter/ipset in Linux Kernel ChromeOS [6.1, 5.15, 5.10, 5.4, 4.19] allows a local attacker with low privileges to trigger an out-of-bo…
CVE-2025-20727CVE-2025-20727
CVSS 8.1
In Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote escalation of privilege, if a UE has connected to a …
CVE-2025-20720CVE-2025-20720
CVSS 8.8mediatek
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privil…
CVE-2025-20719CVE-2025-20719
CVSS 8.8mediatek
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privil…
CVE-2025-20712CVE-2025-20712
CVSS 8.8mediatek
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privil…
CVE-2025-20711CVE-2025-20711
CVSS 8.8mediatek
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privil…
CVE-2025-20710CVE-2025-20710
CVSS 8.8mediatek
In wlan AP driver, there is a possible out of bounds write due to an integer overflow. This could lead to remote (proximal/adjacent) escalation of privilege wi…
CVE-2025-20709CVE-2025-20709
CVSS 8.8mediatek
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privil…
CVE-2025-20708CVE-2025-20708
CVSS 8.8
In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege, if a UE has connected to…
CVE-2025-20704CVE-2025-20704
CVSS 8.0
In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a …
CVE-2025-20702CVE-2025-20702
CVSS 8.8
In the Airoha Bluetooth audio SDK, there is a possible unauthorized access to the RACE protocol. This could lead to remote escalation of privilege with no addi…
CVE-2025-20701CVE-2025-20701
CVSS 8.8
In the Airoha Bluetooth audio SDK, there is a possible way to pair Bluetooth audio device without user consent. This could lead to remote escalation of privile…
CVE-2025-20700CVE-2025-20700
CVSS 8.8
In the Airoha Bluetooth audio SDK, there is a possible permission bypass that allows access critical data of RACE protocol through Bluetooth LE GATT service. T…
CVE-2025-20686CVE-2025-20686
CVSS 8.8
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) code execution with …
CVE-2025-20685CVE-2025-20685
CVSS 8.8
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) code execution with …
CVE-2025-20633CVE-2025-20633
CVSS 8.8
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) code execution with …
CVE-2025-2053CVE-2025-2053
CVSS 8.8
A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. It has been classified as critical. Affected is an unknown function of the fi…
Sourced from NVD + CISA KEV + FIRST EPSS. Curated by Adam Lundqvist, Founder at SQUR.