CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2025-26687

    Last Modified: 22 May 2026

    Use after free in Windows Win32K - GRFX allows an unauthorized attacker to elevate privileges over a network.

    Published: 8 Apr 2025
    7.5
    High

    CVE-2025-26686

    Last Modified: 13 Feb 2026

    Sensitive data storage in improperly locked memory in Windows TCP/IP allows an unauthorized attacker to execute code over a network.

    Published: 8 Apr 2025
    7.5
    High

    CVE-2025-26680

    Last Modified: 13 Feb 2026

    Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny service over a network.

    Published: 8 Apr 2025
    6.7
    Medium

    CVE-2025-26681

    Last Modified: 13 Feb 2026

    Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

    Published: 8 Apr 2025
    7.5
    High

    CVE-2025-26668

    Last Modified: 13 Feb 2026

    Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

    Published: 8 Apr 2025
    6.5
    Medium

    CVE-2025-26667

    Last Modified: 13 Feb 2026

    Exposure of sensitive information to an unauthorized actor in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

    Published: 8 Apr 2025
    8.8
    High

    CVE-2025-26669

    Last Modified: 13 Feb 2026

    Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

    Published: 8 Apr 2025
    7.8
    High

    CVE-2025-26666

    Last Modified: 13 Feb 2026

    Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.

    Published: 8 Apr 2025
    7
    High

    CVE-2025-26665

    Last Modified: 13 Feb 2026

    Sensitive data storage in improperly locked memory in Windows upnphost.dll allows an authorized attacker to elevate privileges locally.

    Published: 8 Apr 2025
    6.5
    Medium

    CVE-2025-26664

    Last Modified: 13 Feb 2026

    Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.

    Published: 8 Apr 2025
    8.1
    High

    CVE-2025-26663

    Last Modified: 13 Feb 2026

    Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.

    Published: 8 Apr 2025
    4.3
    Medium

    CVE-2025-32279

    Last Modified: 23 Apr 2026

    Missing Authorization vulnerability in Shahjada Live Forms liveforms.This issue affects Live Forms: from n/a through <= 4.8.5.

    Published: 8 Apr 2025
    6.5
    Medium

    CVE-2025-32211

    Last Modified: 23 Apr 2026

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Broadstreet Broadstreet Ads broadstreet allows Stored XSS.This issue affects Broadstreet Ads: from n/a through <= 1.52.1.

    Published: 8 Apr 2025
    6.5
    Medium

    CVE-2025-32164

    Last Modified: 23 Apr 2026

    Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in maennchen1.de m1.DownloadList m1downloadlist allows Retrieve Embedded Sensitive Data.This issue affects m1.DownloadList: from n/a through <= 0.24.

    Published: 8 Apr 2025
    7.1
    High

    CVE-2025-32117

    Last Modified: 23 Apr 2026

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in OTWthemes Widgetize Pages Light widgetize-pages-light allows Reflected XSS.This issue affects Widgetize Pages Light: from n/a through <= 3.0.

    Published: 8 Apr 2025
    4.9
    Medium

    CVE-2024-52981

    Last Modified: 2 Oct 2025

    An issue was discovered in Elasticsearch, where a large recursion using the Well-KnownText formatted string with nested GeometryCollection objects could cause a stackoverflow.

    Published: 8 Apr 2025
    9.8
    Critical

    CVE-2024-48887

    Last Modified: 26 Feb 2026

    A unverified password change vulnerability in Fortinet FortiSwitch GUI may allow a remote unauthenticated attacker to change admin passwords via a specially crafted request

    Published: 8 Apr 2025
    6.5
    Medium

    CVE-2024-52974

    Last Modified: 30 Sept 2025

    An issue has been identified where a specially crafted request sent to an Observability API could cause the kibana server to crash. A successful attack requires a malicious user to have read permissions for Observability assigned to them.

    Published: 8 Apr 2025
    6.5
    Medium

    CVE-2024-52980

    Last Modified: 30 Sept 2025

    A flaw was discovered in Elasticsearch, where a large recursion using the innerForbidCircularReferences function of the PatternBank class could cause the Elasticsearch node to crash. A successful attack requires a malicious user to have read_pipeline Elasticsearch cluster privilege assigned to them.

    Published: 8 Apr 2025
    5.4
    Medium

    CVE-2025-27084

    Last Modified: 12 Nov 2025

    A vulnerability in the Captive Portal of an AOS-10 GW and AOS-8 Controller/Mobility Conductor could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack. Successful exploitation could enable the attacker to execute arbitrary script code in the victim's browser within the context of the affected interface.

    Published: 8 Apr 2025
    4.9
    Medium

    CVE-2025-27085

    Last Modified: 12 Nov 2025

    Multiple vulnerabilities exist in the web-based management interface of AOS-10 GW and AOS-8 Controller/Mobility Conductor. Successful exploitation of these vulnerabilities could allow an authenticated, remote attacker to download arbitrary files from the filesystem of an affected device.

    Published: 8 Apr 2025
    7.2
    High

    CVE-2025-27083

    Last Modified: 12 Nov 2025

    Authenticated command injection vulnerabilities exist in the AOS-10 GW and AOS-8 Controller/Mobility Conductor web-based management interface. Successful exploitation of these vulnerabilities allows an Authenticated attacker to execute arbitrary commands as a privileged user on the underlying operating system.

    Published: 8 Apr 2025
    9.8
    Critical

    CVE-2025-25226

    Last Modified: 4 Jun 2025

    Improper handling of identifiers lead to a SQL injection vulnerability in the quoteNameStr method of the database package. Please note: the affected method is a protected method. It has no usages in the original packages in neither the 2.x nor 3.x branch and therefore the vulnerability in question can not be exploited when using the original database class. However, classes extending the affected class might be affected, if the vulnerable method is used.

    Published: 8 Apr 2025
    7.5
    High

    CVE-2025-25227

    Last Modified: 4 Jun 2025

    Insufficient state checks lead to a vector that allows to bypass 2FA checks.

    Published: 8 Apr 2025
    7.2
    High

    CVE-2025-27082

    Last Modified: 26 Feb 2026

    Arbitrary File Write vulnerabilities exist in the web-based management interface of both the AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an Authenticated attacker to upload arbitrary files and execute arbitrary commands on the underlying host operating system.

    Published: 8 Apr 2025
    6.5
    Medium

    CVE-2025-30671

    Last Modified: 1 Aug 2025

    Null pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.

    Published: 8 Apr 2025
    6.5
    Medium

    CVE-2025-30670

    Last Modified: 1 Aug 2025

    Null pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.

    Published: 8 Apr 2025
    2.8
    Low

    CVE-2025-27443

    Last Modified: 1 Aug 2025

    Insecure default variable initialization in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a loss of integrity via local access.

    Published: 8 Apr 2025
    4.6
    Medium

    CVE-2025-27442

    Last Modified: 15 May 2026

    Cross site scripting in some Zoom Workplace Apps may allow an unauthenticated user to conduct a loss of integrity via adjacent network access.

    Published: 8 Apr 2025
    4.6
    Medium

    CVE-2025-27441

    Last Modified: 15 May 2026

    Cross site scripting in some Zoom Workplace Apps may allow an unauthenticated user to conduct a loss of integrity via adjacent network access.

    Published: 8 Apr 2025
    9.9
    Critical

    CVE-2025-32028

    Last Modified: 30 Jul 2025

    HAX CMS PHP allows you to manage your microsite universe with PHP backend. Multiple file upload functions within the HAX CMS PHP application call a ’save’ function in ’HAXCMSFile.php’. This save function uses a denylist to block specific file types from being uploaded to the server. This list is non-exhaustive and only blocks ’.php’, ’.sh’, ’.js’, and ’.css’ files. The existing logic causes the system to "fail open" rather than "fail closed." This vulnerability is fixed in 10.0.3.

    Published: 8 Apr 2025
    7.5
    High

    CVE-2025-26682

    Last Modified: 13 Feb 2026

    Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.

    Published: 8 Apr 2025
    6
    Medium

    CVE-2025-27079

    Last Modified: 15 Apr 2026

    A vulnerability in the file creation process on the command line interface of AOS-8 Instant and AOS-10 AP could allow an authenticated remote attacker to perform remote code execution (RCE). Successful exploitation could allow an attacker to execute arbitrary operating system commands on the underlying operating system leading to potential system compromise.

    Published: 8 Apr 2025
    6.5
    Medium

    CVE-2025-27078

    Last Modified: 15 Apr 2026

    A vulnerability in a system binary of AOS-8 Instant and AOS-10 AP could allow an authenticated remote attacker to inject commands into the underlying operating system while using the CLI. Successful exploitation could lead to complete system compromise.

    Published: 8 Apr 2025
    8
    High

    CVE-2025-32018

    Last Modified: 15 Apr 2026

    Cursor is a code editor built for programming with AI. In versions 0.45.0 through 0.48.6, the Cursor app introduced a regression affecting the set of file paths the Cursor Agent is permitted to modify automatically. Under specific conditions, the agent could be prompted, either directly by the user or via maliciously crafted context, to automatically write to files outside of the opened workspace. This behavior required deliberate prompting, making successful exploitation highly impractical in real-world scenarios. Furthermore, the edited file was still displayed in the UI as usual for user review, making it unlikely for the edit to go unnoticed by the user. This vulnerability is fixed in 0.48.7.

    Published: 8 Apr 2025
    8.8
    High

    CVE-2025-32017

    Last Modified: 22 Sept 2025

    Umbraco is a free and open source .NET content management system. Authenticated users to the Umbraco backoffice are able to craft management API request that exploit a path traversal vulnerability to upload files into a incorrect location. The issue affects Umbraco 14+ and is patched in 14.3.4 and 15.3.1.

    Published: 8 Apr 2025
    8.5
    High

    CVE-2025-3289

    Last Modified: 14 Jul 2025

    A local code execution vulnerability exists in the Rockwell Automation Arena® due to a stack-based memory buffer overflow. The flaw is result of improper validation of user-supplied data. If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.

    Published: 8 Apr 2025
    8.5
    High

    CVE-2025-3288

    Last Modified: 14 Jul 2025

    A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to read outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied data.  If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.

    Published: 8 Apr 2025
    8.5
    High

    CVE-2025-3287

    Last Modified: 14 Jul 2025

    A local code execution vulnerability exists in the Rockwell Automation Arena® due to a stack-based memory buffer overflow. The flaw is result of improper validation of user-supplied data. If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.

    Published: 8 Apr 2025
    8.5
    High

    CVE-2025-3286

    Last Modified: 14 Jul 2025

    A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to read outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied data.  If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.

    Published: 8 Apr 2025
    8.5
    High

    CVE-2025-3285

    Last Modified: 14 Jul 2025

    A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to read outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied data.  If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.

    Published: 8 Apr 2025
    8.5
    High

    CVE-2025-2829

    Last Modified: 14 Jul 2025

    A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to write outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied data.  If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.

    Published: 8 Apr 2025
    3.8
    Low

    CVE-2025-32026

    Last Modified: 15 Apr 2026

    Element Web is a Matrix web client built using the Matrix React SDK. Element Web, starting from version 1.11.16 up to version 1.11.96, can be configured to load Element Call from an external URL. Under certain conditions, the external page is able to get access to the media encryption keys used for an Element Call call. Version 1.11.97 fixes the problem.

    Published: 8 Apr 2025
    8.5
    High

    CVE-2025-2293

    Last Modified: 14 Jul 2025

    A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to write outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied data.  If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.

    Published: 8 Apr 2025
    8.5
    High

    CVE-2025-2288

    Last Modified: 14 Jul 2025

    A local code execution vulnerability exists in the Rockwell Automation Arena® due to a threat actor being able to write outside of the allocated memory buffer. The flaw is a result of improper validation of user-supplied data.  If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.

    Published: 8 Apr 2025
    8.5
    High

    CVE-2025-2287

    Last Modified: 14 Jul 2025

    A local code execution vulnerability exists in the Rockwell Automation Arena®  due to an uninitialized pointer. The flaw is result of improper validation of user-supplied data. If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.

    Published: 8 Apr 2025
    8.5
    High

    CVE-2025-2286

    Last Modified: 14 Jul 2025

    A local code execution vulnerability exists in the Rockwell Automation Arena®  due to an uninitialized pointer. The flaw is result of improper validation of user-supplied data. If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.

    Published: 8 Apr 2025
    8.5
    High

    CVE-2025-2285

    Last Modified: 14 Jul 2025

    A local code execution vulnerability exists in the Rockwell Automation Arena®  due to an uninitialized pointer. The flaw is result of improper validation of user-supplied data. If exploited a threat actor can disclose information and execute arbitrary code on the system. To exploit the vulnerability a legitimate user must open a malicious DOE file.

    Published: 8 Apr 2025
    6.9
    Medium

    CVE-2025-32025

    Last Modified: 15 Apr 2026

    bep/imagemeta is a Go library for reading EXIF, IPTC and XMP image meta data from JPEG, TIFF, PNG, and WebP files. The buffer created for parsing metadata for PNG and WebP images was only bounded by their input data type, which could lead to potentially large memory allocation, and unreasonably high for image metadata. Before v0.11.0, If you didn't trust the input images, this could be abused to construct denial-of-service attacks. v0.11.0 added a 10 MB upper limit.

    Published: 8 Apr 2025
    8.8
    High

    CVE-2025-1095

    Last Modified: 26 Feb 2026

    IBM Personal Communications v14 and v15 include a Windows service that is vulnerable to local privilege escalation (LPE). The vulnerability allows any interactively logged in users on the target computer to run commands with full privileges in the context of NT AUTHORITY\SYSTEM. This allows for a low privileged attacker to escalate their privileges. This vulnerability is due to an incomplete fix for CVE-2024-25029.

    Published: 8 Apr 2025