🛡️ CVE Intelligence Center
Common Vulnerabilities & Exposures — Security Intelligence Database
| CVE ID | Severity | CVSS | Description | Status | Published |
|---|---|---|---|---|---|
| CVE-2025-32433 | Critical | 9.0 |
Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability — Erlang Erlang/OTP SSH server c…
|
⚡ Exploit ✅ Patch | Jun 9, 2025 |
| CVE-2025-5419 | Critical | 9.0 |
Google Chromium V8 Out-of-Bounds Read and Write Vulnerability — Google Chromium V8 contains an out-of-bounds read and wr…
|
⚡ Exploit ✅ Patch | Jun 5, 2025 |
| CVE-2025-27038 | Critical | 9.0 |
Qualcomm Multiple Chipsets Use-After-Free Vulnerability — Multiple Qualcomm chipsets contain a use-after-free vulnerabil…
|
⚡ Exploit ✅ Patch | Jun 3, 2025 |
| CVE-2025-21479 | Critical | 9.0 |
Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability — Multiple Qualcomm chipsets contain an incorrect autho…
|
⚡ Exploit ✅ Patch | Jun 3, 2025 |
| CVE-2025-21480 | Critical | 9.0 |
Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability — Multiple Qualcomm chipsets contain an incorrect autho…
|
⚡ Exploit ✅ Patch | Jun 3, 2025 |
| CVE-2025-35939 | Critical | 9.0 |
Craft CMS External Control of Assumed-Immutable Web Parameter Vulnerability — Craft CMS contains an external control of …
|
⚡ Exploit ✅ Patch | Jun 2, 2025 |
| CVE-2023-39780 | Critical | 9.0 |
ASUS RT-AX55 Routers OS Command Injection Vulnerability — ASUS RT-AX55 devices contain an OS command injection vulnerabi…
|
⚡ Exploit ✅ Patch | Jun 2, 2025 |
| CVE-2025-3935 | Critical | 9.0 |
ConnectWise ScreenConnect Improper Authentication Vulnerability — ConnectWise ScreenConnect contains an improper authent…
|
⚡ Exploit ✅ Patch | Jun 2, 2025 |
| CVE-2021-32030 | Critical | 9.0 |
ASUS Routers Improper Authentication Vulnerability — ASUS Lyra Mini and ASUS GT-AC2900 devices contain an improper authe…
|
⚡ Exploit ✅ Patch | Jun 2, 2025 |
| CVE-2024-56145 | Critical | 9.0 |
Craft CMS Code Injection Vulnerability — Craft CMS contains a code injection vulnerability. Users with affected versions…
|
⚡ Exploit ✅ Patch | Jun 2, 2025 |
| CVE-2025-4632 | Critical | 9.0 |
Samsung MagicINFO 9 Server Path Traversal Vulnerability — Samsung MagicINFO 9 Server contains a path traversal vulnerabi…
|
⚡ Exploit ✅ Patch | May 22, 2025 |
| CVE-2023-38950 | Critical | 9.0 |
ZKTeco BioTime Path Traversal Vulnerability — ZKTeco BioTime contains a path traversal vulnerability in the iclock API t…
|
⚡ Exploit ✅ Patch | May 19, 2025 |
| CVE-2024-11182 | Critical | 9.0 |
MDaemon Email Server Cross-Site Scripting (XSS) Vulnerability — MDaemon Email Server contains a cross-site scripting (XS…
|
⚡ Exploit ✅ Patch | May 19, 2025 |
| CVE-2025-4427 | Critical | 9.0 |
Ivanti Endpoint Manager Mobile (EPMM) Authentication Bypass Vulnerability — Ivanti Endpoint Manager Mobile (EPMM) contai…
|
⚡ Exploit ✅ Patch | May 19, 2025 |
| CVE-2025-4428 | Critical | 9.0 |
Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability — Ivanti Endpoint Manager Mobile (EPMM) contains a co…
|
⚡ Exploit ✅ Patch | May 19, 2025 |
| CVE-2025-27920 | Critical | 9.0 |
Srimax Output Messenger Directory Traversal Vulnerability — Srimax Output Messenger contains a directory traversal vulne…
|
⚡ Exploit ✅ Patch | May 19, 2025 |
| CVE-2024-27443 | Critical | 9.0 |
Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability — Zimbra Collaboration contains a cros…
|
⚡ Exploit ✅ Patch | May 19, 2025 |
| CVE-2025-42999 | Critical | 9.0 |
SAP NetWeaver Deserialization Vulnerability — SAP NetWeaver Visual Composer Metadata Uploader contains a deserialization…
|
⚡ Exploit ✅ Patch | May 15, 2025 |
| CVE-2024-12987 | Critical | 9.0 |
DrayTek Vigor Routers OS Command Injection Vulnerability — DrayTek Vigor2960, Vigor300B, and Vigor3900 routers contain a…
|
⚡ Exploit ✅ Patch | May 15, 2025 |
| CVE-2025-32756 | Critical | 9.0 |
Fortinet Multiple Products Stack-Based Buffer Overflow Vulnerability — Fortinet FortiFone, FortiVoice, FortiNDR and Fort…
|
⚡ Exploit ✅ Patch | May 14, 2025 |