🛡️ CVE Vulnerability Database
CVE vulnerabilities with bilingual AI analysis tailored for Saudi Arabia
| CVE ID | Title / Description | Severity | CVSS | Status | Published |
|---|---|---|---|---|---|
| CVE-2025-64446 |
Fortinet FortiWeb Critical Path Traversal Vulnerability Enabling …
Fortinet FortiWeb Path Traversal Vulnerability — Fortinet FortiWeb contains a relative path traversa…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 14, 2025 |
| CVE-2025-62215 |
Microsoft Windows Kernel Race Condition Privilege Escalation Vuln…
Microsoft Windows Race Condition Vulnerability — Microsoft Windows Kernel contains a race condition …
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 12, 2025 |
| CVE-2025-9242 |
WatchGuard Firebox Out-of-Bounds Write Vulnerability Enabling Rem…
WatchGuard Firebox Out-of-Bounds Write Vulnerability — WatchGuard Firebox contains an out-of-bounds …
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 12, 2025 |
| CVE-2025-12480 |
Gladinet Triofox Improper Access Control Vulnerability (CVE-2025-…
Gladinet Triofox Improper Access Control Vulnerability — Gladinet Triofox contains an improper acces…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 12, 2025 |
| CVE-2025-21042 |
Samsung Mobile Devices Out-of-Bounds Write Vulnerability in libim…
Samsung Mobile Devices Out-of-Bounds Write Vulnerability — Samsung mobile devices contain an out-of-…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 10, 2025 |
| CVE-2025-48703 |
CWP Control Web Panel Critical OS Command Injection Vulnerability…
CWP Control Web Panel OS Command Injection Vulnerability — CWP Control Web Panel (formerly CentOS We…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 4, 2025 |
| CVE-2025-11371 |
Critical File Exposure Vulnerability in Gladinet CentreStack and …
Gladinet CentreStack and Triofox Files or Directories Accessible to External Parties Vulnerability —…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 4, 2025 |
| CVE-2025-41244 |
Broadcom VMware Aria Operations and VMware Tools Privilege Escala…
Broadcom VMware Aria Operations and VMware Tools Privilege Defined with Unsafe Actions Vulnerability…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 30, 2025 |
| CVE-2025-24893 |
XWiki Platform Eval Injection Vulnerability Enabling Remote Code …
XWiki Platform Eval Injection Vulnerability — XWiki Platform contains an eval injection vulnerabilit…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 30, 2025 |
| CVE-2025-6204 |
Dassault Systèmes DELMIA Apriso Critical Code Injection Vulnerabi…
Dassault Systèmes DELMIA Apriso Code Injection Vulnerability — Dassault Systèmes DELMIA Apriso conta…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 28, 2025 |
| CVE-2025-6205 |
Dassault Systèmes DELMIA Apriso Missing Authorization Vulnerabili…
Dassault Systèmes DELMIA Apriso Missing Authorization Vulnerability — Dassault Systèmes DELMIA Apris…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 28, 2025 |
| CVE-2025-54236 |
Adobe Commerce and Magento Improper Input Validation Vulnerabilit…
Adobe Commerce and Magento Improper Input Validation Vulnerability — Adobe Commerce and Magento Open…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 24, 2025 |
| CVE-2025-59287 |
Microsoft Windows Server Update Service (WSUS) Deserialization Re…
Microsoft Windows Server Update Service (WSUS) Deserialization of Untrusted Data Vulnerability — Mic…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 24, 2025 |
| CVE-2025-61932 |
Motex LANSCOPE Endpoint Manager Improper Verification of Source o…
Motex LANSCOPE Endpoint Manager Improper Verification of Source of a Communication Channel Vulnerabi…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 22, 2025 |
| CVE-2025-61884 |
Oracle E-Business Suite Server-Side Request Forgery (SSRF) Vulner…
Oracle E-Business Suite Server-Side Request Forgery (SSRF) Vulnerability — Oracle E-Business Suite c…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 20, 2025 |
| CVE-2022-48503 |
Apple Multiple Products JavaScriptCore Arbitrary Code Execution V…
Apple Multiple Products Unspecified Vulnerability — Apple macOS, iOS, tvOS, Safari, and watchOS cont…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 20, 2025 |
| CVE-2025-33073 |
Microsoft Windows SMB Client Improper Access Control Vulnerabilit…
Microsoft Windows SMB Client Improper Access Control Vulnerability — Microsoft Windows SMB Client co…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 20, 2025 |
| CVE-2025-2746 |
Critical Authentication Bypass Vulnerability in Kentico Xperience…
Kentico Xperience CMS Authentication Bypass Using an Alternate Path or Channel Vulnerability — Kenti…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 20, 2025 |
| CVE-2025-2747 |
Critical Authentication Bypass Vulnerability in Kentico Xperience…
Kentico Xperience CMS Authentication Bypass Using an Alternate Path or Channel Vulnerability — Kenti…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 20, 2025 |
| CVE-2025-54253 |
Adobe Experience Manager Forms Arbitrary Code Execution Vulnerabi…
Adobe Experience Manager Forms Code Execution Vulnerability — Adobe Experience Manager Forms in JEE …
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 15, 2025 |
| CVE-2025-59230 |
Microsoft Windows Remote Access Connection Manager Improper Acces…
Microsoft Windows Improper Access Control Vulnerability — Microsoft Windows contains an improper acc…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 14, 2025 |
| CVE-2025-47827 |
IGEL OS Secure Boot Bypass via Expired Cryptographic Key Verifica…
IGEL OS Use of a Key Past its Expiration Date Vulnerability — IGEL OS contains a use of a key past i…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 14, 2025 |
| CVE-2025-24990 |
Microsoft Windows Agere Modem Driver Untrusted Pointer Dereferenc…
Microsoft Windows Untrusted Pointer Dereference Vulnerability — Microsoft Windows Agere Modem Driver…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 14, 2025 |
| CVE-2016-7836 |
SKYSEA Client View Improper Authentication Vulnerability — SKYSEA…
SKYSEA Client View Improper Authentication Vulnerability — SKYSEA Client View contains an improper a…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 14, 2025 |
| CVE-2021-43798 |
Grafana Path Traversal Vulnerability — Grafana contains a path tr…
Grafana Path Traversal Vulnerability — Grafana contains a path traversal vulnerability that could al…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 9, 2025 |