Rosetta Intel
Datasets/KEV CatalogThreat Actors
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1676 entries·352 Ransomware·Updated 2026-08-25

1676 results·Page 6 / 34

CVE-2025-21043
2025-10-02
Samsung Mobile Devices Out-of-Bounds Write Vulnerability
Samsung

Samsung mobile devices contain an out-of-bounds write vulnerability in libimagecodec.quram.so which allows remote attackers to execute arbitrary code.

CWE-787 · Out-of-bounds write
Refssecurity.samsungmobile.comnvd.nist.gov
Federal remediation due 2025-10-23
CVE-2017-1000353
2025-10-02
Jenkins Remote Code Execution Vulnerability
Jenkins

Jenkins contains a remote code execution vulnerability. This vulnerability that could allowed attackers to transfer a serialized Java SignedObject object to the remoting-based Jenkins CLI, that would be deserialized using a new ObjectInputStream, bypassing the existing blocklist-based protection mechanism.

Refsjenkins.ionvd.nist.gov
Federal remediation due 2025-10-23
CVE-2015-7755
2025-10-02
Juniper ScreenOS Improper Authentication Vulnerability
Juniper

Juniper ScreenOS contains an improper authentication vulnerability that could allow unauthorized remote administrative access to the device.

CWE-287 · Improper authentication
Refssupportportal.juniper.netnvd.nist.gov
Federal remediation due 2025-10-23
CVE-2014-6278
2025-10-02
GNU Bash OS Command Injection Vulnerability
GNU

GNU Bash contains an OS command injection vulnerability which allows remote attackers to execute arbitrary commands via a crafted environment.

CWE-78 · OS command injection
RefsThis vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please seesupport.broadcom.comsec.cloudapps.cisco.comibm.comnvd.nist.gov
Federal remediation due 2025-10-23
CVE-2025-59689
2025-09-29
Libraesva Email Security Gateway Command Injection Vulnerability
Libraesva

Libraesva Email Security Gateway (ESG) contains a command injection vulnerability which allows command injection via a compressed e-mail attachment.

CWE-77 · Command injection
Refsdocs.libraesva.comnvd.nist.gov
Federal remediation due 2025-10-20
CVE-2025-32463
2025-09-29
Sudo Inclusion of Functionality from Untrusted Control Sphere Vulnerability
Sudo

Sudo contains an inclusion of functionality from untrusted control sphere vulnerability. This vulnerability could allow local attacker to leverage sudo’s -R (--chroot) option to run arbitrary commands as root, even if they are not listed in the sudoers file.

CWE-829
RefsThis vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please seenvd.nist.gov
Federal remediation due 2025-10-20
CVE-2025-20352
2025-09-29
Cisco IOS and IOS XE Software SNMP Denial of Service and Remote Code Execution Vulnerability
Cisco

Cisco IOS and IOS XE contains a stack-based buffer overflow vulnerability in the Simple Network Management Protocol (SNMP) subsystem that could allow for denial of service or remote code execution. A successful exploit could allow a low-privileged attacker to cause the affected system to reload, resulting in a DoS condition, or allow a high-privileged attacker to execute arbitrary code as the root user and obtain full control of the affected system.

CWE-121 · Stack buffer overflow
Refssec.cloudapps.cisco.comnvd.nist.gov
Federal remediation due 2025-10-20
CVE-2025-10035
2025-09-29
Fortra GoAnywhere MFT Deserialization of Untrusted Data VulnerabilityRansomware
Fortra

Fortra GoAnywhere MFT contains a deserialization of untrusted data vulnerability allows an actor with a validly forged license response signature to deserialize an arbitrary actor-controlled object, possibly leading to command injection.

CWE-502 · Deserialization of untrusted dataCWE-77 · Command injection
Refsfortra.comnvd.nist.gov
Federal remediation due 2025-10-20
CVE-2021-21311
2025-09-29
Adminer Server-Side Request Forgery Vulnerability
Adminer

Adminer contains a server-side request forgery vulnerability that, when exploited, allows a remote attacker to obtain potentially sensitive information.

CWE-918 · Server-side request forgery
Refsgithub.comnvd.nist.gov
Federal remediation due 2025-10-20
CVE-2025-20362
2025-09-25
Cisco Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Missing Authorization Vulnerability
Cisco / Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense

Cisco Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Software VPN Web Server contain a missing authorization vulnerability. This vulnerability could be chained with CVE-2025-20333.

CWE-862 · Missing authorization
RefsCISA Mitigation Instructionscisa.govcisa.govsec.cloudapps.cisco.comsec.cloudapps.cisco.comsec.cloudapps.cisco.com
CVE-2025-20333
2025-09-25
Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Buffer Overflow Vulnerability
Cisco / Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense

Cisco Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Software VPN Web Server contain a buffer overflow vulnerability that allows for remote code execution. This vulnerability could be chained with CVE-2025-20362.

CWE-120 · Classic buffer overflow
RefsCISA Mitigation Instructionscisa.govcisa.govsec.cloudapps.cisco.comsec.cloudapps.cisco.comsec.cloudapps.cisco.com
CVE-2025-10585
2025-09-23
Google Chromium V8 Type Confusion Vulnerability
Google

Google Chromium contains a type confusion vulnerability in the V8 JavaScript and WebAssembly engine.

CWE-843 · Type confusion
Refschromereleases.googleblog.comnvd.nist.gov
Federal remediation due 2025-10-14
CVE-2025-5086
2025-09-11
Dassault Systèmes DELMIA Apriso Deserialization of Untrusted Data Vulnerability
Dassault Systèmes

Dassault Systèmes DELMIA Apriso contains a deserialization of untrusted data vulnerability that could lead to a remote code execution.

CWE-502 · Deserialization of untrusted data
Refs3ds.comnvd.nist.gov
Federal remediation due 2025-10-02
CVE-2025-53690
2025-09-04
Sitecore Multiple Products Deserialization of Untrusted Data Vulnerability
Sitecore

Sitecore Experience Manager (XM), Experience Platform (XP), Experience Commerce (XC), and Managed Cloud contain a deserialization of untrusted data vulnerability involving the use of default machine keys. This flaw allows attackers to exploit exposed ASP.NET machine keys to achieve remote code execution.

CWE-502 · Deserialization of untrusted data
Refssupport.sitecore.comnvd.nist.gov
Federal remediation due 2025-09-25
CVE-2025-48543
2025-09-04
Android Runtime Use-After-Free Vulnerability
Android

Android Runtime contains a use-after-free vulnerability potentially allowing a chrome sandbox escape leading to local privilege escalation.

Refssource.android.comnvd.nist.gov
Federal remediation due 2025-09-25
CVE-2025-38352
2025-09-04
Linux Kernel Time-of-Check Time-of-Use (TOCTOU) Race Condition Vulnerability
Linux

Linux kernel contains a time-of-check time-of-use (TOCTOU) race condition vulnerability that has a high impact on confidentiality, integrity, and availability.

CWE-367
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. Please check with specific vendors for information on patching status. For more information, please seesource.android.comnvd.nist.gov
Federal remediation due 2025-09-25
CVE-2025-9377
2025-09-03
TP-Link Archer C7(EU) and TL-WR841N/ND(MS) OS Command Injection Vulnerability
TP-Link / Multiple Routers

TP-Link Archer C7(EU) and TL-WR841N/ND(MS) contain an OS command injection vulnerability that exists in the Parental Control page. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-78 · OS command injection
Refstp-link.comnvd.nist.gov
Federal remediation due 2025-09-24
CVE-2023-50224
2025-09-03
TP-Link TL-WR841N Authentication Bypass by Spoofing Vulnerability
TP-Link

TP-Link TL-WR841N contains an authentication bypass by spoofing vulnerability within the httpd service, which listens on TCP port 80 by default, leading to the disclose of stored credentials. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-290
Refstp-link.comnvd.nist.gov
Federal remediation due 2025-09-24
CVE-2025-55177
2025-09-02
Meta Platforms WhatsApp Incorrect Authorization Vulnerability
Meta Platforms

Meta Platforms WhatsApp contains an incorrect authorization vulnerability due to an incomplete authorization of linked device synchronization messages. This vulnerability could allow an unrelated user to trigger processing of content from an arbitrary URL on a target’s device.

CWE-863
Refswhatsapp.comnvd.nist.gov
Federal remediation due 2025-09-23
CVE-2020-24363
2025-09-02
TP-link TL-WA855RE Missing Authentication for Critical Function Vulnerability
TP-Link

TP-link TL-WA855RE contains a missing authentication for critical function vulnerability. This vulnerability could allow an unauthenticated attacker (on the same network) to submit a TDDP_RESET POST request for a factory reset and reboot. The attacker can then obtain incorrect access control by setting a new administrative password. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-306 · Missing authentication
Refstp-link.comtp-link.comnvd.nist.gov
Federal remediation due 2025-09-23
CVE-2025-57819
2025-08-29
Sangoma FreePBX Authentication Bypass Vulnerability
Sangoma

Sangoma FreePBX contains an authentication bypass vulnerability due to insufficiently sanitized user-supplied data allows unauthenticated access to FreePBX Administrator leading to arbitrary database manipulation and remote code execution.

CWE-89 · SQL injectionCWE-288 · Authentication bypass
Refsgithub.comnvd.nist.gov
Federal remediation due 2025-09-19
CVE-2025-7775
2025-08-26
Citrix NetScaler Memory Overflow Vulnerability
Citrix

Citrix NetScaler ADC and NetScaler Gateway contain a memory overflow vulnerability that could allow for remote code execution and/or denial of service.

CWE-119 · Memory buffer bounds
Refssupport.citrix.comnvd.nist.gov
Federal remediation due 2025-08-28
CVE-2025-48384
2025-08-25
Git Link Following Vulnerability
Git

Git contains a link following vulnerability that stems from Git’s inconsistent handling of carriage return characters in configuration files.

CWE-59 · Link followingCWE-436
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. For more information, please seeaccess.redhat.comalas.aws.amazon.comlinux.oracle.commsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-09-15
CVE-2024-8069
2025-08-25
Citrix Session Recording Deserialization of Untrusted Data Vulnerability
Citrix

Citrix Session Recording contains a deserialization of untrusted data vulnerability that allows limited remote code execution with privilege of a NetworkService Account access. Attacker must be an authenticated user on the same intranet as the session recording server.

CWE-502 · Deserialization of untrusted data
Refssupport.citrix.comnvd.nist.gov
Federal remediation due 2025-09-15
CVE-2024-8068
2025-08-25
Citrix Session Recording Improper Privilege Management Vulnerability
Citrix

Citrix Session Recording contains an improper privilege management vulnerability that could allow for privilege escalation to NetworkService Account access. An attacker must be an authenticated user in the same Windows Active Directory domain as the session recording server domain.

CWE-269 · Improper privilege management
Refssupport.citrix.comnvd.nist.gov
Federal remediation due 2025-09-15
CVE-2025-43300
2025-08-21
Apple iOS, iPadOS, and macOS Out-of-Bounds Write Vulnerability
Apple

Apple iOS, iPadOS, and macOS contain an out-of-bounds write vulnerability in the Image I/O framework.

CWE-787 · Out-of-bounds write
Refssupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comnvd.nist.gov
Federal remediation due 2025-09-11
CVE-2025-54948
2025-08-18
Trend Micro Apex One OS Command Injection Vulnerability
Trend Micro

Trend Micro Apex One Management Console (on-premise) contains an OS command injection vulnerability that could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations.

CWE-78 · OS command injection
Refssuccess.trendmicro.comnvd.nist.gov
Federal remediation due 2025-09-08
CVE-2025-8876
2025-08-13
N-able N-Central Command Injection Vulnerability
N-able

N-able N-Central contains a command injection vulnerability via improper sanitization of user input.

Refsstatus.n-able.comnvd.nist.gov
Federal remediation due 2025-08-20
CVE-2025-8875
2025-08-13
N-able N-Central Insecure Deserialization Vulnerability
N-able

N-able N-Central contains an insecure deserialization vulnerability that could lead to command execution.

Refsstatus.n-able.comnvd.nist.gov
Federal remediation due 2025-08-20
CVE-2025-8088
2025-08-12
RARLAB WinRAR Path Traversal VulnerabilityRansomware
RARLAB

RARLAB WinRAR contains a path traversal vulnerability affecting the Windows version of WinRAR. This vulnerability could allow an attacker to execute arbitrary code by crafting malicious archive files.

CWE-35
Refswin-rar.comnvd.nist.gov
Federal remediation due 2025-09-02
CVE-2013-3893
2025-08-12
Microsoft Internet Explorer Resource Management Errors Vulnerability
Microsoft

Microsoft Internet Explorer contains a memory corruption vulnerability that allows for remote code execution. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-399 · Resource management
Refslearn.microsoft.comnvd.nist.gov
Federal remediation due 2025-09-02
CVE-2007-0671
2025-08-12
Microsoft Office Excel Remote Code Execution Vulnerability
Microsoft

Microsoft Office Excel contains a remote code execution vulnerability that can be exploited when a specially crafted Excel file is opened. This malicious file could be delivered as an email attachment or hosted on a malicious website. An attacker could leverage this vulnerability by creating a specially crafted Excel file, which, when opened, allowing an attacker to execute remote code on the affected system.

Refslearn.microsoft.comnvd.nist.gov
Federal remediation due 2025-09-02
CVE-2022-40799
2025-08-05
D-Link DNR-322L Download of Code Without Integrity Check Vulnerability
D-Link

D-Link DNR-322L contains a download of code without integrity check vulnerability that could allow an authenticated attacker to execute OS level commands on the device. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-494
Refsdlink.comnvd.nist.gov
Federal remediation due 2025-08-26
CVE-2020-25079
2025-08-05
D-Link DCS-2530L and DCS-2670L Command Injection Vulnerability
D-Link / DCS-2530L and DCS-2670L Devices

D-Link DCS-2530L and DCS-2670L devices contains a command injection vulnerability in the cgi-bin/ddns_enc.cgi. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-77 · Command injection
Refssupport.dlink.comsupportannouncement.us.dlink.comnvd.nist.gov
Federal remediation due 2025-08-26
CVE-2020-25078
2025-08-05
D-Link DCS-2530L and DCS-2670L Devices Unspecified Vulnerability
D-Link

D-Link DCS-2530L and DCS-2670L devices contains an unspecified vulnerability that could allow for remote administrator password disclosure. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

Refssupport.dlink.comsupportannouncement.us.dlink.comnvd.nist.gov
Federal remediation due 2025-08-26
CVE-2025-20337
2025-07-28
Cisco Identity Services Engine Injection Vulnerability
Cisco

Cisco Identity Services Engine contains an injection vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC due to insufficient validation of user-supplied input allowing an attacker to exploit this vulnerability by submitting a crafted API request. Successful exploitation could allow an attacker to perform remote code execution and obtaining root privileges on an affected device.

CWE-74
Refssec.cloudapps.cisco.comnvd.nist.gov
Federal remediation due 2025-08-18
CVE-2025-20281
2025-07-28
Cisco Identity Services Engine Injection Vulnerability
Cisco

Cisco Identity Services Engine contains an injection vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC due to insufficient validation of user-supplied input allowing an attacker to exploit this vulnerability by submitting a crafted API request. Successful exploitation could allow an attacker to perform remote code execution and obtaining root privileges on an affected device.

CWE-74
Refssec.cloudapps.cisco.comnvd.nist.gov
Federal remediation due 2025-08-18
CVE-2023-2533
2025-07-28
PaperCut NG/MF Cross-Site Request Forgery (CSRF) Vulnerability
PaperCut

PaperCut NG/MF contains a cross-site request forgery (CSRF) vulnerability, which, under specific conditions, could potentially enable an attacker to alter security settings or execute arbitrary code.

CWE-352 · Cross-site request forgery
Refspapercut.comnvd.nist.gov
Federal remediation due 2025-08-18
CVE-2025-6558
2025-07-22
Google Chromium ANGLE and GPU Improper Input Validation Vulnerability
Google

Google Chromium contains an improper input validation vulnerability in ANGLE and GPU. This vulnerability could allow a remote attacker to potentially perform a sandbox escape via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-20 · Improper input validation
Refschromereleases.googleblog.comnvd.nist.gov
Federal remediation due 2025-08-12
CVE-2025-54309
2025-07-22
CrushFTP Unprotected Alternate Channel Vulnerability
CrushFTP

CrushFTP contains an unprotected alternate channel vulnerability. When the DMZ proxy feature is not used, mishandles AS2 validation and consequently allows remote attackers to obtain admin access via HTTPS.

CWE-420
Refscrushftp.comnvd.nist.gov
Federal remediation due 2025-08-12
CVE-2025-49706
2025-07-22
Microsoft SharePoint Improper Authentication VulnerabilityRansomware
Microsoft

Microsoft SharePoint contains an improper authentication vulnerability that allows an authorized attacker to perform spoofing over a network. Successfully exploitation could allow an attacker to view sensitive information and make some changes to disclosed information. This vulnerability could be chained with CVE-2025-49704. CVE-2025-53771 is a patch bypass for CVE-2025-49706, and the updates for CVE-2025-53771 include more robust protection than those for CVE-2025-49706.

CWE-287 · Improper authentication
RefsCISA Mitigation Instructionsmicrosoft.commsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-07-23
CVE-2025-49704
2025-07-22
Microsoft SharePoint Code Injection VulnerabilityRansomware
Microsoft

Microsoft SharePoint contains a code injection vulnerability that could allow an authorized attacker to execute code over a network. This vulnerability could be chained with CVE-2025-49706. CVE-2025-53770 is a patch bypass for CVE-2025-49704, and the updates for CVE-2025-53770 include more robust protection than those for CVE-2025-49704.

CWE-94 · Code injection
RefsCISA Mitigation Instructionsmicrosoft.commsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-07-23
CVE-2025-2776
2025-07-22
SysAid On-Prem Improper Restriction of XML External Entity Reference Vulnerability
SysAid

SysAid On-Prem contains an improper restriction of XML external entity reference vulnerability in the Server URL processing functionality, allowing for administrator account takeover and file read primitives.

CWE-611
Refsdocumentation.sysaid.comnvd.nist.gov
Federal remediation due 2025-08-12
CVE-2025-2775
2025-07-22
SysAid On-Prem Improper Restriction of XML External Entity Reference Vulnerability
SysAid

SysAid On-Prem contains an improper restriction of XML external entity reference vulnerability in the Checkin processing functionality, allowing for administrator account takeover and file read primitives.

CWE-611
Refsdocumentation.sysaid.comnvd.nist.gov
Federal remediation due 2025-08-12
CVE-2025-53770
2025-07-20
Microsoft SharePoint Deserialization of Untrusted Data VulnerabilityRansomware
Microsoft

Microsoft SharePoint Server on-premises contains a deserialization of untrusted data vulnerability that could allow an unauthorized attacker to execute code over a network. This vulnerability could be chained with CVE-2025-53771. CVE-2025-53770 is a patch bypass for CVE-2025-49704, and the updates for CVE-2025-53770 include more robust protection than those for CVE-2025-49704.

CWE-502 · Deserialization of untrusted data
RefsCISA Mitigation Instructionsmicrosoft.commsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-07-21
CVE-2025-25257
2025-07-18
Fortinet FortiWeb SQL Injection Vulnerability
Fortinet

Fortinet FortiWeb contains a SQL injection vulnerability that may allow an unauthenticated attacker to execute unauthorized SQL code or commands via crafted HTTP or HTTPs requests.

CWE-89 · SQL injection
Refsfortiguard.fortinet.comnvd.nist.gov
Federal remediation due 2025-08-08
CVE-2025-47812
2025-07-14
Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability
Wing FTP Server

Wing FTP Server contains an improper neutralization of null byte or NUL character vulnerability that can allow injection of arbitrary Lua code into user session files. This can be used to execute arbitrary system commands with the privileges of the FTP service (root or SYSTEM by default).

CWE-158
Refswftpserver.comnvd.nist.gov
Federal remediation due 2025-08-04
CVE-2025-5777
2025-07-10
Citrix NetScaler ADC and Gateway Out-of-Bounds Read VulnerabilityRansomware
Citrix

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

CWE-125 · Out-of-bounds read
Refssupport.citrix.comnvd.nist.gov
Federal remediation due 2025-07-11
CVE-2019-9621
2025-07-07
Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery (SSRF) Vulnerability
Synacor

Synacor Zimbra Collaboration Suite (ZCS) contains a server-side request forgery (SSRF) vulnerability via the ProxyServlet component.

CWE-918 · Server-side request forgeryCWE-807
Refswiki.zimbra.comwiki.zimbra.comnvd.nist.gov
Federal remediation due 2025-07-28
CVE-2019-5418
2025-07-07
Rails Ruby on Rails Path Traversal Vulnerability
Rails

Rails Ruby on Rails contains a path traversal vulnerability in Action View. Specially crafted accept headers in combination with calls to `render file:` can cause arbitrary files on the target server to be rendered, disclosing the file contents.

CWE-22 · Path traversal
Refsweb.archive.orgnvd.nist.gov
Federal remediation due 2025-07-28
Prev6 / 34Next
nvd.nist.gov
Federal remediation due 2025-09-26
nvd.nist.gov
Federal remediation due 2025-09-26