Rosetta Intel
Datasets/KEV CatalogThreat Actors
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1676 entries·352 Ransomware·Updated 2026-08-25

1676 results·Page 7 / 34

CVE-2016-10033
2025-07-07
PHPMailer Command Injection Vulnerability
PHP

PHPMailer contains a command injection vulnerability because it fails to sanitize user-supplied input. Specifically, this issue affects the 'mail()' function of 'class.phpmailer.php' script. An attacker can exploit this issue to execute arbitrary code within the context of the application. Failed exploit attempts will result in a denial-of-service condition.

CWE-77 · Command injectionCWE-88
RefsThis vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please seegithub.comnvd.nist.gov
Federal remediation due 2025-07-28
CVE-2014-3931
2025-07-07
Multi-Router Looking Glass (MRLG) Buffer Overflow Vulnerability
Looking Glass

Multi-Router Looking Glass (MRLG) contains a buffer overflow vulnerability that could allow remote attackers to cause an arbitrary memory write and memory corruption.

CWE-119 · Memory buffer bounds
Refsmrlg.op-sec.usnvd.nist.gov
Federal remediation due 2025-07-28
CVE-2025-6554
2025-07-02
Google Chromium V8 Type Confusion Vulnerability
Google

Google Chromium V8 contains a type confusion vulnerability that could allow a remote attacker to perform arbitrary read/write via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-843 · Type confusion
Refschromereleases.googleblog.comnvd.nist.gov
Federal remediation due 2025-07-23
CVE-2025-48928
2025-07-01
TeleMessage TM SGNL Exposure of Core Dump File to an Unauthorized Control Sphere Vulnerability
TeleMessage

TeleMessage TM SGNL contains an exposure of core dump file to an unauthorized control sphere Vulnerability. This vulnerability is based on a JSP application in which the heap content is roughly equivalent to a "core dump" in which a password previously sent over HTTP would be included in this dump.

CWE-528
Refsnvd.nist.gov
Federal remediation due 2025-07-22
CVE-2025-48927
2025-07-01
TeleMessage TM SGNL Initialization of a Resource with an Insecure Default Vulnerability
TeleMessage

TeleMessage TM SGNL contains an initialization of a resource with an insecure default vulnerability. This vulnerability relies on how the Spring Boot Actuator is configured with an exposed heap dump endpoint at a /heapdump URI.

CWE-1188
Refsnvd.nist.gov
Federal remediation due 2025-07-22
CVE-2025-6543
2025-06-30
Citrix NetScaler ADC and Gateway Buffer Overflow Vulnerability
Citrix

Citrix NetScaler ADC and Gateway contain a buffer overflow vulnerability leading to unintended control flow and Denial of Service. NetScaler must be configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

CWE-119 · Memory buffer bounds
Refssupport.citrix.comnetscaler.comnvd.nist.gov
Federal remediation due 2025-07-21
CVE-2024-54085
2025-06-25
AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability
AMI

AMI MegaRAC SPx contains an authentication bypass by spoofing vulnerability in the Redfish Host Interface. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

CWE-290
RefsThis vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please seesecurity.netapp.comnvd.nist.gov
Federal remediation due 2025-07-16
CVE-2024-0769
2025-06-25
D-Link DIR-859 Router Path Traversal Vulnerability
D-Link

D-Link DIR-859 routers contain a path traversal vulnerability in the file /hedwig.cgi of the component HTTP POST Request Handler. Manipulation of the argument service with the input ../../../../htdocs/webinc/getcfg/DHCPS6.BRIDGE-1.xml allows for the leakage of session data potentially enabling privilege escalation and unauthorized control of the device. This vulnerability affects legacy D-Link products. All associated hardware revisions have reached their end-of-life (EOL) or end-of-service (EOS) life cycle and should be retired and replaced per vendor instructions.

CWE-22 · Path traversal
Refssupportannouncement.us.dlink.comnvd.nist.gov
Federal remediation due 2025-07-16
CVE-2019-6693
2025-06-25
Fortinet FortiOS Use of Hard-Coded Credentials VulnerabilityRansomware
Fortinet

Fortinet FortiOS contains a use of hard-coded credentials vulnerability that could allow an attacker to cipher sensitive data in FortiOS configuration backup file via knowledge of the hard-coded key.

CWE-798 · Hard-coded credentials
Refsfortiguard.comnvd.nist.gov
Federal remediation due 2025-07-16
CVE-2023-0386
2025-06-17
Linux Kernel Improper Ownership Management Vulnerability
Linux

Linux Kernel contains an improper ownership management vulnerability, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsystem in how a user copies a capable file from a nosuid mount into another mount. This uid mapping bug allows a local user to escalate their privileges on the system.

CWE-282
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. For more information, please seeaccess.redhat.comsecurity.netapp.comnvd.nist.gov
Federal remediation due 2025-07-08
CVE-2025-43200
2025-06-16
Apple Multiple Products Unspecified Vulnerability
Apple

Apple iOS, iPadOS, macOS, watchOS, and visionOS, contain an unspecified vulnerability when processing a maliciously crafted photo or video shared via an iCloud Link.

Refssupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comnvd.nist.gov
Federal remediation due 2025-07-07
CVE-2023-33538
2025-06-16
TP-Link Multiple Routers Command Injection Vulnerability
TP-Link

TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 contain a command injection vulnerability via the component /userRpm/WlanNetworkRpm. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-77 · Command injection
Refstp-link.comnvd.nist.gov
Federal remediation due 2025-07-07
CVE-2025-33053
2025-06-10
Microsoft Windows External Control of File Name or Path Vulnerability
Microsoft

Microsoft Windows contains an external control of file name or path vulnerability that could allow an attacker to execute code from a remote WebDAV location specified by the WorkingDirectory attribute of Internet Shortcut files.

CWE-73
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-07-01
CVE-2025-24016
2025-06-10
Wazuh Server Deserialization of Untrusted Data Vulnerability
Wazuh

Wazuh contains a deserialization of untrusted data vulnerability that allows for remote code execution on Wazuh servers.

CWE-502 · Deserialization of untrusted data
Refswazuh.comgithub.comnvd.nist.gov
Federal remediation due 2025-07-01
CVE-2025-32433
2025-06-09
Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability
Erlang

Erlang Erlang/OTP SSH server contains a missing authentication for critical function vulnerability. This could allow an attacker to execute arbitrary commands without valid credentials, potentially leading to unauthenticated remote code execution (RCE). By exploiting a flaw in how SSH protocol messages are handled, a malicious actor could gain unauthorized access to affected systems. This vulnerability could affect various products that implement Erlang/OTP SSH server, including—but not limited to—Cisco, NetApp, and SUSE.

CWE-306 · Missing authentication
RefsThis vulnerability affects a common open-source project, third-party library, or a protocol used by different products. For more information, please seesec.cloudapps.cisco.comnvd.nist.gov
Federal remediation due 2025-06-30
CVE-2024-42009
2025-06-09
RoundCube Webmail Cross-Site Scripting Vulnerability
Roundcube

RoundCube Webmail contains a cross-site scripting vulnerability. This vulnerability could allow a remote attacker to steal and send emails of a victim via a crafted e-mail message that abuses a Desanitization issue in message_body() in program/actions/mail/show.php.

CWE-79 · Cross-site scripting
Refsroundcube.netnvd.nist.gov
Federal remediation due 2025-06-30
CVE-2025-5419
2025-06-05
Google Chromium V8 Out-of-Bounds Read and Write Vulnerability
Google

Google Chromium V8 contains an out-of-bounds read and write vulnerability that could allow a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

CWE-125 · Out-of-bounds readCWE-787 · Out-of-bounds write
Refschromereleases.googleblog.comnvd.nist.gov
Federal remediation due 2025-06-26
CVE-2025-27038
2025-06-03
Qualcomm Multiple Chipsets Use-After-Free Vulnerability
Qualcomm

Multiple Qualcomm chipsets contain a use-after-free vulnerability. This vulnerability allows for memory corruption while rendering graphics using Adreno GPU drivers in Chrome.

CWE-416 · Use after free
RefsPlease check with specific vendors (OEMs,) for information on patching status. For more information, please seenvd.nist.gov
Federal remediation due 2025-06-24
CVE-2025-21480
2025-06-03
Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability
Qualcomm

Multiple Qualcomm chipsets contain an incorrect authorization vulnerability. This vulnerability allows for memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.

CWE-863
RefsPlease check with specific vendors (OEMs,) for information on patching status. For more information, please seenvd.nist.gov
Federal remediation due 2025-06-24
CVE-2025-21479
2025-06-03
Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability
Qualcomm

Multiple Qualcomm chipsets contain an incorrect authorization vulnerability. This vulnerability allows for memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.

CWE-863
RefsPlease check with specific vendors (OEMs,) for information on patching status. For more information, please seenvd.nist.gov
Federal remediation due 2025-06-24
CVE-2025-3935
2025-06-02
ConnectWise ScreenConnect Improper Authentication Vulnerability
ConnectWise

ConnectWise ScreenConnect contains an improper authentication vulnerability. This vulnerability could allow a ViewState code injection attack, which could allow remote code execution if machine keys are compromised.

CWE-287 · Improper authentication
Refsconnectwise.comnvd.nist.gov
Federal remediation due 2025-06-23
CVE-2025-35939
2025-06-02
Craft CMS External Control of Assumed-Immutable Web Parameter Vulnerability
Craft CMS

Craft CMS contains an external control of assumed-immutable web parameter vulnerability. This vulnerability could allow an unauthenticated client to introduce arbitrary values, such as PHP code, to a known local file location on the server. This vulnerability could be chained with CVE-2024-58136 as represented by CVE-2025-32432.

CWE-472
Refsgithub.comnvd.nist.gov
Federal remediation due 2025-06-23
CVE-2024-56145
2025-06-02
Craft CMS Code Injection Vulnerability
Craft CMS

Craft CMS contains a code injection vulnerability. Users with affected versions are vulnerable to remote code execution if their php.ini configuration has `register_argc_argv` enabled.

CWE-94 · Code injection
Refsgithub.comnvd.nist.gov
Federal remediation due 2025-06-23
CVE-2023-39780
2025-06-02
ASUS RT-AX55 Routers OS Command Injection Vulnerability
ASUS

ASUS RT-AX55 devices contain an OS command injection vulnerability that could allow a remote, authenticated attacker to execute arbitrary commands. As represented by CVE-2023-41346.

CWE-78 · OS command injection
Refsasus.comasus.comnvd.nist.gov
Federal remediation due 2025-06-23
CVE-2021-32030
2025-06-02
ASUS Routers Improper Authentication Vulnerability
ASUS

ASUS Lyra Mini and ASUS GT-AC2900 devices contain an improper authentication vulnerability that allows an attacker to gain unauthorized access to the administrative interface. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-287 · Improper authentication
Refsasus.comasus.comnvd.nist.gov
Federal remediation due 2025-06-23
CVE-2025-4632
2025-05-22
Samsung MagicINFO 9 Server Path Traversal Vulnerability
Samsung

Samsung MagicINFO 9 Server contains a path traversal vulnerability that allows an attacker to write arbitrary file as system authority.

CWE-22 · Path traversal
Refssecurity.samsungtv.comnvd.nist.gov
Federal remediation due 2025-06-12
CVE-2025-4428
2025-05-19
Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability
Ivanti

Ivanti Endpoint Manager Mobile (EPMM) contains a code injection vulnerability in the API component that allows an authenticated attacker to remotely execute arbitrary code via crafted API requests. This vulnerability results from an insecure implementation of the Hibernate Validator open-source library, as represented by CVE-2025-35036.

CWE-94 · Code injection
Refsforums.ivanti.comnvd.nist.gov
Federal remediation due 2025-06-09
CVE-2025-4427
2025-05-19
Ivanti Endpoint Manager Mobile (EPMM) Authentication Bypass Vulnerability
Ivanti

Ivanti Endpoint Manager Mobile (EPMM) contains an authentication bypass vulnerability in the API component that allows an attacker to access protected resources without proper credentials via crafted API requests. This vulnerability results from an insecure implementation of the Spring Framework open-source library.

CWE-288 · Authentication bypass
Refsforums.ivanti.comnvd.nist.gov
Federal remediation due 2025-06-09
CVE-2025-27920
2025-05-19
Srimax Output Messenger Directory Traversal Vulnerability
Srimax

Srimax Output Messenger contains a directory traversal vulnerability that allows an attacker to access sensitive files outside the intended directory, potentially leading to configuration leakage or arbitrary file access.

CWE-22 · Path traversal
Refsoutputmessenger.comnvd.nist.gov
Federal remediation due 2025-06-09
CVE-2024-27443
2025-05-19
Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability
Synacor

Zimbra Collaboration contains a cross-site scripting (XSS) vulnerability in the CalendarInvite feature of the Zimbra webmail classic user interface. An attacker can exploit this vulnerability via an email message containing a crafted calendar header, leading to the execution of arbitrary JavaScript code.

CWE-79 · Cross-site scripting
Refswiki.zimbra.comwiki.zimbra.comwiki.zimbra.comnvd.nist.gov
Federal remediation due 2025-06-09
CVE-2024-11182
2025-05-19
MDaemon Email Server Cross-Site Scripting (XSS) Vulnerability
MDaemon

MDaemon Email Server contains a cross-site scripting (XSS) vulnerability that allows a remote attacker to load arbitrary JavaScript code via an HTML e-mail message.

CWE-79 · Cross-site scripting
Refsfiles.mdaemon.commdaemon.comnvd.nist.gov
Federal remediation due 2025-06-09
CVE-2023-38950
2025-05-19
ZKTeco BioTime Path Traversal Vulnerability
ZKTeco

ZKTeco BioTime contains a path traversal vulnerability in the iclock API that allows an unauthenticated attacker to read arbitrary files via supplying a crafted payload.

CWE-22 · Path traversal
Refszkteco.comnvd.nist.gov
Federal remediation due 2025-06-09
CVE-2025-42999
2025-05-15
SAP NetWeaver Deserialization VulnerabilityRansomware
SAP

SAP NetWeaver Visual Composer Metadata Uploader contains a deserialization vulnerability that allows a privileged attacker to compromise the confidentiality, integrity, and availability of the host system by deserializing untrusted or malicious content.

CWE-502 · Deserialization of untrusted data
RefsSAP users must have an account to log in and access the patchnvd.nist.gov
Federal remediation due 2025-06-05
CVE-2024-12987
2025-05-15
DrayTek Vigor Routers OS Command Injection Vulnerability
DrayTek

DrayTek Vigor2960, Vigor300B, and Vigor3900 routers contain an OS command injection vulnerability due to an unknown function of the file /cgi-bin/mainfunction.cgi/apmcfgupload of the component web management interface.

CWE-78 · OS command injection
Refsfw.draytek.com.twfw.draytek.com.twfw.draytek.com.twnvd.nist.gov
Federal remediation due 2025-06-05
CVE-2025-32756
2025-05-14
Fortinet Multiple Products Stack-Based Buffer Overflow Vulnerability
Fortinet

Fortinet FortiFone, FortiVoice, FortiNDR and FortiMail contain a stack-based overflow vulnerability that may allow a remote unauthenticated attacker to execute arbitrary code or commands via crafted HTTP requests.

CWE-124
Refsfortiguard.fortinet.comnvd.nist.gov
Federal remediation due 2025-06-04
CVE-2025-32709
2025-05-13
Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability
Microsoft

Microsoft Windows Ancillary Function Driver for WinSock contains a use-after-free vulnerability that allows an authorized attacker to escalate privileges to administrator.

CWE-416 · Use after free
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-06-03
CVE-2025-32706
2025-05-13
Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability
Microsoft

Microsoft Windows Common Log File System (CLFS) Driver contains a heap-based buffer overflow vulnerability that allows an authorized attacker to elevate privileges locally.

CWE-122 · Heap buffer overflow
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-06-03
CVE-2025-32701
2025-05-13
Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free Vulnerability
Microsoft

Microsoft Windows Common Log File System (CLFS) Driver contains a use-after-free vulnerability that allows an authorized attacker to elevate privileges locally.

CWE-416 · Use after free
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-06-03
CVE-2025-30400
2025-05-13
Microsoft Windows DWM Core Library Use-After-Free Vulnerability
Microsoft

Microsoft Windows DWM Core Library contains a use-after-free vulnerability that allows an authorized attacker to elevate privileges locally.

CWE-416 · Use after free
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-06-03
CVE-2025-30397
2025-05-13
Microsoft Windows Scripting Engine Type Confusion Vulnerability
Microsoft

Microsoft Windows Scripting Engine contains a type confusion vulnerability that allows an unauthorized attacker to execute code over a network via a specially crafted URL.

CWE-843 · Type confusion
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-06-03
CVE-2025-47729
2025-05-12
TeleMessage TM SGNL Hidden Functionality Vulnerability
TeleMessage

TeleMessage TM SGNL contains a hidden functionality vulnerability in which the archiving backend holds cleartext copies of messages from TM SGNL application users.

CWE-912
Refsnvd.nist.gov
Federal remediation due 2025-06-02
CVE-2024-6047
2025-05-07
GeoVision Devices OS Command Injection Vulnerability
GeoVision / Multiple Devices

Multiple GeoVision devices contain an OS command injection vulnerability that allows a remote, unauthenticated attacker to inject and execute arbitrary system commands. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-78 · OS command injection
Refsdlcdn.geovision.com.twnvd.nist.gov
Federal remediation due 2025-05-28
CVE-2024-11120
2025-05-07
GeoVision Devices OS Command Injection Vulnerability
GeoVision / Multiple Devices

Multiple GeoVision devices contain an OS command injection vulnerability that allows a remote, unauthenticated attacker to inject and execute arbitrary system commands. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-78 · OS command injection
Refsdlcdn.geovision.com.twnvd.nist.gov
Federal remediation due 2025-05-28
CVE-2025-27363
2025-05-06
FreeType Out-of-Bounds Write Vulnerability
FreeType

FreeType contains an out-of-bounds write vulnerability when attempting to parse font subglyph structures related to TrueType GX and variable font files that may allow for arbitrary code execution.

CWE-787 · Out-of-bounds write
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. Please check with specific vendors for information on patching status. For more information, please seenvd.nist.gov
Federal remediation due 2025-05-27
CVE-2025-3248
2025-05-05
Langflow Missing Authentication VulnerabilityRansomware
Langflow

Langflow contains a missing authentication vulnerability in the /api/v1/validate/code endpoint that allows a remote, unauthenticated attacker to execute arbitrary code via crafted HTTP requests.

CWE-306 · Missing authentication
RefsThis vulnerability affects a common open-source project, third-party library, or a protocol used by different products. For more information, please seenvd.nist.gov
Federal remediation due 2025-05-26
CVE-2025-34028
2025-05-02
Commvault Command Center Path Traversal Vulnerability
Commvault

Commvault Command Center contains a path traversal vulnerability that allows a remote, unauthenticated attacker to execute arbitrary code.

CWE-22 · Path traversal
Refsdocumentation.commvault.comnvd.nist.gov
Federal remediation due 2025-05-23
CVE-2024-58136
2025-05-02
Yiiframework Yii Improper Protection of Alternate Path Vulnerability
Yiiframework

Yii Framework contains an improper protection of alternate path vulnerability that may allow a remote attacker to execute arbitrary code. This vulnerability could affect other products that implement Yii, including—but not limited to—Craft CMS, as represented by CVE-2025-32432.

CWE-424
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. For more information, please seenvd.nist.gov
Federal remediation due 2025-05-23
CVE-2024-38475
2025-05-01
Apache HTTP Server Improper Escaping of Output Vulnerability
Apache

Apache HTTP Server contains an improper escaping of output vulnerability in mod_rewrite that allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not intentionally/directly reachable by any URL, resulting in code execution or source code disclosure.

CWE-116
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. Please check with specific vendors for information on patching status. For more information, please seenvd.nist.gov
Federal remediation due 2025-05-22
CVE-2023-44221
2025-05-01
SonicWall SMA100 Appliances OS Command Injection Vulnerability
SonicWall

SonicWall SMA100 appliances contain an OS command injection vulnerability in the SSL-VPN management interface that allows a remote, authenticated attacker with administrative privilege to inject arbitrary commands as a 'nobody' user.

CWE-78 · OS command injection
Refspsirt.global.sonicwall.comnvd.nist.gov
Federal remediation due 2025-05-22
CVE-2025-31324
2025-04-29
SAP NetWeaver Unrestricted File Upload VulnerabilityRansomware
SAP

SAP NetWeaver Visual Composer Metadata Uploader contains an unrestricted file upload vulnerability that allows an unauthenticated agent to upload potentially malicious executable binaries.

CWE-434 · Unrestricted file upload
Refsme.sap.comnvd.nist.gov
Federal remediation due 2025-05-20
Prev7 / 34Next