Rosetta Intel
Datasets/KEV CatalogThreat Actors
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1676 entries·352 Ransomware·Updated 2026-08-25

1676 results·Page 8 / 34

CVE-2025-42599
2025-04-28
Qualitia Active! Mail Stack-Based Buffer Overflow Vulnerability
Qualitia

Qualitia Active! Mail contains a stack-based buffer overflow vulnerability that allows a remote, unauthenticated attacker to execute arbitrary or trigger a denial-of-service via a specially crafted request.

CWE-121 · Stack buffer overflow
Refsqualitia.comnvd.nist.gov
Federal remediation due 2025-05-19
CVE-2025-3928
2025-04-28
Commvault Web Server Unspecified Vulnerability
Commvault

Commvault Web Server contains an unspecified vulnerability that allows a remote, authenticated attacker to create and execute webshells.

Refsdocumentation.commvault.comcommvault.comnvd.nist.gov
Federal remediation due 2025-05-19
CVE-2025-1976
2025-04-28
Broadcom Brocade Fabric OS Code Injection Vulnerability
Broadcom

Broadcom Brocade Fabric OS contains a code injection vulnerability that allows a local user with administrative privileges to execute arbitrary code with full root privileges.

CWE-94 · Code injection
Refssupport.broadcom.comnvd.nist.gov
Federal remediation due 2025-05-19
CVE-2025-31201
2025-04-17
Apple Multiple Products Arbitrary Read and Write Vulnerability
Apple

Apple iOS, iPadOS, macOS, and other Apple products contain an arbitrary read and write vulnerability that allows an attacker to bypass Pointer Authentication.

Refssupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comnvd.nist.gov
Federal remediation due 2025-05-08
CVE-2025-31200
2025-04-17
Apple Multiple Products Memory Corruption Vulnerability
Apple

Apple iOS, iPadOS, macOS, and other Apple products contain a memory corruption vulnerability that allows for code execution when processing an audio stream in a maliciously crafted media file.

Refssupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comnvd.nist.gov
Federal remediation due 2025-05-08
CVE-2025-24054
2025-04-17
Microsoft Windows NTLM Hash Disclosure Spoofing Vulnerability
Microsoft

Microsoft Windows NTLM contains an external control of file name or path vulnerability that allows an unauthorized attacker to perform spoofing over a network.

CWE-73
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-05-08
CVE-2021-20035
2025-04-16
SonicWall SMA100 Appliances OS Command Injection Vulnerability
SonicWall

SonicWall SMA100 appliances contain an OS command injection vulnerability in the management interface that allows a remote authenticated attacker to inject arbitrary commands as a 'nobody' user, which could potentially lead to code execution.

CWE-78 · OS command injection
Refspsirt.global.sonicwall.comnvd.nist.gov
Federal remediation due 2025-05-07
CVE-2024-53197
2025-04-09
Linux Kernel Out-of-Bounds Access Vulnerability
Linux

Linux Kernel contains an out-of-bounds access vulnerability in the USB-audio driver that allows an attacker with physical access to the system to use a malicious USB device to potentially manipulate system memory, escalate privileges, or execute arbitrary code.

CWE-787 · Out-of-bounds write
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. For more information, please seesource.android.comnvd.nist.gov
Federal remediation due 2025-04-30
CVE-2024-53150
2025-04-09
Linux Kernel Out-of-Bounds Read Vulnerability
Linux

Linux Kernel contains an out-of-bounds read vulnerability in the USB-audio driver that allows a local, privileged attacker to obtain potentially sensitive information.

CWE-125 · Out-of-bounds read
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. For more information, please seesource.android.comnvd.nist.gov
Federal remediation due 2025-04-30
CVE-2025-30406
2025-04-08
Gladinet CentreStack and Triofox Use of Hard-coded Cryptographic Key Vulnerability
Gladinet

Gladinet CentreStack and Triofox contains a use of hard-coded cryptographic key vulnerability in the way that the application manages keys used for ViewState integrity verification. Successful exploitation allows an attacker to forge ViewState payloads for server-side deserialization, allowing for remote code execution.

CWE-321
Refsgladinetsupport.s3.us-east-1.amazonaws.comgladinetsupport.s3.us-east-1.amazonaws.comnvd.nist.gov
Federal remediation due 2025-04-29
CVE-2025-29824
2025-04-08
Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free VulnerabilityRansomware
Microsoft

Microsoft Windows Common Log File System (CLFS) Driver contains a use-after-free vulnerability that allows an authorized attacker to elevate privileges locally.

CWE-416 · Use after free
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-04-29
CVE-2025-31161
2025-04-07
CrushFTP Authentication Bypass VulnerabilityRansomware
CrushFTP

CrushFTP contains an authentication bypass vulnerability in the HTTP authorization header that allows a remote unauthenticated attacker to authenticate to any known or guessable user account (e.g., crushadmin), potentially leading to a full compromise.

CWE-305
Refscrushftp.comnvd.nist.gov
Federal remediation due 2025-04-28
CVE-2025-22457
2025-04-04
Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow VulnerabilityRansomware
Ivanti

Ivanti Connect Secure, Policy Secure, and ZTA Gateways contains a stack-based buffer overflow vulnerability that allows a remote unauthenticated attacker to achieve remote code execution.

CWE-121 · Stack buffer overflow
RefsCISA Mitigation InstructionsAdditional Referencesnvd.nist.gov
Federal remediation due 2025-04-11
CVE-2025-24813
2025-04-01
Apache Tomcat Path Equivalence Vulnerability
Apache

Apache Tomcat contains a path equivalence vulnerability that allows a remote attacker to execute code, disclose information, or inject malicious content via a partial PUT request. This vulnerability can be chained with CVE‑2026‑34486.

CWE-44CWE-502 · Deserialization of untrusted data
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. Please check with specific vendors for information on patching status. For more information, please seenvd.nist.gov
Federal remediation due 2025-04-22
CVE-2024-20439
2025-03-31
Cisco Smart Licensing Utility Static Credential Vulnerability
Cisco

Cisco Smart Licensing Utility contains a static credential vulnerability that allows an unauthenticated, remote attacker to log in to an affected system and gain administrative credentials.

CWE-912
Refssec.cloudapps.cisco.comnvd.nist.gov
Federal remediation due 2025-04-21
CVE-2025-2783
2025-03-27
Google Chromium Mojo Sandbox Escape Vulnerability
Google

Google Chromium Mojo on Windows contains a sandbox escape vulnerability caused by a logic error, which results from an incorrect handle being provided in unspecified circumstances. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

Refschromereleases.googleblog.comnvd.nist.gov
Federal remediation due 2025-04-17
CVE-2019-9875
2025-03-26
Sitecore CMS and Experience Platform (XP) Deserialization Vulnerability
Sitecore

Sitecore CMS and Experience Platform (XP) contain a deserialization vulnerability in the Sitecore.Security.AntiCSRF module that allows an authenticated attacker to execute arbitrary code by sending a serialized .NET object in the HTTP POST parameter __CSRFTOKEN.

CWE-502 · Deserialization of untrusted data
Refssupport.sitecore.comnvd.nist.gov
Federal remediation due 2025-04-16
CVE-2019-9874
2025-03-26
Sitecore CMS and Experience Platform (XP) Deserialization Vulnerability
Sitecore

Sitecore CMS and Experience Platform (XP) contain a deserialization vulnerability in the Sitecore.Security.AntiCSRF module that allows an unauthenticated attacker to execute arbitrary code by sending a serialized .NET object in the HTTP POST parameter __CSRFTOKEN.

CWE-502 · Deserialization of untrusted data
Refssupport.sitecore.comnvd.nist.gov
Federal remediation due 2025-04-16
CVE-2025-30154
2025-03-24
reviewdog/action-setup GitHub Action Embedded Malicious Code Vulnerability
reviewdog

reviewdog action-setup GitHub Action contains an embedded malicious code vulnerability that dumps exposed secrets to Github Actions Workflow Logs.

CWE-506
RefsThis vulnerability affects a common open-source project, third-party library, or a protocol used by different products. For more information, please see: CISA Mitigation InstructionsAdditional Referencesnvd.nist.gov
Federal remediation due 2025-04-14
CVE-2025-1316
2025-03-19
Edimax IC-7100 IP Camera OS Command Injection Vulnerability
Edimax

Edimax IC-7100 IP camera contains an OS command injection vulnerability due to improper input sanitization that allows an attacker to achieve remote code execution via specially crafted requests. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-78 · OS command injection
Refsedimax.comnvd.nist.gov
Federal remediation due 2025-04-09
CVE-2024-48248
2025-03-19
NAKIVO Backup and Replication Absolute Path Traversal Vulnerability
NAKIVO

NAKIVO Backup and Replication contains an absolute path traversal vulnerability that enables an attacker to read arbitrary files.

CWE-36
Refshelpcenter.nakivo.comnvd.nist.gov
Federal remediation due 2025-04-09
CVE-2017-12637
2025-03-19
SAP NetWeaver Directory Traversal Vulnerability
SAP

SAP NetWeaver Application Server (AS) Java contains a directory traversal vulnerability in scheduler/ui/js/ffffffffbca41eb4/UIUtilJavaScriptJS that allows a remote attacker to read arbitrary files via a .. (dot dot) in the query string.

CWE-22 · Path traversal
RefsSAP users must have an account to log in and access the patchnvd.nist.gov
Federal remediation due 2025-04-09
CVE-2025-30066
2025-03-18
tj-actions/changed-files GitHub Action Embedded Malicious Code Vulnerability
tj-actions

tj-actions/changed-files GitHub Action contains an embedded malicious code vulnerability that allows a remote attacker to discover secrets by reading Github Actions Workflow Logs. These secrets may include, but are not limited to, valid AWS access keys, GitHub personal access tokens (PATs), npm tokens, and private RSA keys.

CWE-506
RefsThis vulnerability affects a common open-source project, third-party library, or a protocol used by different products. For more information, please see: CISA Mitigation InstructionsAdditional Referencesnvd.nist.gov
Federal remediation due 2025-04-08
CVE-2025-24472
2025-03-18
Fortinet FortiOS and FortiProxy Authentication Bypass VulnerabilityRansomware
Fortinet

Fortinet FortiOS and FortiProxy contain an authentication bypass vulnerability that allows a remote attacker to gain super-admin privileges via crafted CSF proxy requests.

CWE-288 · Authentication bypass
Refsfortiguard.fortinet.comnvd.nist.gov
Federal remediation due 2025-04-08
CVE-2025-24201
2025-03-13
Apple Multiple Products WebKit Out-of-Bounds Write Vulnerability
Apple

Apple iOS, iPadOS, macOS, and other Apple products contain an out-of-bounds write vulnerability in WebKit that may allow maliciously crafted web content to break out of Web Content sandbox. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

CWE-787 · Out-of-bounds write
Refssupport.apple.comsupport.apple.comsupport.apple.comsupport.apple.comnvd.nist.gov
Federal remediation due 2025-04-03
CVE-2025-21590
2025-03-13
Juniper Junos OS Improper Isolation or Compartmentalization Vulnerability
Juniper

Juniper Junos OS contains an improper isolation or compartmentalization vulnerability. This vulnerability could allows a local attacker with high privileges to inject arbitrary code.

CWE-653
Refssupportportal.juniper.netnvd.nist.gov
Federal remediation due 2025-04-03
CVE-2025-26633
2025-03-11
Microsoft Windows Management Console (MMC) Improper Neutralization VulnerabilityRansomware
Microsoft

Microsoft Windows Management Console (MMC) contains an improper neutralization vulnerability that allows an unauthorized attacker to bypass a security feature locally.

CWE-707
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-04-01
CVE-2025-24993
2025-03-11
Microsoft Windows NTFS Heap-Based Buffer Overflow Vulnerability
Microsoft

Microsoft Windows New Technology File System (NTFS) contains a heap-based buffer overflow vulnerability that allows an unauthorized attacker to execute code locally.

CWE-122 · Heap buffer overflow
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-04-01
CVE-2025-24991
2025-03-11
Microsoft Windows NTFS Out-Of-Bounds Read Vulnerability
Microsoft

Microsoft Windows New Technology File System (NTFS) contains an out-of-bounds read vulnerability that allows an authorized attacker to disclose information locally.

CWE-125 · Out-of-bounds read
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-04-01
CVE-2025-24985
2025-03-11
Microsoft Windows Fast FAT File System Driver Integer Overflow Vulnerability
Microsoft

Microsoft Windows Fast FAT File System Driver contains an integer overflow or wraparound vulnerability that allows an unauthorized attacker to execute code locally.

CWE-190 · Integer overflowCWE-122 · Heap buffer overflow
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-04-01
CVE-2025-24984
2025-03-11
Microsoft Windows NTFS Information Disclosure Vulnerability
Microsoft

Microsoft Windows New Technology File System (NTFS) contains an insertion of sensitive Information into log file vulnerability that allows an unauthorized attacker to disclose information with a physical attack. An attacker who successfully exploited this vulnerability could potentially read portions of heap memory.

CWE-532
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-04-01
CVE-2025-24983
2025-03-11
Microsoft Windows Win32k Use-After-Free Vulnerability
Microsoft

Microsoft Windows Win32 Kernel Subsystem contains a use-after-free vulnerability that allows an authorized attacker to elevate privileges locally.

CWE-416 · Use after free
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-04-01
CVE-2025-25181
2025-03-10
Advantive VeraCore SQL Injection Vulnerability
Advantive

Advantive VeraCore contains a SQL injection vulnerability in timeoutWarning.asp that allows a remote attacker to execute arbitrary SQL commands via the PmSess1 parameter.

CWE-89 · SQL injection
Refsadvantive.my.site.comnvd.nist.gov
Federal remediation due 2025-03-31
CVE-2024-57968
2025-03-10
Advantive VeraCore Unrestricted File Upload Vulnerability
Advantive

Advantive VeraCore contains an unrestricted file upload vulnerability that allows a remote unauthenticated attacker to upload files to unintended folders via upload.apsx.

CWE-434 · Unrestricted file upload
Refsadvantive.my.site.comnvd.nist.gov
Federal remediation due 2025-03-31
CVE-2024-13161
2025-03-10
Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability
Ivanti

Ivanti Endpoint Manager (EPM) contains an absolute path traversal vulnerability that allows a remote unauthenticated attacker to leak sensitive information.

CWE-36
Refsforums.ivanti.comnvd.nist.gov
Federal remediation due 2025-03-31
CVE-2024-13160
2025-03-10
Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability
Ivanti

Ivanti Endpoint Manager (EPM) contains an absolute path traversal vulnerability that allows a remote unauthenticated attacker to leak sensitive information.

CWE-36
Refsforums.ivanti.comnvd.nist.gov
Federal remediation due 2025-03-31
CVE-2024-13159
2025-03-10
Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability
Ivanti

Ivanti Endpoint Manager (EPM) contains an absolute path traversal vulnerability that allows a remote unauthenticated attacker to leak sensitive information.

CWE-36
Refsforums.ivanti.comnvd.nist.gov
Federal remediation due 2025-03-31
CVE-2025-22226
2025-03-04
VMware ESXi, Workstation, and Fusion Information Disclosure Vulnerability
VMware

VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. Successful exploitation allows an attacker with administrative privileges to a virtual machine to leak memory from the vmx process.

CWE-125 · Out-of-bounds read
Refssupport.broadcom.comnvd.nist.gov
Federal remediation due 2025-03-25
CVE-2025-22225
2025-03-04
VMware ESXi Arbitrary Write VulnerabilityRansomware
VMware

VMware ESXi contains an arbitrary write vulnerability. Successful exploitation allows an attacker with privileges within the VMX process to trigger an arbitrary kernel write leading to an escape of the sandbox.

CWE-123
Refssupport.broadcom.comnvd.nist.gov
Federal remediation due 2025-03-25
CVE-2025-22224
2025-03-04
VMware ESXi and Workstation TOCTOU Race Condition Vulnerability
VMware

VMware ESXi and Workstation contain a time-of-check time-of-use (TOCTOU) race condition vulnerability that leads to an out-of-bounds write. Successful exploitation enables an attacker with local administrative privileges on a virtual machine to execute code as the virtual machine's VMX process running on the host.

CWE-367
Refssupport.broadcom.comnvd.nist.gov
Federal remediation due 2025-03-25
CVE-2024-50302
2025-03-04
Linux Kernel Use of Uninitialized Resource Vulnerability
Linux

The Linux kernel contains a use of uninitialized resource vulnerability that allows an attacker to leak kernel memory via a specially crafted HID report.

CWE-908
RefsThis vulnerability affects a common open-source component, third-party library, or a protocol used by different products. For more information, please seesource.android.comnvd.nist.gov
Federal remediation due 2025-03-25
CVE-2024-4885
2025-03-03
Progress WhatsUp Gold Path Traversal Vulnerability
Progress

Progress WhatsUp Gold contains a path traversal vulnerability that allows an unauthenticated attacker to achieve remote code execution.

CWE-22 · Path traversal
Refscommunity.progress.comnvd.nist.gov
Federal remediation due 2025-03-24
CVE-2023-20118
2025-03-03
Cisco Small Business RV Series Routers Command Injection Vulnerability
Cisco

Multiple Cisco Small Business RV Series Routers contains a command injection vulnerability in the web-based management interface. Successful exploitation could allow an authenticated, remote attacker to gain root-level privileges and access unauthorized data.

CWE-77 · Command injection
Refssec.cloudapps.cisco.comnvd.nist.gov
Federal remediation due 2025-03-24
CVE-2022-43939
2025-03-03
Hitachi Vantara Pentaho BA Server Authorization Bypass Vulnerability
Hitachi Vantara / Pentaho Business Analytics (BA) Server

Hitachi Vantara Pentaho BA Server contains a use of non-canonical URL paths for authorization decisions vulnerability that enables an attacker to bypass authorization.

CWE-647
Refssupport.pentaho.comnvd.nist.gov
Federal remediation due 2025-03-24
CVE-2022-43769
2025-03-03
Hitachi Vantara Pentaho BA Server Special Element Injection Vulnerability
Hitachi Vantara / Pentaho Business Analytics (BA) Server

Hitachi Vantara Pentaho BA Server contains a special element injection vulnerability that allows an attacker to inject Spring templates into properties files, allowing for arbitrary command execution.

CWE-74
Refssupport.pentaho.comnvd.nist.gov
Federal remediation due 2025-03-24
CVE-2018-8639
2025-03-03
Microsoft Windows Win32k Improper Resource Shutdown or Release VulnerabilityRansomware
Microsoft

Microsoft Windows Win32k contains an improper resource shutdown or release vulnerability that allows for local, authenticated privilege escalation. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode.

CWE-404
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-03-24
CVE-2024-49035
2025-02-25
Microsoft Partner Center Improper Access Control Vulnerability
Microsoft

Microsoft Partner Center contains an improper access control vulnerability that allows an attacker to escalate privileges.

CWE-269 · Improper privilege management
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2025-03-18
CVE-2023-34192
2025-02-25
Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability
Synacor

Synacor Zimbra Collaboration Suite (ZCS) contains a cross-site scripting (XSS) vulnerability that allows a remote authenticated attacker to execute arbitrary code via a crafted script to the /h/autoSaveDraft function.

CWE-79 · Cross-site scripting
Refswiki.zimbra.comnvd.nist.gov
Federal remediation due 2025-03-18
CVE-2024-20953
2025-02-24
Oracle Agile Product Lifecycle Management (PLM) Deserialization Vulnerability
Oracle

Oracle Agile Product Lifecycle Management (PLM) contains a deserialization vulnerability that allows a low-privileged attacker with network access via HTTP to compromise the system.

CWE-502 · Deserialization of untrusted data
Refsoracle.comnvd.nist.gov
Federal remediation due 2025-03-17
CVE-2017-3066
2025-02-24
Adobe ColdFusion Deserialization Vulnerability
Adobe

Adobe ColdFusion contains a deserialization vulnerability in the Apache BlazeDS library that allows for arbitrary code execution.

CWE-502 · Deserialization of untrusted data
Refshelpx.adobe.comnvd.nist.gov
Federal remediation due 2025-03-17
Prev8 / 34Next