Browse vulnerabilities
377,708 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2024-30051 | Act now | 5.6% | — | ● | Microsoft DWM Core Library contains a privilege escalation vulnerability that allows an at… |
| CVE-2022-32917 | Act now | 5.6% | — | ● | Apple kernel, which is included in iOS, iPadOS, and macOS, contains an unspecified vulnera… |
| CVE-2026-19490 | Act now | 5.6% | 9.8 | ● | Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: from 14.1 t… |
| CVE-2023-21823 | Act now | 5.6% | 7.8 | ● | Windows Graphics Component Remote Code Execution Vulnerability |
| CVE-2022-0492 | Act now | 5.5% | — | ● | Linux Kernel contains an improper authentication vulnerability which could allow for privi… |
| CVE-2021-27085 | Act now | 5.4% | 8.8 | ● | Internet Explorer Remote Code Execution Vulnerability |
| CVE-2020-17087 | Act now | 5.4% | — | ● | Microsoft Windows kernel contains an unspecified vulnerability that allows for privilege e… |
| CVE-2021-28664 | Act now | 5.4% | — | ● | Arm Mali Graphics Processing Unit (GPU) kernel driver contains an unspecified vulnerabilit… |
| CVE-2025-10585 | Act now | 5.4% | — | ● | Google Chromium contains a type confusion vulnerability in the V8 JavaScript and WebAssemb… |
| CVE-2017-12319 | Act now | 5.2% | — | ● | A vulnerability in the Border Gateway Protocol (BGP) over an Ethernet Virtual Private Netw… |
| CVE-2019-0863 | Act now | 5.2% | — | ● | Microsoft Windows Error Reporting (WER) contains a privilege escalation vulnerability due … |
| CVE-2021-30900 | Act now | 5.2% | — | ● | Apple GPU drivers, included in iOS, iPadOS, and macOS, contain an out-of-bounds write vuln… |
| CVE-2013-3993 | Act now | 5.2% | — | ● | Certain APIs within BigInsights can take invalid input that might allow attackers unauthor… |
| CVE-2026-20805 | Act now | 5.2% | 5.5 | ● | Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allo… |
| CVE-2015-6175 | Act now | 5.1% | — | ● | The kernel in Microsoft Windows contains a vulnerability that allows local users to gain p… |
| CVE-2026-25108 | Act now | 5.1% | — | ● | Soliton Systems K.K FileZen contains an OS command injection vulnerability when an user lo… |
| CVE-2026-21525 | Act now | 5.0% | — | ● | Microsoft Windows Remote Access Connection Manager contains a NULL pointer dereference tha… |
| CVE-2025-13223 | Act now | 5.0% | — | ● | Google Chromium V8 contains a type confusion vulnerability that allows for heap corruption… |
| CVE-2015-5287 | Act now | 5.0% | 7.8 | ● | The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows… |
| CVE-2021-36741 | Act now | 5.0% | — | ● | Trend Micro Apex One, Apex One as a Service, and Worry-Free Business Security contain an i… |
| CVE-2019-16256 | Act now | 4.9% | — | ● | SIMalliance Toolbox Browser contains an command injection vulnerability that could allow r… |
| CVE-2021-38000 | Act now | 4.9% | — | ● | Google Chromium Intents contains an improper input validation vulnerability that allows a … |
| CVE-2026-5281 | Act now | 4.9% | 8.8 | ● | Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker … |
| CVE-2018-0179 | Act now | 4.9% | — | ● | A vulnerability in the Login Enhancements (Login Block) feature of Cisco IOS Software coul… |
| CVE-2018-0180 | Act now | 4.9% | — | ● | A vulnerability in the Login Enhancements (Login Block) feature of Cisco IOS Software coul… |
| CVE-2025-47827 | Act now | 4.9% | — | ● | IGEL OS contains a use of a key past its expiration date vulnerability that allows for Sec… |
| CVE-2002-0367 | Act now | 4.9% | — | ● | smss.exe debugging subsystem in Microsoft Windows does not properly authenticate programs … |
| CVE-2009-1123 | Act now | 4.9% | — | ● | The kernel in Microsoft Windows does not properly validate changes to unspecified kernel o… |
| CVE-2004-1464 | Act now | 4.8% | — | ● | Cisco IOS contains an unspecified vulnerability that may block further telnet, reverse tel… |
| CVE-2023-41179 | Act now | 4.7% | — | ● | Trend Micro Apex One and Worry-Free Business Security contain an unspecified vulnerability… |
| CVE-2020-1631 | Act now | 4.7% | — | ● | A path traversal vulnerability in the HTTP/HTTPS service used by J-Web, Web Authentication… |
| CVE-2019-0543 | Act now | 4.7% | — | ● | A privilege escalation vulnerability exists when Windows improperly handles authentication… |
| CVE-2019-18988 | Act now | 4.7% | — | ● | TeamViewer Desktop allows for bypass of remote-login access control because the same AES k… |
| CVE-2012-0518 | Act now | 4.7% | — | ● | Unspecified vulnerability in the Oracle Application Server Single Sign-On component in Ora… |
| CVE-2026-83548 | Act now | 4.7% | 10.0 | ● | A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interfa… |
| CVE-2020-29574 | Act now | 4.7% | 9.8 | ● | An SQL injection vulnerability in the WebAdmin of Cyberoam OS through 2020-12-04 allows un… |
| CVE-2025-60710 | Act now | 4.6% | — | ● | Microsoft Windows contains a link following vulnerability that allows for privilege escala… |
| CVE-2019-7287 | Act now | 4.6% | — | ● | Apple iOS contains a memory corruption vulnerability which could allow an attacker to perf… |
| CVE-2020-1027 | Act now | 4.5% | — | ● | An elevation of privilege vulnerability exists in the way that the Windows Kernel handles … |
| CVE-2023-41991 | Act now | 4.5% | — | ● | Apple iOS, iPadOS, macOS, and watchOS contain an improper certificate validation vulnerabi… |
| CVE-2026-20045 | Act now | 4.5% | — | ● | Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Se… |
| CVE-2021-31979 | Act now | 4.5% | 7.8 | ● | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2022-2856 | Act now | 4.5% | — | ● | Google Chromium Intents contains an insufficient validation of untrusted input vulnerabili… |
| CVE-2025-54313 | Act now | 4.5% | — | ● | Prettier eslint-config-prettier contains an embedded malicious code vulnerability. Install… |
| CVE-2021-30661 | Act now | 4.5% | — | ● | Apple iOS, iPadOS, macOS, tvOS, watchOS, and Safari WebKit Storage contain a use-after-fre… |
| CVE-2023-46748 | Act now | 4.5% | — | ● | F5 BIG-IP Configuration utility contains an SQL injection vulnerability that may allow an … |
| CVE-2025-24200 | Act now | 4.5% | — | ● | Apple iOS and iPadOS contains an incorrect authorization vulnerability that allows a physi… |
| CVE-2020-2021 | Act now | 4.4% | — | ● | Palo Alto Networks PAN-OS contains a vulnerability in SAML which allows an attacker to byp… |
| CVE-2024-20399 | Act now | 4.3% | — | ● | Cisco NX-OS contains a command injection vulnerability in the command line interface (CLI)… |
| CVE-2025-55177 | Act now | 4.3% | — | ● | Meta Platforms WhatsApp contains an incorrect authorization vulnerability due to an incomp… |