CVE-2025-47812
Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability - Active in CISA KEV catalog.
Critical vulnerabilities, curated daily for security professionals
See how vulnerabilities affect your specific environment
CRS uses the System Security Context Vector (SSCV) Framework v1.0 to adjust CVSS scores based on your system's exposure level, network position, and business criticality. Learn more about SSCV Framework
This curated brief highlights 15 critical vulnerabilities and 57 high-priority updates requiring immediate attention.
Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability - Active in CISA KEV catalog.
Fortinet FortiWeb SQL Injection Vulnerability - Active in CISA KEV catalog.
SysAid On-Prem Improper Restriction of XML External Entity Reference Vulnerability - Active in CISA KEV catalog.
SysAid On-Prem Improper Restriction of XML External Entity Reference Vulnerability - Active in CISA KEV catalog.
Google Chromium ANGLE and GPU Improper Input Validation Vulnerability - Active in CISA KEV catalog.
CrushFTP Unprotected Alternate Channel Vulnerability - Active in CISA KEV catalog.
PaperCut NG/MF Cross-Site Request Forgery (CSRF) Vulnerability - Active in CISA KEV catalog.
Cisco Identity Services Engine Injection Vulnerability - Active in CISA KEV catalog.
Cisco Identity Services Engine Injection Vulnerability - Active in CISA KEV catalog.
The Service Finder SMS System plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 2.0.0. This is due to the plugin not restricting use...
The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via authentication bypass in all versions up to, and including, 6.0. This is due to the plugin not properly valid...
Saurus CMS Community Edition since commit d886e5b0 (2010-04-23) is vulnerable to a SQL Injection vulnerability in the `prepareSearchQuery()` method in `FulltextSearch.class.php`. The application direc...
Institute-of-Current-Students 1.0 is vulnerable to Incorrect Access Control in the mydetailsstudent.php endpoint. The myds GET parameter accepts an email address as input and directly returns the corr...
A remote code execution (RCE) vulnerability exists in the ms-swift project version 3.3.0 due to unsafe deserialization in tests/run.py using yaml.load() from the PyYAML library (versions = 5.3.1). If ...
Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer man...
An access control issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to access the router's settings file and obtain potentially sensitive information from the curren...
Marvell QConvergeConsole compressConfigFiles Directory Traversal Information Disclosure and Denial-of-Service Vulnerability. This vulnerability allows remote attackers to disclose sensitive informatio...
The modelscope/ms-swift library thru 2.6.1 is vulnerable to arbitrary code execution through deserialization of untrusted data within the `load_model_meta()` function of the `ModelFileSystemCache()` c...
An OS command injection vulnerability exists in Russound MBX-PRE-D67F firmware version 3.1.6, allowing unauthenticated attackers to execute arbitrary commands as root via crafted input to the hostname...
An issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to execute arbitrary code via injecting a crafted payload into the ESSID name when creating a network.
GΓΌralp FMUS series seismic monitoring devicesΒ expose an unauthenticated Telnet-based command line interface that could allow an attacker to modify hardware configurations, manipulate data, or factor...
It was discovered that uscan, a tool to scan/watch upstream sources for new releases of software, included in devscripts (a collection of scripts to make the life of a Debian Package maintainer easier...
Insecure permissions in LangChain-ChatGLM-Webui commit ef829 allows attackers to arbitrarily view and download sensitive files via supplying a crafted request.
A privileged Vault operator within the root namespace with write permission to {{sys/audit}} may obtain code execution on the underlying host if a plugin directory is set in Vaultβs configuration. Fix...
The AI Engine plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the rest_simpleFileUpload() function in versions 2
The BerqWP β Automated All-In-One Page Speed Optimization for Core Web Vitals, Cache, CDN, Images, CSS, and JavaScript plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation via the store_javascript_cache
1Panel is a web interface and MCP Server that manages websites, files, containers, databases, and LLMs on a Linux server
A stored cross-site scripting (XSS) vulnerability exists in DevaslanPHP project-management v1
A carefully crafted request when creating a header link using the wiki markup syntax, which could allow the attacker to execute javascript in the victim's browser and get some sensitive information about the victim
php-jwt v6
A vulnerability has been found in PHPGurukul Boat Booking System 1
The NinjaScanner β Virus & Malware scan plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the 'nscan_ajax_quarantine' and 'nscan_quarantine_select' functions in all versions up to, and including, 3
The Photos, Files, YouTube, Twitter, Instagram, TikTok, Ecommerce Contest Gallery β Upload, Vote, Sell via PayPal or Stripe, Social Share Buttons, OpenAI plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the comment feature in all versions up to, and including, 26
Alpine iLX-507 Command Injection Remote Code Execution
Alpine iLX-507 vCard Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
Alpine iLX-507 AVRCP Stack-based Buffer Overflow Remote Code Execution Vulnerability
Alpine iLX-507 vCard Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
An unauthenticated remote attacker can cause a Denial of Service by sending a large number of requests to the http service on port 80
A high privileged remote attacker can execute arbitrary OS commands using an undocumented method allowing to escape the implemented LUA sandbox
ZXHN-F660T and ZXHN-F660A provided by ZTE Japan K
An issue was discovered in Archer Technology RSA Archer 6
An issue was discovered in CS Cart 4
CS Cart 4
A Broken Access Control vulnerability in MagnusBilling v7
uploadsm in ChargePoint Home Flex 5
A Stored Cross-Site Scripting (XSS) vulnerability in Microweber CMS 2
Microweber CMS 2
A flaw was found in the Linux kernel's ksmbd component
IBM Operational Decision Manager 8
A vulnerability was found in projectworlds Online Admission System 1
A vulnerability was found in code-projects Intern Membership Management System 1
A vulnerability has been found in Kehua Charging Pile Cloud Platform 1
A vulnerability has been found in code-projects Exam Form Submission 1
A vulnerability was found in code-projects Exam Form Submission 1
A vulnerability was found in code-projects Vehicle Management 1
A vulnerability was found in code-projects Vehicle Management 1
A vulnerability was found in code-projects Vehicle Management 1
A vulnerability classified as critical has been found in code-projects Vehicle Management 1
A vulnerability was found in Campcodes Online Hotel Reservation System 1
A vulnerability, which was classified as critical, has been found in code-projects Vehicle Management 1
A vulnerability, which was classified as critical, was found in code-projects Vehicle Management 1
ExaGrid EX10 6
A vulnerability has been found in code-projects Vehicle Management 1
A cross-site scripting (XSS) vulnerability in Intelbras RX1500 v2
A vulnerability was found in code-projects Online Movie Streaming 1
A vulnerability was found in code-projects Online Movie Streaming 1
A vulnerability was found in projectworlds Online Admission System 1
A vulnerability classified as critical has been found in code-projects Kitchen Treasure 1
A vulnerability classified as critical was found in code-projects Wazifa System 1
A vulnerability, which was classified as critical, has been found in code-projects Wazifa System 1
A vulnerability, which was classified as critical, was found in code-projects Online Medicine Guide 1
A vulnerability has been found in code-projects Online Medicine Guide 1
A vulnerability was found in code-projects Online Medicine Guide 1
Pearcleaner is a free, source-available and fair-code licensed mac app cleaner
A path traversal issue exists in backup and restore feature of multiple versions of PowerCMS
FreshRSS is a free, self-hostable RSS aggregator
A privileged Vault operator with write permissions to the root namespaceβs identity endpoint could escalate their own or another userβs token privileges to Vaultβs root policy
Alpine iLX-507 TIDAL Improper Certificate Validation Vulnerability
jwt v5
pyjwt v2
jose v6