Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2015-0320

    Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability... Read more

    • EPSS Score: %6.84
    • Published: Feb. 06, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2008-7252

    libraries/File.class.php in phpMyAdmin 2.11.x before 2.11.10 uses predictable filenames for temporary files, which has unknown impact and attack vectors.... Read more

    Affected Products : phpmyadmin
    • EPSS Score: %3.14
    • Published: Jan. 19, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2015-0310

    Adobe Flash Player before 13.0.0.262 and 14.x through 16.x before 16.0.0.287 on Windows and OS X and before 11.2.202.438 on Linux does not properly restrict discovery of memory addresses, which allows attackers to bypass the ASLR protection mechanism on W... Read more

    • Actively Exploited
    • EPSS Score: %40.55
    • Published: Jan. 23, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2015-0321

    Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a differ... Read more

    • EPSS Score: %11.43
    • Published: Feb. 06, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2015-0313

    Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in th... Read more

    • Actively Exploited
    • EPSS Score: %93.17
    • Published: Feb. 02, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2015-0303

    Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and before 11.2.202.429 on Linux, Adobe AIR before 16.0.0.245 on Windows and OS X and before 16.0.0.272 on Android, Adobe AIR SDK before 16.0.0.272, and Adobe... Read more

    • EPSS Score: %11.31
    • Published: Jan. 13, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    CRITICAL
    CVE-2024-31996

    XWiki Platform is a generic wiki platform. Starting in version 3.0.1 and prior to versions 4.10.19, 15.5.4, and 15.10-rc-1, the HTML escaping of escaping tool that is used in XWiki doesn't escape `{`, which, when used in certain places, allows XWiki synta... Read more

    Affected Products : xwiki
    • Published: Apr. 10, 2024
    • Modified: Jan. 09, 2025
  • 10.0

    HIGH
    CVE-2017-7827

    Memory safety bugs were reported in Firefox 56. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 57.... Read more

    Affected Products : firefox
    • EPSS Score: %2.65
    • Published: Jun. 11, 2018
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2015-7246

    D-Link DVG-N5402SP with firmware W1000CN-00, W1000CN-03, or W2000EN-00 has a default password of root for the root account and tw for the tw account, which makes it easier for remote attackers to obtain administrative access.... Read more

    Affected Products : dvg-n5402sp_firmware dvg-n5402sp
    • EPSS Score: %33.10
    • Published: Apr. 24, 2017
    • Modified: Apr. 20, 2025
  • 10.0

    HIGH
    CVE-2015-0316

    Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a differ... Read more

    • EPSS Score: %11.43
    • Published: Feb. 06, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2015-0324

    Buffer overflow in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code via unspecified vectors.... Read more

    • EPSS Score: %7.94
    • Published: Feb. 06, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2015-0346

    Double free vulnerability in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability th... Read more

    • EPSS Score: %6.60
    • Published: Apr. 14, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2015-0235

    Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code via vectors related to the (1) gethostbyname or (2) gethostbyname2 functio... Read more

    • EPSS Score: %83.84
    • Published: Jan. 28, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2009-0138

    servermgrd (Server Manager) in Apple Mac OS X 10.5.6 does not properly validate authentication credentials, which allows remote attackers to modify the system configuration.... Read more

    Affected Products : mac_os_x mac_os_x_server
    • EPSS Score: %2.50
    • Published: Feb. 13, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2015-0335

    Adobe Flash Player before 13.0.0.277 and 14.x through 17.x before 17.0.0.134 on Windows and OS X and before 11.2.202.451 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a differ... Read more

    • EPSS Score: %9.33
    • Published: Mar. 13, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2015-0198

    IBM General Parallel File System (GPFS) 3.4 before 3.4.0.32, 3.5 before 3.5.0.24, and 4.1 before 4.1.0.7 in certain cipherList configurations allows remote attackers to bypass authentication and execute arbitrary programs as root via unspecified vectors.... Read more

    Affected Products : general_parallel_file_system
    • EPSS Score: %1.72
    • Published: Mar. 24, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2011-0815

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 25 and earlier, 5.0 Update 29 and earlier, and 1.4.2_31 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affe... Read more

    Affected Products : jre jdk
    • EPSS Score: %7.57
    • Published: Jun. 14, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-0873

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 25 and earlier, and 5.0 Update 29 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related ... Read more

    Affected Products : jre jdk
    • EPSS Score: %14.99
    • Published: Jun. 14, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2015-0349

    Use-after-free vulnerability in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability... Read more

    • EPSS Score: %11.02
    • Published: Apr. 14, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2015-0311

    Unspecified vulnerability in Adobe Flash Player through 13.0.0.262 and 14.x, 15.x, and 16.x through 16.0.0.287 on Windows and OS X and through 11.2.202.438 on Linux allows remote attackers to execute arbitrary code via unknown vectors, as exploited in the... Read more

    • Actively Exploited
    • EPSS Score: %92.74
    • Published: Jan. 23, 2015
    • Modified: Apr. 12, 2025
Showing 20 of 292316 Results