Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2020-3531

    A vulnerability in the REST API of Cisco IoT Field Network Director (FND) could allow an unauthenticated, remote attacker to access the back-end database of an affected system. The vulnerability exists because the affected software does not properly authe... Read more

    Affected Products : iot_field_network_director
    • EPSS Score: %4.84
    • Published: Nov. 18, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    CRITICAL
    CVE-2020-28633

    Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed file can lead to an out-of-bounds read and type confusion, which could lead to code execution. An attacker ca... Read more

    • EPSS Score: %0.38
    • Published: Apr. 18, 2022
    • Modified: Nov. 21, 2024
  • 10.0

    CRITICAL
    CVE-2020-28623

    Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed file can lead to an out-of-bounds read and type confusion, which could lead to code execution. An attacker ca... Read more

    • EPSS Score: %0.32
    • Published: Apr. 18, 2022
    • Modified: Nov. 21, 2024
  • 10.0

    CRITICAL
    CVE-2020-28636

    A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sloop() slh->twin() An attacker can provide malicious input to trigge... Read more

    • EPSS Score: %0.79
    • Published: Mar. 04, 2021
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-27131

    Multiple vulnerabilities in the Java deserialization function that is used by Cisco Security Manager could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected device. These vulnerabilities are due to insecure deserializa... Read more

    Affected Products : security_manager
    • EPSS Score: %84.36
    • Published: Nov. 17, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-25787

    An issue was discovered in Tiny Tiny RSS (aka tt-rss) before 2020-09-16. It does not validate all URLs before requesting them.... Read more

    Affected Products : tiny_tiny_rss
    • EPSS Score: %13.77
    • Published: Sep. 19, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-25223

    A remote code execution vulnerability exists in the WebAdmin of Sophos SG UTM before v9.705 MR5, v9.607 MR7, and v9.511 MR11... Read more

    • Actively Exploited
    • EPSS Score: %94.42
    • Published: Sep. 25, 2020
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2020-1946

    In Apache SpamAssassin before 3.4.5, malicious rule configuration (.cf) files can be configured to run system commands without any output or errors. With this, exploits can be injected in a number of scenarios. In addition to upgrading to SA version 3.4.5... Read more

    Affected Products : fedora debian_linux spamassassin
    • EPSS Score: %2.01
    • Published: Mar. 25, 2021
    • Modified: Nov. 21, 2024
  • 10.0

    CRITICAL
    CVE-2020-12522

    The reported vulnerability allows an attacker who has network access to the device to execute code with specially crafted packets in WAGO Series PFC 100 (750-81xx/xxx-xxx), Series PFC 200 (750-82xx/xxx-xxx), Series Wago Touch Panel 600 Standard Line (762-... Read more

    • EPSS Score: %0.18
    • Published: Dec. 17, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-8049

    Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015.006.30497 and earlier, and 2015.006.30498 and earlier have a heap overflow vulnerability. Successful exp... Read more

    • EPSS Score: %41.50
    • Published: Aug. 20, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-7971

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more

    Affected Products : macos photoshop_cc windows
    • EPSS Score: %27.47
    • Published: Aug. 26, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-7959

    Creative Cloud Desktop Application versions 4.6.1 and earlier have a using components with known vulnerabilities vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more

    Affected Products : creative_cloud mac_os_x windows
    • EPSS Score: %17.72
    • Published: Aug. 16, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-7784

    Adobe Acrobat and Reader versions 2019.010.20100 and earlier, 2019.010.20099 and earlier, 2017.011.30140 and earlier, 2017.011.30138 and earlier, 2015.006.30495 and earlier, and 2015.006.30493 and earlier have a double free vulnerability. Successful explo... Read more

    • EPSS Score: %5.46
    • Published: May. 22, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-7765

    Adobe Acrobat and Reader versions 2019.010.20100 and earlier, 2019.010.20099 and earlier, 2017.011.30140 and earlier, 2017.011.30138 and earlier, 2015.006.30495 and earlier, and 2015.006.30493 and earlier have a use after free vulnerability. Successful ex... Read more

    • EPSS Score: %2.07
    • Published: May. 22, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-7112

    Adobe Acrobat and Reader versions 2019.010.20098 and earlier, 2019.010.20098 and earlier, 2017.011.30127 and earlier version, and 2015.006.30482 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code executi... Read more

    • EPSS Score: %4.68
    • Published: May. 23, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-7102

    Adobe Shockwave Player versions 12.3.4.204 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more

    Affected Products : windows shockwave_player
    • EPSS Score: %7.53
    • Published: May. 23, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-7101

    Adobe Shockwave Player versions 12.3.4.204 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more

    Affected Products : windows shockwave_player
    • EPSS Score: %7.53
    • Published: May. 23, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-7086

    Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code executio... Read more

    • EPSS Score: %13.53
    • Published: May. 24, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-3706

    Dell EMC iDRAC9 versions prior to 3.24.24.24, 3.21.26.22, 3.22.22.22 and 3.21.25.22 contain an authentication bypass vulnerability. A remote attacker may potentially exploit this vulnerability to bypass authentication and gain access to the system by send... Read more

    Affected Products : idrac9_firmware
    • EPSS Score: %1.79
    • Published: Apr. 26, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-16452

    Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier version, 2017.011.30152 and earlier, and 2015.006.30505 and earlier have an use after free vulnerability. Successful exploitation could ... Read more

    • EPSS Score: %5.69
    • Published: Dec. 19, 2019
    • Modified: Nov. 21, 2024
Showing 20 of 291312 Results