Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.8 HIGH
CVE-2025-71214 — Trend Micro Apex One (mac) iCore Origin Validation Privilege Escalation Vulnerability

An origin validation error vulnerability in the Trend Micro Apex One (mac) agent iCore service could allow a local attacker to escalate privileges on affected installations. Please note: an attack…

apex_one | Authorization
May 21, 2026 Jun 05, 2026
May 21, 2026
Jun 05, 2026
7.8 HIGH
CVE-2025-71213 — Trend Micro Apex One Privilege Escalation Vulnerability

An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the abili…

apex_one apexone_op apexone_saas | Authorization
May 21, 2026 May 22, 2026
May 21, 2026
May 22, 2026
7.8 HIGH
CVE-2025-71212 — Trend Micro Apex One Privilege Escalation Vulnerability

A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the…

apex_one apexone_op apexone_saas | Memory Corruption
May 21, 2026 May 22, 2026
May 21, 2026
May 22, 2026
9.8 CRITICAL
CVE-2025-71211 — Trend Micro Apex One Unauthenticated Remote Code Execution Vulnerability

A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to upload malicious code and execute commands on affected installations. This vulnerability is similar in …

apex_one apexone_op apexone_saas | Remote | Authentication
May 21, 2026 May 22, 2026
May 21, 2026
May 22, 2026
9.8 CRITICAL
CVE-2025-71210 — Trend Micro Apex One Remote Code Execution Vulnerability

A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to upload malicious code and execute commands on affected installations. Please note: although this vul…

apex_one apexone_op apexone_saas | Remote | Authentication
May 21, 2026 May 22, 2026
May 21, 2026
May 22, 2026
7.5 HIGH
CVE-2025-13479 — IDOR in PosCube's QR Menu

Authorization bypass through User-Controlled key vulnerability in PosCube Hardware Software and Consulting Ltd. QR Menu allows Exploitation of Trusted Identifiers. This issue affects QR Menu: throug…

Remote | Authorization
May 21, 2026 May 21, 2026
May 21, 2026
May 21, 2026
7.1 HIGH
CVE-2025-13477 — OTP Bypass in Digital Operation Services' WifiBurada

Exposure of private personal information to an unauthorized actor, Insufficiently Protected Credentials vulnerability in Digital Operations Services Inc. WifiBurada allows Authentication Bypass. Thi…

Remote | Authentication
May 21, 2026 May 21, 2026
May 21, 2026
May 21, 2026
Showing 20 of 7527 Results