Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 7.8

    HIGH
    CVE-2023-42685

    In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed... Read more

    Affected Products : android s8000 sc7731e sc9832e sc9863a t310 t606 t610 t612 t616 +4 more products
    • EPSS Score: %0.01
    • Published: Dec. 04, 2023
    • Modified: May. 29, 2025
  • 7.8

    HIGH
    CVE-2023-42681

    In ion service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed... Read more

    Affected Products : android s8000 sc7731e sc9832e sc9863a t310 t606 t610 t612 t616 +4 more products
    • EPSS Score: %0.02
    • Published: Dec. 04, 2023
    • Modified: May. 29, 2025
  • 8.8

    HIGH
    CVE-2023-37518

    HCL BigFix ServiceNow is vulnerable to arbitrary code injection. A malicious authorized attacker could inject arbitrary code and execute within the context of the running user. ... Read more

    Affected Products : bigfix_servicenow_data_flow
    • EPSS Score: %0.12
    • Published: Jan. 30, 2024
    • Modified: May. 29, 2025
  • 5.4

    MEDIUM
    CVE-2023-36259

    Cross Site Scripting (XSS) vulnerability in Craft CMS Audit Plugin before version 3.0.2 allows attackers to execute arbitrary code during user creation.... Read more

    Affected Products : craft_cms
    • EPSS Score: %0.09
    • Published: Jan. 30, 2024
    • Modified: May. 29, 2025
  • 9.8

    CRITICAL
    CVE-2023-24049

    An issue was discovered on Connectize AC21000 G6 641.139.1.1256 allows attackers to gain escalated privileges on the device via poor credential management.... Read more

    Affected Products : ac21000_g6_firmware ac21000_g6
    • EPSS Score: %0.09
    • Published: Dec. 04, 2023
    • Modified: May. 29, 2025
  • 6.5

    MEDIUM
    CVE-2022-35068

    OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e420d.... Read more

    Affected Products : otfcc
    • EPSS Score: %0.20
    • Published: Sep. 19, 2022
    • Modified: May. 29, 2025
  • 6.5

    MEDIUM
    CVE-2022-35067

    OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e41b0.... Read more

    Affected Products : otfcc
    • EPSS Score: %0.20
    • Published: Sep. 19, 2022
    • Modified: May. 29, 2025
  • 6.5

    MEDIUM
    CVE-2022-35066

    OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e41b8.... Read more

    Affected Products : otfcc
    • EPSS Score: %0.20
    • Published: Sep. 19, 2022
    • Modified: May. 29, 2025
  • 6.5

    MEDIUM
    CVE-2022-35065

    OTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x65f724.... Read more

    Affected Products : otfcc
    • EPSS Score: %0.15
    • Published: Sep. 19, 2022
    • Modified: May. 29, 2025
  • 6.5

    MEDIUM
    CVE-2022-35064

    OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x4adcdb in __asan_memset.... Read more

    Affected Products : otfcc
    • EPSS Score: %0.20
    • Published: Sep. 19, 2022
    • Modified: May. 29, 2025
  • 6.5

    MEDIUM
    CVE-2022-35063

    OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e41a8.... Read more

    Affected Products : otfcc
    • EPSS Score: %0.20
    • Published: Sep. 19, 2022
    • Modified: May. 29, 2025
  • 6.5

    MEDIUM
    CVE-2022-35062

    OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6c0bc3.... Read more

    Affected Products : otfcc
    • EPSS Score: %0.20
    • Published: Sep. 19, 2022
    • Modified: May. 29, 2025
  • 6.5

    MEDIUM
    CVE-2022-35061

    OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e412a.... Read more

    Affected Products : otfcc
    • EPSS Score: %0.20
    • Published: Sep. 19, 2022
    • Modified: May. 29, 2025
  • 7.8

    HIGH
    CVE-2022-32911

    The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An app may be able to execute arbitrary code with kernel privileges.... Read more

    Affected Products : macos iphone_os tvos watchos ipados
    • EPSS Score: %0.05
    • Published: Sep. 20, 2022
    • Modified: May. 29, 2025
  • 7.8

    HIGH
    CVE-2022-32908

    A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. A user may be able to elevate privileges.... Read more

    Affected Products : macos iphone_os tvos watchos ipados
    • EPSS Score: %0.04
    • Published: Sep. 20, 2022
    • Modified: May. 29, 2025
  • 8.8

    HIGH
    CVE-2022-32886

    A buffer overflow issue was addressed with improved memory handling. This issue is fixed in Safari 16, iOS 16, iOS 15.7 and iPadOS 15.7. Processing maliciously crafted web content may lead to arbitrary code execution.... Read more

    Affected Products : fedora debian_linux iphone_os safari ipados
    • EPSS Score: %0.36
    • Published: Sep. 20, 2022
    • Modified: May. 29, 2025
  • 5.5

    MEDIUM
    CVE-2022-32883

    A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An app may be able to read sensitive location information.... Read more

    Affected Products : macos iphone_os watchos ipados
    • EPSS Score: %0.05
    • Published: Sep. 20, 2022
    • Modified: May. 29, 2025
  • 7.2

    HIGH
    CVE-2025-4687

    In Teltonika Networks Remote Management System (RMS), it is possible to perform account pre-hijacking by misusing the invite functionality. If a victim has a pending invite and registers to the platform directly, they are added to the attackers company wi... Read more

    Affected Products :
    • Published: May. 29, 2025
    • Modified: May. 29, 2025
    • Vuln Type: Authentication
  • 5.8

    MEDIUM
    CVE-2025-33043

    APTIOV contains a vulnerability in BIOS where an attacker may cause an Improper Input Validation locally. Successful exploitation of this vulnerability can potentially impact of integrity.... Read more

    Affected Products : aptio_v
    • Published: May. 29, 2025
    • Modified: May. 29, 2025
    • Vuln Type: Misconfiguration
  • 0.0

    NA
    CVE-2025-37993

    In the Linux kernel, the following vulnerability has been resolved: can: m_can: m_can_class_allocate_dev(): initialize spin lock on device probe The spin lock tx_handling_spinlock in struct m_can_classdev is not being initialized. This leads the followi... Read more

    Affected Products : linux_kernel
    • Published: May. 29, 2025
    • Modified: May. 29, 2025
    • Vuln Type: Misconfiguration
Showing 20 of 291779 Results