SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

393,014 CVEs1,710 in CISA KEV17,380 with EPSS ≥ 10%Updated 16 September 2026

17,380 results · page 17 of 348

CVESummaryPriorityPublished
CVE-2025-25254An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] in FortiWeb version 7.6.2 and below, version 7.4.6 and below, 7.2 all versions, 7.0 all versions endpoint may allow an authenticated admin to access…HIGH 7.2EPSS 16.9%8 April 2025
CVE-2025-3248Langflow Missing Authentication VulnerabilityKEVCRITICAL 9.8EPSS 100.0%7 April 2025
CVE-2025-30401A maliciously crafted mismatch could have caused the recipient to inadvertently execute arbitrary code rather than view the attachment when manually opening the attachment inside WhatsApp.MEDIUM 6.7EPSS 21.0%5 April 2025
CVE-2021-47667An OS command injection vulnerability in lib/NSSDropoff.php in ZendTo 5.24-3 through 6.x before 6.10-7 allows unauthenticated remote attackers to execute arbitrary commands via shell metacharacters in the tmp_name parameter when dropping off a file via…CRITICAL 10.0EPSS 36.6%5 April 2025
CVE-2025-27520A Remote Code Execution (RCE) vulnerability caused by insecure deserialization has been identified in the latest version (v1.4.2) of BentoML.CRITICAL 9.8EPSS 40.6%4 April 2025
CVE-2025-28146Edimax AC1200 Wave 2 Dual-Band Gigabit Router BR-6478AC V3 1.0.15 was discovered to contain a command injection vulnerability via fota_url in /boafrm/formLtefotaUpgradeQuectelCRITICAL 9.8EPSS 11.5%4 April 2025
CVE-2025-31161CrushFTP Authentication Bypass VulnerabilityKEVCRITICAL 9.8EPSS 100.0%3 April 2025
CVE-2025-30406Gladinet CentreStack and Triofox Use of Hard-coded Cryptographic Key VulnerabilityKEVCRITICAL 9.8EPSS 94.3%3 April 2025
CVE-2025-31486The contents of arbitrary files can be returned to the browser.MEDIUM 5.3EPSS 40.5%3 April 2025
CVE-2025-22457Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow VulnerabilityKEVCRITICAL 9.8EPSS 100.0%3 April 2025
CVE-2025-3155The Gnome user help application allows the help document to execute arbitrary scripts.HIGH 7.4EPSS 14.2%3 April 2025
CVE-2025-2945Remote Code Execution security vulnerability in pgAdmin 4 (Query Tool and Cloud Deployment modules).HIGH 8.8EPSS 56.3%3 April 2025
CVE-2025-29085SQL injection vulnerability in vipshop Saturn v.3.5.1 and before allows a remote attacker to execute arbitrary code via /console/dashboard/executorCount?zkClusterKey component.CRITICAL 9.8EPSS 30.7%2 April 2025
CVE-2025-2005The Front End Users plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the file uploads field of the registration form in all versions up to, and including, 3.2.32.CRITICAL 9.8EPSS 22.0%2 April 2025
CVE-2024-36465A low privilege (regular) Zabbix user with API access can use SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitrary SQL commands via the groupBy parameter.HIGH 8.6EPSS 29.5%2 April 2025
CVE-2025-31121Prior to 7.0.3.1, the Patient Image feature in OpenEMR is vulnerable to cross-site scripting attacks via the EXIF title in an image.HIGH 7.0EPSS 17.3%1 April 2025
CVE-2025-30676Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Apache OFBiz.MEDIUM 6.1EPSS 67.6%1 April 2025
CVE-2024-56325Authentication Bypass Issue If the path does not contain / and contain., authentication is not required.CRITICAL 9.8EPSS 80.2%1 April 2025
CVE-2025-30065Schema parsing in the parquet-avro module of Apache Parquet 1.15.0 and previous versions allows bad actors to execute arbitrary code Users are recommended to upgrade to version 1.15.1, which fixes the issue.CRITICAL 10.0EPSS 43.6%1 April 2025
CVE-2025-31125Vite Vitejs Improper Access Control VulnerabilityKEVHIGH 7.5EPSS 58.5%31 March 2025
CVE-2025-3002A vulnerability, which was classified as critical, has been found in Digital China DCME-520 up to 20250320.MEDIUM 6.9EPSS 20.0%31 March 2025
CVE-2025-30161A stored XSS vulnerability in the Bronchitis form component of OpenEMR allows anyone who is able to edit a bronchitis form to steal credentials from administrators.HIGH 8.4EPSS 10.9%31 March 2025
CVE-2025-2993A vulnerability, which was classified as critical, has been found in Tenda FH1202 1.2.0.14(408).MEDIUM 6.9EPSS 10.9%31 March 2025
CVE-2025-25579TOTOLINK A3002R V4.0.0-B20230531.1404 is vulnerable to Command Injection in /bin/boa via bandstr.CRITICAL 9.8EPSS 10.4%28 March 2025
CVE-2025-28219Netgear DC112A V1.0.0.64 has an OS command injection vulnerability in the usb_adv.cgi, which allows remote attackers to execute arbitrary commands via parameter "deviceName" passed to the binary through a POST request.CRITICAL 9.8EPSS 12.8%28 March 2025
CVE-2025-2294The Kubio AI Page Builder plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.5.1 via thekubio_hybrid_theme_load_template function.CRITICAL 9.8EPSS 78.4%28 March 2025
CVE-2025-29306An issue in FoxCMS v.1.2.5 allows a remote attacker to execute arbitrary code via the case display page in the index.html component.CRITICAL 9.8EPSS 46.6%27 March 2025
CVE-2025-31140In JetBrains TeamCity before 2025.03 stored XSS was possible on Cloud Profiles pageMEDIUM 6.1EPSS 28.0%27 March 2025
CVE-2025-20229In Splunk Enterprise versions below 9.3.3, 9.2.5, and 9.1.8, and Splunk Cloud Platform versions below 9.3.2408.104, 9.2.2406.108, 9.2.2403.114, and 9.1.2312.208, a low-privileged user that does not hold the "admin" or "power" Splunk roles could perform…HIGH 8.0EPSS 16.0%26 March 2025
CVE-2024-55963This is still within the Appsmith container, and the impact is limited to Appsmith's own server only, but there is a denial of service because it can be continually restarted.MEDIUM 6.5EPSS 30.7%26 March 2025
CVE-2025-29635D-Link DIR-823X Command Injection VulnerabilityKEVHIGH 7.2EPSS 87.9%25 March 2025
CVE-2025-24514A security issue was discovered in ingress-nginx https://github.com/kubernetes/ingress-nginx where the `auth-url` Ingress annotation can be used to inject configuration into nginx.HIGH 8.8EPSS 32.6%25 March 2025
CVE-2025-1974A security issue was discovered in Kubernetes where under certain conditions, an unauthenticated attacker with access to the pod network can achieve arbitrary code execution in the context of the ingress-nginx controller.CRITICAL 9.8EPSS 99.5%25 March 2025
CVE-2025-1098A security issue was discovered in ingress-nginx https://github.com/kubernetes/ingress-nginx where the `mirror-target` and `mirror-host` Ingress annotations can be used to inject arbitrary configuration into nginx.HIGH 8.8EPSS 83.5%25 March 2025
CVE-2025-1097A security issue was discovered in ingress-nginx https://github.com/kubernetes/ingress-nginx where the `auth-tls-match-cn` Ingress annotation can be used to inject configuration into nginx.HIGH 8.8EPSS 35.5%25 March 2025
CVE-2025-2748The Kentico Xperience application does not fully validate or filter files uploaded via the multiple-file upload functionality, which allows for stored XSS.This issue affects Kentico Xperience through 13.0.178.MEDIUM 6.1EPSS 60.6%24 March 2025
CVE-2025-2747Kentico Xperience CMS Authentication Bypass Using an Alternate Path or Channel VulnerabilityKEVCRITICAL 9.8EPSS 92.5%24 March 2025
CVE-2025-2746Kentico Xperience CMS Authentication Bypass Using an Alternate Path or Channel VulnerabilityKEVCRITICAL 9.8EPSS 59.1%24 March 2025
CVE-2025-30208Vite, a provider of frontend development tooling, has a vulnerability in versions prior to 6.2.3, 6.1.2, 6.0.12, 5.4.15, and 4.5.10. `@fs` denies access to files outside of Vite serving allow list.HIGH 7.5EPSS 75.0%24 March 2025
CVE-2023-25610A buffer underwrite ('buffer underflow') vulnerability in the administrative interface of Fortinet FortiOS version 7.2.0 through 7.2.3, version 7.0.0 through 7.0.6, version 6.4.0 through 6.4.11 and version 6.2.12 and below, FortiProxy version 7.2.0…CRITICAL 9.8EPSS 18.3%24 March 2025
CVE-2025-30349Horde IMP through 6.2.27, as used with Horde Application Framework through 5.2.23, allows XSS that leads to account takeover via a crafted text/html e-mail message with an onerror attribute (that may use base64-encoded JavaScript code), as exploited in…HIGH 7.2EPSS 31.3%21 March 2025
CVE-2025-29927Starting in version 1.11.4 and prior to versions 12.3.5, 13.5.9, 14.2.25, and 15.2.3, it is possible to bypass authorization checks within a Next.js application, if the authorization check occurs in middleware.CRITICAL 9.1EPSS 99.2%21 March 2025
CVE-2025-23120A vulnerability allowing remote code execution (RCE) for domain users.HIGH 8.8EPSS 24.0%20 March 2025
CVE-2025-2546A vulnerability classified as problematic was found in D-Link DIR-618 and DIR-605L 2.02/3.02.MEDIUM 5.3EPSS 10.8%20 March 2025
CVE-2025-0453In mlflow/mlflow version 2.17.2, the `/graphql` endpoint is vulnerable to a denial of service attack.HIGH 7.5EPSS 11.0%20 March 2025
CVE-2025-0317A vulnerability in ollama/ollama versions <=0.3.14 allows a malicious user to upload and create a customized GGUF model file on the Ollama server.HIGH 7.5EPSS 14.2%20 March 2025
CVE-2024-6842In version 1.5.5 of mintplex-labs/anything-llm, the `/setup-complete` API endpoint allows unauthorized users to access sensitive system settings.HIGH 7.5EPSS 31.1%20 March 2025
CVE-2024-4990In yiisoft/yii2 version 2.0.48, the base Component class contains a vulnerability where the `__set()` magic method does not validate that the value passed is a valid Behavior class name or configuration.CRITICAL 9.1EPSS 80.2%20 March 2025
CVE-2024-50631Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in the system syncing daemon in Synology Drive Server before 3.0.4-12699, 3.2.1-23280, 3.5.0-26085 and 3.5.1-26102 allows remote attackers to inject SQL…HIGH 7.5EPSS 26.2%19 March 2025
CVE-2024-50630Missing authentication for critical function vulnerability in the webapi component in Synology Drive Server before 3.0.4-12699, 3.2.1-23280, 3.5.0-26085 and 3.5.1-26102 allows remote attackers to obtain administrator credentials via unspecified vectors.HIGH 7.5EPSS 24.6%19 March 2025

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. Patch KEV entries first, then anything with an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS and the CISA KEV catalogue. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.