CVE & Exploit Intelligence Database

Updated 2h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,219 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,422 researchers
48,173 results Clear all
CVE-2025-67711 6.1 MEDIUM EPSS 0.00
Esri Arcgis Server < 11.5 - XSS
There is a stored cross site scripting issue in Esri ArcGIS Server 11.4 and earlier on Windows and Linux that in some configurations allows a remote unauthenticated attacker to store files that contain malicious code that may execute in the context of a victim’s browser.
CWE-79 Dec 31, 2025
CVE-2025-67710 6.1 MEDIUM EPSS 0.00
Esri Arcgis Server < 11.5 - XSS
There is a stored cross site scripting issue in Esri ArcGIS Server 11.4 and earlier on Windows and Linux that in some configurations allows a remote unauthenticated attacker to store files that contain malicious code that may execute in the context of a victim’s browser.
CWE-79 Dec 31, 2025
CVE-2025-67709 6.1 MEDIUM EPSS 0.00
Esri Arcgis Server < 11.5 - XSS
There is a stored cross site scripting issue in Esri ArcGIS Server 11.4 and earlier on Windows and Linux that in some configurations allows a remote unauthenticated attacker to store files that contain malicious code that may execute in the context of a victim’s browser.
CWE-79 Dec 31, 2025
CVE-2025-67708 6.1 MEDIUM EPSS 0.00
Esri Arcgis Server < 11.5 - XSS
There is a stored cross site scripting issue in Esri ArcGIS Server 11.4 and earlier on Windows and Linux that in some configurations allows a remote unauthenticated attacker to store files that contain malicious code that may execute in the context of a victim’s browser.
CWE-79 Dec 31, 2025
CVE-2025-67707 5.6 MEDIUM EPSS 0.00
Esri Arcgis Server < 11.5 - Unrestricted File Upload
ArcGIS Server versions 11.5 and earlier on Windows and Linux do not sufficiently validate uploaded files, enabling a remote unauthenticated attacker to upload arbitrary files to the server’s designated upload directories. However, the server’s architecture enforces controls that restrict uploaded files to non‑executable storage locations and prevent modification or replacement of existing application components or system configurations. Uploaded files cannot be executed, leveraged to escalate privileges, or used to access sensitive data. Because the issue does not enable execution, service disruption, unauthorized access, or integrity compromise, its impact on confidentiality, integrity, and availability is low. Note that race conditions, secret values, or man‑in‑the‑middle conditions are required for exploitation.
CWE-434 Dec 31, 2025
CVE-2025-67706 5.6 MEDIUM EPSS 0.00
Esri Arcgis Server < 11.5 - Unrestricted File Upload
ArcGIS Server versions 11.5 and earlier on Windows and Linux do not sufficiently validate uploaded files, enabling a remote unauthenticated attacker to upload arbitrary files to the server’s designated upload directories. However, the server’s architecture enforces controls that restrict uploaded files to non‑executable storage locations and prevent modification or replacement of existing application components or system configurations. Uploaded files cannot be executed, leveraged to escalate privileges, or used to access sensitive data. Because the issue does not enable execution, service disruption, unauthorized access, or integrity compromise, its impact on confidentiality, integrity, and availability is low. Note that race conditions, secret values, or man‑in‑the‑middle conditions are required for exploitation.
CWE-434 Dec 31, 2025
CVE-2025-67705 6.1 MEDIUM EPSS 0.00
Esri Arcgis Server < 11.5 - XSS
There is a stored cross site scripting issue in Esri ArcGIS Server 11.4 and earlier on Windows and Linux that in some configurations allows a remote unauthenticated attacker to store files that contain malicious code that may execute in the context of a victim’s browser.
CWE-79 Dec 31, 2025
CVE-2025-67704 6.1 MEDIUM EPSS 0.00
Esri Arcgis Server < 11.5 - XSS
There is a stored cross site scripting issue in Esri ArcGIS Server 11.4 and earlier on Windows and Linux that in some configurations allows a remote unauthenticated attacker to store files that contain malicious code that may execute in the context of a victim’s browser.
CWE-79 Dec 31, 2025
CVE-2025-67703 6.1 MEDIUM EPSS 0.00
Esri Arcgis Server < 11.5 - XSS
There is a stored cross site scripting issue in Esri ArcGIS Server 11.4 and earlier on Windows and Linux that in some configurations allows a remote unauthenticated attacker to store files that contain malicious code that may execute in the context of a victim’s browser.
CWE-79 Dec 31, 2025
CVE-2025-69288 9.1 CRITICAL 1 Writeup EPSS 0.01
Kromit Titra < 0.99.49 - Improper Input Validation
Titra is open source project time tracking software. Prior to version 0.99.49, Titra allows any authenticated Admin user to modify the timeEntryRule in the database. The value is then passed to a NodeVM value to execute as code. Without sanitization, it leads to a Remote Code Execution. Version 0.99.49 fixes the issue.
CWE-20 Dec 31, 2025
CVE-2025-69286 9.8 CRITICAL 1 Writeup EPSS 0.00
RAGFlow <0.22.0 - Info Disclosure
RAGFlow is an open-source RAG (Retrieval-Augmented Generation) engine. In versions prior to 0.22.0, the use of an insecure key generation algorithm in the API key and beta (assistant/agent share auth) token generation process allows these tokens to be mutually derivable. Specifically, both tokens are generated using the same `URLSafeTimedSerializer` with predictable inputs, enabling an unauthorized user who obtains the shared assistant/agent URL to derive the personal API key. This grants them full control over the assistant/agent owner's account. Version 0.22.0 fixes the issue.
CWE-340 Dec 31, 2025
CVE-2025-68700 8.8 HIGH 1 Writeup EPSS 0.00
RAGFlow <0.23.0 - Command Injection
RAGFlow is an open-source RAG (Retrieval-Augmented Generation) engine. In versions prior to 0.23.0, a low-privileged authenticated user (normal login account) can execute arbitrary system commands on the server host process via the frontend Canvas CodeExec component, completely bypassing sandbox isolation. This occurs because untrusted data (stdout) is parsed using eval() with no filtering or sandboxing. The intended design was to "automatically convert string results into Python objects," but this effectively executes attacker-controlled code. Additional endpoints lack access control or contain inverted permission logic, significantly expanding the attack surface and enabling chained exploitation. Version 0.23.0 contains a patch for the issue.
CWE-78 Dec 31, 2025
CVE-2025-34469 7.5 HIGH EXPLOITED EPSS 0.00
Cowrie < 2.9.0 - SSRF
Cowrie versions prior to 2.9.0 contain a server-side request forgery (SSRF) vulnerability in the emulated shell implementation of wget and curl. In the default emulated shell configuration, these command emulations perform real outbound HTTP requests to attacker-supplied destinations. Because no outbound request rate limiting was enforced, unauthenticated remote attackers could repeatedly invoke these commands to generate unbounded HTTP traffic toward arbitrary third-party targets, allowing the Cowrie honeypot to be abused as a denial-of-service amplification node and masking the attacker’s true source address behind the honeypot’s IP.
CWE-918 Dec 31, 2025
CVE-2025-15398 3.7 LOW EPSS 0.00
Uatech Badaso < 2.9.7 - Password Reset Weakness
A security vulnerability has been detected in Uasoft badaso up to 2.9.7. Affected is the function forgetPassword of the file src/Controllers/BadasoAuthController.php of the component Token Handler. Such manipulation leads to weak password recovery. The attack can be executed remotely. This attack is characterized by high complexity. The exploitability is told to be difficult. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
CWE-640 Dec 31, 2025
CVE-2023-7332 1 Writeup EPSS 0.00
Pocketmine-mp < 4.18.1 - Denial of Service
PocketMine-MP versions prior to 4.18.1 contain an improper input validation vulnerability in inventory transaction handling. A remote attacker with a valid player session can request that the server drop more items than are available in the player's hotbar, triggering a server crash and resulting in denial of service.
CWE-1284 Dec 31, 2025
CVE-2025-53235 7.1 HIGH EPSS 0.00
osuthorpe Easy Social <1.3 - XSS
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in osuthorpe Easy Social allows Reflected XSS.This issue affects Easy Social: from n/a through 1.3.
CWE-79 Dec 31, 2025
CVE-2023-7331 4.7 MEDIUM 1 Writeup EPSS 0.00
PKrystian Full-Stack-Bank <bf73a0179e3ff07c0d7dc35297cea0be0e5b1317...
A vulnerability was detected in PKrystian Full-Stack-Bank up to bf73a0179e3ff07c0d7dc35297cea0be0e5b1317. This vulnerability affects unknown code of the component User Handler. Performing manipulation results in sql injection. It is possible to initiate the attack remotely. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The patch is named 25c9965a872c704f3a9475488dc5d3196902199a. It is suggested to install a patch to address this issue.
CWE-74 Dec 31, 2025
CVE-2015-10145 8.8 HIGH EXPLOITED EPSS 0.00
Gargoyle router management utility <1.5.x - Command Injection
Gargoyle router management utility versions 1.5.x contain an authenticated OS command execution vulnerability in /utility/run_commands.sh. The application fails to properly restrict or validate input supplied via the 'commands' parameter, allowing an authenticated attacker to execute arbitrary shell commands on the underlying system. Successful exploitation may result in full compromise of the device, including unauthorized access to system files and execution of attacker-controlled commands.
CWE-78 Dec 31, 2025
CVE-2025-66148 5.4 MEDIUM EPSS 0.00
Merkulove Conformer for Elementor <1.0.8 - Info Disclosure
Missing Authorization vulnerability in merkulove Conformer for Elementor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Conformer for Elementor: from n/a through 1.0.7.
CWE-862 Dec 31, 2025
CVE-2025-66146 5.4 MEDIUM EPSS 0.00
Merkulove Logger for Elementor <1.0.9 - RCE
Missing Authorization vulnerability in merkulove Logger for Elementor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Logger for Elementor: from n/a through 1.0.9.
CWE-862 Dec 31, 2025