Latest Vulnerabilities with Public Exploits

Updated 4h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,682 CVEs tracked 53,700 with exploits 4,860 exploited in wild 1,583 CISA KEV 4,077 Nuclei templates 52,389 vendors 43,933 researchers
53,700 results Clear all
CVE-2025-41373 8.8 HIGH 2 PoCs Analysis EPSS 0.00
Tesigandia Gandia Integra Total < 4.4.2236.1 - SQL Injection
A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The vulnerability allows an authenticated attacker to retrieve, create, update and delete databases through the 'idestudio' parameter in /encuestas/integraweb[_v4]/integra/html/view/hislistadoacciones.php.
CWE-89 Aug 01, 2025
CVE-2025-54589 6.3 MEDIUM 2 PoCs Analysis NUCLEI EPSS 0.01
9001 Copyparty < 1.18.7 - Basic XSS
Copyparty is a portable file server. In versions 1.18.6 and below, when accessing the recent uploads page at `/?ru`, users can filter the results using an input field at the top. This field appends a filter parameter to the URL, which reflects its value directly into a `<script>` block without proper escaping, allowing for reflected Cross-Site Scripting (XSS) and can be exploited against both authenticated and unauthenticated users. This is fixed in version 1.18.7.
CWE-80 Jul 31, 2025
CVE-2025-54769 8.8 HIGH SSVC PoC 2 PoCs Analysis EPSS 0.06
Xorux Lpar2rrd < 8.04 - Remote Code Execution
An authenticated, read-only user can upload a file and perform a directory traversal to have the uploaded file placed in a location of their choosing. This can be used to overwrite existing PERL modules within the application to achieve remote code execution (RCE) by an attacker.
CWE-648 Jul 29, 2025
CVE-2025-49683 7.8 HIGH 1 PoC Analysis EPSS 0.01
Microsoft Windows 10 1507 < 10.0.10240.21073 - Integer Overflow
Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to execute code locally.
CWE-190 Jul 08, 2025
CVE-2025-49741 7.4 HIGH 1 PoC Analysis EPSS 0.08
Microsoft Edge Chromium < 135.0.3179.98 - Information Disclosure
No cwe for this issue in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
CWE-200 Jul 01, 2025
CVE-2025-46811 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
SUSE Linux Manager <5.0.27 - Privilege Escalation
A Missing Authorization vulnerability in SUSE Linux Manager allows anyone with the ability to connect to port 443 of SUSE Manager is able to run any command as root on any client. This issue affects Container suse/manager/5.0/x86_64/server:5.0.5.7.30.1: from ? before 5.0.27-150600.3.33.1; Image SLES15-SP4-Manager-Server-4-3-BYOS: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-Azure: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-EC2: from ? before 4.3.87-150400.3.110.2; Image SLES15-SP4-Manager-Server-4-3-BYOS-GCE: from ? before 4.3.87-150400.3.110.2; SUSE Manager Server Module 4.3: from ? before 4.3.87-150400.3.110.2.
CWE-862 Jul 30, 2025
CVE-2025-7847 8.8 HIGH 1 PoC Analysis EPSS 0.01
AI Engine plugin <2.9.4 - RCE
The AI Engine plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the rest_simpleFileUpload() function in versions 2.9.3 and 2.9.4. This makes it possible for authenticated attackers, with Subscriber-level access and above, to upload arbitrary files on the affected site's server when the REST API is enabled, which may make remote code execution possible.
CWE-434 Jul 31, 2025
CVE-2025-25763 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
Crmeb - SQL Injection
crmeb CRMEB-KY v5.4.0 and before has a SQL Injection vulnerability at getRead() in /system/SystemDatabackupServices.php
CWE-89 Mar 06, 2025
CVE-2025-46018 5.4 MEDIUM 1 PoC Analysis EPSS 0.00
Cscsw Pay Mobile - Authentication Bypass by Spoofing
CSC Pay Mobile App 2.19.4 (fixed in version 2.20.0) contains a vulnerability allowing users to bypass payment authorization by disabling Bluetooth at a specific point during a transaction. This could result in unauthorized use of laundry services and potential financial loss.
CWE-290 Aug 01, 2025
CVE-2025-50422 2.9 LOW SSVC PoC 1 PoC Analysis EPSS 0.00
Cairo <1.18.4 - Info Disclosure
Cairo through 1.18.4, as used in Poppler through 25.08.0, has an "unscaled->face == NULL" assertion failure for _cairo_ft_unscaled_font_fini in cairo-ft-font.c.
CWE-617 Aug 04, 2025
CVE-2025-50420 6.5 MEDIUM SSVC PoC 1 PoC Analysis EPSS 0.00
freedesktop poppler <v25.04.0 - DoS
An issue in the pdfseparate utility of freedesktop poppler v25.04.0 allows attackers to cause an infinite recursion via supplying a crafted PDF file. This can lead to a Denial of Service (DoS).
CWE-674 Aug 04, 2025
CVE-2025-46206 6.5 MEDIUM SSVC PoC 1 PoC Analysis EPSS 0.00
Artifex mupdf <1.25.6-1.25.5 - DoS
An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the `mutool clean` utility. When processing a crafted PDF file containing cyclic /Next references in the outline structure, the `strip_outline()` function enters infinite recursion
CWE-674 Aug 04, 2025
CVE-2025-52289 8.0 HIGH SSVC PoC 2 PoCs Analysis EPSS 0.00
Magnussolution Magnusbilling - Improper Access Control
A Broken Access Control vulnerability in MagnusBilling v7.8.5.3 allows newly registered users to gain escalated privileges by sending a crafted request to /mbilling/index.php/user/save to set their account status fom "pending" to "active" without requiring administrator approval.
CWE-284 Jul 31, 2025
CVE-2025-29556 7.3 HIGH SSVC PoC 1 PoC Analysis EPSS 0.00
ExaGrid EX10 <7.0.1.P08 - Privilege Escalation
ExaGrid EX10 6.3 - 7.0.1.P08 is vulnerable to Incorrect Access Control. Since version 6.3, ExaGrid enforces restrictions preventing users with the Admin role from creating or modifying users with the Security Officer role without approval. However, a flaw in the account creation process allows an attacker to bypass these restrictions via API request manipulation. An attacker with an Admin access can intercept and modify the API request during user creation, altering the parameters to assign the new account to the ExaGrid Security Officers group without the required approval.
CWE-284 Jul 31, 2025
CVE-2025-51482 8.8 HIGH EXPLOITED SSVC PoC 1 PoC Analysis NUCLEI EPSS 0.06
Letta <0.7.12 - RCE
Remote Code Execution in letta.server.rest_api.routers.v1.tools.run_tool_from_source in letta-ai Letta 0.7.12 allows remote attackers to execute arbitrary Python code and system commands via crafted payloads to the /v1/tools/run endpoint, bypassing intended sandbox restrictions.
CWE-94 Jul 22, 2025
CVE-2025-50340 4.3 MEDIUM SSVC PoC 1 PoC Analysis EPSS 0.00
SOGo Webmail <5.6.0 - Privilege Escalation
An Insecure Direct Object Reference (IDOR) vulnerability was discovered in SOGo Webmail thru 5.6.0, allowing an authenticated user to send emails on behalf of other users by manipulating a user-controlled identifier in the email-sending request. The server fails to verify whether the authenticated user is authorized to use the specified sender identity, resulting in unauthorized message delivery as another user. This can lead to impersonation, phishing, or unauthorized communication within the system. NOTE: this is disputed by the Supplier because the only effective way to prevent this sender spoofing is on the SMTP server, not within a client such as SOGo.
CWE-639 Aug 04, 2025
CVE-2025-50341 9.8 CRITICAL SSVC PoC 1 PoC Analysis EPSS 0.00
Axelor 5.2.4 - SQL Injection
A Boolean-based SQL injection vulnerability was discovered in Axelor 5.2.4 via the _domain parameter. An attacker can manipulate the SQL query logic and determine true/false conditions, potentially leading to data exposure or further exploitation.
CWE-89 Aug 04, 2025
CVE-2025-27581 4.3 MEDIUM 1 PoC Analysis EPSS 0.00
NIH BRICS <14.0.0-67 - Info Disclosure
NIH BRICS (aka Biomedical Research Informatics Computing System) through 14.0.0-67 allows users who lack the InET role to access the InET module via direct requests to known endpoints.
CWE-425 Apr 24, 2025
CVE-2025-45346 8.1 HIGH 1 PoC Analysis EPSS 0.00
Bacula-web < 9.7.1 - SQL Injection
SQL Injection vulnerability in Bacula-web before v.9.7.1 allows a remote attacker to execute arbitrary code via a crafted HTTP GET request.
CWE-89 Jul 29, 2025
CVE-2025-29557 5.4 MEDIUM 1 PoC Analysis EPSS 0.00
ExaGrid EX10 6.3-7.0.1.P08 - Info Disclosure
ExaGrid EX10 6.3 - 7.0.1.P08 is vulnerable to Incorrect Access Control in the MailConfiguration API endpoint, where users with operator-level privileges can issue an HTTP request to retrieve SMTP credentials, including plaintext passwords.
CWE-284 Jul 31, 2025