Latest Vulnerabilities with Public Exploits

Updated 5h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,727 CVEs tracked 53,701 with exploits 4,860 exploited in wild 1,583 CISA KEV 4,078 Nuclei templates 52,396 vendors 43,936 researchers
53,701 results Clear all
CVE-2025-40775 7.5 HIGH 1 PoC Analysis EPSS 0.00
BIND <9.20.8-9.21.7 - Info Disclosure
When an incoming DNS protocol message includes a Transaction Signature (TSIG), BIND always checks it. If the TSIG contains an invalid value in the algorithm field, BIND immediately aborts with an assertion failure. This issue affects BIND 9 versions 9.20.0 through 9.20.8 and 9.21.0 through 9.21.7.
CWE-232 May 21, 2025
CVE-2025-51726 8.4 HIGH SSVC PoC 1 PoC Analysis EPSS 0.00
CyberGhostVPNSetup.exe - Cryptographic Hash Collision
CyberGhostVPNSetup.exe (Windows installer) is signed using the weak cryptographic hash algorithm SHA-1, which is vulnerable to collision attacks. This allows a malicious actor to craft a fake installer with a forged SHA-1 certificate that may still be accepted by Windows signature verification mechanisms, particularly on systems without strict SmartScreen or trust policy enforcement. Additionally, the installer lacks High Entropy Address Space Layout Randomization (ASLR), as confirmed by BinSkim (BA2015 rule) and repeated WinDbg analysis. The binary consistently loads into predictable memory ranges, increasing the success rate of memory corruption exploits. These two misconfigurations, when combined, significantly lower the bar for successful supply-chain style attacks or privilege escalation through fake installers.
CWE-327 Aug 04, 2025
CVE-2025-44108 4.8 MEDIUM SSVC PoC 1 PoC Analysis EPSS 0.00
Flatpress < 1.4 - XSS
A stored Cross-Site Scripting (XSS) vulnerability exists in the administration panel of Flatpress CMS before 1.4 via the gallery captions component. An attacker with admin privileges can inject a malicious JavaScript payload into the system, which is then stored persistently.
CWE-79 May 19, 2025
CVE-2025-5058 9.8 CRITICAL 1 PoC Analysis EPSS 0.02
eMagicOne Store Manager <1.2.5 - RCE
The eMagicOne Store Manager for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the set_image() function in all versions up to, and including, 1.2.5. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible. This is only exploitable by unauthenticated attackers in default configurations where the the default password is left as 1:1, or where the attacker gains access to the credentials.
CWE-434 May 24, 2025
CVE-2025-66576 9.8 CRITICAL SSVC PoC 1 PoC Analysis EPSS 0.01
Remote Keyboard Desktop 1.0.1 - Code Injection
Remote Keyboard Desktop 1.0.1 enables remote attackers to execute system commands via the rundll32.exe exported function export, allowing unauthenticated code execution.
CWE-78 Dec 04, 2025
CVE-2025-24104 5.5 MEDIUM 2 PoCs Analysis EPSS 0.03
Apple Ipados < 17.7.4 - Symlink Following
This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4. Restoring a maliciously crafted backup file may lead to modification of protected system files.
CWE-59 Jan 27, 2025
CVE-2025-32259 5.3 MEDIUM 1 PoC Analysis EPSS 0.00
Alimir WP ULike <4.7.9.1 - Info Disclosure
Missing Authorization vulnerability in Alimir WP ULike wp-ulike.This issue affects WP ULike: from n/a through <= 4.7.9.1.
CWE-862 Apr 10, 2025
CVE-2025-1731 7.8 HIGH SSVC PoC 1 PoC Analysis EPSS 0.00
Zyxel Uos < 1.32 - Incorrect Permission Assignment
An incorrect permission assignment vulnerability in the PostgreSQL commands of the Zyxel USG FLEX H series uOS firmware versions from V1.20 through V1.31 could allow an authenticated local attacker with low privileges to gain access to the Linux shell and escalate their privileges by crafting malicious scripts or modifying system configurations with administrator-level access through a stolen token. Modifying the system configuration is only possible if the administrator has not logged out and the token remains valid.
CWE-732 Apr 22, 2025
CVE-2025-4822 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
ScadaWatt Otopilot <27.05.2025 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bayraktar Solar Energies ScadaWatt Otopilot allows SQL Injection.This issue affects ScadaWatt Otopilot: before 27.05.2025.
CWE-89 Jul 24, 2025
CVE-2025-32407 5.9 MEDIUM SSVC PoC 1 PoC Analysis EPSS 0.00
Samsung Internet - Improper Certificate Validation
Samsung Internet for Galaxy Watch version 5.0.9, available up until Samsung Galaxy Watch 3, does not properly validate TLS certificates, allowing for an attacker to impersonate any and all websites visited by the user. This is a critical misconfiguration in the way the browser validates the identity of the server. It negates the use of HTTPS as a secure channel, allowing for Man-in-the-Middle attacks, stealing sensitive information or modifying incoming and outgoing traffic. NOTE: This vulnerability is in an end-of-life product that is no longer maintained by the vendor.
CWE-295 May 16, 2025
CVE-2025-4784 9.8 CRITICAL 1 PoC EPSS 0.00
Moderec Tourtella < 26.05.2025 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Moderec Tourtella allows SQL Injection.This issue affects Tourtella: before 26.05.2025.
CWE-89 Jul 24, 2025
CVE-2025-4688 9.8 CRITICAL 1 PoC Analysis EPSS 0.00
BGS Interactive SINAV.LINK <1.2 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BGS Interactive SINAV.LINK Exam Result Module allows SQL Injection.This issue affects SINAV.LINK Exam Result Module: before 1.2.
CWE-89 Sep 16, 2025
CVE-2025-4686 8.6 HIGH 1 PoC Analysis EPSS 0.00
Kodmatic Online Exam and Assessment through 30012026 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Kodmatic Computer Software Tourism Construction Industry and Trade Ltd. Co. Online Exam and Assessment allows SQL Injection.This issue affects Online Exam and Assessment: through 30012026.  NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
CWE-89 Jan 30, 2026
CVE-2025-47227 7.5 HIGH SSVC PoC 1 PoC Analysis EPSS 0.02
Netmake ScriptCase <9.12.006 - Auth Bypass
In the Production Environment extension in Netmake ScriptCase through 9.12.006 (23), the Administrator password reset mechanism is mishandled. Making both a GET and a POST request to login.php.is sufficient. An unauthenticated attacker can then bypass authentication via administrator account takeover.
CWE-684 Jul 05, 2025
CVE-2025-44039 5.1 MEDIUM SSVC PoC 1 PoC Analysis EPSS 0.00
Cpplusworld Cp-xr-de21-s Firmware - Missing Authentication
CP-XR-DE21-S -4G Router Firmware version 1.031.022 was discovered to contain insecure protections for its UART console. This vulnerability allows local attackers to connect to the UART port via a serial connection, read all boot sequence, and revealing internal system details and sensitive information without any authentication.
CWE-306 May 13, 2025
CVE-2025-32370 7.2 HIGH SSVC PoC 1 PoC Analysis EPSS 0.00
Kentico Xperience < 13.0.178 - XSS
Kentico Xperience before 13.0.178 has a specific set of allowed ContentUploader file extensions for unauthenticated uploads; however, because .zip is processed through TryZipProviderSafe, there is additional functionality to create files with other extensions. NOTE: this is a separate issue not necessarily related to SVG or XSS.
CWE-912 Apr 06, 2025
CVE-2025-4602 5.9 MEDIUM 1 PoC Analysis EPSS 0.00
eMagicOne Store Manager for WooCommerce <1.2.5 - Info Disclosure
The eMagicOne Store Manager for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Reads in all versions up to, and including, 1.2.5 via the get_file() function. This makes it possible for unauthenticated attackers to read the contents of arbitrary files on the server, which can contain sensitive information. This is only exploitable by unauthenticated attackers in default configurations where the the default password is left as 1:1, or where the attacker gains access to the credentials.
CWE-73 May 24, 2025
CVE-2025-4603 9.1 CRITICAL 1 PoC Analysis EPSS 0.03
eMagicOne Store Manager - Path Traversal
The eMagicOne Store Manager for WooCommerce plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the delete_file() function in all versions up to, and including, 1.2.5. This makes it possible for unauthenticated attackers to delete arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-config.php). This is only exploitable by unauthenticated attackers in default configurations where the the default password is left as 1:1, or where the attacker gains access to the credentials.
CWE-73 May 24, 2025
CVE-2025-2812 9.8 CRITICAL SSVC PoC 1 PoC Analysis EPSS 0.00
Mydata Ticket Sales Automation < 2025-04-03 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mydata Informatics Ticket Sales Automation allows Blind SQL Injection.This issue affects Ticket Sales Automation: before 03.04.2025 (DD.MM.YYYY).
CWE-89 May 02, 2025
CVE-2025-4403 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
WooCommerce 1.1.6 - RCE
The Drag and Drop Multiple File Upload for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads in all versions up to, and including, 1.1.6 due to accepting a user‐supplied supported_type string and the uploaded filename without enforcing real extension or MIME checks within the upload() function. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.
CWE-434 May 09, 2025