Latest Vulnerabilities with Public Exploits
Updated 17m agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
53,703 results
Clear all
CVE-2025-2812
9.8
CRITICAL
SSVC PoC
1 PoC
Analysis
EPSS 0.00
Mydata Ticket Sales Automation < 2025-04-03 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mydata Informatics Ticket Sales Automation allows Blind SQL Injection.This issue affects Ticket Sales Automation: before 03.04.2025 (DD.MM.YYYY).
CWE-89
May 02, 2025
CVE-2025-4403
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.03
WooCommerce 1.1.6 - RCE
The Drag and Drop Multiple File Upload for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads in all versions up to, and including, 1.1.6 due to accepting a user‐supplied supported_type string and the uploaded filename without enforcing real extension or MIME checks within the upload() function. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.
CWE-434
May 09, 2025
CVE-2025-46271
9.1
CRITICAL
1 PoC
Analysis
EPSS 0.06
UNI-NMS-Lite - Command Injection
UNI-NMS-Lite is vulnerable to a command injection attack that could
allow an unauthenticated attacker to read or manipulate device data.
CWE-78
Apr 24, 2025
CVE-2025-2748
6.1
MEDIUM
EXPLOITED
1 PoC
Analysis
NUCLEI
EPSS 0.00
Kentico Xperience CMS - Unauthenticated Stored XSS
The Kentico Xperience application does not fully validate or filter files uploaded via the multiple-file upload functionality, which allows for stored XSS.This issue affects Kentico Xperience through 13.0.178.
CWE-434
Mar 24, 2025
CVE-2025-27533
7.5
HIGH
2 PoCs
Analysis
EPSS 0.02
Apache ActiveMQ <6.1.6 - DoS
Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ.
During unmarshalling of OpenWire commands the size value of buffers was not properly validated which could lead to excessive memory allocation and be exploited to cause a denial of service (DoS) by depleting process memory, thereby affecting applications and services that rely on the availability of the ActiveMQ broker when not using mutual TLS connections.
This issue affects Apache ActiveMQ: from 6.0.0 before 6.1.6, from 5.18.0 before 5.18.7, from 5.17.0 before 5.17.7, before 5.16.8. ActiveMQ 5.19.0 is not affected.
Users are recommended to upgrade to version 6.1.6+, 5.19.0+, 5.18.7+, 5.17.7, or 5.16.8 or which fixes the issue.
Existing users may implement mutual TLS to mitigate the risk on affected brokers.
CWE-789
May 07, 2025
CVE-2025-29448
7.5
HIGH
SSVC PoC
1 PoC
Analysis
EPSS 0.01
Easyappointments Easy!appointments - Improper Access Control
Booking logic flaw in Easy!Appointments v1.5.1 allows unauthenticated attackers to create appointments with excessively long durations, causing a denial of service by blocking all future booking availability.
CWE-284
May 07, 2025
CVE-2025-21204
7.8
HIGH
1 PoC
Analysis
EPSS 0.07
Microsoft Windows 10 1507 < 10.0.10240.20978 - Symlink Following
Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.
CWE-59
Apr 08, 2025
CVE-2025-47550
6.6
MEDIUM
1 PoC
Analysis
EPSS 0.00
Themefic Instantio < 3.3.16 - Unrestricted File Upload
Unrestricted Upload of File with Dangerous Type vulnerability in Themefic Instantio instantio allows Upload a Web Shell to a Web Server.This issue affects Instantio: from n/a through <= 3.3.16.
CWE-434
May 07, 2025
CVE-2025-47549
9.1
CRITICAL
1 PoC
Analysis
EPSS 0.00
Themefic Ultimate Before After Image ... - Unrestricted File Upload
Unrestricted Upload of File with Dangerous Type vulnerability in Themefic BEAF beaf-before-and-after-gallery allows Upload a Web Shell to a Web Server.This issue affects BEAF: from n/a through <= 4.6.10.
CWE-434
May 07, 2025
CVE-2025-24801
8.5
HIGH
2 PoCs
Analysis
EPSS 0.03
Glpi < 10.0.18 - Unrestricted File Upload
GLPI is a free asset and IT management software package. An authenticated user can upload and force the execution of *.php files located on the GLPI server. This vulnerability is fixed in 10.0.18.
CWE-434
Mar 18, 2025
CVE-2025-28074
6.1
MEDIUM
1 PoC
Analysis
EPSS 0.00
Phplist < 3.6.15 - XSS
phpList before 3.6.15 is vulnerable to Cross-Site Scripting (XSS) due to improper input sanitization in lt.php. The vulnerability is exploitable when the application dynamically references internal paths and processes untrusted input without escaping, allowing an attacker to inject malicious JavaScript.
CWE-79
May 08, 2025
CVE-2025-28073
6.1
MEDIUM
1 PoC
Analysis
EPSS 0.00
Phplist < 3.6.15 - XSS
phpList before 3.6.15 is vulnerable to Reflected Cross-Site Scripting (XSS) via the /lists/dl.php endpoint. An attacker can inject arbitrary JavaScript code by manipulating the id parameter, which is improperly sanitized.
CWE-79
May 08, 2025
CVE-2025-45250
5.5
MEDIUM
SSVC PoC
2 PoCs
Analysis
EPSS 0.00
Mrdoc < 0.95 - SSRF
MrDoc v0.95 and before is vulnerable to Server-Side Request Forgery (SSRF) in the validate_url function of the app_doc/utils.py file.
CWE-918
May 06, 2025
CVE-2025-22968
9.8
CRITICAL
SSVC PoC
2 PoCs
Analysis
EPSS 0.42
Dlink Dwr-m972v Firmware - Code Injection
An issue in D-Link DWR-M972V 1.05SSG allows a remote attacker to execute arbitrary code via SSH using root account without restrictions
CWE-94
Jan 15, 2025
CVE-2025-47423
5.8
MEDIUM
SSVC PoC
1 PoC
Analysis
NUCLEI
EPSS 0.01
Personal Weather Station Dashboard 12_lts - Path Traversal
Personal Weather Station Dashboard 12_lts allows unauthenticated remote attackers to read arbitrary files via ../ directory traversal in the test parameter to /others/_test.php, as demonstrated by reading the server's private SSL key in cleartext.
CWE-24
May 07, 2025
CVE-2025-46731
7.2
HIGH
SSVC PoC
1 PoC
Analysis
EPSS 0.01
Craft CMS <4.14.13, <5.6.16 - Authenticated RCE
Craft is a content management system. Versions of Craft CMS on the 4.x branch prior to 4.14.13 and on the 5.x branch prior to 5.6.16 contains a potential remote code execution vulnerability via Twig SSTI. One must have administrator access and `ALLOW_ADMIN_CHANGES` must be enabled for this to work. Users should update to the patched versions 4.14.13 or 5.6.15 to mitigate the issue.
CWE-1336
May 05, 2025
CVE-2025-28062
8.1
HIGH
SSVC PoC
2 PoCs
Analysis
EPSS 0.00
Frappe Erpnext - CSRF
A Cross-Site Request Forgery (CSRF) vulnerability was discovered in ERPNEXT 14.82.1 and 14.74.3. The vulnerability allows an attacker to perform unauthorized actions such as user deletion, password resets, and privilege escalation due to missing CSRF protections.
CWE-352
May 05, 2025
CVE-2025-47226
5.0
MEDIUM
SSVC PoC
2 PoCs
Analysis
EPSS 0.01
Grokability Snipe-IT <8.1.0 - Info Disclosure
Grokability Snipe-IT before 8.1.0 has incorrect authorization for accessing asset information.
CWE-639
May 02, 2025
CVE-2025-4336
8.1
HIGH
1 PoC
Analysis
EPSS 0.02
Emagicone Store Manager For Woocommerce - Unrestricted File Upload
The eMagicOne Store Manager for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the set_file() function in all versions up to, and including, 1.2.5. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible. This is only exploitable by unauthenticated attackers in default configurations where the the default password is left as 1:1, or where the attacker gains access to the credentials.
CWE-434
May 24, 2025
CVE-2025-47256
5.6
MEDIUM
SSVC PoC
1 PoC
Analysis
EPSS 0.00
Libxmp <4.6.2 - Buffer Overflow
Libxmp through 4.6.2 has a stack-based buffer overflow in depack_pha in loaders/prowizard/pha.c via a malformed Pha format tracker module in a .mod file.
CWE-191
May 06, 2025