Latest Vulnerabilities with Public Exploits

Updated 17m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

346,760 CVEs tracked 53,703 with exploits 4,860 exploited in wild 1,585 CISA KEV 4,078 Nuclei templates 52,442 vendors 43,944 researchers
53,703 results Clear all
CVE-2025-2812 9.8 CRITICAL SSVC PoC 1 PoC Analysis EPSS 0.00
Mydata Ticket Sales Automation < 2025-04-03 - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mydata Informatics Ticket Sales Automation allows Blind SQL Injection.This issue affects Ticket Sales Automation: before 03.04.2025 (DD.MM.YYYY).
CWE-89 May 02, 2025
CVE-2025-4403 9.8 CRITICAL 1 PoC Analysis EPSS 0.03
WooCommerce 1.1.6 - RCE
The Drag and Drop Multiple File Upload for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads in all versions up to, and including, 1.1.6 due to accepting a user‐supplied supported_type string and the uploaded filename without enforcing real extension or MIME checks within the upload() function. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.
CWE-434 May 09, 2025
CVE-2025-46271 9.1 CRITICAL 1 PoC Analysis EPSS 0.06
UNI-NMS-Lite - Command Injection
UNI-NMS-Lite is vulnerable to a command injection attack that could allow an unauthenticated attacker to read or manipulate device data.
CWE-78 Apr 24, 2025
CVE-2025-2748 6.1 MEDIUM EXPLOITED 1 PoC Analysis NUCLEI EPSS 0.00
Kentico Xperience CMS - Unauthenticated Stored XSS
The Kentico Xperience application does not fully validate or filter files uploaded via the multiple-file upload functionality, which allows for stored XSS.This issue affects Kentico Xperience through 13.0.178.
CWE-434 Mar 24, 2025
CVE-2025-27533 7.5 HIGH 2 PoCs Analysis EPSS 0.02
Apache ActiveMQ <6.1.6 - DoS
Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ. During unmarshalling of OpenWire commands the size value of buffers was not properly validated which could lead to excessive memory allocation and be exploited to cause a denial of service (DoS) by depleting process memory, thereby affecting applications and services that rely on the availability of the ActiveMQ broker when not using mutual TLS connections. This issue affects Apache ActiveMQ: from 6.0.0 before 6.1.6, from 5.18.0 before 5.18.7, from 5.17.0 before 5.17.7, before 5.16.8. ActiveMQ 5.19.0 is not affected. Users are recommended to upgrade to version 6.1.6+, 5.19.0+, 5.18.7+, 5.17.7, or 5.16.8 or which fixes the issue. Existing users may implement mutual TLS to mitigate the risk on affected brokers.
CWE-789 May 07, 2025
CVE-2025-29448 7.5 HIGH SSVC PoC 1 PoC Analysis EPSS 0.01
Easyappointments Easy!appointments - Improper Access Control
Booking logic flaw in Easy!Appointments v1.5.1 allows unauthenticated attackers to create appointments with excessively long durations, causing a denial of service by blocking all future booking availability.
CWE-284 May 07, 2025
CVE-2025-21204 7.8 HIGH 1 PoC Analysis EPSS 0.07
Microsoft Windows 10 1507 < 10.0.10240.20978 - Symlink Following
Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.
CWE-59 Apr 08, 2025
CVE-2025-47550 6.6 MEDIUM 1 PoC Analysis EPSS 0.00
Themefic Instantio < 3.3.16 - Unrestricted File Upload
Unrestricted Upload of File with Dangerous Type vulnerability in Themefic Instantio instantio allows Upload a Web Shell to a Web Server.This issue affects Instantio: from n/a through <= 3.3.16.
CWE-434 May 07, 2025
CVE-2025-47549 9.1 CRITICAL 1 PoC Analysis EPSS 0.00
Themefic Ultimate Before After Image ... - Unrestricted File Upload
Unrestricted Upload of File with Dangerous Type vulnerability in Themefic BEAF beaf-before-and-after-gallery allows Upload a Web Shell to a Web Server.This issue affects BEAF: from n/a through <= 4.6.10.
CWE-434 May 07, 2025
CVE-2025-24801 8.5 HIGH 2 PoCs Analysis EPSS 0.03
Glpi < 10.0.18 - Unrestricted File Upload
GLPI is a free asset and IT management software package. An authenticated user can upload and force the execution of *.php files located on the GLPI server. This vulnerability is fixed in 10.0.18.
CWE-434 Mar 18, 2025
CVE-2025-28074 6.1 MEDIUM 1 PoC Analysis EPSS 0.00
Phplist < 3.6.15 - XSS
phpList before 3.6.15 is vulnerable to Cross-Site Scripting (XSS) due to improper input sanitization in lt.php. The vulnerability is exploitable when the application dynamically references internal paths and processes untrusted input without escaping, allowing an attacker to inject malicious JavaScript.
CWE-79 May 08, 2025
CVE-2025-28073 6.1 MEDIUM 1 PoC Analysis EPSS 0.00
Phplist < 3.6.15 - XSS
phpList before 3.6.15 is vulnerable to Reflected Cross-Site Scripting (XSS) via the /lists/dl.php endpoint. An attacker can inject arbitrary JavaScript code by manipulating the id parameter, which is improperly sanitized.
CWE-79 May 08, 2025
CVE-2025-45250 5.5 MEDIUM SSVC PoC 2 PoCs Analysis EPSS 0.00
Mrdoc < 0.95 - SSRF
MrDoc v0.95 and before is vulnerable to Server-Side Request Forgery (SSRF) in the validate_url function of the app_doc/utils.py file.
CWE-918 May 06, 2025
CVE-2025-22968 9.8 CRITICAL SSVC PoC 2 PoCs Analysis EPSS 0.42
Dlink Dwr-m972v Firmware - Code Injection
An issue in D-Link DWR-M972V 1.05SSG allows a remote attacker to execute arbitrary code via SSH using root account without restrictions
CWE-94 Jan 15, 2025
CVE-2025-47423 5.8 MEDIUM SSVC PoC 1 PoC Analysis NUCLEI EPSS 0.01
Personal Weather Station Dashboard 12_lts - Path Traversal
Personal Weather Station Dashboard 12_lts allows unauthenticated remote attackers to read arbitrary files via ../ directory traversal in the test parameter to /others/_test.php, as demonstrated by reading the server's private SSL key in cleartext.
CWE-24 May 07, 2025
CVE-2025-46731 7.2 HIGH SSVC PoC 1 PoC Analysis EPSS 0.01
Craft CMS <4.14.13, <5.6.16 - Authenticated RCE
Craft is a content management system. Versions of Craft CMS on the 4.x branch prior to 4.14.13 and on the 5.x branch prior to 5.6.16 contains a potential remote code execution vulnerability via Twig SSTI. One must have administrator access and `ALLOW_ADMIN_CHANGES` must be enabled for this to work. Users should update to the patched versions 4.14.13 or 5.6.15 to mitigate the issue.
CWE-1336 May 05, 2025
CVE-2025-28062 8.1 HIGH SSVC PoC 2 PoCs Analysis EPSS 0.00
Frappe Erpnext - CSRF
A Cross-Site Request Forgery (CSRF) vulnerability was discovered in ERPNEXT 14.82.1 and 14.74.3. The vulnerability allows an attacker to perform unauthorized actions such as user deletion, password resets, and privilege escalation due to missing CSRF protections.
CWE-352 May 05, 2025
CVE-2025-47226 5.0 MEDIUM SSVC PoC 2 PoCs Analysis EPSS 0.01
Grokability Snipe-IT <8.1.0 - Info Disclosure
Grokability Snipe-IT before 8.1.0 has incorrect authorization for accessing asset information.
CWE-639 May 02, 2025
CVE-2025-4336 8.1 HIGH 1 PoC Analysis EPSS 0.02
Emagicone Store Manager For Woocommerce - Unrestricted File Upload
The eMagicOne Store Manager for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the set_file() function in all versions up to, and including, 1.2.5. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible. This is only exploitable by unauthenticated attackers in default configurations where the the default password is left as 1:1, or where the attacker gains access to the credentials.
CWE-434 May 24, 2025
CVE-2025-47256 5.6 MEDIUM SSVC PoC 1 PoC Analysis EPSS 0.00
Libxmp <4.6.2 - Buffer Overflow
Libxmp through 4.6.2 has a stack-based buffer overflow in depack_pha in loaders/prowizard/pha.c via a malformed Pha format tracker module in a .mod file.
CWE-191 May 06, 2025