Latest Vulnerabilities with Public Exploits
Updated 4h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
53,635 results
Clear all
CVE-2025-29471
8.3
HIGH
2 PoCs
Analysis
EPSS 0.20
Nagios Log Server - XSS
Cross Site Scripting vulnerability in Nagios Log Server v.2024R1.3.1 allows a remote attacker to execute arbitrary code via a payload into the Email field.
CWE-79
Apr 15, 2025
CVE-2025-14783
4.3
MEDIUM
1 PoC
Analysis
EPSS 0.00
Easy Digital Downloads <3.6.2 - Open Redirect
The Easy Digital Downloads plugin for WordPress is vulnerable to Unvalidated Redirect in all versions up to, and including, 3.6.2. This is due to insufficient validation on the redirect url supplied via the 'edd_redirect' parameter. This makes it possible for unauthenticated attackers to redirect users with the password reset email to potentially malicious sites if they can successfully trick them into performing an action.
CWE-640
Dec 31, 2025
CVE-2025-15406
6.3
MEDIUM
1 PoC
1 Writeup
EPSS 0.00
Phpgurukul Online Course Registration < 3.1 - Incorrect Authorization
A flaw has been found in PHPGurukul Online Course Registration up to 3.1. This affects an unknown function. This manipulation causes missing authorization. Remote exploitation of the attack is possible. The exploit has been published and may be used.
CWE-863
Jan 01, 2026
CVE-2025-15390
6.3
MEDIUM
1 PoC
1 Writeup
EPSS 0.00
Phpgurukul Small Crm < 4.0 - Incorrect Authorization
A security flaw has been discovered in PHPGurukul Small CRM 4.0. This impacts an unknown function of the file /admin/edit-user.php. The manipulation results in missing authorization. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks.
CWE-863
Dec 31, 2025
CVE-2025-0288
7.8
HIGH
EXPLOITED
RANSOMWARE
2 PoCs
Analysis
EPSS 0.00
Paragon Software - Memory Corruption
Various Paragon Software products contain an arbitrary kernel memory vulnerability within biontdrv.sys, facilitated by the memmove function, which does not validate or sanitize user controlled input, allowing an attacker the ability to write arbitrary kernel memory and perform privilege escalation.
Mar 03, 2025
CVE-2025-67159
7.5
HIGH
1 PoC
Analysis
EPSS 0.00
Vatilon Pa4 Firmware - Cleartext Transmission
Vatilon v1.12.37-20240124 was discovered to transmit user credentials in plaintext.
CWE-319
Jan 02, 2026
CVE-2025-67158
7.5
HIGH
1 PoC
Analysis
EPSS 0.00
Revotech I6032w-fhw Firmware - Authentication Bypass
An authentication bypass in the /cgi-bin/jvsweb.cgi endpoint of Revotech I6032W-FHW v1.0.0014 - 20210517 allows attackers to access sensitive information and escalate privileges via a crafted HTTP request.
CWE-287
Jan 02, 2026
CVE-2025-67730
5.4
MEDIUM
1 PoC
Analysis
EPSS 0.00
Frappe Learning < 2.42.0 - XSS
Frappe Learning Management System (LMS) is a learning system that helps users structure their content. Versions prior to 2.42.0 allow authenticated users to add malicious HTML and JavaScript through description fields in the Job, Course and Batch forms. This issue is fixed in version 2.42.0.
CWE-79
Dec 12, 2025
CVE-2025-54322
10.0
CRITICAL
2 PoCs
Analysis
EPSS 0.00
Xspeeder Sxzos < 2025-12-26 - Code Injection
Xspeeder SXZOS through 2025-12-26 allows root remote code execution via base64-encoded Python code in the chkid parameter to vLogin.py. The title and oIP parameters are also used.
CWE-95
Dec 27, 2025
CVE-2025-5182
4.3
MEDIUM
1 PoC
Analysis
EPSS 0.00
Summerpearlgroup Vacation Rental Mana... - Improper Authorization
A vulnerability has been found in Summer Pearl Group Vacation Rental Management Platform up to 1.0.1 and classified as critical. This vulnerability affects unknown code of the component Listing Handler. The manipulation leads to authorization bypass. The attack can be initiated remotely. Upgrading to version 1.0.2 is able to address this issue. It is recommended to upgrade the affected component.
CWE-639
May 26, 2025
CVE-2025-65925
6.5
MEDIUM
1 PoC
Analysis
EPSS 0.00
Zeroheight <2025-06-13 - Info Disclosure
An issue was discovered in Zeroheight (SaaS) prior to 2025-06-13. A legacy user creation API pathway allowed accounts to be created without completing the intended email verification step. While unverified accounts could not access product functionality, the behavior bypassed intended verification controls and allowed unintended account creation. This could have enabled spam/fake account creation or resource usage impact. No data exposure or unauthorized access to existing accounts was reported.
CWE-287
Dec 30, 2025
CVE-2025-21479
8.6
HIGH
KEV
2 PoCs
Analysis
EPSS 0.00
Qualcomm Aqt1000 Firmware - Incorrect Authorization
Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.
CWE-863
Jun 03, 2025
CVE-2025-60458
6.5
MEDIUM
1 PoC
Analysis
EPSS 0.00
UxPlay 1.72 - Use After Free
UxPlay 1.72 contains a double free vulnerability in its RTSP request handling. A specially crafted RTSP TEARDOWN request can trigger multiple calls to free() on the same memory address, potentially causing a Denial of Service.
CWE-400
Dec 29, 2025
CVE-2025-8191
3.5
LOW
4 PoCs
Analysis
NUCLEI
EPSS 0.01
Macrozheng Mall < 1.0.3 - Code Injection
A vulnerability, which was classified as problematic, was found in macrozheng mall up to 1.0.3. Affected is an unknown function of the file /swagger-ui/index.html of the component Swagger UI. The manipulation of the argument configUrl leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor deleted the GitHub issue for this vulnerability without any explanation. Afterwards the vendor was contacted early about this disclosure via email but did not respond in any way.
CWE-94
Jul 26, 2025
CVE-2025-46295
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Apache Commons Text <1.10.0 - RCE
Apache Commons Text versions prior to 1.10.0 included interpolation features that could be abused when applications passed untrusted input into the text-substitution API. Because some interpolators could trigger actions like executing commands or accessing external resources, an attacker could potentially achieve remote code execution. This vulnerability has been fully addressed in FileMaker Server 22.0.4.
CWE-94
Dec 16, 2025
CVE-2025-47962
7.8
HIGH
1 PoC
Analysis
EPSS 0.01
Microsoft Windows Software Development Kit - Improper Access Control
Improper access control in Windows SDK allows an authorized attacker to elevate privileges locally.
CWE-284
Jun 10, 2025
CVE-2025-49131
6.3
MEDIUM
1 PoC
Analysis
EPSS 0.01
Fastgpt < 4.9.11 - Incorrect Permission Assignment
FastGPT is an open-source project that provides a platform for building, deploying, and operating AI-driven workflows and conversational agents. The Sandbox container (fastgpt-sandbox) is a specialized, isolated environment used by FastGPT to safely execute user-submitted or dynamically generated code in isolation. The sandbox before version 4.9.11 has insufficient isolation and inadequate restrictions on code execution by allowing overly permissive syscalls, which allows attackers to escape the intended sandbox boundaries. Attackers could exploit this to read and overwrite arbitrary files and bypass Python module import restrictions. This is patched in version 4.9.11 by restricting the allowed system calls to a safer subset and additional descriptive error messaging.
CWE-732
Jun 09, 2025
CVE-2025-22777
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.01
Givewp < 3.19.4 - Insecure Deserialization
Deserialization of Untrusted Data vulnerability in StellarWP GiveWP give allows Object Injection.This issue affects GiveWP: from n/a through <= 3.19.3.
CWE-502
Jan 13, 2025
CVE-2025-9961
HIGH
1 PoC
Analysis
EPSS 0.00
AX10/AX1500 <1.2.1/<1.3.11 - RCE
An authenticated attacker may remotely execute arbitrary code via the CWMP binary on the devices AX10 and AX1500.
The exploit can only be conducted via a Man-In-The-Middle (MITM) attack.
This issue affects AX10 V1/V1.2/V2/V2.6/V3/V3.6: before 1.2.1; AX1500 V1/V1.20/V1.26/V1.60/V1.80/V2.60/V3.6: before 1.3.11.
CWE-120
Sep 06, 2025
CVE-2025-57105
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Dlink Di-7400g+ Firmware - Command Injection
The DI-7400G+ router has a command injection vulnerability, which allows attackers to execute arbitrary commands on the device. The sub_478D28 function in in mng_platform.asp, and sub_4A12DC function in wayos_ac_server.asp of the jhttpd program, with the parameter ac_mng_srv_host.
CWE-77
Aug 22, 2025