Medium
|
29 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0231
|
|
CVE-2025-31486
|
Vite Arbitrary File Read (CVE-2025-31486)
|
High
|
29 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0227
|
|
CVE-2025-3346
|
Tenda AC7 Buffer Overflow (CVE-2025-3346)
|
High
|
29 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0219
|
|
CVE-2025-3328
|
Tenda AC1206 Firmware Buffer Overflow (CVE-2025-3328)
|
Critical
|
28 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0220
|
|
CVE-2025-30406
|
Gladinet CentreStack Insecure Deserialization (CVE-2025-30406)
|
Critical
|
8 May 2025 |
24 Jun 2025 |
CPAI-2025-0213
|
|
CVE-2025-29659 CVE-2025-29660
|
Yi XY-3820 Remote Code Execution (CVE-2025-29659; CVE-2025-29660)
|
Critical
|
28 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0211
|
|
CVE-2025-25279
|
Mattermost Arbitrary File Read (CVE-2025-25279)
|
Critical
|
27 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0212
|
|
CVE-2025-28146
|
Edimax AC1200 Command Injection (CVE-2025-28146)
|
High
|
24 Apr 2025 |
24 Jun 2025 |
CPAI-2024-1614
|
|
CVE-2024-9054
|
Microchip TimeProvider 4100 Command Injection (CVE-2024-9054)
|
High
|
23 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0198
|
|
CVE-2025-30066
|
Tj-Actions Changed-Files Information Disclosure (CVE-2025-30066)
|
High
|
20 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0196
|
|
CVE-2025-25291
|
SAML-Toolkits ruby-saml Authentication Bypass (CVE-2025-25291)
|
Medium
|
17 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0195
|
|
CVE-2025-1758
|
Kemp LoadMaster Buffer Overflow (CVE-2025-1758)
|
Critical
|
15 Apr 2025 |
24 Jun 2025 |
CPAI-2024-1591
|
|
CVE-2024-48887
|
Fortinet FortiSwitch Authentication Bypass (CVE-2024-48887)
|
Critical
|
14 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0191
|
|
CVE-2025-3248
|
Langflow Remote Code Execution (CVE-2025-3248)
|
Critical
|
10 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0174
|
|
CVE-2025-2945
|
PostgreSQL pgAdmin Remote Code Execution (CVE-2025-2945)
|
Critical
|
15 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0164
|
|
CVE-2025-22954
|
Koha SQL Injection (CVE-2025-22954)
|
High
|
3 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0158
|
|
CVE-2024-45811 CVE-2025-30208 CVE-2025-31125
|
Vite Information Disclosure (CVE-2024-45811; CVE-2025-30208; CVE-2025-31125)
|
Critical
|
31 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0141
|
|
CVE-2025-2825 CVE-2025-31161
|
CrushFTP Authentication Bypass (CVE-2025-2825; CVE-2025-31161)
|
Medium
|
31 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0140
|
|
CVE-2025-23199
|
Librenms Cross-Site Scripting (CVE-2025-23199)
|
Critical
|
31 Mar 2025 |
24 Jun 2025 |
CPAI-2024-1540
|
|
CVE-2024-9487
|
GitHub Enterprise Server Authentication Bypass (CVE-2024-9487)
|
Medium
|
31 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0113
|
|
CVE-2025-27218
|
Sitecore Insecure Deserialization (CVE-2025-27218)
|
Critical
|
30 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0118
|
|
CVE-2025-29774
|
Node.js xml-crypto Privilege Escalation (CVE-2025-29774)
|
Critical
|
30 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0117
|
|
CVE-2025-29775
|
Node.js xml-crypto Privilege Escalation (CVE-2025-29775)
|
Critical
|
30 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0116
|
|
CVE-2025-0868
|
DocsGPT Remote Code Execution (CVE-2025-0868)
|
Medium
|
30 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0111
|
|
CVE-2025-1035
|
Komtera Technologies KLog Server Directory Traversal (CVE-2025-1035)
|
High
|
30 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0110
|
|
CVE-2025-1025
|
Cockpit HQ Cockpit Arbitrary File Upload (CVE-2025-1025)
|
Critical
|
25 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0109
|
|
CVE-2025-29927
|
Next.js Authentication Bypass (CVE-2025-29927)
|
Medium
|
27 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0104
|
|
CVE-2025-23200
|
Librenms Cross-Site Scripting (CVE-2025-23200)
|
High
|
17 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0095
|
|
CVE-2025-24801
|
GLPI Command Injection (CVE-2025-24801)
|
Critical
|
16 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0090
|
|
CVE-2025-1316
|
Edimax Multiple Products Command Injection (CVE-2025-1316)
|
Critical
|
18 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0073
|
|
CVE-2025-1044
|
Logsign Unified SecOps Platform Authentication Bypass (CVE-2025-1044)
|
Critical
|
13 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0074
|
|
CVE-2025-26319
|
FlowiseAI Directory Traversal (CVE-2025-26319)
|
Critical
|
26 Feb 2025 |
24 Jun 2025 |
CPAI-2025-0057
|
|
CVE-2025-27364
|
MITRE Caldera Remote Code Execution (CVE-2025-27364)
|
High
|
16 Feb 2025 |
24 Jun 2025 |
CPAI-2025-0031
|
|
CVE-2025-21385
|
Microsoft Purview Server-Side Request Forgery (CVE-2025-21385)
|
Medium
|
13 Feb 2025 |
24 Jun 2025 |
CPAI-2025-0033
|
|
CVE-2025-25181
|
Advantive VeraCore SQL Injection (CVE-2025-25181)
|
Critical
|
6 Feb 2025 |
24 Jun 2025 |
CPAI-2025-0012
|
|
CVE-2025-22904 CVE-2025-22907 CVE-2025-22913 CVE-2025-22916
|
EDIMAX RE11S Stack Overflow (CVE-2025-22904; CVE-2025-22907; CVE-2025-22913; CVE-2025-22916)
|
Critical
|
23 Jan 2025 |
24 Jun 2025 |
CPAI-2024-1146
|
|
CVE-2024-8877
|
Riello NetMan 204 Firmware SQL Injection (CVE-2024-8877)
|
Critical
|
24 Jun 2025 |
24 Jun 2025 |
CPAI-2016-1466
|
|
CVE-2016-9299
|
Jenkins Remote Code Execution (CVE-2016-9299)
|
High
|
21 May 2025 |
24 Jun 2025 |
CPAI-2023-2058
|
|
CVE-2023-38950
|
ZKTeco BioTime Path Traversal (CVE-2023-38950)
|
Medium
|
15 May 2025 |
24 Jun 2025 |
CPAI-2025-0272
|
|
CVE-2025-3980
|
Wowjoy Information Disclosure (CVE-2025-3980)
|
Critical
|
4 May 2025 |
24 Jun 2025 |
CPAI-2022-2213
|
|
CVE-2022-46020
|
WBCE CMS Arbitrary File Upload (CVE-2022-46020)
|
High
|
28 Apr 2025 |
24 Jun 2025 |
CPAI-2021-2315
|
|
CVE-2021-38147
|
Wipro Holmes Orchestrator Information Disclosure (CVE-2021-38147)
|
Medium
|
28 Apr 2025 |
24 Jun 2025 |
CPAI-2023-2040
|
|
CVE-2023-50720
|
XWiki Information Disclosure (CVE-2023-50720)
|
High
|
23 Jun 2025 |
23 Jun 2025 |
CPAI-2024-1720
|
|
CVE-2024-55661
|
Laravel Pulse Remote Code Execution (CVE-2024-55661)
|
High
|
23 Jun 2025 |
23 Jun 2025 |
CPAI-2021-2330
|
|
CVE-2021-47667
|
ZendTo Command Injection (CVE-2021-47667)
|
Critical
|
12 Jun 2025 |
23 Jun 2025 |
CPAI-2025-0381
|
|
CVE-2025-2294
|
WordPress Kubio AI Page Builder Plugin Local File Inclusion (CVE-2025-2294)
|
Low
|
29 May 2025 |
23 Jun 2025 |
CPAI-2025-0326
|
|
CVE-2025-46618
|
JetBrains TeamCity Cross-Site Scripting (CVE-2025-46618)
|
Critical
|
25 May 2025 |
23 Jun 2025 |
CPAI-2025-0314
|
|
CVE-2025-45487
|
Linksys E5600 firmware Command Injection (CVE-2025-45487)
|
Critical
|
25 May 2025 |
23 Jun 2025 |
CPAI-2025-0313
|
|
CVE-2025-45488
|
Linksys E5600 firmware Command Injection (CVE-2025-45488)
|
Critical
|
19 May 2025 |
23 Jun 2025 |
CPAI-2024-1651
|
|
CVE-2024-57222 CVE-2024-57223 CVE-2024-57224 CVE-2024-57225 CVE-2024-57226 CVE-2024-57227 CVE-2024-57228
|
Linksys E7350 Command Injection (CVE-2024-57222; CVE-2024-57223; CVE-2024-57224; CVE-2024-57225; CVE-2024-57226; CVE-2024-57227; CVE-2024-57228)
|
Critical
|
29 Apr 2025 |
23 Jun 2025 |
CPAI-2025-0230
|
|
CVE-2025-2747
|
Kentico Xperience Authentication Bypass (CVE-2025-2747)
|