Critical
|
12 Jun 2025 |
23 Jun 2025 |
CPAI-2025-0381
|
|
CVE-2025-2294
|
WordPress Kubio AI Page Builder Plugin Local File Inclusion (CVE-2025-2294)
|
Low
|
29 May 2025 |
23 Jun 2025 |
CPAI-2025-0326
|
|
CVE-2025-46618
|
JetBrains TeamCity Cross-Site Scripting (CVE-2025-46618)
|
Critical
|
25 May 2025 |
23 Jun 2025 |
CPAI-2025-0314
|
|
CVE-2025-45487
|
Linksys E5600 firmware Command Injection (CVE-2025-45487)
|
Critical
|
25 May 2025 |
23 Jun 2025 |
CPAI-2025-0313
|
|
CVE-2025-45488
|
Linksys E5600 firmware Command Injection (CVE-2025-45488)
|
Critical
|
19 May 2025 |
23 Jun 2025 |
CPAI-2024-1651
|
|
CVE-2024-57222 CVE-2024-57223 CVE-2024-57224 CVE-2024-57225 CVE-2024-57226 CVE-2024-57227 CVE-2024-57228
|
Linksys E7350 Command Injection (CVE-2024-57222; CVE-2024-57223; CVE-2024-57224; CVE-2024-57225; CVE-2024-57226; CVE-2024-57227; CVE-2024-57228)
|
Critical
|
29 Apr 2025 |
23 Jun 2025 |
CPAI-2025-0230
|
|
CVE-2025-2747
|
Kentico Xperience Authentication Bypass (CVE-2025-2747)
|
Critical
|
29 Apr 2025 |
23 Jun 2025 |
CPAI-2025-0228
|
|
CVE-2025-2746
|
Kentico Xperience Authentication Bypass (CVE-2025-2746)
|
High
|
28 Apr 2025 |
23 Jun 2025 |
CPAI-2025-0215
|
|
CVE-2025-2126
|
Joomla! JUX Real Estate Plugin SQL Injection (CVE-2025-2126)
|
Critical
|
21 Apr 2025 |
23 Jun 2025 |
CPAI-2024-1589
|
|
CVE-2024-37843
|
Craft CMS SQL Injection (CVE-2024-37843)
|
Medium
|
3 Apr 2025 |
23 Jun 2025 |
CPAI-2025-0162
|
|
CVE-2025-2748
|
Kentico Xperience Cross-Site Scripting (CVE-2025-2748)
|
Medium
|
16 Mar 2025 |
23 Jun 2025 |
CPAI-2024-1482
|
|
CVE-2024-55573
|
Centreon Project Centreon Web SQL Injection (CVE-2024-55573)
|
Medium
|
20 Jan 2025 |
23 Jun 2025 |
CPAI-2024-1121
|
|
CVE-2024-24942
|
JetBrains TeamCity Directory Traversal (CVE-2024-24942)
|
Medium
|
1 Jan 2025 |
23 Jun 2025 |
CPAI-2023-0488
|
|
CVE-2023-34220
|
JetBrains TeamCity Cross-Site Scripting (CVE-2023-34220)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2023-2074
|
|
CVE-2023-50719
|
XWiki Information Disclosure (CVE-2023-50719)
|
Critical
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0465
|
|
CVE-2025-27590
|
Oxidized Remote Code Execution (CVE-2025-27590)
|
Critical
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2024-1719
|
|
CVE-2024-0352
|
Likeshop Arbitrary File Upload (CVE-2024-0352)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2023-2073
|
|
CVE-2023-6505
|
WordPress Prime Mover Plugin Information Disclosure (CVE-2023-6505)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0463
|
|
CVE-2025-48999
|
DataEase Remote Code Execution (CVE-2025-48999)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2024-1715
|
|
CVE-2024-1380
|
WordPress Relevanssi Plugin Information Disclosure (CVE-2024-1380)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0454
|
|
CVE-2025-33073
|
Microsoft Windows Privilege Escalation (CVE-2025-33073)
|
Critical
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2024-1713
|
|
CVE-2024-56064
|
WordPress SuperBackup Plugin Arbitrary File Upload (CVE-2024-56064)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0447
|
|
CVE-2025-4902
|
D-Link DI-7003G Information Disclosure (CVE-2025-4902)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2024-1701
|
|
CVE-2024-37357
|
Wavlink AC3000 Buffer Overflow (CVE-2024-37357)
|
High
|
15 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0370
|
|
CVE-2025-40775
|
ISC BIND Denial of Service (CVE-2025-40775)
|
High
|
31 Mar 2025 |
22 Jun 2025 |
CPAI-2025-0135
|
|
CVE-2025-24054
|
Microsoft Windows NTLM Relay (CVE-2025-24054)
|
Medium
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2024-0990
|
|
CVE-2024-3097
|
WordPress Imagely NextGEN Gallery Plugin Authentication Bypass (CVE-2024-3097)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0461
|
|
CVE-2025-48047
|
MICI NetFax Server Command Injection (CVE-2025-48047)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0460
|
|
CVE-2025-4008
|
Smartbedded Meteobridge Command Injection (CVE-2025-4008)
|
Medium
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0458
|
|
CVE-2025-37098
|
HPE Insight Remote Support Directory Traversal (CVE-2025-37098)
|
Medium
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0457
|
|
CVE-2025-29032
|
Tenda AC9 Firmware Buffer Overflow (CVE-2025-29032)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2024-1716
|
|
CVE-2024-32293
|
Tenda W30e Firmware Buffer Overflow (CVE-2024-32293)
|
High
|
9 Jun 2025 |
22 Jun 2025 |
CPAI-2024-1681
|
|
CVE-2024-39605
|
Delta Electronics DIAScreen Buffer Overflow (CVE-2024-39605)
|
Medium
|
8 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0369
|
|
CVE-2025-4269 CVE-2025-4271
|
TOTOLINK A720R Authentication Bypass (CVE-2025-4269; CVE-2025-4271)
|
Medium
|
29 May 2025 |
22 Jun 2025 |
CPAI-2025-0350
|
|
CVE-2025-45859
|
TOTOLINK A3002R Buffer Overflow (CVE-2025-45859)
|
Medium
|
29 May 2025 |
22 Jun 2025 |
CPAI-2025-0344
|
|
CVE-2025-45864
|
TOTOLINK A3002R Buffer Overflow (CVE-2025-45864)
|
Medium
|
29 May 2025 |
22 Jun 2025 |
CPAI-2025-0340
|
|
CVE-2025-45867
|
TOTOLINK A3002R Buffer Overflow (CVE-2025-45867)
|
Low
|
29 May 2025 |
22 Jun 2025 |
CPAI-2025-0335
|
|
CVE-2025-3994
|
TOTOLINK N150RT Firmware Cross-Site Scripting (CVE-2025-3994)
|
Critical
|
5 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0303
|
|
CVE-2025-45859 CVE-2025-45861 CVE-2025-45862 CVE-2025-45863 CVE-2025-45864 CVE-2025-45865 CVE-2025-45866 CVE-2025-45867
|
TOTOLINK A3002R Buffer Overflow (CVE-2025-45859; CVE-2025-45861; CVE-2025-45862; CVE-2025-45863; CVE-2025-45864; CVE-2025-45865; CVE-2025-45866; CVE-2025-45867)
|
Medium
|
15 May 2025 |
22 Jun 2025 |
CPAI-2025-0281
|
|
CVE-2025-3987
|
TOTOLINK N150RT Firmware Command Injection (CVE-2025-3987)
|
Medium
|
15 May 2025 |
22 Jun 2025 |
CPAI-2025-0278
|
|
CVE-2025-2094
|
TOTOLINK EX1800T Firmware Command Injection (CVE-2025-2094)
|
High
|
12 May 2025 |
22 Jun 2025 |
CPAI-2024-1639
|
|
CVE-2024-47962
|
Delta Electronics CNCSoft-G2 Remote Code Execution (CVE-2024-47962)
|
Critical
|
11 May 2025 |
22 Jun 2025 |
CPAI-2025-0263
|
|
CVE-2025-28137
|
TOTOLINK A810R Firmware Command Injection (CVE-2025-28137)
|
Medium
|
29 Apr 2025 |
22 Jun 2025 |
CPAI-2025-0233
|
|
CVE-2025-3663
|
TOTOLINK A3700R Improper Access Control (CVE-2025-3663)
|
Critical
|
4 May 2025 |
22 Jun 2025 |
CPAI-2025-0210
|
|
CVE-2025-28038 CVE-2025-28039
|
TOTOLINK EX1200T Remote Command Execution (CVE-2025-28038; CVE-2025-28039)
|
Critical
|
27 Apr 2025 |
22 Jun 2025 |
CPAI-2022-2211
|
|
CVE-2022-26187
|
TOTOLINK N600R Firmware Command Injection (CVE-2022-26187)
|
Critical
|
24 Apr 2025 |
22 Jun 2025 |
CPAI-2021-2307
|
|
CVE-2021-22175 CVE-2021-22214 CVE-2021-39935
|
GitLab Server-Side Request Forgery (CVE-2021-22175; CVE-2021-22214; CVE-2021-39935)
|
Medium
|
16 Apr 2025 |
22 Jun 2025 |
CPAI-2019-3273
|
|
CVE-2019-13068
|
Grafana Cross-Site Scripting (CVE-2019-13068)
|
Critical
|
14 Apr 2025 |
22 Jun 2025 |
CPAI-2025-0171
|
|
CVE-2025-25579 CVE-2025-45858
|
TOTOLINK A3002R Command Injection (CVE-2025-25579; CVE-2025-45858)
|
High
|
6 Apr 2025 |
22 Jun 2025 |
CPAI-2022-2200
|
|
CVE-2022-2230
|
GitLab Cross-Site Scripting (CVE-2022-2230)
|
Critical
|
1 Apr 2025 |
22 Jun 2025 |
CPAI-2024-1508
|
|
CVE-2024-7464
|
TOTOLINK CP900 Command Injection (CVE-2024-7464)
|