Critical
|
21 May 2025 |
21 May 2025 |
CPAI-2024-1666
|
|
CVE-2024-27443
|
Zimbra Collaboration Cross-Site Scripting (CVE-2024-27443)
|
High
|
20 May 2025 |
21 May 2025 |
CPAI-2025-0302
|
|
|
Adobe Flash Player Malicious Obfuscations
|
High
|
19 May 2025 |
19 May 2025 |
CPAI-2025-0299
|
|
|
Microsoft Internet Explorer Null Pointer Dereference
|
High
|
19 May 2025 |
19 May 2025 |
CPAI-2024-1655
|
|
CVE-2024-11047 CVE-2024-11048
|
D-Link DI-8003 Buffer Overflow (CVE-2024-11047; CVE-2024-11048)
|
Medium
|
19 May 2025 |
19 May 2025 |
CPAI-2024-1618
|
|
CVE-2024-12510
|
Xerox Versalink C7025 Server-Side Request Forgery (CVE-2024-12510)
|
High
|
18 May 2025 |
18 May 2025 |
CPAI-2024-1656
|
|
CVE-2024-27778
|
Fortinet FortiSandbox Command Injection (CVE-2024-27778)
|
Medium
|
18 May 2025 |
18 May 2025 |
CPAI-2024-1629
|
|
CVE-2024-45440
|
Drupal Information Disclosure (CVE-2024-45440)
|
Critical
|
15 Apr 2025 |
18 May 2025 |
CPAI-2025-0125
|
|
|
Sensitive Configuration File Disclosure
|
High
|
15 May 2025 |
15 May 2025 |
CPAI-2024-1654
|
|
CVE-2024-13163
|
Ivanti Endpoint Manager Insecure Deserialization (CVE-2024-13163)
|
High
|
15 May 2025 |
15 May 2025 |
CPAI-2024-1650
|
|
CVE-2024-6651
|
WordPress File Upload Plugin Cross-Site Scripting (CVE-2024-6651)
|
Medium
|
15 May 2025 |
15 May 2025 |
CPAI-2024-1648
|
|
CVE-2024-36465
|
ZABBIX SQL Injection (CVE-2024-36465)
|
High
|
15 May 2025 |
15 May 2025 |
CPAI-2023-2054
|
|
CVE-2023-50991
|
Tenda I29 Firmware Buffer Overflow (CVE-2023-50991)
|
Medium
|
15 May 2025 |
15 May 2025 |
CPAI-2024-1636
|
|
CVE-2024-9917
|
HuangDou UTCMS Remote Code Execution (CVE-2024-9917)
|
High
|
13 May 2025 |
14 May 2025 |
CPAI-2025-0292
|
Microsoft CVE-2025-30397
|
CVE-2025-30397
|
Microsoft Scripting Engine Memory Corruption (CVE-2025-30397)
|
High
|
14 May 2025 |
14 May 2025 |
CPAI-2015-1689
|
|
CVE-2015-5625
|
OpenDocMan Cross-Site Scripting (CVE-2015-5625)
|
Critical
|
14 May 2025 |
14 May 2025 |
CPAI-2025-0274
|
|
CVE-2025-27007
|
WordPress OttoKit Plugin Authentication Bypass (CVE-2025-27007)
|
High
|
14 May 2025 |
14 May 2025 |
CPAI-2015-1686
|
|
CVE-2015-3783
|
Apple SceneKit Buffer Overflow (CVE-2015-3783)
|
High
|
13 May 2025 |
13 May 2025 |
CPAI-2025-0298
|
Adobe APSB25-52
|
CVE-2025-43560
|
Adobe ColdFusion Improper Input Validation (APSB25-52: CVE-2025-43560)
|
High
|
13 May 2025 |
13 May 2025 |
CPAI-2025-0297
|
Adobe APSB25-52
|
CVE-2025-43564
|
Adobe ColdFusion Incorrect Authorization (APSB25-52: CVE-2025-43564)
|
High
|
13 May 2025 |
13 May 2025 |
CPAI-2025-0296
|
Adobe APSB25-52
|
CVE-2025-43565
|
Adobe ColdFusion Improper Access Control (APSB25-52: CVE-2025-43565)
|
High
|
13 May 2025 |
13 May 2025 |
CPAI-2025-0295
|
Adobe APSB25-52
|
CVE-2025-43563
|
Adobe ColdFusion Improper Access Control (APSB25-52: CVE-2025-43563)
|
High
|
13 May 2025 |
13 May 2025 |
CPAI-2025-0294
|
Adobe APSB25-52
|
CVE-2025-43561
|
Adobe ColdFusion Improper Access Control (APSB25-52: CVE-2025-43561)
|
High
|
13 May 2025 |
13 May 2025 |
CPAI-2025-0290
|
Microsoft CVE-2025-29971
|
CVE-2025-29971
|
Microsoft Web Threat Defense Denial of Service (CVE-2025-29971)
|
Medium
|
13 May 2025 |
13 May 2025 |
CPAI-2017-1959
|
|
CVE-2017-17664
|
Digium Asterisk Out of Bounds Write (CVE-2017-17664)
|
Medium
|
12 May 2025 |
12 May 2025 |
CPAI-2022-2215
|
|
CVE-2022-45402
|
Apache Airflow Open Redirect (CVE-2022-45402)
|
High
|
20 Apr 2025 |
12 May 2025 |
CPAI-2024-1604
|
|
CVE-2024-45324
|
Fortinet Multiple Products Format String Injection (CVE-2024-45324)
|
High
|
16 Mar 2025 |
12 May 2025 |
CPAI-2025-0094
|
|
CVE-2025-24799
|
GLPI SQL Injection (CVE-2025-24799)
|
High
|
11 May 2025 |
11 May 2025 |
CPAI-2025-0273
|
|
CVE-2025-32819 CVE-2025-32820 CVE-2025-32821
|
SonicWall SMA100 Remote Code Execution (CVE-2025-32819; CVE-2025-32820; CVE-2025-32821)
|
Critical
|
11 May 2025 |
11 May 2025 |
CPAI-2024-1637
|
|
CVE-2024-52961
|
Fortinet FortiSandbox Command Injection (CVE-2024-52961)
|
Critical
|
11 May 2025 |
11 May 2025 |
CPAI-2019-3280
|
|
CVE-2019-16932
|
WordPress Themeisle Visualizer Plugin Server-Side Request Forgery (CVE-2019-16932)
|
Critical
|
11 May 2025 |
11 May 2025 |
CPAI-2020-4307
|
|
CVE-2020-24881
|
OsTicket Server-Side Request Forgery (CVE-2020-24881)
|
High
|
11 May 2025 |
11 May 2025 |
CPAI-2025-0202
|
|
CVE-2025-27423
|
Vim Command Injection (CVE-2025-27423)
|
High
|
4 May 2025 |
8 May 2025 |
CPAI-2023-2049
|
|
CVE-2023-44221
|
SonicWall SMA Command Injection (CVE-2023-44221)
|
High
|
8 May 2025 |
8 May 2025 |
CPAI-2024-1633
|
|
CVE-2024-13179
|
Ivanti Avalanche Directory Traversal (CVE-2024-13179)
|
Critical
|
8 May 2025 |
8 May 2025 |
CPAI-2019-3277
|
|
CVE-2019-17382
|
Zabbix Authentication Bypass (CVE-2019-17382)
|
High
|
8 May 2025 |
8 May 2025 |
CPAI-2020-4306
|
|
CVE-2020-19364
|
OpenEMR Arbitrary File Upload (CVE-2020-19364)
|
High
|
29 Apr 2025 |
8 May 2025 |
CPAI-2025-0229
|
|
CVE-2025-3538
|
D-Link DI-8100 Buffer Overflow (CVE-2025-3538)
|
Critical
|
7 Apr 2025 |
8 May 2025 |
CPAI-2025-0168
|
|
CVE-2025-22457
|
Ivanti Buffer Overflow (CVE-2025-22457)
|
Medium
|
7 May 2025 |
7 May 2025 |
CPAI-2022-2214
|
|
CVE-2022-32206
|
Haxx Curl Denial of Service (CVE-2022-32206)
|
Critical
|
7 May 2025 |
7 May 2025 |
CPAI-2021-2321
|
|
CVE-2021-41649
|
Online Shopping System Advanced SQL Injection (CVE-2021-41649)
|
Critical
|
7 May 2025 |
7 May 2025 |
CPAI-2025-0192
|
|
CVE-2025-1661
|
WordPress HUSKY Plugin Path Traversal (CVE-2025-1661)
|
Critical
|
3 Feb 2025 |
7 May 2025 |
CPAI-2024-1293
|
|
CVE-2024-55591
|
Fortinet Multiple Products Authentication Bypass (CVE-2024-55591)
|
Medium
|
6 May 2025 |
6 May 2025 |
CPAI-2025-0258
|
|
CVE-2025-1103
|
D-Link DIR-823X Denial of Service (CVE-2025-1103)
|
Critical
|
5 May 2025 |
5 May 2025 |
CPAI-2021-2318
|
|
CVE-2021-27670
|
Appspace Server-Side Request Forgery (CVE-2021-27670)
|
Medium
|
5 May 2025 |
5 May 2025 |
CPAI-2024-1630
|
|
CVE-2024-44236
|
Apple MacOS Out of Bounds Write (CVE-2024-44236)
|
Critical
|
20 Apr 2025 |
5 May 2025 |
CPAI-2024-1602
|
|
CVE-2023-51984 CVE-2024-33342
|
D-Link DIR-822 Command Injection (CVE-2023-51984; CVE-2024-33342)
|
Critical
|
25 Mar 2025 |
5 May 2025 |
CPAI-2021-2302
|
|
CVE-2019-10955 CVE-2021-23385 CVE-2021-23393 CVE-2021-32618
|
Open Redirect Attempt (CVE-2019-10955; CVE-2021-23385; CVE-2021-23393; CVE-2021-32618)
|
High
|
4 May 2025 |
4 May 2025 |
CPAI-2024-1619
|
|
CVE-2024-11477
|
7-Zip Integer Underflow (CVE-2024-11477)
|
Medium
|
4 May 2025 |
4 May 2025 |
CPAI-2025-0204
|
|
CVE-2025-1608 CVE-2025-1610
|
LB-LINK AC1900 Command Injection (CVE-2025-1608; CVE-2025-1610)
|
Medium
|
29 Apr 2025 |
29 Apr 2025 |
CPAI-2024-1627
|
|
CVE-2024-13162
|
Ivanti Endpoint Manager SQL Injection (CVE-2024-13162)
|