Critical
|
25 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0109
|
|
CVE-2025-29927
|
Next.js Authentication Bypass (CVE-2025-29927)
|
Medium
|
27 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0104
|
|
CVE-2025-23200
|
Librenms Cross-Site Scripting (CVE-2025-23200)
|
High
|
17 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0095
|
|
CVE-2025-24801
|
GLPI Command Injection (CVE-2025-24801)
|
Critical
|
16 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0090
|
|
CVE-2025-1316
|
Edimax Multiple Products Command Injection (CVE-2025-1316)
|
Critical
|
18 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0073
|
|
CVE-2025-1044
|
Logsign Unified SecOps Platform Authentication Bypass (CVE-2025-1044)
|
Critical
|
13 Mar 2025 |
24 Jun 2025 |
CPAI-2025-0074
|
|
CVE-2025-26319
|
FlowiseAI Directory Traversal (CVE-2025-26319)
|
Critical
|
26 Feb 2025 |
24 Jun 2025 |
CPAI-2025-0057
|
|
CVE-2025-27364
|
MITRE Caldera Remote Code Execution (CVE-2025-27364)
|
High
|
16 Feb 2025 |
24 Jun 2025 |
CPAI-2025-0031
|
|
CVE-2025-21385
|
Microsoft Purview Server-Side Request Forgery (CVE-2025-21385)
|
Medium
|
13 Feb 2025 |
24 Jun 2025 |
CPAI-2025-0033
|
|
CVE-2025-25181
|
Advantive VeraCore SQL Injection (CVE-2025-25181)
|
Critical
|
6 Feb 2025 |
24 Jun 2025 |
CPAI-2025-0012
|
|
CVE-2025-22904 CVE-2025-22907 CVE-2025-22913 CVE-2025-22916
|
EDIMAX RE11S Stack Overflow (CVE-2025-22904; CVE-2025-22907; CVE-2025-22913; CVE-2025-22916)
|
Critical
|
23 Jan 2025 |
24 Jun 2025 |
CPAI-2024-1146
|
|
CVE-2024-8877
|
Riello NetMan 204 Firmware SQL Injection (CVE-2024-8877)
|
Critical
|
24 Jun 2025 |
24 Jun 2025 |
CPAI-2016-1466
|
|
CVE-2016-9299
|
Jenkins Remote Code Execution (CVE-2016-9299)
|
High
|
21 May 2025 |
24 Jun 2025 |
CPAI-2023-2058
|
|
CVE-2023-38950
|
ZKTeco BioTime Path Traversal (CVE-2023-38950)
|
Medium
|
15 May 2025 |
24 Jun 2025 |
CPAI-2025-0272
|
|
CVE-2025-3980
|
Wowjoy Information Disclosure (CVE-2025-3980)
|
Critical
|
4 May 2025 |
24 Jun 2025 |
CPAI-2022-2213
|
|
CVE-2022-46020
|
WBCE CMS Arbitrary File Upload (CVE-2022-46020)
|
High
|
28 Apr 2025 |
24 Jun 2025 |
CPAI-2021-2315
|
|
CVE-2021-38147
|
Wipro Holmes Orchestrator Information Disclosure (CVE-2021-38147)
|
Medium
|
28 Apr 2025 |
24 Jun 2025 |
CPAI-2023-2040
|
|
CVE-2023-50720
|
XWiki Information Disclosure (CVE-2023-50720)
|
Critical
|
6 Apr 2025 |
24 Jun 2025 |
CPAI-2025-0120
|
|
CVE-2025-22896 CVE-2025-24865
|
mySCADA myPRO Information Disclosure (CVE-2025-22896; CVE-2025-24865)
|
Medium
|
16 Mar 2025 |
24 Jun 2025 |
CPAI-2024-1477
|
|
CVE-2024-7074
|
WSO2 API Manager Directory Traversal (CVE-2024-7074)
|
High
|
24 Feb 2025 |
24 Jun 2025 |
CPAI-2025-0047
|
|
CVE-2025-24893
|
XWiki.org XWiki Code Injection (CVE-2025-24893)
|
Critical
|
13 Feb 2025 |
24 Jun 2025 |
CPAI-2024-1386
|
|
CVE-2024-39363
|
Wavlink AC3000 Cross-Site Scripting (CVE-2024-39363)
|
Critical
|
2 Feb 2025 |
24 Jun 2025 |
CPAI-2024-1341
|
|
CVE-2024-36258
|
Wavlink AC3000 Authentication Bypass (CVE-2024-36258)
|
Critical
|
2 Feb 2025 |
24 Jun 2025 |
CPAI-2024-1339
|
|
CVE-2024-34166
|
Wavlink AC3000 Command Injection (CVE-2024-34166)
|
High
|
16 Jan 2025 |
24 Jun 2025 |
CPAI-2024-1243
|
|
CVE-2024-25723
|
ZenML Server Privilege Escalation (CVE-2024-25723)
|
High
|
23 Jun 2025 |
23 Jun 2025 |
CPAI-2024-1720
|
|
CVE-2024-55661
|
Laravel Pulse Remote Code Execution (CVE-2024-55661)
|
High
|
23 Jun 2025 |
23 Jun 2025 |
CPAI-2021-2330
|
|
CVE-2021-47667
|
ZendTo Command Injection (CVE-2021-47667)
|
Critical
|
12 Jun 2025 |
23 Jun 2025 |
CPAI-2025-0381
|
|
CVE-2025-2294
|
WordPress Kubio AI Page Builder Plugin Local File Inclusion (CVE-2025-2294)
|
Low
|
29 May 2025 |
23 Jun 2025 |
CPAI-2025-0326
|
|
CVE-2025-46618
|
JetBrains TeamCity Cross-Site Scripting (CVE-2025-46618)
|
Critical
|
26 May 2025 |
23 Jun 2025 |
CPAI-2025-0320
|
|
CVE-2025-4322
|
WordPress Motors Theme Privilege Escalation (CVE-2025-4322)
|
Critical
|
25 May 2025 |
23 Jun 2025 |
CPAI-2025-0314
|
|
CVE-2025-45487
|
Linksys E5600 firmware Command Injection (CVE-2025-45487)
|
Critical
|
25 May 2025 |
23 Jun 2025 |
CPAI-2025-0313
|
|
CVE-2025-45488
|
Linksys E5600 firmware Command Injection (CVE-2025-45488)
|
Critical
|
19 May 2025 |
23 Jun 2025 |
CPAI-2024-1651
|
|
CVE-2024-57222 CVE-2024-57223 CVE-2024-57224 CVE-2024-57225 CVE-2024-57226 CVE-2024-57227 CVE-2024-57228
|
Linksys E7350 Command Injection (CVE-2024-57222; CVE-2024-57223; CVE-2024-57224; CVE-2024-57225; CVE-2024-57226; CVE-2024-57227; CVE-2024-57228)
|
Critical
|
29 Apr 2025 |
23 Jun 2025 |
CPAI-2025-0230
|
|
CVE-2025-2747
|
Kentico Xperience Authentication Bypass (CVE-2025-2747)
|
Critical
|
29 Apr 2025 |
23 Jun 2025 |
CPAI-2025-0228
|
|
CVE-2025-2746
|
Kentico Xperience Authentication Bypass (CVE-2025-2746)
|
Critical
|
27 Apr 2025 |
23 Jun 2025 |
CPAI-2025-0224
|
|
CVE-2025-34028
|
Commvault Command Center Remote Code Execution (CVE-2025-34028)
|
High
|
28 Apr 2025 |
23 Jun 2025 |
CPAI-2025-0215
|
|
CVE-2025-2126
|
Joomla! JUX Real Estate Plugin SQL Injection (CVE-2025-2126)
|
Critical
|
21 Apr 2025 |
23 Jun 2025 |
CPAI-2024-1589
|
|
CVE-2024-37843
|
Craft CMS SQL Injection (CVE-2024-37843)
|
Medium
|
3 Apr 2025 |
23 Jun 2025 |
CPAI-2025-0162
|
|
CVE-2025-2748
|
Kentico Xperience Cross-Site Scripting (CVE-2025-2748)
|
Medium
|
16 Mar 2025 |
23 Jun 2025 |
CPAI-2024-1482
|
|
CVE-2024-55573
|
Centreon Project Centreon Web SQL Injection (CVE-2024-55573)
|
Medium
|
20 Jan 2025 |
23 Jun 2025 |
CPAI-2024-1121
|
|
CVE-2024-24942
|
JetBrains TeamCity Directory Traversal (CVE-2024-24942)
|
Medium
|
1 Jan 2025 |
23 Jun 2025 |
CPAI-2023-0488
|
|
CVE-2023-34220
|
JetBrains TeamCity Cross-Site Scripting (CVE-2023-34220)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2023-2074
|
|
CVE-2023-50719
|
XWiki Information Disclosure (CVE-2023-50719)
|
Critical
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0465
|
|
CVE-2025-27590
|
Oxidized Remote Code Execution (CVE-2025-27590)
|
Critical
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2024-1719
|
|
CVE-2024-0352
|
Likeshop Arbitrary File Upload (CVE-2024-0352)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2023-2073
|
|
CVE-2023-6505
|
WordPress Prime Mover Plugin Information Disclosure (CVE-2023-6505)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0463
|
|
CVE-2025-48999
|
DataEase Remote Code Execution (CVE-2025-48999)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2024-1715
|
|
CVE-2024-1380
|
WordPress Relevanssi Plugin Information Disclosure (CVE-2024-1380)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0454
|
|
CVE-2025-33073
|
Microsoft Windows Privilege Escalation (CVE-2025-33073)
|
Critical
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2024-1713
|
|
CVE-2024-56064
|
WordPress SuperBackup Plugin Arbitrary File Upload (CVE-2024-56064)
|
High
|
22 Jun 2025 |
22 Jun 2025 |
CPAI-2025-0447
|
|
CVE-2025-4902
|
D-Link DI-7003G Information Disclosure (CVE-2025-4902)
|