CVE-2020-25078
D-Link · DCS-2530L and DCS-2670L Devices
Added Aug 5, 2025
Security Bulletins
Active threat advisories and known exploited vulnerabilities.
Pulled daily from the CISA Known Exploited Vulnerabilities catalog. Every entry has confirmed active exploitation in the wild. Last synced Jun 12, 2026.
Critical
Critical
CVE-2020-25079
D-Link · DCS-2530L and DCS-2670L Devices
Added Aug 5, 2025
D-Link DCS-2530L and DCS-2670L Command Injection Vulnerability
Critical
CVE-2022-40799
D-Link · DNR-322L
Added Aug 5, 2025
D-Link DNR-322L Download of Code Without Integrity Check Vulnerability
Critical
CVE-2023-2533
PaperCut · NG/MF
Added Jul 28, 2025
PaperCut NG/MF Cross-Site Request Forgery (CSRF) Vulnerability
Critical
CVE-2025-20337
Cisco · Identity Services Engine
Added Jul 28, 2025
Cisco Identity Services Engine Injection Vulnerability
Critical
CVE-2025-20281
Cisco · Identity Services Engine
Added Jul 28, 2025
Cisco Identity Services Engine Injection Vulnerability
Critical
CVE-2025-49706
Microsoft · SharePoint
Added Jul 22, 2025
Microsoft SharePoint Improper Authentication Vulnerability
Critical
CVE-2025-49704
Microsoft · SharePoint
Added Jul 22, 2025
Microsoft SharePoint Code Injection Vulnerability
Critical
CVE-2025-54309
CrushFTP · CrushFTP
Added Jul 22, 2025
CrushFTP Unprotected Alternate Channel Vulnerability
Critical
CVE-2025-2776
SysAid · SysAid On-Prem
Added Jul 22, 2025
SysAid On-Prem Improper Restriction of XML External Entity Reference Vulnerability
Critical
CVE-2025-6558
Google · Chromium
Added Jul 22, 2025
Google Chromium ANGLE and GPU Improper Input Validation Vulnerability
Critical
CVE-2025-2775
SysAid · SysAid On-Prem
Added Jul 22, 2025
SysAid On-Prem Improper Restriction of XML External Entity Reference Vulnerability
Critical
CVE-2025-53770
Microsoft · SharePoint
Added Jul 20, 2025
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Critical
CVE-2025-25257
Fortinet · FortiWeb
Added Jul 18, 2025
Fortinet FortiWeb SQL Injection Vulnerability
Critical
CVE-2025-47812
Wing FTP Server · Wing FTP Server
Added Jul 14, 2025
Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability
Critical
CVE-2025-5777
Citrix · NetScaler ADC and Gateway
Added Jul 10, 2025
Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability
Critical
CVE-2019-9621
Synacor · Zimbra Collaboration Suite (ZCS)
Added Jul 7, 2025
Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery (SSRF) Vulnerability
Critical
CVE-2019-5418
Rails · Ruby on Rails
Added Jul 7, 2025
Rails Ruby on Rails Path Traversal Vulnerability
Critical
CVE-2016-10033
PHP · PHPMailer
Added Jul 7, 2025
PHPMailer Command Injection Vulnerability
Critical
CVE-2014-3931
Looking Glass · Multi-Router Looking Glass (MRLG)
Added Jul 7, 2025
Multi-Router Looking Glass (MRLG) Buffer Overflow Vulnerability
Critical
CVE-2025-6554
Google · Chromium V8
Added Jul 2, 2025
Google Chromium V8 Type Confusion Vulnerability
Critical
CVE-2025-48927
TeleMessage · TM SGNL
Added Jul 1, 2025
TeleMessage TM SGNL Initialization of a Resource with an Insecure Default Vulnerability
Critical
CVE-2025-48928
TeleMessage · TM SGNL
Added Jul 1, 2025
TeleMessage TM SGNL Exposure of Core Dump File to an Unauthorized Control Sphere Vulnerability
Critical
CVE-2025-6543
Citrix · NetScaler ADC and Gateway
Added Jun 30, 2025
Citrix NetScaler ADC and Gateway Buffer Overflow Vulnerability
Critical
CVE-2024-54085
AMI · MegaRAC SPx
Added Jun 25, 2025
AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability
Need help prioritizing these vulnerabilities?
ThreatGrid can assess your environment and map active CVEs to your monitored assets.