CVE-2024-0769
D-Link · DIR-859 Router
Added Jun 25, 2025
Security Bulletins
Active threat advisories and known exploited vulnerabilities.
Pulled daily from the CISA Known Exploited Vulnerabilities catalog. Every entry has confirmed active exploitation in the wild. Last synced Jun 12, 2026.
Critical
Critical
CVE-2024-54085
AMI · MegaRAC SPx
Added Jun 25, 2025
AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability
Critical
CVE-2023-0386
Linux · Kernel
Added Jun 17, 2025
Linux Kernel Improper Ownership Management Vulnerability
Critical
CVE-2023-33538
TP-Link · Multiple Routers
Added Jun 16, 2025
TP-Link Multiple Routers Command Injection Vulnerability
Critical
CVE-2025-43200
Apple · Multiple Products
Added Jun 16, 2025
Apple Multiple Products Unspecified Vulnerability
Critical
CVE-2025-33053
Microsoft · Windows
Added Jun 10, 2025
Microsoft Windows External Control of File Name or Path Vulnerability
Critical
CVE-2025-24016
Wazuh · Wazuh Server
Added Jun 10, 2025
Wazuh Server Deserialization of Untrusted Data Vulnerability
Critical
CVE-2024-42009
Roundcube · Webmail
Added Jun 9, 2025
RoundCube Webmail Cross-Site Scripting Vulnerability
Critical
CVE-2025-32433
Erlang · Erlang/OTP
Added Jun 9, 2025
Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability
Critical
CVE-2025-5419
Google · Chromium V8
Added Jun 5, 2025
Google Chromium V8 Out-of-Bounds Read and Write Vulnerability
Critical
CVE-2025-21479
Qualcomm · Multiple Chipsets
Added Jun 3, 2025
Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability
Critical
CVE-2025-21480
Qualcomm · Multiple Chipsets
Added Jun 3, 2025
Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability
Critical
CVE-2025-27038
Qualcomm · Multiple Chipsets
Added Jun 3, 2025
Qualcomm Multiple Chipsets Use-After-Free Vulnerability
Critical
CVE-2021-32030
ASUS · Routers
Added Jun 2, 2025
ASUS Routers Improper Authentication Vulnerability
Critical
CVE-2025-3935
ConnectWise · ScreenConnect
Added Jun 2, 2025
ConnectWise ScreenConnect Improper Authentication Vulnerability
Critical
CVE-2025-35939
Craft CMS · Craft CMS
Added Jun 2, 2025
Craft CMS External Control of Assumed-Immutable Web Parameter Vulnerability
Critical
CVE-2024-56145
Craft CMS · Craft CMS
Added Jun 2, 2025
Craft CMS Code Injection Vulnerability
Critical
CVE-2023-39780
ASUS · RT-AX55 Routers
Added Jun 2, 2025
ASUS RT-AX55 Routers OS Command Injection Vulnerability
Critical
CVE-2025-4632
Samsung · MagicINFO 9 Server
Added May 22, 2025
Samsung MagicINFO 9 Server Path Traversal Vulnerability
Critical
CVE-2025-4427
Ivanti · Endpoint Manager Mobile (EPMM)
Added May 19, 2025
Ivanti Endpoint Manager Mobile (EPMM) Authentication Bypass Vulnerability
Critical
CVE-2025-4428
Ivanti · Endpoint Manager Mobile (EPMM)
Added May 19, 2025
Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability
Critical
CVE-2024-11182
MDaemon · Email Server
Added May 19, 2025
MDaemon Email Server Cross-Site Scripting (XSS) Vulnerability
Critical
CVE-2024-27443
Synacor · Zimbra Collaboration Suite (ZCS)
Added May 19, 2025
Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability
Critical
CVE-2025-27920
Srimax · Output Messenger
Added May 19, 2025
Srimax Output Messenger Directory Traversal Vulnerability
Critical
CVE-2023-38950
ZKTeco · BioTime
Added May 19, 2025
ZKTeco BioTime Path Traversal Vulnerability
Need help prioritizing these vulnerabilities?
ThreatGrid can assess your environment and map active CVEs to your monitored assets.