CVE-2025-25257
Fortinet · FortiWeb
Added Jul 18, 2025
Active threat advisories and known exploited vulnerabilities.
Pulled daily from the CISA Known Exploited Vulnerabilities catalog. Every entry has confirmed active exploitation in the wild. Last synced Jul 29, 2026.
CVE-2025-47812
Wing FTP Server · Wing FTP Server
Added Jul 14, 2025
Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability
CVE-2025-5777
Citrix · NetScaler ADC and Gateway
Added Jul 10, 2025
Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability
CVE-2019-9621
Synacor · Zimbra Collaboration Suite (ZCS)
Added Jul 7, 2025
Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery (SSRF) Vulnerability
CVE-2019-5418
Rails · Ruby on Rails
Added Jul 7, 2025
Rails Ruby on Rails Path Traversal Vulnerability
CVE-2016-10033
PHP · PHPMailer
Added Jul 7, 2025
PHPMailer Command Injection Vulnerability
CVE-2014-3931
Looking Glass · Multi-Router Looking Glass (MRLG)
Added Jul 7, 2025
Multi-Router Looking Glass (MRLG) Buffer Overflow Vulnerability
CVE-2025-6554
Google · Chromium V8
Added Jul 2, 2025
Google Chromium V8 Type Confusion Vulnerability
CVE-2025-48928
TeleMessage · TM SGNL
Added Jul 1, 2025
TeleMessage TM SGNL Exposure of Core Dump File to an Unauthorized Control Sphere Vulnerability
CVE-2025-48927
TeleMessage · TM SGNL
Added Jul 1, 2025
TeleMessage TM SGNL Initialization of a Resource with an Insecure Default Vulnerability
CVE-2025-6543
Citrix · NetScaler ADC and Gateway
Added Jun 30, 2025
Citrix NetScaler ADC and Gateway Buffer Overflow Vulnerability
CVE-2019-6693
Fortinet · FortiOS
Added Jun 25, 2025
Fortinet FortiOS Use of Hard-Coded Credentials Vulnerability
CVE-2024-0769
D-Link · DIR-859 Router
Added Jun 25, 2025
D-Link DIR-859 Router Path Traversal Vulnerability
CVE-2024-54085
AMI · MegaRAC SPx
Added Jun 25, 2025
AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability
CVE-2023-0386
Linux · Kernel
Added Jun 17, 2025
Linux Kernel Improper Ownership Management Vulnerability
CVE-2023-33538
TP-Link · Multiple Routers
Added Jun 16, 2025
TP-Link Multiple Routers Command Injection Vulnerability
CVE-2025-43200
Apple · Multiple Products
Added Jun 16, 2025
Apple Multiple Products Unspecified Vulnerability
CVE-2025-33053
Microsoft · Windows
Added Jun 10, 2025
Microsoft Windows External Control of File Name or Path Vulnerability
CVE-2025-24016
Wazuh · Wazuh Server
Added Jun 10, 2025
Wazuh Server Deserialization of Untrusted Data Vulnerability
CVE-2024-42009
Roundcube · Webmail
Added Jun 9, 2025
RoundCube Webmail Cross-Site Scripting Vulnerability
CVE-2025-32433
Erlang · Erlang/OTP
Added Jun 9, 2025
Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability
CVE-2025-5419
Google · Chromium V8
Added Jun 5, 2025
Google Chromium V8 Out-of-Bounds Read and Write Vulnerability
CVE-2025-21479
Qualcomm · Multiple Chipsets
Added Jun 3, 2025
Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability
CVE-2025-21480
Qualcomm · Multiple Chipsets
Added Jun 3, 2025
Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability
CVE-2025-27038
Qualcomm · Multiple Chipsets
Added Jun 3, 2025
Qualcomm Multiple Chipsets Use-After-Free Vulnerability
Need help prioritizing these vulnerabilities?
ThreatGrid can assess your environment and map active CVEs to your monitored assets.