CVE-2021-32030
ASUS · Routers
Added Jun 2, 2025
Active threat advisories and known exploited vulnerabilities.
Pulled daily from the CISA Known Exploited Vulnerabilities catalog. Every entry has confirmed active exploitation in the wild. Last synced Jul 29, 2026.
CVE-2025-3935
ConnectWise · ScreenConnect
Added Jun 2, 2025
ConnectWise ScreenConnect Improper Authentication Vulnerability
CVE-2025-35939
Craft CMS · Craft CMS
Added Jun 2, 2025
Craft CMS External Control of Assumed-Immutable Web Parameter Vulnerability
CVE-2024-56145
Craft CMS · Craft CMS
Added Jun 2, 2025
Craft CMS Code Injection Vulnerability
CVE-2023-39780
ASUS · RT-AX55 Routers
Added Jun 2, 2025
ASUS RT-AX55 Routers OS Command Injection Vulnerability
CVE-2025-4632
Samsung · MagicINFO 9 Server
Added May 22, 2025
Samsung MagicINFO 9 Server Path Traversal Vulnerability
CVE-2023-38950
ZKTeco · BioTime
Added May 19, 2025
ZKTeco BioTime Path Traversal Vulnerability
CVE-2024-27443
Synacor · Zimbra Collaboration Suite (ZCS)
Added May 19, 2025
Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability
CVE-2025-27920
Srimax · Output Messenger
Added May 19, 2025
Srimax Output Messenger Directory Traversal Vulnerability
CVE-2024-11182
MDaemon · Email Server
Added May 19, 2025
MDaemon Email Server Cross-Site Scripting (XSS) Vulnerability
CVE-2025-4428
Ivanti · Endpoint Manager Mobile (EPMM)
Added May 19, 2025
Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability
CVE-2025-4427
Ivanti · Endpoint Manager Mobile (EPMM)
Added May 19, 2025
Ivanti Endpoint Manager Mobile (EPMM) Authentication Bypass Vulnerability
CVE-2025-42999
SAP · NetWeaver
Added May 15, 2025
SAP NetWeaver Deserialization Vulnerability
CVE-2024-12987
DrayTek · Vigor Routers
Added May 15, 2025
DrayTek Vigor Routers OS Command Injection Vulnerability
CVE-2025-32756
Fortinet · Multiple Products
Added May 14, 2025
Fortinet Multiple Products Stack-Based Buffer Overflow Vulnerability
CVE-2025-32709
Microsoft · Windows
Added May 13, 2025
Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability
CVE-2025-30397
Microsoft · Windows
Added May 13, 2025
Microsoft Windows Scripting Engine Type Confusion Vulnerability
CVE-2025-32706
Microsoft · Windows
Added May 13, 2025
Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability
CVE-2025-32701
Microsoft · Windows
Added May 13, 2025
Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free Vulnerability
CVE-2025-30400
Microsoft · Windows
Added May 13, 2025
Microsoft Windows DWM Core Library Use-After-Free Vulnerability
CVE-2025-47729
TeleMessage · TM SGNL
Added May 12, 2025
TeleMessage TM SGNL Hidden Functionality Vulnerability
CVE-2024-11120
GeoVision · Multiple Devices
Added May 7, 2025
GeoVision Devices OS Command Injection Vulnerability
CVE-2024-6047
GeoVision · Multiple Devices
Added May 7, 2025
GeoVision Devices OS Command Injection Vulnerability
CVE-2025-27363
FreeType · FreeType
Added May 6, 2025
FreeType Out-of-Bounds Write Vulnerability
CVE-2025-3248
Langflow · Langflow
Added May 5, 2025
Langflow Missing Authentication Vulnerability
Need help prioritizing these vulnerabilities?
ThreatGrid can assess your environment and map active CVEs to your monitored assets.