CVE-2024-37079
Broadcom · VMware vCenter Server
Added Jan 23, 2026
Security Bulletins
Active threat advisories and known exploited vulnerabilities.
Pulled daily from the CISA Known Exploited Vulnerabilities catalog. Every entry has confirmed active exploitation in the wild. Last synced Jun 12, 2026.
Critical
Critical
CVE-2025-68645
Synacor · Zimbra Collaboration Suite (ZCS)
Added Jan 22, 2026
Synacor Zimbra Collaboration Suite (ZCS) PHP Remote File Inclusion Vulnerability
Critical
CVE-2025-34026
Versa · Concerto
Added Jan 22, 2026
Versa Concerto Improper Authentication Vulnerability
Critical
CVE-2025-31125
Vite · Vitejs
Added Jan 22, 2026
Vite Vitejs Improper Access Control Vulnerability
Critical
CVE-2025-54313
Prettier · eslint-config-prettier
Added Jan 22, 2026
Prettier eslint-config-prettier Embedded Malicious Code Vulnerability
Critical
CVE-2026-20045
Cisco · Unified Communications Manager
Added Jan 21, 2026
Cisco Unified Communications Products Code Injection Vulnerability
Critical
CVE-2026-20805
Microsoft · Windows
Added Jan 13, 2026
Microsoft Windows Information Disclosure Vulnerability
Critical
CVE-2025-8110
Gogs · Gogs
Added Jan 12, 2026
Gogs Path Traversal Vulnerability
Critical
CVE-2009-0556
Microsoft · Office
Added Jan 7, 2026
Microsoft Office PowerPoint Code Injection Vulnerability
Critical
CVE-2025-37164
Hewlett Packard Enterprise (HPE) · OneView
Added Jan 7, 2026
Hewlett Packard Enterprise (HPE) OneView Code Injection Vulnerability
Critical
CVE-2025-14847
MongoDB · MongoDB and MongoDB Server
Added Dec 29, 2025
MongoDB and MongoDB Server Improper Handling of Length Parameter Inconsistency Vulnerability
Critical
CVE-2023-52163
Digiever · DS-2105 Pro
Added Dec 22, 2025
Digiever DS-2105 Pro Missing Authorization Vulnerability
Critical
CVE-2025-14733
WatchGuard · Firebox
Added Dec 19, 2025
WatchGuard Firebox Out of Bounds Write Vulnerability
Critical
CVE-2025-20393
Cisco · Multiple Products
Added Dec 17, 2025
Cisco Multiple Products Improper Input Validation Vulnerability
Critical
CVE-2025-59374
ASUS · Live Update
Added Dec 17, 2025
ASUS Live Update Embedded Malicious Code Vulnerability
Critical
CVE-2025-40602
SonicWall · SMA1000 appliance
Added Dec 17, 2025
SonicWall SMA1000 Missing Authorization Vulnerability
Critical
CVE-2025-59718
Fortinet · Multiple Products
Added Dec 16, 2025
Fortinet Multiple Products Improper Verification of Cryptographic Signature Vulnerability
Critical
CVE-2025-14611
Gladinet · CentreStack and Triofox
Added Dec 15, 2025
Gladinet CentreStack and Triofox Hard Coded Cryptographic Vulnerability
Critical
CVE-2025-43529
Apple · Multiple Products
Added Dec 15, 2025
Apple Multiple Products Use-After-Free WebKit Vulnerability
Critical
CVE-2018-4063
Sierra Wireless · AirLink ALEOS
Added Dec 12, 2025
Sierra Wireless AirLink ALEOS Unrestricted Upload of File with Dangerous Type Vulnerability
Critical
CVE-2025-14174
Google · Chromium
Added Dec 12, 2025
Google Chromium Out of Bounds Memory Access Vulnerability
Critical
CVE-2025-58360
OSGeo · GeoServer
Added Dec 11, 2025
OSGeo GeoServer Improper Restriction of XML External Entity Reference Vulnerability
Critical
CVE-2025-62221
Microsoft · Windows
Added Dec 9, 2025
Microsoft Windows Use After Free Vulnerability
Critical
CVE-2025-6218
RARLAB · WinRAR
Added Dec 9, 2025
RARLAB WinRAR Path Traversal Vulnerability
Critical
CVE-2022-37055
D-Link · Routers
Added Dec 8, 2025
D-Link Routers Buffer Overflow Vulnerability
Need help prioritizing these vulnerabilities?
ThreatGrid can assess your environment and map active CVEs to your monitored assets.