Vulnerability & Exploit Database

Try Surface Command Get a continuous 360° view of your attack surface

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. The exploits are all included in the Metasploit framework. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 01 - 20 of 260,604 in total
Zimbra Collaboration: CVE-2024-45515: Resolved Cross-Site Scripting (XSS) vulnerability.
Published: May 21, 2025 | Severity: 8
vulnerability
Explore
security-advisory-0118
Published: May 20, 2025 | Severity: 6
vulnerability
Explore
Microsoft Edge Chromium: CVE-2025-4609 Incorrect handle provided in unspecified circumstances in Mojo
Published: May 20, 2025 | Severity: 9
vulnerability
Explore
OS X update for Perl (CVE-2025-24183)
Published: May 20, 2025 | Severity: 10
vulnerability
Explore
WordPress Plugin: slim-seo: CVE-2025-4611: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: May 20, 2025 | Severity: 5
vulnerability
Explore
Debian: CVE-2025-4609: chromium -- security update
Published: May 20, 2025 | Severity: 9
vulnerability
Explore
JetBrains TeamCity: CVE-2025-47851: Stored XSS via GitHub Checks Webhook was possible. Reported by Alex Williams from Converge Technology Solutions (TW-93107)
Published: May 20, 2025 | Severity: 5
vulnerability
Explore
JetBrains TeamCity: CVE-2025-47853: Stored XSS via Jira integration was possible. Reported by Alex Williams from Converge Technology Solutions (TW-93110)
Published: May 20, 2025 | Severity: 5
vulnerability
Explore
JetBrains TeamCity: CVE-2025-47852: Stored XSS via YouTrack integration was possible. Reported by Alex Williams from Converge Technology Solutions (TW-93109)
Published: May 20, 2025 | Severity: 5
vulnerability
Explore
JetBrains TeamCity: CVE-2025-47854: Open redirect was possible on editing VCS Root page (TW-93019)
Published: May 20, 2025 | Severity: 5
vulnerability
Explore
OS X update for CoreMedia Playback (CVE-2025-24184)
Published: May 20, 2025 | Severity: 10
vulnerability
Explore
OS X update for PackageKit (CVE-2025-31262)
Published: May 20, 2025 | Severity: 10
vulnerability
Explore
OS X update for WebKit (CVE-2025-24189)
Published: May 20, 2025 | Severity: 10
vulnerability
Explore
Atlassian JIRA: CVE-2025-22157: PrivEsc (Privilege Escalation) in Jira Core Data Center
Published: May 20, 2025 | Severity: 8
vulnerability
Explore
Apple Safari security update for CVE-2025-24189
Published: May 20, 2025 | Severity: 9
vulnerability
Explore
Atlassian JIRA: CVE-2025-24970: DoS (Denial of Service) io.netty:netty-handler Dependency in Jira Software Data Center and Server
Published: May 20, 2025 | Severity: 8
vulnerability
Explore
Debian: CVE-2025-4948: libsoup2.4, libsoup3 -- security update
Published: May 19, 2025 | Severity: 8
vulnerability
Explore
Debian: CVE-2025-46801: pgpool2 -- security update
Published: May 19, 2025 | Severity: 10
vulnerability
Explore
Debian: CVE-2025-4945: libsoup2.4, libsoup3 -- security update
Published: May 19, 2025 | Severity: 4
vulnerability
Explore
Debian: CVE-2025-23167: node-undici -- security update
Published: May 19, 2025 | Severity: 9
vulnerability
Explore