Vulnerability & Exploit Database

Try Surface Command Get a continuous 360° view of your attack surface

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. The exploits are all included in the Metasploit framework. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 01 - 20 of 261,595 in total
Apache Tomcat: Low: CGI security constraint bypass (CVE-2025-46701)
Published: May 30, 2025 | Severity: 8
vulnerability
Explore
Zimbra Collaboration: CVE-2024-45515: Resolved Cross-Site Scripting (XSS) vulnerability.
Published: May 30, 2025 | Severity: 8
vulnerability
Explore
Debian: CVE-2012-1147: libxmltok -- security update
Published: May 30, 2025 | Severity: 8
vulnerability
Explore
Debian: CVE-2017-11742: libxmltok -- security update
Published: May 30, 2025 | Severity: 7
vulnerability
Explore
OS X update for macOS Recovery (CVE-2025-31264)
Published: May 29, 2025 | Severity: 10
vulnerability
Explore
WordPress Plugin: lastudio-element-kit: CVE-2025-4943: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: May 29, 2025 | Severity: 5
vulnerability
Explore
OS X update for Safari (CVE-2025-30466)
Published: May 29, 2025 | Severity: 10
vulnerability
Explore
MICI Netfax Server: CVE-2025-48047: Command Injection
Published: May 29, 2025 | Severity: 9
vulnerability
Explore
OS X update for StorageKit (CVE-2025-31261)
Published: May 29, 2025 | Severity: 10
vulnerability
Explore
WordPress Plugin: cf7-salesforce: CVE-2025-4659: Exposure of Sensitive Information to an Unauthorized Actor
Published: May 29, 2025 | Severity: 5
vulnerability
Explore
OS X update for zip (CVE-2025-31198)
Published: May 29, 2025 | Severity: 10
vulnerability
Explore
OS X update for libnetcore (CVE-2025-31231)
Published: May 29, 2025 | Severity: 10
vulnerability
Explore
Ubuntu: (CVE-2025-5054): apport vulnerability
Published: May 29, 2025 | Severity: 7
vulnerability
Explore
WordPress Plugin: minimal-share-buttons: CVE-2025-5259: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: May 29, 2025 | Severity: 5
vulnerability
Explore
Apple Safari security update for CVE-2025-30466
Published: May 29, 2025 | Severity: 8
vulnerability
Explore
WordPress Plugin: simple-page-access-restriction: CVE-2025-5142: Cross-Site Request Forgery (CSRF)
Published: May 29, 2025 | Severity: 7
vulnerability
Explore
OS X update for Logging (CVE-2025-31199)
Published: May 29, 2025 | Severity: 10
vulnerability
Explore
OS X update for Disk Images (CVE-2025-31189)
Published: May 29, 2025 | Severity: 10
vulnerability
Explore
WordPress Plugin: ninjateam-telegram: CVE-2025-5236: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: May 29, 2025 | Severity: 5
vulnerability
Explore
MICI Netfax Server: CVE-2025-48046: Disclosure of Stored Passwords
Published: May 29, 2025 | Severity: 4
vulnerability
Explore