Vulnerability & Exploit Database

Try Surface Command Get a continuous 360° view of your attack surface

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. The exploits are all included in the Metasploit framework. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 3,561 - 3,580 of 254,041 in total
Artifex Ghostscript: (CVE-2025-27837) Access to arbitrary files can occur through a truncated path with invalid UTF-8 characters, for base/gp_mswin.c and base/winrtsup.cpp.
Published: March 25, 2025 | Severity: 10
vulnerability
Explore
Artifex Ghostscript: (CVE-2025-27836) The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.
Published: March 25, 2025 | Severity: 10
vulnerability
Explore
Artifex Ghostscript: (CVE-2025-27831) The DOCXWRITE TXTWRITE device has a text buffer overflow via long characters to devices/vector/doc_common.c.
Published: March 25, 2025 | Severity: 10
vulnerability
Explore
WordPress Plugin: advanced-iframe: CVE-2025-1437: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 25, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: profit-products-tables-for-woocommerce: CVE-2025-1514: Improper Input Validation
Published: March 25, 2025 | Severity: 7
vulnerability
Explore
WordPress Plugin: advanced-woo-search: CVE-2025-2302: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 25, 2025 | Severity: 5
vulnerability
Explore
Amazon Linux AMI 2: CVE-2025-27831: Security patch for ghostscript (ALAS-2025-2805)
Published: March 25, 2025 | Severity: 10
vulnerability
Explore
Amazon Linux AMI 2: CVE-2025-27830: Security patch for ghostscript (ALAS-2025-2805)
Published: March 25, 2025 | Severity: 7
vulnerability
Explore
Amazon Linux AMI: CVE-2025-27836: Security patch for ghostscript (ALAS-2025-1967)
Published: March 25, 2025 | Severity: 10
vulnerability
Explore
Artifex Ghostscript: (CVE-2025-27833) A buffer overflow occurs for a long TTF font name to pdf/pdf_fmap.c.
Published: March 25, 2025 | Severity: 7
vulnerability
Explore
WordPress Plugin: ultimate-dashboard: CVE-2025-2276: Missing Authorization
Published: March 25, 2025 | Severity: 4
vulnerability
Explore
WordPress Plugin: ultimate-blocks: CVE-2025-1703: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 25, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: ultimate-blocks: CVE-2025-1312: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 25, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: event-post: CVE-2025-2167: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 25, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: wordpress-importer: CVE-2024-13889: Deserialization of Untrusted Data
Published: March 25, 2025 | Severity: 8
vulnerability
Explore
WordPress Plugin: feed-instagram-lite: CVE-2025-26742: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 25, 2025 | Severity: 7
vulnerability
Explore
Debian: CVE-2025-30219: rabbitmq-server -- security update
Published: March 25, 2025 | Severity: 4
vulnerability
Explore
WordPress Plugin: smart-maintenance-mode: CVE-2025-1490: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 25, 2025 | Severity: 6
vulnerability
Explore
Debian: CVE-2025-2750: assimp -- security update
Published: March 25, 2025 | Severity: 7
vulnerability
Explore
Debian: CVE-2025-2753: assimp -- security update
Published: March 25, 2025 | Severity: 7
vulnerability
Explore