Vulnerability & Exploit Database

Try Surface Command Get a continuous 360° view of your attack surface

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. The exploits are all included in the Metasploit framework. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 3,641 - 3,660 of 260,079 in total
Amazon Linux AMI 2: CVE-2025-27553: Security patch for apache-commons-vfs (ALAS-2025-2842)
Published: March 23, 2025 | Severity: 8
vulnerability
Explore
Amazon Linux AMI 2: CVE-2025-30474: Security patch for apache-commons-vfs (ALAS-2025-2819)
Published: March 23, 2025 | Severity: 8
vulnerability
Explore
Debian: CVE-2025-27553: commons-vfs -- security update
Published: March 23, 2025 | Severity: 8
vulnerability
Explore
Debian: CVE-2025-30474: commons-vfs -- security update
Published: March 23, 2025 | Severity: 8
vulnerability
Explore
Debian: CVE-2025-30472: corosync -- security update
Published: March 22, 2025 | Severity: 10
vulnerability
Explore
Ubuntu: USN-7478-1 (CVE-2025-30472): Corosync vulnerability
Published: March 22, 2025 | Severity: 10
vulnerability
Explore
Red Hat: CVE-2025-30472: corosync: Stack buffer overflow from 'orf_token_endian_convert' (Multiple Advisories)
Published: March 22, 2025 | Severity: 7
vulnerability
Explore
OS X update for AppleMobileFileIntegrity (CVE-2023-28207)
Published: March 21, 2025 | Severity: 10
vulnerability
Explore
Red Hat: CVE-2025-30204: golang-jwt/jwt: jwt-go allows excessive memory allocation during header parsing (Multiple Advisories)
Published: March 21, 2025 | Severity: 8
vulnerability
Explore
WordPress Plugin: bitspecter-suite: CVE-2025-2577: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 21, 2025 | Severity: 5
vulnerability
Explore
CrushFTP: CVE-2025-31161: Authentication bypass
Published: March 21, 2025 | Severity: 10
vulnerability
Explore
WordPress Plugin: wcfm-marketplace-rest-api: CVE-2025-1311: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Published: March 21, 2025 | Severity: 7
vulnerability
Explore
WordPress Plugin: users-customers-import-export-for-wp-woocommerce: CVE-2025-1970: Server-Side Request Forgery (SSRF)
Published: March 21, 2025 | Severity: 7
vulnerability
Explore
Amazon Linux AMI 2: CVE-2025-30204: Security patch for amazon-cloudwatch-agent, docker, runfinch-finch (Multiple Advisories)
Published: March 21, 2025 | Severity: 8
vulnerability
Explore
Amazon Linux AMI 2: CVE-2025-30157: Security patch for ecs-service-connect-agent (ALASECS-2025-052)
Published: March 21, 2025 | Severity: 8
vulnerability
Explore
Ubuntu: USN-7436-1 (CVE-2024-54551): WebKitGTK vulnerabilities
Published: March 21, 2025 | Severity: 8
vulnerability
Explore
Debian: CVE-2024-54551: webkit2gtk, wpewebkit -- security update
Published: March 21, 2025 | Severity: 8
vulnerability
Explore
Amazon Linux 2023: CVE-2025-30204: Important priority package update for runfinch-finch (Multiple Advisories)
Published: March 21, 2025 | Severity: 8
vulnerability
Explore
Alma Linux: CVE-2025-30204: Important: grafana security update (Multiple Advisories)
Published: March 21, 2025 | Severity: 9
vulnerability
Explore
OS X update for PackageKit (CVE-2024-44305)
Published: March 21, 2025 | Severity: 10
vulnerability
Explore