Vulnerability & Exploit Database

Try Surface Command Get a continuous 360° view of your attack surface

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. The exploits are all included in the Metasploit framework. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 4,881 - 4,900 of 260,876 in total
Debian: CVE-2025-0689: grub2 -- security update
Published: March 03, 2025 | Severity: 6
vulnerability
Explore
Debian: CVE-2025-1125: grub2 -- security update
Published: March 03, 2025 | Severity: 6
vulnerability
Explore
Amazon Linux 2023: CVE-2025-27219: Medium priority package update for ruby3.2
Published: March 03, 2025 | Severity: 5
vulnerability
Explore
Amazon Linux 2023: CVE-2025-27220: Medium priority package update for ruby3.2
Published: March 03, 2025 | Severity: 5
vulnerability
Explore
Amazon Linux 2023: CVE-2025-27221: Medium priority package update for ruby3.2
Published: March 03, 2025 | Severity: 1
vulnerability
Explore
WordPress Plugin: m1downloadlist: CVE-2025-26895: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 03, 2025 | Severity: 7
vulnerability
Explore
Huawei EulerOS: CVE-2025-0686: grub2 security update
Published: March 03, 2025 | Severity: 6
vulnerability
Explore
WordPress Plugin: give: CVE-2025-0912: Deserialization of Untrusted Data
Published: March 03, 2025 | Severity: 10
vulnerability
Explore
WordPress Plugin: teachpress: CVE-2025-1321: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Published: March 03, 2025 | Severity: 7
vulnerability
Explore
WordPress Plugin: wallet-system-for-woocommerce: CVE-2024-13724: Improper Authorization
Published: March 03, 2025 | Severity: 4
vulnerability
Explore
WordPress Plugin: squirrly-seo: CVE-2025-24654: Missing Authorization
Published: March 03, 2025 | Severity: 8
vulnerability
Explore
WordPress Plugin: simple-banner: CVE-2024-12769: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 03, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: slider-wd: CVE-2024-10565: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 03, 2025 | Severity: 6
vulnerability
Explore
Red Hat JBossEAP: Improper Restriction of Excessive Authentication Attempts (CVE-2025-23368)
Published: March 03, 2025 | Severity: 8
vulnerability
Explore
WordPress Plugin: smart-maintenance-mode: CVE-2024-12683: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 03, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: recapture-for-woocommerce: CVE-2025-26899: Cross-Site Request Forgery (CSRF)
Published: March 03, 2025 | Severity: 6
vulnerability
Explore
WordPress Plugin: zigaform-form-builder-lite: CVE-2025-26989: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 03, 2025 | Severity: 7
vulnerability
Explore
Gitlab Gitlab: CVE-2025-0475: Improper Neutralization of Input During Web Page Generation
Published: March 03, 2025 | Severity: 8
vulnerability
Explore
Debian: CVE-2024-53382: node-prismjs -- security update
Published: March 03, 2025 | Severity: 6
vulnerability
Explore
WordPress Plugin: form-maker: CVE-2024-10560: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: March 03, 2025 | Severity: 5
vulnerability
Explore