Vulnerability & Exploit Database

Try Surface Command Get a continuous 360° view of your attack surface

A curated repository of vetted computer software exploits and exploitable vulnerabilities.

Technical details for over 180,000 vulnerabilities and 4,000 exploits are available for security professionals and researchers to review. The exploits are all included in the Metasploit framework. Our vulnerability and exploit database is updated frequently and contains the most recent security research.

Results 9,801 - 9,820 of 263,850 in total
WordPress Plugin: shopwarden: CVE-2024-13315: Cross-Site Request Forgery (CSRF)
Published: February 17, 2025 | Severity: 10
vulnerability
Explore
Huawei EulerOS: CVE-2025-1377: elfutils security update
Published: February 17, 2025 | Severity: 2
vulnerability
Explore
Huawei EulerOS: CVE-2025-1377: elfutils security update
Published: February 17, 2025 | Severity: 2
vulnerability
Explore
WordPress Plugin: woo-addon-uploads: CVE-2024-13622: Exposure of Sensitive Information to an Unauthorized Actor
Published: February 17, 2025 | Severity: 8
vulnerability
Explore
WordPress Plugin: profilegrid-user-profiles-groups-and-communities: CVE-2024-13740: Authorization Bypass Through User-Controlled Key
Published: February 17, 2025 | Severity: 4
vulnerability
Explore
WordPress Plugin: profilegrid-user-profiles-groups-and-communities: CVE-2024-13741: Server-Side Request Forgery (SSRF)
Published: February 17, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: infusionsoft-official-opt-in-forms: CVE-2024-13725: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Published: February 17, 2025 | Severity: 10
vulnerability
Explore
WordPress Plugin: bigbuy-wc-dropshipping-connector: CVE-2024-13538: Generation of Error Message Containing Sensitive Information
Published: February 17, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: speedsize-ai-image-optimizer: CVE-2024-13438: Cross-Site Request Forgery (CSRF)
Published: February 17, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: tourmaster: CVE-2024-13369: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Published: February 17, 2025 | Severity: 7
vulnerability
Explore
WordPress Plugin: gtbabel: CVE-2024-11638: Sensitive Cookie in HTTPS Session Without 'Secure' Attribute
Published: February 17, 2025 | Severity: 10
vulnerability
Explore
WordPress Plugin: flexible-wishlist: CVE-2024-13718: Cross-Site Request Forgery (CSRF)
Published: February 17, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: formcraft3: CVE-2024-13783: Missing Authorization
Published: February 17, 2025 | Severity: 4
vulnerability
Explore
WordPress Plugin: gumlet-video: CVE-2024-13576: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: February 17, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: formassembly-web-forms: CVE-2024-13501: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: February 17, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: zigaform-form-builder-lite: CVE-2024-13573: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: February 17, 2025 | Severity: 5
vulnerability
Explore
WordPress Plugin: zigaform-calculator-cost-estimation-form-builder-lite: CVE-2024-13587: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Published: February 17, 2025 | Severity: 5
vulnerability
Explore
Huawei EulerOS: CVE-2025-1352: elfutils security update
Published: February 16, 2025 | Severity: 5
vulnerability
Explore
Huawei EulerOS: CVE-2025-1352: elfutils security update
Published: February 16, 2025 | Severity: 5
vulnerability
Explore
Debian: CVE-2025-1352: elfutils -- security update
Published: February 16, 2025 | Severity: 5
vulnerability
Explore