| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-30208 📌 💣 | Vite bypasses server.fs.deny when using `?raw??` EPSS 0.75 | vitejs | vite | Medium | 5.3 | 2025-03-24 17:03:41 | Deep Dive |
| CVE-2025-29927 📌 💣 | Authorization Bypass in Next.js Middleware EPSS 0.99 | vercel | next.js | Critical | 9.1 | 2025-03-21 14:34:50 | Deep Dive |
| CVE-2024-4990 | Unsafe Reflection in base Component class in yiisoft/yii2 EPSS 0.80 | yiisoft | yiisoft/yii2 | 高危 | - | 2025-03-20 10:11:15 | Deep Dive |
| CVE-2025-24799 🧪 💣 | GLPI allows unauthenticated SQL injection through the inventory endpoint EPSS 0.86 | glpi-project | glpi | High | 7.5 | 2025-03-18 18:27:55 | Deep Dive |
| CVE-2025-29891 📌 | Apache Camel: Camel Message Header Injection through request parameters EPSS 0.75 | Apache Software Foundation | Apache Camel | 中危 | - | 2025-03-12 14:43:00 | Deep Dive |
| CVE-2025-24813 KEV 📌 💣 | Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT EPSS 1.00 | Apache Software Foundation | Apache Tomcat | 超危 | - | 2025-03-10 16:44:04 | Deep Dive |
| CVE-2025-27636 📌 | Apache Camel: Camel Message Header Injection via Improper Filtering EPSS 0.81 | Apache Software Foundation | Apache Camel | 中危 | - | 2025-03-09 12:09:59 | Deep Dive |
| CVE-2025-1316 KEV 📌 | Edimax IC-7100 IP Camera OS Command Injection EPSS 0.73 | Edimax | IC-7100 IP Camera | Critical | 9.8 | 2025-03-04 23:37:00 | Deep Dive |
| CVE-2024-48248 KEV 📌 💣 | Nakivo Backup & Replication 安全漏洞 EPSS 0.94 | NAKIVO | Backup & Replication Director | High | 8.6 | 2025-03-04 00:00:00 | Deep Dive |
| CVE-2025-26794 📌 | Exim 安全漏洞 EPSS 0.77 | Exim | Exim | High | 7.5 | 2025-02-21 00:00:00 | Deep Dive |
| CVE-2025-24893 KEV 📌 💣 | Remote code execution as guest via SolrSearchMacros request in xwiki EPSS 1.00 | xwiki | xwiki-platform | Critical | 9.8 | 2025-02-20 19:19:11 | Deep Dive |
| CVE-2025-1094 📌 💣 | PostgreSQL quoting APIs miss neutralizing quoting syntax in text that fails encoding validation EPSS 0.90 | - | PostgreSQL | High | 8.1 | 2025-02-13 13:00:02 | Deep Dive |
| CVE-2025-0108 KEV 📌 💣 | PAN-OS: Authentication Bypass in the Management Web Interface EPSS 0.98 | Palo Alto Networks | Cloud NGFW | 高危 | - | 2025-02-12 20:55:35 | Deep Dive |
| CVE-2025-1044 | Logsign Unified SecOps Platform Authentication Bypass Vulnerability EPSS 0.75 | Logsign | Unified SecOps Platform | 超危 | - | 2025-02-11 19:55:11 | Deep Dive |
| CVE-2025-24016 KEV 🧪 💣 | Remote code execution in Wazuh server EPSS 0.94 | wazuh | wazuh | Critical | 9.9 | 2025-02-10 19:08:09 | Deep Dive |
| CVE-2023-52163 KEV 📌 💣 | Digiever DS-2105 Pro 安全漏洞 EPSS 0.97 | - | - | 超危 | - | 2025-02-03 00:00:00 | Deep Dive |
| CVE-2024-12084 📌 | Rsync: heap buffer overflow in rsync due to improper checksum length handling EPSS 0.72 | - | - | Critical | 9.8 | 2025-01-15 14:16:35 | Deep Dive |
| CVE-2024-57727 KEV 📌 💣 | SimpleHelp 安全漏洞 EPSS 0.95 | - | - | 高危 | - | 2025-01-15 00:00:00 | Deep Dive |
| CVE-2025-21298 📌 | Windows OLE Remote Code Execution Vulnerability EPSS 0.81 | Microsoft | Windows 10 Version 1507 | Critical | 9.8 | 2025-01-14 18:03:51 | Deep Dive |
| CVE-2024-13159 KEV 📌 💣 | Ivanti EPM 安全漏洞 EPSS 1.00 | Ivanti | Endpoint Manager | Critical | 9.8 | 2025-01-14 17:12:58 | Deep Dive |