NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2025-14578 A weakness has been identified in itsourcecode Student Management System 1.0. The affected element is an unknown function of the file /update_account.... 2025-12-12 7.3 NETWORK HIGH NVD
CVE-2025-14572 A vulnerability was found in UTT 进取 512W up to 1.7.7-171114. This affects an unknown part of the file /goform/formWebAuthGlobalConfig. Performing mani... 2025-12-12 8.8 NETWORK HIGH NVD
CVE-2025-14373 Inappropriate implementation in Toolbar in Google Chrome on Android prior to 143.0.7499.110 allowed a remote attacker to perform domain spoofing via a... 2025-12-12 4.3 NETWORK MEDIUM NVD
CVE-2025-14372 Use after free in Password Manager in Google Chrome prior to 143.0.7499.110 allowed a remote attacker to potentially perform a sandbox escape via a cr... 2025-12-12 6.1 NETWORK MEDIUM NVD
CVE-2025-14174 Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access ... 2025-12-12 8.8 NETWORK HIGH NVD
CVE-2024-58314 Atcom 100M IP Phones firmware version 2.7.x.x contains an authenticated command injection vulnerability in the web configuration CGI script that allow... 2025-12-12 8.8 NETWORK HIGH NVD
CVE-2024-58311 Dormakaba Saflok System 6000 contains a predictable key generation algorithm that allows attackers to derive card access keys from a 32-bit unique ide... 2025-12-12 9.8 NETWORK CRITICAL NVD
CVE-2024-58305 WonderCMS 4.3.2 contains a cross-site scripting vulnerability that allows attackers to inject malicious JavaScript through the module installation end... 2025-12-12 8.8 NETWORK HIGH NVD
CVE-2024-58299 PCMan FTP Server 2.0 contains a buffer overflow vulnerability in the 'pwd' command that allows remote attackers to execute arbitrary code. Attackers c... 2025-12-12 9.8 NETWORK CRITICAL NVD
CVE-2024-14010 Typora 1.7.4 contains a command injection vulnerability in the PDF export preferences that allows attackers to execute arbitrary system commands. Atta... 2025-12-12 9.8 NETWORK CRITICAL NVD
CVE-2025-8082 Improper neutralization of the title date in the 'VDatePicker' component in Vuetify, allows unsanitized HTML to be inserted into the page. This can le... 2025-12-12 6.3 NETWORK MEDIUM NVD
CVE-2025-14571 A vulnerability has been found in projectworlds Advanced Library Management System 1.0. Affected by this issue is some unknown functionality of the fi... 2025-12-12 7.3 NETWORK HIGH NVD
CVE-2025-14570 A flaw has been found in projectworlds Advanced Library Management System 1.0. Affected by this vulnerability is an unknown functionality of the file ... 2025-12-12 7.3 NETWORK HIGH NVD
CVE-2025-14569 A vulnerability was detected in ggml-org whisper.cpp up to 1.8.2. Affected is the function read_audio_data of the file /whisper.cpp/examples/common-wh... 2025-12-12 5.3 LOCAL MEDIUM NVD
CVE-2025-14568 A security vulnerability has been detected in haxxorsid Stock-Management-System up to fbbbf213e9c93b87183a3891f77e3cc7095f22b0. This impacts an unknow... 2025-12-12 6.3 NETWORK MEDIUM NVD