NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2021-47706 COMMAX Biometric Access Control System 1.0.0 contains an authentication bypass vulnerability that allows unauthenticated attackers to access sensitive... 2025-12-09 8.7 NETWORK HIGH NVD
CVE-2021-47705 COMMAX UMS Client ActiveX Control 1.7.0.2 contains a heap-based buffer overflow vulnerability that allows attackers to execute arbitrary code by provi... 2025-12-09 8.7 NETWORK HIGH NVD
CVE-2021-47704 OpenBMCS 2.4 contains an SQL injection vulnerability that allows authenticated attackers to manipulate database queries by injecting arbitrary SQL cod... 2025-12-09 8.7 NETWORK HIGH NVD
CVE-2021-47703 OpenBMCS 2.4 contains an unauthenticated SSRF vulnerability that allows attackers to bypass firewalls and initiate service and network enumeration on ... 2025-12-09 6.9 NETWORK MEDIUM NVD
CVE-2021-47702 OpenBMCS 2.4 contains a CSRF vulnerability that allows attackers to perform actions with administrative privileges by exploiting the sendFeedback.php ... 2025-12-09 5.3 NETWORK MEDIUM NVD
CVE-2021-47701 OpenBMCS 2.4 allows an attacker to escalate privileges from a read user to an admin user by manipulating permissions and exploiting a vulnerability in... 2025-12-09 8.7 NETWORK HIGH NVD
CVE-2025-66625 Umbraco is an ASP.NET CMS. Due to unsafe handling and deletion of temporary files in versions 10.0.0 through 13.12.0, during the dictionary upload pro... 2025-12-09 4.9 NETWORK MEDIUM NVD
CVE-2025-66457 Elysia is a Typescript framework for request validation, type inference, OpenAPI documentation and client-server communication. Versions 1.4.17 and be... 2025-12-09 7.5 NETWORK HIGH NVD
CVE-2025-66456 Elysia is a Typescript framework for request validation, type inference, OpenAPI documentation and client-server communication. Versions 1.4.0 through... 2025-12-09 9.1 NETWORK CRITICAL NVD
CVE-2025-66214 Ladybug adds message-based debugging, unit, system, and regression testing to Java applications. Versions prior to 3.0-20251107.114628 contain the API... 2025-12-09 7.0 LOCAL HIGH NVD
CVE-2025-65741 Sublime Text 3 Build 3208 or prior for MacOS is vulnerable to Dylib Injection. An attacker could compile a .dylib file and force the execution of this... 2025-12-09 9.8 NETWORK CRITICAL NVD
CVE-2025-64113 Emby Server is a user-installable home media server. Versions below 4.9.1.81 allow an attacker to gain full administrative access to an Emby Server (f... 2025-12-09 9.3 NETWORK CRITICAL NVD
CVE-2025-14337 A vulnerability was determined in itsourcecode Student Management System 1.0. This affects an unknown part of the file /new_grade.php. This manipulati... 2025-12-09 7.3 NETWORK HIGH NVD
CVE-2025-9614 An issue was discovered in the PCI Express (PCIe) Integrity and Data Encryption (IDE) specification, where insufficient guidance on re-keying and stre... 2025-12-09 6.5 NETWORK MEDIUM NVD
CVE-2025-9613 A vulnerability was discovered in the PCI Express (PCIe) Integrity and Data Encryption (IDE) specification, where insufficient guidance on tag reuse a... 2025-12-09 6.5 NETWORK MEDIUM NVD