NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2025-66530 Missing Authorization vulnerability in Webba Appointment Booking Webba Booking webba-booking-lite allows Exploiting Incorrectly Configured Access Cont... 2025-12-09 8.8 NETWORK HIGH NVD
CVE-2025-66529 Cross-Site Request Forgery (CSRF) vulnerability in Ays Pro Chartify chart-builder allows Cross Site Request Forgery.This issue affects Chartify: from ... 2025-12-09 8.8 NETWORK HIGH NVD
CVE-2025-66528 Missing Authorization vulnerability in VillaTheme Thank You Page Customizer for WooCommerce woo-thank-you-page-customizer allows Exploiting Incorrectl... 2025-12-09 8.1 NETWORK HIGH NVD
CVE-2025-66527 Missing Authorization vulnerability in VanKarWai Lobo lobo allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ... 2025-12-09 4.3 NETWORK MEDIUM NVD
CVE-2025-66526 Missing Authorization vulnerability in Essekia Tablesome tablesome allows Exploiting Incorrectly Configured Access Control Security Levels.This issue ... 2025-12-09 4.3 NETWORK MEDIUM NVD
CVE-2025-66525 Missing Authorization vulnerability in Elastic Email Elastic Email Sender elastic-email-sender allows Exploiting Incorrectly Configured Access Control... 2025-12-09 4.3 NETWORK MEDIUM NVD
CVE-2025-66508 1Panel is an open-source, web-based control panel for Linux server management. Versions 2.0.14 and below use Gin's default configuration which trusts ... 2025-12-09 6.5 NETWORK MEDIUM NVD
CVE-2025-66507 1Panel is an open-source, web-based control panel for Linux server management. Versions 2.0.13 and below allow an unauthenticated attacker to disable ... 2025-12-09 7.5 NETWORK HIGH NVD
CVE-2025-66271 Clone for Windows provided by ELECOM CO.,LTD. registers a Windows service with an unquoted file path. A user with the write permission on the root dir... 2025-12-09 8.4 LOCAL HIGH NVD
CVE-2025-65287 An unauthenticated directory traversal vulnerability in cgi-bin/upload.cgi in SNMP Web Pro 1.1 allows a remote attacker to read arbitrary files. The C... 2025-12-09 4.3 ADJACENT_NETWORK MEDIUM NVD
CVE-2025-64696 Android App "Brother iPrint&Scan" versions 6.13.7 and earlier improperly uses an external cache directory. If exploited, application-specific files ma... 2025-12-09 4.8 LOCAL MEDIUM NVD
CVE-2025-64257 Missing Authorization vulnerability in Joe Dolson My Tickets my-tickets allows Exploiting Incorrectly Configured Access Control Security Levels.This i... 2025-12-09 4.3 NETWORK MEDIUM NVD
CVE-2025-64256 Cross-Site Request Forgery (CSRF) vulnerability in PressTigers Simple Folio simple-folio allows Cross Site Request Forgery.This issue affects Simple F... 2025-12-09 8.8 NETWORK HIGH NVD
CVE-2025-64255 Missing Authorization vulnerability in Bowo Admin and Site Enhancements (ASE) admin-site-enhancements allows Exploiting Incorrectly Configured Access ... 2025-12-09 7.2 NETWORK HIGH NVD
CVE-2025-64254 Missing Authorization vulnerability in Ronald Huereca Photo Block photo-block allows Exploiting Incorrectly Configured Access Control Security Levels.... 2025-12-09 8.8 NETWORK HIGH NVD