Browse CVEs
144,772 medium severity vulnerabilities
| CVE ID | Title | Severity | CVSS | Risk | Patch | Published |
|---|---|---|---|---|---|---|
| CVE-2025-66578 | aEnrich HR Admin Token Forgery | Medium | 6.0 | Medium Risk | Patched | 09-Dec-25 |
| CVE-2025-66491 | Traefik NGINX Provider Inversion Vulnerability | Medium | 5.9 | Medium Risk | Patched | 09-Dec-25 |
| CVE-2025-42873 | SAPUI5 Infinite Loop Denial of Service | Medium | 5.9 | Low Risk | Patched | 09-Dec-25 |
| CVE-2025-63011 | ThimPress WP Hotel Booking Plugin XSS | Medium | 5.9 | Low Risk | Patched | 09-Dec-25 |
| CVE-2025-67554 | Cookie Notice & Compliance for GDPR / CCPA Plugin Vulnerability | Medium | 5.9 | Low Risk | Patched | 09-Dec-25 |
| CVE-2025-67556 | Cross-site Scripting in Advanced FAQ Manager | Medium | 5.9 | Low Risk | Patched | 09-Dec-25 |
| CVE-2025-63033 | Elementor make-section-column-clickable-for-elementor XSS Vulnerability | Medium | 5.9 | Low Risk | Patched | 09-Dec-25 |
| CVE-2025-12941 | NETGEAR C6220/C6230 Denial of Service Vulnerability | Medium | 5.7 | Low Risk | Unpatched (38d) | 09-Dec-25 |
| CVE-2025-62631 | FortiOS SSLVPN Vulnerability | Medium | 5.6 | Low Risk | Patched | 09-Dec-25 |
| CVE-2025-42891 | SAP Enterprise Search for ABAP Vulnerability | Medium | 5.5 | Low Risk | Patched | 09-Dec-25 |