Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
85,954 matching · page 374/1720Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2025-30304(opens NVD record) | High | 7.8 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Apr 8, 2025 |
| CVE-2025-30303(opens NVD record) | Medium | 5.5 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Apr 8, 2025 |
| CVE-2025-30302(opens NVD record) | Medium | 5.5 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Apr 8, 2025 |
| CVE-2025-30301(opens NVD record) | Medium | 5.5 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Apr 8, 2025 |
| CVE-2025-30300(opens NVD record) | Medium | 5.5 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial of service condition. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Apr 8, 2025 |
| CVE-2025-30299(opens NVD record) | High | 7.8 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Apr 8, 2025 |
| CVE-2025-30298(opens NVD record) | High | 7.8 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Apr 8, 2025 |
| CVE-2025-30297(opens NVD record) | High | 7.8 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Apr 8, 2025 |
| CVE-2025-30296(opens NVD record) | High | 7.8 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Apr 8, 2025 |
| CVE-2025-30295(opens NVD record) | High | 7.8 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Apr 8, 2025 |
| CVE-2025-29824(opens NVD record) | High | 7.8 | Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29823(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-29822(opens NVD record) | High | 7.8 | Incomplete list of disallowed inputs in Microsoft Office OneNote allows an unauthorized attacker to bypass a security feature locally. | Apr 8, 2025 |
| CVE-2025-29821(opens NVD record) | Medium | 5.5 | Improper input validation in Dynamics Business Central allows an authorized attacker to disclose information locally. | Apr 8, 2025 |
| CVE-2025-29820(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-29819(opens NVD record) | Medium | 6.2 | External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose information locally. | Apr 8, 2025 |
| CVE-2025-29816(opens NVD record) | High | 7.5 | Improper input validation in Microsoft Office Word allows an unauthorized attacker to bypass a security feature over a network. | Apr 8, 2025 |
| CVE-2025-29812(opens NVD record) | High | 7.8 | Untrusted pointer dereference in Windows Kernel Memory allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29811(opens NVD record) | High | 7.8 | Improper input validation in Windows Mobile Broadband allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29810(opens NVD record) | High | 7.5 | Improper access control in Active Directory Domain Services allows an authorized attacker to elevate privileges over a network. | Apr 8, 2025 |
| CVE-2025-29809(opens NVD record) | High | 7.1 | Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypass a security feature locally. | Apr 8, 2025 |
| CVE-2025-29808(opens NVD record) | Medium | 5.5 | Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized attacker to disclose information locally. | Apr 8, 2025 |
| CVE-2025-29805(opens NVD record) | High | 7.5 | Exposure of sensitive information to an unauthorized actor in Outlook for Android allows an unauthorized attacker to disclose information over a network. | Apr 8, 2025 |
| CVE-2025-29804(opens NVD record) | High | 7.3 | Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29802(opens NVD record) | High | 7.3 | Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29801(opens NVD record) | High | 7.8 | Incorrect default permissions in Microsoft AutoUpdate (MAU) allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29800(opens NVD record) | High | 7.8 | Improper privilege management in Microsoft AutoUpdate (MAU) allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29794(opens NVD record) | High | 8.8 | Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. | Apr 8, 2025 |
| CVE-2025-29793(opens NVD record) | High | 7.2 | Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. | Apr 8, 2025 |
| CVE-2025-29792(opens NVD record) | High | 7.3 | Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-29791(opens NVD record) | High | 7.8 | Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27752(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27751(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27750(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27749(opens NVD record) | High | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27748(opens NVD record) | High | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27747(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27746(opens NVD record) | High | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27745(opens NVD record) | High | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | Apr 8, 2025 |
| CVE-2025-27744(opens NVD record) | High | 7.8 | Improper access control in Microsoft Office allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27743(opens NVD record) | High | 7.8 | Untrusted search path in System Center allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27742(opens NVD record) | Medium | 5.5 | Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally. | Apr 8, 2025 |
| CVE-2025-27741(opens NVD record) | High | 7.8 | Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27740(opens NVD record) | High | 8.8 | Weak authentication in Windows Active Directory Certificate Services allows an authorized attacker to elevate privileges over a network. | Apr 8, 2025 |
| CVE-2025-27739(opens NVD record) | High | 7.8 | Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally. | Apr 8, 2025 |
| CVE-2025-27738(opens NVD record) | Medium | 6.5 | Improper access control in Windows Resilient File System (ReFS) allows an authorized attacker to disclose information over a network. | Apr 8, 2025 |
| CVE-2025-27737(opens NVD record) | High | 8.6 | Improper input validation in Windows Security Zone Mapping allows an unauthorized attacker to bypass a security feature locally. | Apr 8, 2025 |
| CVE-2025-27736(opens NVD record) | Medium | 5.5 | Exposure of sensitive information to an unauthorized actor in Windows Power Dependency Coordinator allows an authorized attacker to disclose information locally. | Apr 8, 2025 |
| CVE-2025-27735(opens NVD record) | Medium | 6.0 | Insufficient verification of data authenticity in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to bypass a security feature locally. | Apr 8, 2025 |
| CVE-2025-27733(opens NVD record) | High | 7.8 | Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally. | Apr 8, 2025 |