Vulnerabilities
Summary — last 7 days
New vulnerabilities2,769▼ 305 vs. last week
Critical / high1,294▼ 203 vs. last week
New active exploitation (KEV)8→ no change vs. last week
Unscored (no CVSS)207▼ 114 vs. last week
3 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | Medium (5.3) | 0.18% | — | Schneider-electric Pro-face Gp-pro EX | 8/9/2023 | 6/17/2026 | A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause memory corruption when an authenticated user opens a tampered log file from GP-Pro EX. | |
| Modified | High (8.8) | 2.2% | — | Schneider-electric Pro-face Gp-pro EX | 12/24/2018 | 6/17/2026 | An Improper Input Validation vulnerability exists in Pro-Face GP-Pro EX v4.08 and previous versions which could cause the execution arbitrary executable when GP-Pro EX is launched. | |
| Modified | High (7.8) | 0.38% | — | Schneider-electric Pro-face GP PRO EX | 9/26/2017 | 6/17/2026 | A vulnerability exists in Schneider Electric's Pro-Face GP Pro EX version 4.07.000 that allows an attacker to execute arbitrary code. Malicious code installation requires an access to the computer. By placing a specific DLL/OCX file, an attacker is able to force the process to load arbitrary DLL and execute arbitrary… |