Vulnerabilities
Summary — last 7 days
New vulnerabilities2,732▼ 549 vs. last week
Critical / high1,295▼ 233 vs. last week
New active exploitation (KEV)3▼ 5 vs. last week
Unscored (no CVSS)244▼ 258 vs. last week
2 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Deferred | High (7.5) | 4.2% | 💥 Exploit | Lawo VSM LTC Time SyncAI | 10/24/2024 | 6/17/2026 | The web server of Lawo AG vsm LTC Time Sync (vTimeSync) is affected by a "..." (triple dot) path traversal vulnerability. By sending a specially crafted HTTP request, an unauthenticated remote attacker could download arbitrary files from the operating system. As a limitation, the exploitation is only possible if the… | |
| Modified | High (10) | 6.0% | 💥 Exploit | Atrius Trivalie SN Time Sync | 6/1/2000 | 6/16/2026 | Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long string. |