Active Iq Unified Manager
847 CVEs tracked. 9 of them are in CISA KEV.
This hub aggregates every CVE we track for Active Iq Unified Manager, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.
Active Iq Unified Manager CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 4 |
| 2024-11 | 1 |
| 2024-12 | 0 |
| 2025-01 | 3 |
| 2025-02 | 6 |
| 2025-03 | 0 |
| 2025-04 | 2 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 847 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical50
- High177
- Medium539
- Low81
Latest CVEs
The 15 most recently published vulnerabilities affecting Active Iq Unified Manager.
- CVE-2025-30722Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit ...5.3
- CVE-2025-31672Apache POI: parsing OOXML based files (xlsx, docx, etc.), poi-ooxml could read unexpected data if underlying zip has duplicate zip entry names5.3
- CVE-2025-26465Openssh: machine-in-the-middle attack if verifyhostkeydns is enabled6.8
- CVE-2025-24928libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a stack-based buffer overflow in xmlSnprintfElements in valid.c. To exploit this, DTD validation must occur for an untrusted document or untruste...7.8
- CVE-2024-56171libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleIDCNodeTables in xmlschemas.c. To exploit this, a crafted XML document must be ...7.8
- CVE-2025-1181GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec memory corruption5.0
- CVE-2025-1178GNU Binutils ld libbfd.c bfd_putl64 memory corruption5.6
- CVE-2025-24970SslHandler doesn't correctly validate packets which can lead to native crash when using native SSLEngine7.5
- CVE-2025-04117-Zip Mark-of-the-Web Bypass Vulnerability7.0
- CVE-2025-21502Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java ...4.8
- CVE-2025-21492Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.4.0. Easily exploitable vulnerability all...4.9
- CVE-2024-52533gio/gsocks4aproxy.c in GNOME GLib before 2.82.1 has an off-by-one error and resultant buffer overflow because SOCKS4_CONN_MSG_LEN is not sufficient for a trailing '\0' character.9.8
- CVE-2024-50602An issue was discovered in libexpat before 2.6.4. There is a crash within the XML_ResumeParser function because XML_StopParser can stop/suspend an unstarted parser.5.9
- CVE-2024-9823Jetty DOS vulnerability on DosFilter5.3
- CVE-2024-47554Apache Commons IO: Possible denial of service attack on untrusted input to XmlStreamReader4.3
Product grouping is registry-driven, with AI assist and human review. How it works