21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 5101-5150 of 21637 CVEs Page 103 of 433
CVE-2026-45499
Analyzed
9.9
Microsoft Azure OpenAI

A Server-Side Request Forgery (SSRF) vulnerability in Azure OpenAI allows an authorized attacker to escalate privileges over a network.

2026-07-03
CVE-2026-45498
KEV Analyzed
9.5
Microsoft Defender

Microsoft Defender Denial of Service Vulnerability - Active in CISA KEV catalog.

2026-05-21
CVE-2026-45495
Analyzed
8.8
Microsoft Edge

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

2026-05-19
CVE-2026-45484
Analyzed
8.8
Microsoft Office SharePoint

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network

2026-06-10
CVE-2026-45482
Analyzed
8.4
GitHub Copilot / Visual Studio Code

Initialization of a resource with an insecure default in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information...

2026-06-20
CVE-2026-45480
Analyzed
10
Microsoft Azure Active Directory

An improper authentication vulnerability in Microsoft Azure Active Directory enables unauthenticated attackers to escalate privileges over a network.

2026-06-20
CVE-2026-45474
Analyzed
8.4
Microsoft Office

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-20
CVE-2026-45472
Analyzed
8.4
Microsoft Office

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-20
CVE-2026-45463
Analyzed
8.4
Microsoft Office

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-20
CVE-2026-45461
Analyzed
8.4
Microsoft Office

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-20
CVE-2026-4546
7
Arch path

A weakness has been identified in Flos Freeware Notepad2 4

2026-03-23
CVE-2026-45458
Analyzed
8.4
Microsoft Office

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-12
CVE-2026-45456
Analyzed
8.4
Microsoft Office

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-12
CVE-2026-4545
7
Arch path

A security flaw has been discovered in Flos Freeware Notepad2 4

2026-03-23
CVE-2026-45447
Analyzed
9.8
OpenSSL OpenSSL (via PKCS#7/S/MIME processing)

A use-after-free vulnerability during PKCS#7 signature verification in OpenSSL can lead to heap corruption or potential remote code execution.

2026-06-10
CVE-2026-45444
Analyzed
10
HP Gift Cards For WooCommerce Pro

The WP Swings Gift Cards For WooCommerce Pro plugin allows unauthenticated users to upload malicious files, leading to potential site compromise.

2026-05-21
CVE-2026-45434
Analyzed
8.8
Apache OFBiz via

Improper Authentication vulnerability in Apache OFBiz via Password-Change Logic Flaw Leading to Remote Code Execution This issue affects Apache OFBiz...

2026-05-20
CVE-2026-45430
Analyzed
7.1
Salesforce module before

The Salesforce module before 1

2026-05-12
CVE-2026-45419
Analyzed
8.5
DataEase DataEase

DataEase is an open source data visualization and analysis tool

2026-07-17
CVE-2026-45418
Analyzed
8.8
ClipBucket ClipBucket

ClipBucket v5 is an open source video sharing platform

2026-06-12
CVE-2026-45417
Analyzed
8.7
DataEase DataEase

DataEase is an open source data visualization and analysis tool

2026-07-16
CVE-2026-45416
Analyzed
7.5
Netty Project Netty

Netty is a network application framework for development of protocol servers and clients

2026-06-15
CVE-2026-45414
Analyzed
8.5
Decidim Decidim

Decidim is a participatory democracy framework

2026-08-07
CVE-2026-45411
Analyzed
9.8
Unknown vm2

The vm2 sandbox library for Node.js is vulnerable to sandbox escape via async generator manipulation, allowing arbitrary command execution.

2026-05-14
CVE-2026-45402
Analyzed
8.1
Intel Multiple Products

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-16
CVE-2026-45401
Analyzed
8.5
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-16
CVE-2026-45400
Analyzed
8.5
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-16
CVE-2026-4540
7.3
HP of the

A vulnerability was detected in projectworlds Online Notes Sharing System 1

2026-03-22
CVE-2026-45399
Analyzed
7.1
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-17
CVE-2026-45398
Analyzed
7.5
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-17
CVE-2026-45395
Analyzed
7.2
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-17
CVE-2026-45392
Analyzed
8.7
Cribl Stream

DOM-based cross-site scripting (XSS) in Cribl Stream before 4

2026-06-04
CVE-2026-45375
Analyzed
9
SiYuan SiYuan

A stored Cross-Site Scripting (XSS) vulnerability in the SiYuan Marketplace allows attackers to execute arbitrary HTML/JS via malicious package metada...

2026-05-15
CVE-2026-45372
Analyzed
9.9
Unknown cpp-httplib

cpp-httplib is vulnerable to header injection because it performs validity checks before percent-decoding, allowing attackers to inject CRLF sequences...

2026-05-30
CVE-2026-45370
Analyzed
7.7
Unknown Multiple Products

python-utcp is the python implementation of UTCP

2026-05-16
CVE-2026-45369
Analyzed
8.3
Unknown Multiple Products

python-utcp is the python implementation of UTCP

2026-05-15
CVE-2026-45368
Analyzed
8.4
Unknown kirby

Kirby is an open-source content management system

2026-07-17
CVE-2026-4536
7.3
Cloud Multiple Products

A vulnerability was found in Acrel Environmental Monitoring Cloud Platform 1

2026-03-22
CVE-2026-45350
Analyzed
7.1
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-17
CVE-2026-4535
8.8
Tenda FH451

A vulnerability has been found in Tenda FH451 1

2026-03-22
CVE-2026-45349
Analyzed
7.1
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-17
CVE-2026-45348
Analyzed
8.7
Unknown Multiple Products

pyLoad is a free and open-source download manager written in Python

2026-05-29
CVE-2026-4534
8.8
Tenda FH451

A flaw has been found in Tenda FH451 1

2026-03-22
CVE-2026-45338
Analyzed
7.7
Intel Multiple Products

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-16
CVE-2026-45336
Analyzed
10
StratonWebDesigners HireFlow

HireFlow versions 1.3 and earlier contain a hard-coded secret key in app.py, allowing unauthenticated attackers to forge session cookies and bypass au...

2026-07-17
CVE-2026-45331
Analyzed
8.5
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-16
CVE-2026-45325
Analyzed
8.2
Unknown go

Gestor de Oferta is a web application for managing mobility service offerings

2026-07-17
CVE-2026-45321
KEV Analyzed
9.6
GitHub Actions OIDC

GitHub Actions OIDC was exploited to publish malicious npm packages by chaining multiple vulnerabilities, including cache poisoning and token extracti...

2026-05-12
CVE-2026-45320
Analyzed
8.7
DataEase DataEase

DataEase is an open source data visualization and analysis tool

2026-07-16
CVE-2026-45315
Analyzed
8.7
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-16