21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 5251-5300 of 21637 CVEs Page 106 of 433
CVE-2026-4489
8.8
Tenda A18 Pro

A vulnerability was detected in Tenda A18 Pro 02

2026-03-21
CVE-2026-44888
Analyzed
9.8
Pi.Alert Pi.Alert

Pi.Alert is vulnerable to unauthenticated remote code execution through the configuration save endpoint, allowing arbitrary Python code injection.

2026-05-28
CVE-2026-44887
Analyzed
9.8
Pi.Alert Pi.Alert

Pi.Alert is vulnerable to unauthenticated remote code execution due to improper validation of configuration files, allowing arbitrary Python code exec...

2026-05-28
CVE-2026-4488
8.8
UTT Multiple Products

A vulnerability was identified in UTT HiPER 1250GW up to 3

2026-03-21
CVE-2026-4487
8.8
UTT Multiple Products

A vulnerability was determined in UTT HiPER 1200GW up to 2

2026-03-21
CVE-2026-4486
8.8
D-Link DIR

A vulnerability was found in D-Link DIR-513 1

2026-03-21
CVE-2026-44850
Analyzed
8.5
Docker API

Portainer Community Edition is a lightweight service delivery platform for containerized applications that can be used to manage Docker, Swarm, Kubern...

2026-05-29
CVE-2026-44849
Analyzed
8.8
Docker Portainer Community Edition / Swarm

Portainer Community Edition is a lightweight service delivery platform for containerized applications that can be used to manage Docker, Swarm, Kubern...

2026-06-02
CVE-2026-44848
Analyzed
8.8
Docker Portainer Community Edition

Portainer Community Edition is a lightweight service delivery platform for containerized applications that can be used to manage Docker, Swarm, Kubern...

2026-06-02
CVE-2026-4484
Analyzed
9.8
WordPress is vulnerable

The Masteriyo LMS plugin for WordPress allows authenticated Student-level users to escalate their privileges to Administrator via the InstructorsContr...

2026-03-26
CVE-2026-44832
Analyzed
8.8
Snipe-IT IT Asset/License Management System

Snipe-IT is an IT asset/license management system

2026-05-27
CVE-2026-44829
Analyzed
8.8
Docker Gotenberg

Gotenberg is a Docker-powered stateless API for PDF files

2026-08-20
CVE-2026-44827
Analyzed
8.8
Unknown Multiple Products

Diffusers is the a library for pretrained diffusion models

2026-05-15
CVE-2026-44826
Analyzed
7.5
Unknown Multiple Products

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores

2026-05-17
CVE-2026-44822
Analyzed
8.2
Microsoft Office Excel

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network

2026-06-12
CVE-2026-44815
Analyzed
9.8
Microsoft Windows DHCP Client

A stack-based buffer overflow in the Windows DHCP Client allows unauthenticated remote attackers to execute code via crafted network packets.

2026-06-10
CVE-2026-44810
Analyzed
8.4
Microsoft Windows

Improper authentication in Windows Cryptographic Services allows an unauthorized attacker to elevate privileges locally

2026-06-12
CVE-2026-44797
Analyzed
8.5
Unknown Multiple Products

Nautobot is a Network Source of Truth and Network Automation Platform

2026-05-29
CVE-2026-44795
Analyzed
8.8
Spinnaker Spinnaker

Spinnaker is an open source, multi-cloud continuous delivery platform

2026-07-11
CVE-2026-44792
Analyzed
8.9
Unknown n8n

n8n is an open source workflow automation platform

2026-06-24
CVE-2026-44791
Analyzed
9.4
Unknown n8n

An authenticated workflow bypass vulnerability in the n8n XML node allows for Remote Code Execution (RCE) when chained with other nodes.

2026-06-24
CVE-2026-44790
Analyzed
9.4
Unknown n8n

An authenticated user can inject CLI flags via the Git node's Push operation in n8n, enabling arbitrary file read access on the host server.

2026-06-24
CVE-2026-44789
Analyzed
9.4
Unknown n8n

A prototype pollution vulnerability in n8n, exploitable via an unvalidated pagination parameter, can lead to remote code execution for authenticated u...

2026-06-24
CVE-2026-44787
Analyzed
8.2
Discourse Discourse

Discourse is an open-source discussion platform

2026-07-10
CVE-2026-4478
8.1
Home Multiple Products

A vulnerability was identified in Yi Technology YI Home Camera 2 2

2026-03-20
CVE-2026-44765
Analyzed
7.3
Intel Manufacturing Integration and Intelligence

Due to a Missing Authorization Check vulnerability in SAP Manufacturing Integration and Intelligence, an unauthenticated remote attacker could access...

2026-08-11
CVE-2026-44764
Analyzed
7.3
Intel Manufacturing Integration and Intelligence

Due to a Missing Authorization Check vulnerability in SAP Manufacturing Integration and Intelligence, an unauthenticated attacker could send crafted r...

2026-08-11
CVE-2026-44763
Analyzed
7.6
Intel Manufacturing Integration and Intelligence

SAP Manufacturing Integration and Intelligence allows a privileged attacker to exploit insufficient file path validation in certain functions using sp...

2026-08-11
CVE-2026-44761
Analyzed
9.1
SAP Commerce Cloud

SAP Commerce Cloud retains default, publicly documented OAuth2 client credentials, allowing unauthenticated attackers to gain unauthorized API access...

2026-07-14
CVE-2026-44752
Analyzed
8.2
SAP SAP NetWeaver Application Server Java

SAP NetWeaver Application Server Java allows an unauthenticated attacker to inject malicious JavaScript through crafted URLs

2026-07-14
CVE-2026-4475
8.8
Home Multiple Products

A vulnerability has been found in Yi Technology YI Home Camera 2 2

2026-03-20
CVE-2026-44748
Analyzed
9.9
SAP NetWeaver Application Server ABAP

An authenticated attacker can tamper with signed XML documents in SAP NetWeaver, leading to unauthorized access and potential system disruption.

2026-06-09
CVE-2026-44747
Analyzed
9.9
SAP NetWeaver Application Server ABAP

SAP NetWeaver Application Server ABAP contains a memory corruption vulnerability that allows authenticated attackers to gain unauthorized access or ca...

2026-07-14
CVE-2026-44745
Analyzed
8.1
SAP SAP Approuter

SAP Approuter does not properly validate incoming request headers during the OAuth2 login flow under certain configurations

2026-07-14
CVE-2026-44741
Analyzed
8.8
Pimcore Admin Classic Bundle

Pimcore's Admin Classic Bundle provides a Backend UI for Pimcore

2026-08-13
CVE-2026-44739
Analyzed
8.7
Pimcore Pimcore

Pimcore is an Open Source Data & Experience Management Platform

2026-07-18
CVE-2026-44738
Analyzed
7.7
AWS keys

Grav is a file-based Web platform

2026-05-12
CVE-2026-44729
Analyzed
8.7
Twenty Twenty CRM

Twenty is an open source CRM

2026-05-27
CVE-2026-44727
Analyzed
9.3
Unknown Jupyter Server

A stored XSS vulnerability in Jupyter Server allows attackers to achieve remote code execution and gain full API authority via malicious notebook HTML...

2026-06-23
CVE-2026-44721
Analyzed
7.3
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-17
CVE-2026-44717
Analyzed
9.8
MCP Calculate Server

The MCP Calculate Server utilizes the unsafe eval() function to process mathematical expressions, allowing unauthenticated remote code execution.

2026-05-16
CVE-2026-44714
Analyzed
7.5
Unknown Multiple Products

The bitcoinj library is a Java implementation of the Bitcoin protocol

2026-05-17
CVE-2026-44713
Analyzed
8.8
Linux using ordinary

pam_usb provides hardware authentication for Linux using ordinary removable media

2026-05-28
CVE-2026-44712
Analyzed
8.2
Linux using ordinary

pam_usb provides hardware authentication for Linux using ordinary removable media

2026-05-29
CVE-2026-44705
Analyzed
8.2
Unknown tmp

tmp is a temporary file and directory creator for node

2026-06-16
CVE-2026-44697
Analyzed
8.6
Klever Klever-Go

Klever-Go is the Go implementation of the Klever blockchain protocol

2026-06-02
CVE-2026-44693
Analyzed
8.8
Pi-hole Pi-hole FTL

Pi-hole FTL is the core engine of the Pi-hole network-level advertisement and tracker blocker

2026-06-11
CVE-2026-44669
Analyzed
8.7
Faction Faction Framework

FACTION is a PenTesting Report Generation and Collaboration Framework

2026-05-27
CVE-2026-44668
Analyzed
9.8
Faction PenTesting Report Generation and Collaboration Framework

The Faction PenTesting Framework contains an authentication bypass vulnerability allowing unauthenticated attackers to read, overwrite, or delete boil...

2026-05-27
CVE-2026-44667
Analyzed
8.7
Faction Faction Framework

FACTION is a PenTesting Report Generation and Collaboration Framework

2026-05-27