21745 Total CVEs
12907 AI Analyzed
307 CISA KEV
4769 Critical
All Vendors
Showing 5851-5900 of 21745 CVEs Page 118 of 435
CVE-2026-42437
7.5
OpenClaw Multiple Products

OpenClaw versions 2026

2026-05-06
CVE-2026-42436
7.7
OpenClaw Multiple Products

OpenClaw before 2026

2026-05-06
CVE-2026-42435
8.8
Unknown Multiple Products

OpenClaw versions from 2026

2026-05-06
CVE-2026-42434
8.8
OpenClaw Multiple Products

OpenClaw versions 2026

2026-05-06
CVE-2026-42432
7.8
OpenClaw Multiple Products

OpenClaw before 2026

2026-04-29
CVE-2026-42431
8.1
OpenClaw Multiple Products

OpenClaw before 2026

2026-04-29
CVE-2026-42426
8.8
OpenClaw Multiple Products

OpenClaw before 2026

2026-04-29
CVE-2026-42423
7.5
OpenClaw Multiple Products

OpenClaw before 2026

2026-04-29
CVE-2026-42422
8.8
OpenClaw Multiple Products

OpenClaw before 2026

2026-04-29
CVE-2026-42411
Analyzed
8.1
WordPress CloudSecure WP Security

Unauthenticated Broken Authentication in CloudSecure WP Security <= 1

2026-06-16
CVE-2026-42406
Analyzed
8.7
Certificate Multiple Products

A vulnerability exists in BIG-IP and BIG-IQ systems where a highly privileged, authenticated attacker with at least the Certificate Manager role can m...

2026-05-14
CVE-2026-42403
7.5
Apache Neethi does

Apache Neethi does not properly detect circular references in policy definitions

2026-05-02
CVE-2026-42402
7.5
Apache Neethi is

Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization

2026-05-02
CVE-2026-42383
Analyzed
7.6
YITH YITH WooCommerce Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in YITH YITH WooCommerce Product Add-Ons allows Bli...

2026-05-21
CVE-2026-42382
Analyzed
8.1
Elated-Themes Audrey

Unauthenticated Local File Inclusion in Audrey <= 1

2026-07-03
CVE-2026-42379
7.7
WPDeveloper Multiple Products

Insertion of Sensitive Information Into Sent Data vulnerability in WPDeveloper Templately allows Retrieve Embedded Sensitive Data

2026-04-28
CVE-2026-42376
Analyzed
9.8
D-Link DIR

D-Link DIR-456U Hardware Revision A1 (End-of-Life, EOL) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /etc/init0...

2026-05-05
CVE-2026-42375
Analyzed
9.8
D-Link DIR

D-Link DIR-600L Hardware Revision A1 (End-of-Life) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /bin/telnetd.sh...

2026-05-05
CVE-2026-42374
Analyzed
9.8
D-Link DIR

D-Link DIR-600L Hardware Revision B1 (End-of-Life) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /bin/telnetd.sh...

2026-05-05
CVE-2026-42373
Analyzed
9.8
D-Link DIR

D-Link DIR-605L Hardware Revision B2 (End-of-Life, EOL) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /bin/telne...

2026-05-05
CVE-2026-42372
8.8
D-Link DIR

D-Link DIR-605L Hardware Revision A1 (End-of-Life, EOL) contains a hardcoded telnet backdoor

2026-05-05
CVE-2026-42370
Analyzed
9
GeoVision GV-VMS

A stack overflow in the WebCam Server Login functionality of GeoVision GV-VMS 20.0.2 allows unauthenticated remote attackers to achieve arbitrary code...

2026-05-04
CVE-2026-4237
7.3
HP Multiple Products

A flaw has been found in itsourcecode Free Hotel Reservation System 1

2026-03-17
CVE-2026-42369
Analyzed
10
GeoVision GV-VMS

A stack-based buffer overflow in the GV-VMS WebCam Server gvapi endpoint allows remote attackers to gain SYSTEM-level code execution via a specially c...

2026-05-04
CVE-2026-42368
Analyzed
9.9
GeoVision LPC2011/LPC2211

A privilege escalation vulnerability in the GeoVision LPC2011/LPC2211 web interface allows an attacker to execute privileged operations via a crafted...

2026-05-04
CVE-2026-42366
7.4
Unknown Multiple Products

Multiple reflected cross-site scripting (xss) vulnerabilities exist in the Web Interface / ssi

2026-05-04
CVE-2026-42365
Analyzed
8.6
GeoVision LPC2011/LPC2211

A guessable session cookie vulnerability exists in the Web Interface functionality of GeoVision LPC2011/LPC2211 1

2026-05-04
CVE-2026-42364
Analyzed
9.9
GeoVision LPC2011/LPC2211

An OS command injection vulnerability in the DdnsSetting.cgi functionality of GeoVision LPC2011/LPC2211 allows arbitrary command execution via crafted...

2026-05-04
CVE-2026-42363
Analyzed
9.3
LG GV-IP Device Utility

GeoVision GV-IP Device Utility 9.0.5 uses insufficient encryption for administrative credentials, allowing attackers to intercept and decrypt sensitiv...

2026-04-27
CVE-2026-4236
7.3
Enrollment Multiple Products

A security vulnerability has been detected in itsourcecode Online Enrollment System 1

2026-03-17
CVE-2026-42359
Analyzed
8.8
Apache Airflow

A bug in Apache Airflow's XCom PATCH endpoint `PATCH /api/v2/xcomEntries/{key}` allowed an authenticated UI/API user with XCom write permission on a D...

2026-06-03
CVE-2026-42354
Analyzed
9.1
Sentry Sentry

Sentry's SAML SSO implementation is vulnerable to an account takeover flaw when using a malicious SAML Identity Provider.

2026-05-09
CVE-2026-42353
8.2
Unknown Multiple Products

i18next-http-middleware is a middleware to be used with Node

2026-05-09
CVE-2026-42352
8.6
Python Multiple Products

pygeoapi is a Python server implementation of the OGC API suite of standards

2026-05-09
CVE-2026-42351
7.5
Python Multiple Products

pygeoapi is a Python server implementation of the OGC API suite of standards

2026-05-10
CVE-2026-4235
7.3
HP Multiple Products

A weakness has been identified in itsourcecode Online Enrollment System 1

2026-03-17
CVE-2026-42345
7.7
Unknown Multiple Products

FastGPT is an AI Agent building platform

2026-05-09
CVE-2026-42341
Analyzed
9.2
HP FOSSBilling

FOSSBilling contains an unauthenticated payment bypass vulnerability in the IPN callback endpoint, allowing attackers to mark invoices as paid without...

2026-07-07
CVE-2026-42331
Analyzed
7.7
FOSSBilling FOSSBilling

FOSSBilling is a free, open-source billing and client management system

2026-07-07
CVE-2026-4232
7.3
Unknown Multiple Products

A vulnerability was determined in Tiandy Integrated Management Platform 7

2026-03-17
CVE-2026-42315
Analyzed
8.1
Unknown Multiple Products

pyLoad is a free and open-source download manager written in Python

2026-05-12
CVE-2026-42313
Analyzed
8.3
Unknown Multiple Products

pyLoad is a free and open-source download manager written in Python

2026-05-12
CVE-2026-4231
7.3
Unknown Multiple Products

A vulnerability was found in vanna-ai vanna up to 2

2026-03-17
CVE-2026-42305
Analyzed
8.8
Jelmer Vernooij (Dulwich) Dulwich

Dulwich is a pure-Python implementation of the Git file formats and protocols

2026-06-11
CVE-2026-42302
Analyzed
9.8
FastGPT FastGPT

An unauthenticated RCE vulnerability in FastGPT's agent-sandbox component stems from insecure default configurations in the startup script.

2026-05-09
CVE-2026-42301
7.8
Fedora RPM spec

pyp2spec generates working Fedora RPM spec file for Python projects

2026-05-09
CVE-2026-42298
Analyzed
10
GitHub Postiz

A "Pwn Request" vulnerability in Postiz allows unauthenticated users to execute arbitrary code via malicious pull requests, leading to credential exfi...

2026-05-09
CVE-2026-42296
Analyzed
8.1
Kubernetes Multiple Products

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes

2026-05-09
CVE-2026-4229
7.3
Google Multiple Products

A flaw has been found in vanna-ai vanna up to 2

2026-03-17
CVE-2026-42289
Analyzed
8.8
HP processes user

ChurchCRM is an open-source church management system

2026-05-13