21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 601-650 of 21637 CVEs Page 13 of 433
CVE-2026-75843
Analyzed
9.9
ArcadeData arcadedb

An improper privilege management vulnerability in ArcadeDB allows authenticated users to execute unauthorized JavaScript commands, leading to privileg...

2026-08-19
CVE-2026-7584
7.8
Unknown Multiple Products

The LabOne Q serialization framework uses a class-loading mechanism (import_cls) to dynamically import and instantiate Python classes during deseriali...

2026-05-01
CVE-2026-7579
7.3
Unknown Multiple Products

A security vulnerability has been detected in AstrBotDevs AstrBot up to 4

2026-05-02
CVE-2026-75784
Analyzed
10
GitHub TEW-WLC100

A stack-based buffer overflow in the TRENDnet TEW-WLC100 HTTP Header Handler allows remote unauthenticated attackers to execute arbitrary code.

2026-08-19
CVE-2026-7574
Analyzed
8.7
Anthropic Claude Desktop Cowork

Anthropic Claude Desktop Cowork VM image handling (confirmed across v1

2026-06-24
CVE-2026-7571
Analyzed
7.1
Infor Multiple Products

A flaw was found in Keycloak

2026-05-20
CVE-2026-7570
Analyzed
8.8
Quest NetVault Backup

Quest NetVault Backup NVBUDashboard SQL Injection Remote Code Execution Vulnerability

2026-06-25
CVE-2026-7569
Analyzed
8.8
Quest NetVault Backup

Quest NetVault Backup viewclient Cross-Site Scripting Authentication Bypass Vulnerability

2026-06-25
CVE-2026-7567
Analyzed
9.8
WordPress is vulnerable

The Temporary Login plugin for WordPress is vulnerable to authentication bypass, allowing unauthenticated attackers to log in as any temporary user.

2026-05-02
CVE-2026-75596
Analyzed
8.7
Netty Netty

Netty is an asynchronous, event-driven network application framework

2026-08-21
CVE-2026-7555
7.3
HP Multiple Products

A vulnerability was identified in itsourcecode Electronic Judging System 1

2026-05-01
CVE-2026-7551
8.8
Unknown Multiple Products

HKUDS OpenHarness contains a remote code execution vulnerability in the /bridge slash command that allows remote senders accepted by configuration to...

2026-05-01
CVE-2026-7550
7.3
HP Multiple Products

A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1

2026-05-01
CVE-2026-7549
7.3
HP Multiple Products

A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1

2026-05-01
CVE-2026-75482
Analyzed
7.5
Intel SWE-agent

SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1

2026-08-18
CVE-2026-75481
Analyzed
8.8
Unknown skypilot

SkyPilot fails to validate that authenticated users are entitled to grant administrator roles when updating service account permissions

2026-08-18
CVE-2026-7548
8.8
TOTOLINK Multiple Products

A vulnerability was detected in Totolink NR1800X 9

2026-05-01
CVE-2026-75479
Analyzed
7.5
Intel JimuReport

JimuReport contains an authentication bypass vulnerability in the report folder template listing endpoint that allows unauthenticated attackers to enu...

2026-08-18
CVE-2026-7546
Analyzed
9.8
TOTOLINK NR1800X

A stack-based buffer overflow exists in the Totolink NR1800X lighttpd component, allowing remote attackers to trigger a crash or execute code via the...

2026-05-01
CVE-2026-7545
7.3
HP of the

A weakness has been identified in SourceCodester Advanced School Management System 1

2026-05-01
CVE-2026-7538
Analyzed
9.8
TOTOLINK A8000RU

The Totolink A8000RU router is vulnerable to remote OS command injection via the proto parameter in the CGI handler, allowing unauthenticated attacker...

2026-05-01
CVE-2026-7524
Analyzed
9.8
IBM Langflow OSS

IBM Langflow OSS is vulnerable to remote code execution during archive extraction due to improper validation of symbolic links.

2026-05-28
CVE-2026-7522
Analyzed
8.8
WordPress is vulnerable

The Advanced Database Cleaner – Premium plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 4

2026-05-20
CVE-2026-7520
Analyzed
8.1
WordPress Mailmunch Forms for Mailchimp

The MailChimp Forms by MailMunch plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the `sig...

2026-08-05
CVE-2026-7519
7.3
Unknown Multiple Products

A vulnerability has been found in Fujian Apex LiveBOS up to 2

2026-05-01
CVE-2026-7515
Analyzed
9.8
HP BetterDocs Pro

The BetterDocs Pro plugin for WordPress contains a Local File Inclusion vulnerability in the doc_style parameter, allowing unauthenticated attackers t...

2026-06-20
CVE-2026-75149
Analyzed
8.8
Unknown marimo

marimo before 0

2026-08-20
CVE-2026-7513
8.8
UTT Multiple Products

A vulnerability has been found in UTT HiPER 1200GW up to 2

2026-05-01
CVE-2026-7512
8.8
UTT Multiple Products

A flaw has been found in UTT HiPER 1200GW up to 2

2026-05-01
CVE-2026-75111
Analyzed
7.5
Unknown evidently

Evidently UI fails to properly validate the filename parameter in the dataset materialization endpoint, allowing unauthenticated attackers to read arb...

2026-08-18
CVE-2026-75110
Analyzed
9.8
MemTensor MemOS

MemOS suffers from an authentication bypass vulnerability due to an incorrect comparison in the middleware, allowing unauthenticated remote attackers...

2026-08-18
CVE-2026-75106
Analyzed
9.1
OpnForm OpnForm

OpnForm uses predictable Hashids with an empty salt for submission secrets, allowing unauthenticated attackers to read or overwrite sensitive responde...

2026-08-18
CVE-2026-75105
Analyzed
7.5
HP phpipam

phpIPAM through 1

2026-08-18
CVE-2026-75103
Analyzed
8.8
Crawlab-team Crawlab

Crawlab fails to verify user ownership or administrative role on the password-change endpoint, allowing any authenticated user to reset any account's...

2026-08-18
CVE-2026-75094
Analyzed
9.1
GitHub CF-N1-S

A critical OS command injection vulnerability exists in the COMFAST CF-N1-S CGI interface, allowing authenticated attackers to execute arbitrary syste...

2026-08-18
CVE-2026-7507
Analyzed
7.5
Unknown Multiple Products

A session fixation vulnerability was found in Keycloak's login-actions endpoints

2026-05-20
CVE-2026-75060
Analyzed
8.4
Intel PyCharm

In JetBrains PyCharm before 2026

2026-08-18
CVE-2026-7506
7.3
HP Multiple Products

A vulnerability has been found in SourceCodester Hotel Management System 1

2026-05-01
CVE-2026-75056
Analyzed
7.8
Intel IntelliJ IDEA

In JetBrains IntelliJ IDEA before 2026

2026-08-18
CVE-2026-75051
Analyzed
8.1
JetBrains YouTrack

In JetBrains YouTrack before 2026

2026-08-18
CVE-2026-7505
7.3
Unknown Multiple Products

A flaw has been found in nextlevelbuilder GoClaw and GoClaw Lite up to 3

2026-05-01
CVE-2026-75048
Analyzed
8.2
JetBrains YouTrack

In JetBrains YouTrack before 2026

2026-08-18
CVE-2026-75045
Analyzed
9.1
Intel YouTrack

JetBrains YouTrack is vulnerable to unauthorized database backup downloads by unauthenticated attackers due to an issue with shared draft signatures.

2026-08-18
CVE-2026-75044
Analyzed
8.1
JetBrains YouTrack

In JetBrains YouTrack before 2025

2026-08-18
CVE-2026-7504
Analyzed
8.1
Infor Multiple Products

A flaw was found in Keycloak's URL validation logic during redirect operations

2026-05-20
CVE-2026-7503
8.8
Unknown Multiple Products

A vulnerability was detected in code-projects for Plugin 4

2026-05-01
CVE-2026-74997
Analyzed
8.8
Roundcube Webmail

In Roundcube Webmail before 1

2026-08-18
CVE-2026-7498
Analyzed
8.8
Unknown Multiple Products

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Basamak Information Technology Consulting and Or...

2026-05-19
CVE-2026-7491
8.1
School Multiple Products

School App developed by Zyosoft has an Insecure Direct Object Reference vulnerability, allowing authenticated remote attackers to modify a specific pa...

2026-05-03
CVE-2026-74901
Analyzed
9.8
Unknown openssl_encrypt

The openssl_encrypt library contains a cryptographic flaw in pqc.py where decryption failures trigger an insecure fallback to unauthenticated AES-CTR...

2026-08-18