21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 7251-7300 of 21637 CVEs Page 146 of 433
CVE-2026-33811
7.5
Unknown Multiple Products

When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash

2026-05-09
CVE-2026-3381
Analyzed
9.8
Perl (CPAN) Compress::Raw::Zlib

Compress::Raw::Zlib for Perl bundles an insecure version of the zlib library (CVE-2026-27171). Updating to version 2.220 resolves these underlying sec...

2026-03-06
CVE-2026-33807
Analyzed
9.1
Unknown Multiple Products

@fastify/express v4.0.4 and earlier contains a path handling bug in the onRegister function that causes middleware paths to be doubled when inherited...

2026-04-16
CVE-2026-33805
Analyzed
8.6
Fastify @fastify/reply-from and @fastify/http-proxy

@fastify/reply-from v12

2026-06-02
CVE-2026-33804
7.4
Unknown Multiple Products

@fastify/middie versions 9

2026-04-17
CVE-2026-3380
Analyzed
8.8
Tenda F453

A vulnerability was found in Tenda F453 1

2026-03-01
CVE-2026-33793
7.8
Juniper Networks Junos

An Execution with Unnecessary Privileges vulnerability in the User Interface (UI) of Juniper Networks Junos OS and Junos OS Evolved allows a local, lo...

2026-04-10
CVE-2026-33790
7.5
Juniper Networks Junos

An Improper Check for Unusual or Exceptional Conditions vulnerability in the flow daemon (flowd) of Juniper Networks Junos OS on SRX Series allows an...

2026-04-11
CVE-2026-3379
Analyzed
8.8
Tenda F453

A vulnerability has been found in Tenda F453 1

2026-03-01
CVE-2026-33788
7.8
Juniper Networks Junos

A Missing Authentication for Critical Function vulnerability in the Flexible PIC Concentrators (FPCs) of Juniper Networks Junos OS Evolved on PTX Seri...

2026-04-10
CVE-2026-33785
8.8
Juniper Networks Junos

A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on MX Series allows a local, authenticated user with low privileges to e...

2026-04-10
CVE-2026-33784
Analyzed
9.8
Juniper Networks Support

A Use of Default Password vulnerability in the Juniper Networks Support Insights (JSI) Virtual Lightweight Collector (vLWC) allows an unauthentica...

2026-04-10
CVE-2026-3378
Analyzed
8.8
Tenda F453

A flaw has been found in Tenda F453 1

2026-03-01
CVE-2026-33778
7.5
Juniper Networks Junos

An Improper Validation of Syntactic Correctness of Input vulnerability in the IPsec library used by kmd and iked of Juniper Networks Junos OS on SRX...

2026-04-11
CVE-2026-3377
Analyzed
8.8
Tenda F453

A vulnerability was detected in Tenda F453 1

2026-03-01
CVE-2026-33760
Analyzed
8.8
Langflow Langflow

Langflow is a tool for building and deploying AI-powered agents and workflows

2026-06-24
CVE-2026-3376
Analyzed
8.8
Tenda F453

A security vulnerability has been detected in Tenda F453 1

2026-03-01
CVE-2026-33757
Analyzed
9.6
OpenBao OpenBao

OpenBao fails to require user confirmation during OIDC/JWT logins in `direct` mode, enabling unauthenticated remote phishing and session hijacking.

2026-03-28
CVE-2026-33756
7.5
Unknown Multiple Products

Saleor is an e-commerce platform

2026-04-10
CVE-2026-33755
8.8
Microsoft Multiple Products

Group-Office is an enterprise customer relationship management and groupware tool

2026-03-28
CVE-2026-33752
8.6
Unknown Multiple Products

curl_cffi is the a Python binding for curl

2026-04-07
CVE-2026-33747
Analyzed
8.4
Docker BuildKit

BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner

2026-03-27
CVE-2026-33746
Analyzed
9.8
Convoy Convoy Panel

A critical JWT signature verification failure in Convoy allows unauthenticated attackers to forge tokens and bypass SSO authentication to log in as an...

2026-04-03
CVE-2026-33744
7.8
Docker build

BentoML is a Python library for building online serving systems optimized for AI apps and model inference

2026-03-28
CVE-2026-33733
7.2
Unknown Multiple Products

EspoCRM is an open source customer relationship management application

2026-04-24
CVE-2026-33719
8.6
HP Multiple Products

WWBN AVideo is an open source video platform

2026-03-24
CVE-2026-33718
7.6
Unknown Multiple Products

OpenHands is software for AI-driven development

2026-03-28
CVE-2026-33717
8.8
HP file persistently

WWBN AVideo is an open source video platform

2026-03-24
CVE-2026-33716
Analyzed
9.4
HP AVideo

WWBN AVideo contains an authentication bypass in the Live plugin's standalone control endpoint. Attackers can redirect token verification to a malicio...

2026-03-24
CVE-2026-33710
7.5
Chamilo Multiple Products

Chamilo LMS is a learning management system

2026-04-12
CVE-2026-33707
Analyzed
9.4
Chamilo LMS

Chamilo LMS uses a predictable, non-random token generation mechanism for password resets, allowing unauthenticated attackers to hijack user accounts.

2026-04-11
CVE-2026-33706
7.1
Chamilo Multiple Products

Chamilo LMS is a learning management system

2026-04-12
CVE-2026-33704
7.1
Apache configurations where

Chamilo LMS is a learning management system

2026-04-12
CVE-2026-33702
7.1
HP accepts

Chamilo LMS is a learning management system

2026-04-12
CVE-2026-33687
8.8
HP files unless

Sharp is a content management framework built for Laravel as a package

2026-03-27
CVE-2026-33686
8.8
HP Multiple Products

Sharp is a content management framework built for Laravel as a package

2026-03-27
CVE-2026-3368
7.2
WordPress is vulnerable

The Injection Guard plugin for WordPress is vulnerable to Stored Cross-Site Scripting via malicious query parameter names in all versions up to and in...

2026-03-22
CVE-2026-33678
8.1
Unknown Multiple Products

Vikunja is an open-source self-hosted task management platform

2026-03-25
CVE-2026-33673
7.6
PrestaShop is an

PrestaShop is an open source e-commerce web application

2026-03-28
CVE-2026-33670
Analyzed
9.8
SiYuan SiYuan

SiYuan versions prior to 3.6.2 allow unauthenticated directory traversal and filename retrieval via the /api/file/readDir interface, exposing the stru...

2026-03-27
CVE-2026-33669
Analyzed
9.8
SiYuan SiYuan

SiYuan versions prior to 3.6.2 are vulnerable to unauthorized data access where document IDs and content can be retrieved through the /api/file/readDi...

2026-03-27
CVE-2026-33667
7.4
Unknown Multiple Products

OpenProject is an open-source project management application

2026-04-17
CVE-2026-33666
Analyzed
7.5
Unknown Multiple Products

Zserio is a framework for serializing structured data with a compact and efficient way with low overhead

2026-04-25
CVE-2026-33662
7.5
Linux kernel running

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone...

2026-04-25
CVE-2026-33661
8.6
HP Multiple Products

Pay is an open-source payment SDK extension package for various Chinese payment services

2026-03-27
CVE-2026-33656
Analyzed
9.1
EspoCRM EspoCRM

A path traversal vulnerability in EspoCRM's formula scripting engine allows authenticated administrators to read or write arbitrary files on the serve...

2026-04-23
CVE-2026-33655
Analyzed
7.7
Intel new-api

New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system

2026-07-10
CVE-2026-33651
8.1
HP Multiple Products

WWBN AVideo is an open source video platform

2026-03-24
CVE-2026-33650
7.6
HP Multiple Products

WWBN AVideo is an open source video platform

2026-03-24
CVE-2026-33649
8.1
HP Multiple Products

WWBN AVideo is an open source video platform

2026-03-24