8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 7401-7450 of 8341 CVEs Page 149 of 167
CVE-2025-10600
7.3
Unknown Multiple Products

A flaw has been found in SourceCodester Online Exam Form Submission 1

2025-09-18
CVE-2025-10599
7.3
Unknown Multiple Products

A security flaw has been discovered in itsourcecode Web-Based Internet Laboratory Management System 1

2025-09-18
CVE-2025-10598
7.3
Unknown Multiple Products

A vulnerability was identified in SourceCodester Pet Grooming Management Software 1

2025-09-18
CVE-2025-10597
7.3
Unknown Multiple Products

A vulnerability was determined in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464

2025-09-17
CVE-2025-10596
7.3
Unknown Multiple Products

A vulnerability was found in SourceCodester Online Exam Form Submission 1

2025-09-17
CVE-2025-10589
8.8
Unknown Multiple Products

The N-Reporter, N-Cloud, and N-Probe developed by N-Partner has an OS Command Injection vulnerability, allowing authenticated remote attackers to inje...

2025-09-17
CVE-2025-10587
Analyzed
9.8
WordPress Multiple Products

The Community Events plugin for WordPress is vulnerable to SQL Injection via the event_category parameter in all versions up to, and including, 1.5.1...

2025-10-08
CVE-2025-10586
Analyzed
9.8
WordPress Multiple Products

The Community Events plugin for WordPress is vulnerable to SQL Injection via the ‘event_venue’ parameter in all versions up to, and including, 1.5.1 d...

2025-10-09
CVE-2025-10585
KEV Analyzed
9.5
Google Chromium V8

Google Chromium V8 Type Confusion Vulnerability - Active in CISA KEV catalog.

2025-09-23
CVE-2025-10582
Analyzed
8.8
WordPress Multiple Products

The WP Dispatcher plugin for WordPress is vulnerable to SQL Injection via the ‘id’ parameter in all versions up to, and including, 1

2025-10-03
CVE-2025-10581
7.8
Unknown Multiple Products

A potential DLL hijacking vulnerability was discovered in the Lenovo PC Manager during an internal security assessment that could allow a local authen...

2025-10-16
CVE-2025-10573
Analyzed
9.6
Unknown Multiple Products

Stored XSS in Ivanti Endpoint Manager prior to version 2024 SU4 SR1 allows a remote unauthenticated attacker to execute arbitrary JavaScript in the co...

2025-12-10
CVE-2025-10571
Analyzed
9.6
Unknown Multiple Products

Authentication Bypass Using an Alternate Path or Channel vulnerability in ABB ABB Ability Edgenius.This issue affects ABB Ability Edgenius: 3.2.0.0, 3...

2025-11-20
CVE-2025-10565
7.3
Unknown Multiple Products

A vulnerability was determined in Campcodes Grocery Sales and Inventory System 1

2025-09-16
CVE-2025-10564
7.3
Unknown Multiple Products

A vulnerability was found in Campcodes Grocery Sales and Inventory System 1

2025-09-16
CVE-2025-10563
7.3
Unknown Multiple Products

A vulnerability has been found in Campcodes Grocery Sales and Inventory System 1

2025-09-16
CVE-2025-10562
7.3
Unknown Multiple Products

A flaw has been found in Campcodes Grocery Sales and Inventory System 1

2025-09-16
CVE-2025-10561
Analyzed
9.3
Unknown Multiple Products

The device is running an outdated operating system, which may be susceptible to known vulnerabilities.

2025-10-27
CVE-2025-10558
Analyzed
8.7
Intel Multiple Products

A stored Cross-site Scripting (XSS) vulnerability affecting 3DSearch in 3DSwymer on Release 3DEXPERIENCE R2025x allows an attacker to execute arbitrar...

2025-10-13
CVE-2025-10557
Analyzed
8.7
Unknown Multiple Products

A stored Cross-site Scripting (XSS) vulnerability affecting Issue Management in ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R202...

2025-10-13
CVE-2025-10556
Analyzed
8.7
Intel Multiple Products

A stored Cross-site Scripting (XSS) vulnerability affecting Specification Management in ENOVIA Specification Manager from Release 3DEXPERIENCE R2023x...

2025-10-13
CVE-2025-10555
8.7
Process Multiple Products

A stored Cross-site Scripting (XSS) vulnerability affecting Service Items Management in DELMIA Service Process Engineer on Release 3DEXPERIENCE R2025x...

2025-11-25
CVE-2025-10554
8.7
Product Multiple Products

A stored Cross-site Scripting (XSS) vulnerability affecting Requirements in ENOVIA Product Manager from Release 3DEXPERIENCE R2023x through Release 3D...

2025-11-25
CVE-2025-10552
Analyzed
8.7
Intel Multiple Products

A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2025x allows an attacker to execute arbitrary...

2025-10-13
CVE-2025-10547
Analyzed
8.8
Unknown Multiple Products

An uninitialized variable in the HTTP CGI request arguments processing component of Vigor Routers running DrayOS may allow an attacker the ability to...

2025-10-03
CVE-2025-10542
Analyzed
9.8
Unknown Multiple Products

iMonitor EAM 9.6394 ships with default administrative credentials that are also displayed within the management client’s connection dialog. If the adm...

2025-09-25
CVE-2025-10541
7.8
Unknown Multiple Products

iMonitor EAM 9

2025-09-25
CVE-2025-10537
Analyzed
8.8
Intel Multiple Products

Memory safety bugs present in Firefox ESR 140

2025-09-16
CVE-2025-10536
Analyzed
8.4
Mozilla Multiple Products

This vulnerability affects Firefox < 143, Firefox ESR < 140

2025-09-16
CVE-2025-10535
Analyzed
7.5
Mozilla Multiple Products

This vulnerability affects Firefox < 143

2025-09-17
CVE-2025-10534
Analyzed
8.1
Mozilla Multiple Products

This vulnerability affects Firefox < 143 and Thunderbird < 143

2025-09-17
CVE-2025-10533
Analyzed
8.8
Mozilla Multiple Products

This vulnerability affects Firefox < 143, Firefox ESR < 115

2025-09-16
CVE-2025-10528
7.3
Unknown Multiple Products

This vulnerability affects Firefox < 143, Firefox ESR < 140

2025-09-17
CVE-2025-10527
Analyzed
7.1
Mozilla Multiple Products

This vulnerability affects Firefox < 143, Firefox ESR < 140

2025-09-16
CVE-2025-10502
Analyzed
8.8
Google Multiple Products

Heap buffer overflow in ANGLE in Google Chrome prior to 140

2025-09-24
CVE-2025-10501
Analyzed
8.8
Google Multiple Products

Use after free in WebRTC in Google Chrome prior to 140

2025-09-24
CVE-2025-10500
Analyzed
8.8
Google Multiple Products

Use after free in Dawn in Google Chrome prior to 140

2025-09-24
CVE-2025-10497
7.5
GitLab Multiple Products

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17

2025-10-27
CVE-2025-10496
Analyzed
7.2
WordPress Multiple Products

The Cookie Notice & Consent plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the uuid parameter in all versions up to, and includ...

2025-10-09
CVE-2025-10495
7.5
Zone Multiple Products

A potential vulnerability was reported in the Lenovo PC Manager, Lenovo App Store, Lenovo Browser, and Lenovo Legion Zone client applications that, un...

2025-11-14
CVE-2025-10494
Analyzed
8.1
WordPress Multiple Products

The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path v...

2025-10-08
CVE-2025-10491
Analyzed
7.8
Microsoft Multiple Products

The MongoDB Windows installation MSI may leave ACLs unset on custom installation directories allowing a local attacker to introduce executable code to...

2025-09-15
CVE-2025-10487
Analyzed
7.3
WordPress Multiple Products

The Advanced Ads – Ad Manager & AdSense plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2

2025-11-01
CVE-2025-10484
Analyzed
9.8
HP Multiple Products

The Registration & Login with Mobile Phone Number for WooCommerce plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, a...

2026-01-17
CVE-2025-10482
7.3
Unknown Multiple Products

A vulnerability was detected in SourceCodester Online Student File Management System 1

2025-09-15
CVE-2025-10479
7.3
Unknown Multiple Products

A security flaw has been discovered in SourceCodester Online Student File Management System 1

2025-09-15
CVE-2025-10468
7.5
Beyaz Computer Multiple Products

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Beyaz Computer CityPlus allows Path Traversal

2025-09-19
CVE-2025-10467
8.9
PROLIZ Computer Multiple Products

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PROLIZ Computer Software Hardware Service...

2025-09-25
CVE-2025-10459
Analyzed
7.3
HP Multiple Products

A security flaw has been discovered in PHPGurukul Beauty Parlour Management System 1

2025-09-15
CVE-2025-10458
7.6
Parameters Multiple Products

Parameters are not validated or sanitized, and are later used in various internal operations

2025-09-19