8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 7701-7750 of 8341 CVEs Page 155 of 167
CVE-2024-39835
7.8
Unknown Multiple Products

A code injection vulnerability has been identified in the Robot Operating System (ROS) 'roslaunch' command-line tool, affecting ROS distributions Noet...

2025-07-17
CVE-2024-39335
9.1
Unknown Multiple Products

Supported versions of Mahara 24.04 before 24.04.1 and 23.04 before 23.04.6 are vulnerable to information being disclosed to an institution administrat...

2025-08-27
CVE-2024-39289
7.8
Unknown Multiple Products

A code execution vulnerability has been discovered in the Robot Operating System (ROS) 'rosparam' tool, affecting ROS distributions Noetic Ninjemys an...

2025-07-17
CVE-2024-39148
8.1
KerOS Multiple Products

The service wmp-agent of KerOS prior 5

2025-12-02
CVE-2024-3884
7.5
Unknown Multiple Products

A flaw was found in Undertow that can cause remote denial of service attacks

2025-12-03
CVE-2024-37777
8.8
Unknown Multiple Products

O2OA v9

2025-08-27
CVE-2024-37079
KEV
9.5
VMware VMware vCenter Server

Broadcom VMware vCenter Server Out-of-bounds Write Vulnerability - Active in CISA KEV catalog.

2026-01-24
CVE-2024-36354
Analyzed
7.5
Unknown Multiple Products

Improper input validation for DIMM serial presence detect (SPD) metadata could allow an attacker with physical access, ring0 access on a system with a...

2025-09-07
CVE-2024-36352
Analyzed
8.4
AMD Multiple Products

Improper input validation in the AMD Graphics Driver could allow an attacker to supply a specially crafted pointer, potentially leading to arbitrary w...

2025-09-07
CVE-2024-36342
Analyzed
8.8
Unknown Multiple Products

Improper input validation in the GPU driver could allow an attacker to exploit a heap overflow potentially resulting in arbitrary code execution

2025-09-07
CVE-2024-36326
Analyzed
8.4
AMD Multiple Products

Missing authorization in AMD RomArmor could allow an attacker to bypass ROMArmor protections during system resume from a standby state, potentially re...

2025-09-07
CVE-2024-34598
Analyzed
7.7
Unknown Multiple Products

Improper export of component in GoodLock prior to version 2

2025-09-04
CVE-2024-32643
7.5
Masa Multiple Products

Masa CMS is an open source Enterprise Content Management platform

2025-12-03
CVE-2024-32642
8.8
Masa Multiple Products

Masa CMS is an open source Enterprise Content Management platform

2025-12-03
CVE-2024-32641
9.8
Unknown Multiple Products

Masa CMS is an open source Enterprise Content Management platform. Masa CMS versions prior to 7.2.8, 7.3.13, and 7.4.6 are vulnerable to remote code e...

2025-12-03
CVE-2024-32640
Analyzed
9.8
Unknown Multiple Products

MASA CMS is an Enterprise Content Management platform based on open source technology. Versions prior to 7.4.6, 7.3.13, and 7.2.8 contain a SQL inject...

2025-08-11
CVE-2024-32444
Analyzed
9.8
Unknown Multiple Products

Incorrect Privilege Assignment vulnerability in InspiryThemes RealHomes allows Privilege Escalation.This issue affects RealHomes: from n/a through 4.3...

2025-09-03
CVE-2024-32011
8.8
Spectrum Multiple Products

A vulnerability has been identified in Spectrum Power 4 (All versions < V4

2025-11-13
CVE-2024-32010
7.8
Spectrum Multiple Products

A vulnerability has been identified in Spectrum Power 4 (All versions < V4

2025-11-13
CVE-2024-32009
7.8
Spectrum Multiple Products

A vulnerability has been identified in Spectrum Power 4 (All versions < V4

2025-11-13
CVE-2024-32008
7.8
Spectrum Multiple Products

A vulnerability has been identified in Spectrum Power 4 (All versions < V4

2025-11-13
CVE-2024-31854
8.1
Unknown Multiple Products

A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07

2025-07-10
CVE-2024-31853
8.1
Unknown Multiple Products

A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07

2025-07-10
CVE-2024-30547
7.1
Shazdeh Header Image Multiple Products

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Shazdeh Header Image Slider header-image-...

2026-01-07
CVE-2024-30516
7.5
Unknown Multiple Products

Improper Validation of Specified Quantity in Input vulnerability in SaasProject Booking Package allows Accessing Functionality Not Properly Constraine...

2026-01-06
CVE-2024-30461
7.1
Tumult Inc Tumult Multiple Products

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Tumult Inc Tumult Hype Animations allows...

2026-01-06
CVE-2024-29371
7.5
Unknown Multiple Products

In jose4j before 0

2025-12-18
CVE-2024-28988
Analyzed
9.8
Unknown Multiple Products

SolarWinds Web Help Desk was found to be susceptible to a Java Deserialization Remote Code Execution vulnerability that, if exploited, would allow an...

2025-09-02
CVE-2024-27708
Analyzed
9.6
Unknown Multiple Products

Iframe injection vulnerability in airc.pt/solucoes-servicos.solucoes MyNET v.26.06 and before allows a remote attacker to execute arbitrary code via t...

2025-12-23
CVE-2024-26009
Analyzed
8.1
Apple Multiple Products

An authentication bypass using an alternate path or channel [CWE-288] vulnerability in Fortinet FortiOS version 6

2025-08-12
CVE-2024-25621
7.3
Unknown Multiple Products

containerd is an open-source container runtime

2025-11-06
CVE-2024-25183
7.5
Unknown Multiple Products

givanz VvvebJs 1

2025-12-31
CVE-2024-24844
7.5
IdeaBox Creations Multiple Products

Missing Authorization vulnerability in IdeaBox Creations PowerPack Pro for Elementor allows Exploiting Incorrectly Configured Access Control Security...

2025-12-24
CVE-2024-2356
Analyzed
9.6
Unknown Multiple Products

A Local File Inclusion (LFI) vulnerability exists in the '/reinstall_extension' endpoint of the parisneo/lollms-webui application, specifically within...

2026-02-02
CVE-2024-21947
7.5
Unknown Multiple Products

Improper input validation in the system management mode (SMM) could allow a privileged attacker to overwrite arbitrary memory potentially resulting in...

2025-09-07
CVE-2024-21923
Analyzed
7.3
AMD Multiple Products

Incorrect default permissions in AMD StoreMI™ could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code executio...

2025-11-23
CVE-2024-21922
Analyzed
7.3
AMD Multiple Products

A DLL hijacking vulnerability in AMD StoreMI™ could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code executi...

2025-11-23
CVE-2024-2104
8.8
GATT Multiple Products

Due to improper BLE security configurations on the device's GATT server, an adjacent unauthenticated attacker can read and write device control comman...

2025-12-11
CVE-2024-14015
Analyzed
7.1
WordPress Multiple Products

The WordPress eCommerce Plugin WordPress plugin through 2

2025-11-25
CVE-2024-14010
Analyzed
9.8
HP Multiple Products

Typora 1.7.4 contains a command injection vulnerability in the PDF export preferences that allows attackers to execute arbitrary system commands. Atta...

2025-12-13
CVE-2024-13974
8.1
Unknown Multiple Products

A business logic vulnerability in the Up2Date component of Sophos Firewall older than version 21

2025-07-22
CVE-2024-13972
Analyzed
8.8
Microsoft Multiple Products

A vulnerability related to registry permissions in the Intercept X for Windows updater prior to version 2024

2025-07-17
CVE-2024-13807
7.5
WordPress Multiple Products

The Xagio SEO plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7

2025-08-28
CVE-2024-13786
Analyzed
9.8
HP Multiple Products

The education theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.6.10 via deserialization of untrusted...

2025-07-05
CVE-2024-13507
7.5
WordPress Multiple Products

The GeoDirectory – WP Business Directory Plugin and Classified Listings Directory plugin for WordPress is vulnerable to time-based SQL Injection via t...

2025-07-28
CVE-2024-13342
Analyzed
8.1
WordPress Multiple Products

The Booster for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'add_files_to_orde...

2025-08-29
CVE-2024-13174
8.6
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in E1 Informatics Web Application allows SQL Inject...

2025-09-16
CVE-2024-13151
Analyzed
10
Unknown Multiple Products

Authorization Bypass Through User-Controlled SQL Primary Key, CWE - 89 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Inje...

2025-09-18
CVE-2024-13150
Analyzed
9.8
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Fayton Software and Consulting Services fayton.P...

2025-09-29
CVE-2024-13149
Analyzed
9.8
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 200 - Exposure of Sensitive Information to an Unauthorized...

2025-09-16