21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 7901-7950 of 21637 CVEs Page 159 of 433
CVE-2026-31018
8.8
HP code detection

In Dolibarr ERP & CRM <= 22

2026-04-22
CVE-2026-30999
7.5
Unknown Multiple Products

A heap buffer overflow in the av_bprint_finalize() function of FFmpeg v8

2026-04-14
CVE-2026-30998
7.5
Unknown Multiple Products

An improper resource deallocation and closure vulnerability in the tools/zmqsend

2026-04-14
CVE-2026-30997
7.5
Unknown Multiple Products

An out-of-bounds read in the read_global_param() function (libavcodec/av1dec

2026-04-14
CVE-2026-30996
7.5
HP of SAC

An issue in the file handling logic of the component download

2026-04-17
CVE-2026-30995
8.6
HP endpoint

Slah CMS v1

2026-04-16
CVE-2026-30994
7.5
HP component of

Incorrect access control in the config

2026-04-17
CVE-2026-30987
7.8
Unknown Multiple Products

iccDEV provides a set of libraries and tools for working with ICC color management profiles

2026-03-11
CVE-2026-30985
7.8
Unknown Multiple Products

iccDEV provides a set of libraries and tools for working with ICC color management profiles

2026-03-11
CVE-2026-30983
7.8
Unknown Multiple Products

iccDEV provides a set of libraries and tools for working with ICC color management profiles

2026-03-11
CVE-2026-30979
7.8
Unknown Multiple Products

iccDEV provides a set of libraries and tools for working with ICC color management profiles

2026-03-11
CVE-2026-30978
7.8
Unknown Multiple Products

iccDEV provides a set of libraries and tools for working with ICC color management profiles

2026-03-11
CVE-2026-30976
8.6
Linux are unaffected

Sonarr is a PVR for Usenet and BitTorrent users

2026-03-26
CVE-2026-30975
8.1
Unknown Multiple Products

Sonarr is a PVR for Usenet and BitTorrent users

2026-03-26
CVE-2026-30967
8.8
Parse Multiple Products

Parse Server is an open source backend that can be deployed to any infrastructure that can run Node

2026-03-12
CVE-2026-30966
Analyzed
10
Parse Multiple Products

Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 9.5.2-alpha.7 and 8.6.20, Parse Serve...

2026-03-11
CVE-2026-30957
Analyzed
9.9
OneUptime OneUptime Synthetic Monitors

A server-side RCE vulnerability in OneUptime Synthetic Monitors allows low-privileged users to execute arbitrary commands by abusing exposed Playwrigh...

2026-03-11
CVE-2026-30956
Analyzed
9.9
OneUptime OneUptime

A critical authorization bypass in OneUptime allows low-privileged users to forge headers, escape tenant isolation, and achieve full account takeover...

2026-03-11
CVE-2026-30950
Analyzed
7.1
Intel Workflow Automation Platform

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents

2026-05-19
CVE-2026-30949
8.8
Parse Multiple Products

Parse Server is an open source backend that can be deployed to any infrastructure that can run Node

2026-03-12
CVE-2026-30944
8.8
Unknown Multiple Products

StudioCMS is a server-side-rendered, Astro native, headless content management system

2026-03-11
CVE-2026-30940
7.2
HP file in

baserCMS is a website development framework

2026-03-31
CVE-2026-3094
7.8
Delta Electronics CNCSoft

Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file

2026-03-04
CVE-2026-30934
8.9
Unknown Multiple Products

FileBrowser Quantum is a free, self-hosted, web-based file manager

2026-03-11
CVE-2026-30929
Analyzed
7.7
Docker ImageMagick

ImageMagick is free and open-source software used for editing and manipulating digital images

2026-03-10
CVE-2026-30926
7.1
Unknown Multiple Products

SiYuan is a personal knowledge management system

2026-03-10
CVE-2026-30922
7.5
Unknown Multiple Products

pyasn1 is a generic ASN

2026-03-19
CVE-2026-30921
Analyzed
9.9
OneUptime OneUptime Synthetic Monitors

Low-privileged users in OneUptime can achieve server-side RCE by abusing injected Playwright browser objects within Synthetic Monitors to spawn arbitr...

2026-03-11
CVE-2026-30920
8.6
GitHub App callback

OneUptime is a solution for monitoring and managing online services

2026-03-11
CVE-2026-30911
8.1
Apache Airflow versions

Apache Airflow versions 3

2026-03-18
CVE-2026-30903
Analyzed
9.6
Microsoft Workplace for

A path traversal vulnerability in the Mail feature of Zoom Workplace for Windows allows unauthenticated users to conduct an escalation of privilege vi...

2026-03-12
CVE-2026-30902
7.8
Microsoft Clients for

Improper Privilege Management in certain Zoom Clients for Windows may allow an authenticated user to conduct an escalation of privilege via local acce...

2026-03-13
CVE-2026-30900
7.8
Microsoft Clients for

Improper Check of minimum version in update functionality of certain Zoom Clients for Windows may allow an authenticated user to conduct an escalation...

2026-03-13
CVE-2026-3090
7.2
WordPress is vulnerable

The Post SMTP – Complete Email Deliverability and SMTP Solution with Email Logs, Alerts, Backup SMTP & Mobile App plugin for WordPress is vulnerable t...

2026-03-19
CVE-2026-30896
7.8
Qsee Multiple Products

The installer for Qsee Client versions 1

2026-03-09
CVE-2026-30893
Analyzed
9
Wazuh Wazuh

A path traversal vulnerability in Wazuh's cluster synchronization routine allows authenticated peers to write arbitrary files and potentially achieve...

2026-04-30
CVE-2026-30887
Analyzed
9.9
OneUptime OneUptime Synthetic Monitors

OneUptime Synthetic Monitors are vulnerable to a sandbox escape via the Node.js vm module, allowing authenticated users to achieve remote code executi...

2026-03-11
CVE-2026-30884
Analyzed
9.6
Infor Custom Certificate (mod_customcert)

A critical flaw in the Moodle Custom Certificate plugin allows teachers to read or overwrite certificate elements from any other course in the system.

2026-03-18
CVE-2026-30881
8.8
Unknown Multiple Products

Chamilo LMS is a learning management system

2026-03-17
CVE-2026-30877
Analyzed
9.1
Unknown baserCMS

baserCMS contains an OS command injection vulnerability within its update functionality. Authenticated administrators can exploit this flaw to execute...

2026-03-31
CVE-2026-30875
8.8
HP files with

Chamilo LMS is a learning management system

2026-03-17
CVE-2026-30869
Analyzed
9.3
Unknown Multiple Products

SiYuan is a personal knowledge management system. Prior to 3.5.10, a path traversal vulnerability in the /export endpoint allows an attacker to read a...

2026-03-11
CVE-2026-30862
Analyzed
9
Appsmith Appsmith Table Widget (TableWidgetV2)

A stored XSS vulnerability in Appsmith's Table Widget allows authenticated users to execute malicious scripts via unsanitized HTML attributes, leading...

2026-03-11
CVE-2026-30861
Analyzed
9.9
WeKnora WeKnora LLM Framework

An unauthenticated remote code execution vulnerability in WeKnora allows attackers to bypass command validation using the -p flag in npx node, leading...

2026-03-08
CVE-2026-30860
Analyzed
9.9
PostgreSQL array expressions

A remote code execution vulnerability in WeKnora's database query functionality allows unauthenticated attackers to bypass SQL injection protections v...

2026-03-08
CVE-2026-3086
7.8
Unknown Multiple Products

GStreamer H

2026-03-17
CVE-2026-30855
Analyzed
8.8
WeKnora WeKnora LLM Framework

WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval

2026-03-08
CVE-2026-30851
8.1
Unknown Multiple Products

Caddy is an extensible server platform that uses TLS by default

2026-03-08
CVE-2026-3085
Analyzed
8.8
Unknown Multiple Products

GStreamer rtpqdm2depay Heap-based Buffer Overflow Remote Code Execution Vulnerability

2026-03-17
CVE-2026-30840
8.8
Unknown Multiple Products

Wallos is an open-source, self-hostable personal subscription tracker

2026-03-07