20297 Total CVEs
11590 AI Analyzed
295 CISA KEV
4359 Critical
All Vendors
Showing 751-800 of 20297 CVEs Page 16 of 406
CVE-2026-71274
Analyzed
8.5
Unknown OpenBK7231T_App

OpenBK7231T's CHANNEL_SetLabel() (src/cmnds/cmd_channels

2026-08-06
CVE-2026-71272
Analyzed
8.5
Unknown memos

Memos' webhook dispatch function safeDialContext() (internal/webhook/webhook

2026-08-06
CVE-2026-71271
Analyzed
8.5
Unknown memos

Memos' webhook URL validation, isReservedIP() (internal/webhook/validate

2026-08-06
CVE-2026-71270
Analyzed
8.6
Stirling-Tools Stirling-PDF

Stirling-PDF's POST /api/v1/convert/url/pdf endpoint (ConvertWebsiteToPDF

2026-08-06
CVE-2026-7127
7.3
HP Multiple Products

A weakness has been identified in SourceCodester Pharmacy Sales and Inventory System 1

2026-04-28
CVE-2026-71268
Analyzed
9.9
Unknown OpenPLC_v3

OpenPLC Runtime v3 contains a path traversal vulnerability in its compile_program function, allowing remote authenticated users to write arbitrary fil...

2026-08-06
CVE-2026-71267
Analyzed
9.8
Unknown microtar

A stack buffer overflow exists in rxi microtar due to improper boundary checks when copying filenames into the header structure.

2026-08-06
CVE-2026-71264
Analyzed
8.2
Aircoookie WLED

WLED's GET /json/cfg endpoint (registered in wled00/wled_server

2026-08-06
CVE-2026-71262
Analyzed
9.8
IoTSharp IoTSharp

IoTSharp fails to enforce authorization on its BlobStorageController, allowing unauthenticated remote attackers to perform arbitrary file operations v...

2026-08-06
CVE-2026-7126
7.3
HP Multiple Products

A security flaw has been discovered in SourceCodester Pharmacy Sales and Inventory System 1

2026-04-28
CVE-2026-71259
Analyzed
8.6
GitHub esphome

ESPHome through 2026

2026-08-06
CVE-2026-71256
Analyzed
9.8
GitHub nanoMODBUS

nanoMODBUS contains an out-of-bounds stack read and wild-pointer write vulnerability in its Modbus identification response handling, which can be trig...

2026-08-06
CVE-2026-71255
Analyzed
8.6
Unknown nanoMODBUS

nanoMODBUS through v1

2026-08-06
CVE-2026-71254
Analyzed
9.8
Unknown nanoMODBUS

An out-of-bounds write vulnerability in nanoMODBUS allows unauthenticated attackers to corrupt memory and potentially achieve remote code execution vi...

2026-08-06
CVE-2026-71252
Analyzed
8.2
Unknown toner-management

toner-management's admin state-changing handlers (add

2026-08-06
CVE-2026-7125
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability exists in the Totolink A8000RU CGI handler via the merge parameter in the setWiFiEasyCfg...

2026-04-28
CVE-2026-71243
Analyzed
8.8
Adaltas backmeup

The backmeup npm package assembles shell command strings by directly concatenating its option values (name, source, destination, filter) - e

2026-08-06
CVE-2026-71242
Analyzed
8.2
Unknown crater

Crater's NotePolicy checks only a blanket Bouncer ability (manage-all-notes / view-all-notes) with no company-ownership comparison, unlike InvoicePoli...

2026-08-06
CVE-2026-7124
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability exists in the Totolink A8000RU CGI handler via the addrPrefixLen parameter in the setIpv6...

2026-04-28
CVE-2026-71235
Analyzed
8.8
Unknown magistrala

Magistrala's Rules Engine allows authenticated users to create rules with embedded Go or Lua scripts executed server-side when IoT messages arrive

2026-08-06
CVE-2026-71233
Analyzed
8.7
InvoiceNinja InvoiceNinja

InvoiceNinja v5-stable renders an invoice or quote's "terms" field in the client portal using Laravel Blade's raw output directive {!! $entity->terms...

2026-08-06
CVE-2026-71231
Analyzed
9.8
HP IOTSmartHome

The IOTSmartHome platform is vulnerable to SQL injection via the lastLogin cookie, allowing unauthenticated attackers to bypass authentication and ext...

2026-08-06
CVE-2026-7123
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability in the Totolink A8000RU CGI handler occurs via the setIptvCfg function.

2026-04-28
CVE-2026-7122
Analyzed
9.8
TOTOLINK A8000RU

An unauthenticated remote OS command injection vulnerability exists in the Totolink A8000RU CGI handler via the enable parameter in the setUPnPCfg fun...

2026-04-28
CVE-2026-71214
Analyzed
9.8
NASA-AMMOS plandev (sequencing-server)

The NASA-AMMOS plandev sequencing-server contains an authentication bypass flaw in the session role derivation middleware, allowing unauthenticated at...

2026-08-05
CVE-2026-71213
Analyzed
8.1
Typemill Typemill

Typemill's login endpoint (POST /tm/login, ControllerWebAuth::login()) performs no rate-limiting, failed-attempt counting, or account lockout when cap...

2026-08-05
CVE-2026-7121
Analyzed
9.8
TOTOLINK A8000RU

A remote OS command injection vulnerability in the Totolink A8000RU CGI handler allows unauthenticated attackers to execute arbitrary commands via the...

2026-04-28
CVE-2026-71207
Analyzed
9.8
Unknown Stock-Inventory-Management-System

The Stock-Inventory-Management-System contains a SQL injection vulnerability and hardcoded credentials in the login module, allowing for total authent...

2026-08-05
CVE-2026-71206
Analyzed
8.2
Unknown shiori

Shiori's CheckToken function (internal/domains/auth

2026-08-05
CVE-2026-71190
Analyzed
8.7
OpenStack Swift

In OpenStack Swift through 2

2026-08-05
CVE-2026-7119
8.8
Tenda HG3

A vulnerability was detected in Tenda HG3 2

2026-04-28
CVE-2026-7111
8.4
Unknown Multiple Products

Text::CSV_XS versions before 1

2026-04-30
CVE-2026-7106
Analyzed
8.8
WordPress is vulnerable

The Highland Software Custom Role Manager plugin for WordPress is vulnerable to Privilege Escalation in versions up to and including 1

2026-04-27
CVE-2026-7101
Analyzed
8.8
Tenda F456

A vulnerability has been found in Tenda F456 1

2026-04-28
CVE-2026-7100
8.8
Tenda F456

A flaw has been found in Tenda F456 1

2026-04-28
CVE-2026-7099
8.8
Tenda F456

A vulnerability was detected in Tenda F456 1

2026-04-28
CVE-2026-7098
8.8
Tenda F456

A security vulnerability has been detected in Tenda F456 1

2026-04-28
CVE-2026-7097
8.8
Tenda F456

A weakness has been identified in Tenda F456 1

2026-04-27
CVE-2026-7096
8.8
Tenda HG3

A security flaw has been discovered in Tenda HG3 2

2026-04-27
CVE-2026-7094
7.3
Infor Multiple Products

A vulnerability was determined in ShadowCloneLabs GlutamateMCPServers up to e2de73280b01e5d943593dd1aa2c01c5b9112f78

2026-04-27
CVE-2026-7088
Analyzed
7.3
HP Pharmacy Sales and Inventory System

A weakness has been identified in SourceCodester Pharmacy Sales and Inventory System 1

2026-04-27
CVE-2026-7087
Analyzed
7.3
HP Pharmacy Sales and Inventory System

A security flaw has been discovered in SourceCodester Pharmacy Sales and Inventory System 1

2026-04-27
CVE-2026-7082
8.8
Tenda F456

A flaw has been found in Tenda F456 1

2026-04-27
CVE-2026-7081
8.8
Tenda F456

A vulnerability was detected in Tenda F456 1

2026-04-27
CVE-2026-7080
8.8
Tenda F456

A security vulnerability has been detected in Tenda F456 1

2026-04-27
CVE-2026-7079
8.8
Tenda F456

A weakness has been identified in Tenda F456 1

2026-04-27
CVE-2026-7078
8.8
Tenda F456

A security flaw has been discovered in Tenda F456 1

2026-04-27
CVE-2026-7077
Analyzed
7.3
HP Courier Management System

A vulnerability was identified in itsourcecode Courier Management System 1

2026-04-27
CVE-2026-7076
Analyzed
7.3
HP Courier Management System

A vulnerability was determined in itsourcecode Courier Management System 1

2026-04-27
CVE-2026-7075
Analyzed
7.3
HP Construction Management System

A vulnerability was found in itsourcecode Construction Management System 1

2026-04-27