21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 7951-8000 of 21637 CVEs Page 160 of 433
CVE-2026-3084
7.8
Unknown Multiple Products

GStreamer H

2026-03-17
CVE-2026-30836
Analyzed
10
Step Multiple Products

Step CA is an online certificate authority for secure, automated certificate management for DevOps. Versions 0.30.0-rc6 and below do not safeguard aga...

2026-03-20
CVE-2026-30834
Analyzed
7.5
Google Multiple Products

PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser

2026-03-08
CVE-2026-30832
Analyzed
9.1
Soft Soft Serve Git Server

An authenticated SSRF vulnerability in Soft Serve allows SSH users to force the server to make requests to internal IP addresses, potentially exposing...

2026-03-08
CVE-2026-3083
Analyzed
8.8
Unknown Multiple Products

GStreamer rtpqdm2depay Out-Of-Bounds Write Remote Code Execution Vulnerability

2026-03-17
CVE-2026-30827
7.5
Unknown Multiple Products

express-rate-limit is a basic rate-limiting middleware for Express

2026-03-08
CVE-2026-30823
Analyzed
8.8
Unknown Multiple Products

Flowise is a drag & drop user interface to build a customized large language model flow

2026-03-07
CVE-2026-30822
7.7
Unknown Multiple Products

Flowise is a drag & drop user interface to build a customized large language model flow

2026-03-07
CVE-2026-3082
7.8
Unknown Multiple Products

GStreamer JPEG Parser Heap-based Buffer Overflow Remote Code Execution Vulnerability

2026-03-17
CVE-2026-30810
Analyzed
8.8
Unknown Multiple Products

Server-Side Request Forgery vulnerability allows Privilege Escalation via API Checker extension

2026-05-14
CVE-2026-3081
7.8
Unknown Multiple Products

GStreamer H

2026-03-17
CVE-2026-30808
Analyzed
8.1
Session Multiple Products

Session Fixation vulnerability allows Session Hijacking via crafted session ID

2026-05-14
CVE-2026-30807
Analyzed
8.8
Unknown Multiple Products

Cross-Site Request Forgery vulnerability allows an attacker to perform unauthorized actions via crafted web page

2026-05-14
CVE-2026-30778
7.5
Apache SkyWalking

The SkyWalking OAP /debugging/config/dump endpoint may leak sensitive configuration information of MySQL/PostgreSQL

2026-04-17
CVE-2026-30769
7.8
Unknown Multiple Products

An issue in the TVicPort64

2026-04-30
CVE-2026-3071
8.4
Unknown Multiple Products

Deserialization of untrusted data in the LanguageModel class of Flair from versions 0

2026-02-27
CVE-2026-30707
8.1
Unknown Multiple Products

An issue was discovered in SpeedExam Online Examination System (SaaS) after v

2026-03-19
CVE-2026-3069
7.3
HP Multiple Products

A security vulnerability has been detected in itsourcecode Document Management System 1

2026-02-24
CVE-2026-30689
7.5
Infor Multiple Products

A blog

2026-03-29
CVE-2026-3068
7.3
HP Multiple Products

A weakness has been identified in itsourcecode Document Management System 1

2026-02-24
CVE-2026-30656
7.5
Unknown Multiple Products

A NULL pointer dereference vulnerability exists in fio (Flexible I/O Tester) v3

2026-04-17
CVE-2026-30652
Analyzed
8.8
Vivotek FD8136 Camera

A remote buffer overflow vulnerability exists in the /cgi-bin/dido/setdo

2026-06-04
CVE-2026-30650
Analyzed
8.8
Vivotek FD8136 Camera

A post-authentication remote buffer overflow vulnerability exists in the /cgi-bin/admin/eventtask

2026-06-04
CVE-2026-30643
Analyzed
9.8
HP DedeCMS

A Remote Code Execution (RCE) vulnerability exists in DedeCMS 5.7.118. Attackers can execute arbitrary code by utilizing crafted setup tag values duri...

2026-04-02
CVE-2026-30637
7.5
HP in OTCMS

Server-Side Request Forgery (SSRF) vulnerability exists in the AnnounContent of the /admin/read

2026-03-29
CVE-2026-30635
Analyzed
8.1
Unknown Multiple Products

Command injection vulnerability in automagik-genie 2

2026-05-13
CVE-2026-30633
Analyzed
7.5
Unknown knowns

Directory traversal vulnerability in knowns-dev/knowns 0.11.4 via crafted path value to the get_doc and update_doc tools.

2026-07-31
CVE-2026-30632
7.5
Unknown Multiple Products

Directory traversal vulnerability in knowns-dev/knowns 0.11.4 via crafted folder name value to the create_doc tool.

2026-08-12
CVE-2026-30631
Analyzed
9.8
Unknown bytebot-ai

A vulnerability in bytebot-ai allows an unauthenticated attacker to execute arbitrary code via a crafted path provided to the computer_write_file func...

2026-07-31
CVE-2026-30624
8.6
Agent Multiple Products

Agent Zero 0

2026-04-16
CVE-2026-30623
Analyzed
9.8
BerriAI LiteLLM

LiteLLM versions prior to v1.83.6-nightly and v1.83.7-stable are vulnerable to remote code execution due to improper validation of command configurati...

2026-07-20
CVE-2026-30618
Analyzed
9.8
Unknown Fay

The Fay framework version 4.3.1 contains a remote code execution vulnerability in its MCP STDIO server management interface, allowing unauthenticated...

2026-07-20
CVE-2026-30617
8.6
Unknown Multiple Products

LangChain-ChatChat 0

2026-04-16
CVE-2026-30616
7.3
MCP Multiple Products

Jaaz 1

2026-04-17
CVE-2026-30615
8
Windsurf Multiple Products

A prompt injection vulnerability in Windsurf 1

2026-04-16
CVE-2026-3060
Analyzed
9.8
SGLang SGLang

SGLang's encoder parallel disaggregation system allows unauthenticated remote code execution through insecure deserialization in the disaggregation mo...

2026-03-13
CVE-2026-3059
Analyzed
9.8
SGLang SGLang

SGLang's multimodal generation module is vulnerable to unauthenticated remote code execution via untrusted data deserialization in the ZMQ broker.

2026-03-13
CVE-2026-30576
7.5
HP file

A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1

2026-03-29
CVE-2026-30575
7.5
HP file

A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1

2026-03-29
CVE-2026-30574
7.5
HP file

A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1

2026-03-29
CVE-2026-30573
7.5
HP file

A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1

2026-04-02
CVE-2026-30562
Analyzed
9.3
HP file via

SourceCodester Sales and Inventory System 1.0 is vulnerable to Reflected Cross-Site Scripting (XSS) via the 'msg' parameter in add_stock.php due to in...

2026-03-31
CVE-2026-3055
KEV
9.5
Citrix NetScaler

Citrix NetScaler Out-of-Bounds Read Vulnerability - Active in CISA KEV catalog.

2026-03-31
CVE-2026-30534
8.3
HP via the

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1

2026-03-28
CVE-2026-30533
Analyzed
9.8
HP file via

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 within the admin/manage_product.php file via the "id" paramete...

2026-03-28
CVE-2026-30532
Analyzed
9.8
HP file via

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 within the admin/view_product.php file via the "id" parameter.

2026-03-28
CVE-2026-30531
8.8
HP file

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1

2026-03-28
CVE-2026-30530
Analyzed
9.8
HP file

SourceCodester Online Food Ordering System v1.0 contains a critical SQL injection vulnerability in the `save_customer` action within `Actions.php`.

2026-03-28
CVE-2026-3053
7.3
Unknown Multiple Products

A vulnerability was determined in DataLinkDC dinky up to 1

2026-02-24
CVE-2026-30529
8.8
HP file

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1

2026-03-28