8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 801-850 of 8341 CVEs Page 17 of 167
CVE-2025-9311
7.3
Unknown Multiple Products

A vulnerability was identified in itsourcecode Apartment Management System 1

2025-08-21
CVE-2025-9307
Analyzed
7.3
HP Multiple Products

A flaw has been found in PHPGurukul Online Course Registration 3

2025-08-21
CVE-2025-9305
7.3
Unknown Multiple Products

A security vulnerability has been detected in SourceCodester Online Bank Management System 1

2025-08-21
CVE-2025-9304
7.3
Unknown Multiple Products

A weakness has been identified in SourceCodester Online Bank Management System 1

2025-08-21
CVE-2025-9303
8.8
TOTOLINK Multiple Products

A security flaw has been discovered in TOTOLINK A720R 4

2025-08-21
CVE-2025-9302
Analyzed
7.3
HP Multiple Products

A vulnerability was identified in PHPGurukul User Management System 1

2025-08-21
CVE-2025-9299
8.8
Tenda Multiple Products

A vulnerability has been found in Tenda M3 1

2025-08-21
CVE-2025-9298
8.8
Tenda Multiple Products

A flaw has been found in Tenda M3 1

2025-08-21
CVE-2025-9297
8.8
Tenda Multiple Products

A vulnerability was detected in Tenda i22 1

2025-08-21
CVE-2025-9286
Analyzed
9.8
WordPress Multiple Products

The Appy Pie Connect for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization within the reset_user_pas...

2025-10-03
CVE-2025-9276
Analyzed
9.8
Kubernetes Multiple Products

Cockroach Labs cockroach-k8s-request-cert Empty Root Password Authentication Bypass Vulnerability. This vulnerability could allow remote attackers to...

2025-09-02
CVE-2025-9275
Analyzed
7.8
HP Multiple Products

Oxford Instruments Imaris Viewer IMS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

2025-09-02
CVE-2025-9274
Analyzed
7.8
HP Multiple Products

Oxford Instruments Imaris Viewer IMS File Parsing Uninitialized Pointer Remote Code Execution Vulnerability

2025-09-02
CVE-2025-9255
Analyzed
7.5
Intel Multiple Products

WebITR developed by Uniong has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read datab...

2025-08-23
CVE-2025-9254
Analyzed
9.8
Unknown Multiple Products

WebITR developed by Uniong has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to log into the system as arbitrary u...

2025-08-23
CVE-2025-9253
8.8
Linksys Multiple Products

A security vulnerability has been detected in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1

2025-08-21
CVE-2025-9252
8.8
Linksys Multiple Products

A weakness has been identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1

2025-08-20
CVE-2025-9251
8.8
Linksys Multiple Products

A security flaw has been discovered in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1

2025-08-20
CVE-2025-9250
8.8
Linksys Multiple Products

A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1

2025-08-20
CVE-2025-9249
8.8
Linksys Multiple Products

A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1

2025-08-20
CVE-2025-9248
8.8
Linksys Multiple Products

A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1

2025-08-20
CVE-2025-9247
8.8
Linksys Multiple Products

A vulnerability has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1

2025-08-20
CVE-2025-9246
8.8
Linksys Multiple Products

A flaw has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1

2025-08-20
CVE-2025-9245
8.8
Linksys Multiple Products

A vulnerability was detected in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1

2025-08-20
CVE-2025-9243
Analyzed
8.1
WordPress Multiple Products

The Cost Calculator Builder plugin for WordPress is vulnerable to unauthorizedmodification of data due to a missing capability check on the get_cc_ord...

2025-10-05
CVE-2025-9242
KEV
9.5
WatchGuard Firebox

WatchGuard Firebox Out-of-Bounds Write Vulnerability - Active in CISA KEV catalog.

2025-11-13
CVE-2025-9238
7.3
Unknown Multiple Products

A vulnerability was determined in Swatadru Exam-Seating-Arrangement up to 97335ccebf95468d92525f4255a2241d2b0b002f

2025-08-20
CVE-2025-9230
7.5
Unknown Multiple Products

Issue summary: An application trying to decrypt CMS messages encrypted using password based encryption can trigger an out-of-bounds read and write

2025-09-30
CVE-2025-9223
8.8
Applications Multiple Products

Zohocorp ManageEngine Applications Manager versions 178100 and below are vulnerable to authenticated command injection vulnerability due to the improp...

2025-11-13
CVE-2025-9222
8.7
GitLab Multiple Products

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18

2026-01-10
CVE-2025-9216
Analyzed
8.8
WordPress Multiple Products

The StoreEngine – Powerful WordPress eCommerce Plugin for Payments, Memberships, Affiliates, Sales & More plugin for WordPress is vulnerable to arbitr...

2025-09-17
CVE-2025-9213
Analyzed
8.8
WordPress Multiple Products

The TextBuilder plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions 1

2025-10-03
CVE-2025-9212
Analyzed
7.5
WordPress Multiple Products

The WP Dispatcher plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the wp_dispatcher_process_upload...

2025-10-03
CVE-2025-9209
Analyzed
9.8
WordPress Multiple Products

The RestroPress – Online Food Ordering System plugin for WordPress is vulnerable to Authentication Bypass in versions 3.0.0 to 3.1.9.2. This is due to...

2025-10-03
CVE-2025-9201
7.8
Unknown Multiple Products

A potential DLL hijacking vulnerability was discovered in Lenovo Browser during an internal security assessment that could allow a local user to execu...

2025-09-12
CVE-2025-9200
Analyzed
7.5
Apple Multiple Products

The Blappsta Mobile App Plugin – Your native, mobile iPhone App and Android App plugin for WordPress is vulnerable to SQL Injection via the nh_ynaa_co...

2025-10-03
CVE-2025-9189
7.8
Unknown Multiple Products

There is an out of bounds write vulnerability due to improper bounds checking resulting in a large destination address when parsing a DSB file with Di...

2025-09-02
CVE-2025-9188
7.8
Unknown Multiple Products

There is a deserialization of untrusted data vulnerability in Digilent DASYLab

2025-09-02
CVE-2025-9187
Analyzed
9.8
Intel Multiple Products

Memory safety bugs present in Firefox 141 and Thunderbird 141. Some of these bugs showed evidence of memory corruption and we presume that with enough...

2025-08-20
CVE-2025-9182
7.5
Unknown Multiple Products

'Denial-of-service due to out-of-memory in the Graphics: WebRender component

2025-08-20
CVE-2025-9180
8.1
Unknown Multiple Products

'Same-origin policy bypass in the Graphics: Canvas2D component

2025-08-20
CVE-2025-9179
9.8
Unknown Multiple Products

An attacker was able to perform memory corruption in the GMP process which processes encrypted media. This process is also heavily sandboxed, but repr...

2025-08-20
CVE-2025-9172
Analyzed
7.5
WordPress Multiple Products

The Vibes plugin for WordPress is vulnerable to time-based SQL Injection via the ‘resource’ parameter in all versions up to, and including, 2

2025-08-26
CVE-2025-9156
7.3
Unknown Multiple Products

A vulnerability was found in itsourcecode Sports Management System 1

2025-08-19
CVE-2025-9155
7.3
Unknown Multiple Products

A vulnerability has been found in itsourcecode Online Tour and Travel Management System 1

2025-08-19
CVE-2025-9154
7.3
Unknown Multiple Products

A flaw has been found in itsourcecode Online Tour and Travel Management System 1

2025-08-19
CVE-2025-9152
Analyzed
9.8
Unknown Multiple Products

An improper privilege management vulnerability exists in WSO2 API Manager due to missing authentication and authorization checks in the keymanager-ope...

2025-10-16
CVE-2025-9150
Analyzed
7.3
HP Multiple Products

A vulnerability was identified in Surbowl dormitory-management-php up to 9f1d9d1f528cabffc66fda3652c56ff327fda317

2025-08-19
CVE-2025-9142
Analyzed
7.5
Microsoft Multiple Products

A local user can trigger Harmony SASE Windows client to write or delete files outside the intended certificate working directory

2026-01-16
CVE-2025-9133
8.1
Zyxel Multiple Products

A missing authorization vulnerability in Zyxel ATP series firmware versions from V4

2025-10-21