20297 Total CVEs
11590 AI Analyzed
295 CISA KEV
4359 Critical
All Vendors
Showing 801-850 of 20297 CVEs Page 17 of 406
CVE-2026-7074
Analyzed
7.3
HP Construction Management System

A vulnerability has been found in itsourcecode Construction Management System 1

2026-04-27
CVE-2026-7073
Analyzed
7.3
HP Construction Management System

A flaw has been found in itsourcecode Construction Management System 1

2026-04-27
CVE-2026-7072
Analyzed
7.3
HP canteen_management_system

A vulnerability was detected in CodePanda Source canteen_management_system 1

2026-04-27
CVE-2026-7070
7.3
Unknown Multiple Products

A weakness has been identified in code-projects Inventory Management System 1

2026-04-27
CVE-2026-7069
8
D-Link DIR

A security flaw has been discovered in D-Link DIR-825 up to 3

2026-04-27
CVE-2026-7068
8.8
D-Link DIR

A vulnerability was identified in D-Link DIR-825 3

2026-04-27
CVE-2026-7067
7.3
D-Link DIR

A vulnerability was determined in D-Link DIR-822 A_101

2026-04-27
CVE-2026-7066
7.3
Infor Multiple Products

A vulnerability was found in choieastsea simple-openstack-mcp up to 767b2f4a8154cca344344b9725537a58399e6036

2026-04-27
CVE-2026-7065
7.3
Infor Multiple Products

A vulnerability has been found in BidingCC BuildingAI up to 26

2026-04-27
CVE-2026-7064
7.3
Infor Multiple Products

A flaw has been found in AgentDeskAI browser-tools-mcp up to 1

2026-04-27
CVE-2026-70634
Analyzed
8.1
TimescaleDB TimescaleDB

TimescaleDB through 2

2026-08-08
CVE-2026-7063
7.3
HP of the

A vulnerability was detected in code-projects Employee Management System 1

2026-04-27
CVE-2026-7062
Analyzed
7.3
Intina47 context-sync

A security vulnerability has been detected in Intina47 context-sync up to 2

2026-04-27
CVE-2026-70619
Analyzed
8.8
F5 Odysseus

Odysseus before commit bf325f6 contains a missing authorization vulnerability that allows authenticated non-admin users to manage server-wide embeddin...

2026-08-05
CVE-2026-70617
Analyzed
8.1
F5 Spacebar Server

Spacebar Server before commit dcfd910 contains a missing authorization vulnerability that allows any authenticated attacker to add themselves to arbit...

2026-08-06
CVE-2026-70615
Analyzed
9.9
Unknown boringproxy

A CRLF injection vulnerability in boringproxy allows authenticated users to manipulate the SSH authorized_keys file, leading to persistent unauthorize...

2026-08-06
CVE-2026-7061
Analyzed
7.3
Docker chatgpt-mcp-server

A weakness has been identified in Toowiredd chatgpt-mcp-server up to 0

2026-04-27
CVE-2026-7060
7.3
Infor Multiple Products

A vulnerability was determined in liyupi yu-picture up to a053632c41340152bf75b66b3c543d129123d8ec

2026-04-27
CVE-2026-7058
7.3
Unknown Multiple Products

A vulnerability has been found in 666ghj MiroFish up to 0

2026-04-27
CVE-2026-7057
8.8
Tenda F456

A flaw has been found in Tenda F456 1

2026-04-27
CVE-2026-7056
8.8
Tenda F456

A vulnerability was detected in Tenda F456 1

2026-04-27
CVE-2026-70558
Analyzed
9.8
DataLinkDC Dinky

Dinky contains an unrestricted file upload vulnerability due to insufficient path validation and a hardcoded, default authentication token, allowing u...

2026-08-07
CVE-2026-70554
Analyzed
9.8
HP MaxSite CMS

MaxSite CMS is susceptible to PHP object injection via the maxsite_comuser cookie, allowing unauthenticated remote code execution.

2026-08-05
CVE-2026-70553
Analyzed
9.8
HP MaxSite CMS

MaxSite CMS is vulnerable to remote code execution due to improper handling of database configuration inputs, allowing unauthenticated attackers to in...

2026-08-05
CVE-2026-70552
Analyzed
9.8
HP MaxSite CMS

MaxSite CMS contains an authentication bypass flaw in the AJAX dispatcher, allowing unauthenticated attackers to invoke privileged administrative func...

2026-08-05
CVE-2026-7055
8.8
Tenda F456

A security vulnerability has been detected in Tenda F456 1

2026-04-27
CVE-2026-7054
8.8
Tenda F456

A weakness has been identified in Tenda F456 1

2026-04-27
CVE-2026-7053
8.8
Tenda F456

A security flaw has been discovered in Tenda F456 1

2026-04-27
CVE-2026-70494
Analyzed
8.1
Open WebUI Open WebUI

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform

2026-08-05
CVE-2026-70492
Analyzed
8.7
Unknown open-webui

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform

2026-08-05
CVE-2026-7049
7.2
Google is vulnerable

The PixelYourSite Pro – Your smart PIXEL (TAG) Manager plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and in...

2026-05-02
CVE-2026-70486
Analyzed
8.2
Unknown open-webui

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform

2026-08-05
CVE-2026-70482
Analyzed
8.1
Open WebUI Open WebUI

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform

2026-08-05
CVE-2026-70476
Analyzed
8.3
FlowiseAI Flowise

Flowise is a drag & drop user interface to build a customized large language model flow

2026-08-05
CVE-2026-70473
Analyzed
8.3
FlowiseAI Flowise

Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows

2026-08-05
CVE-2026-70432
Analyzed
8.8
Jenkins Multijob Plugin

A cross-site request forgery (CSRF) vulnerability in Jenkins Multijob Plugin 669

2026-08-06
CVE-2026-70431
Analyzed
8.8
Jenkins Multijob Plugin

Jenkins Multijob Plugin 669

2026-08-06
CVE-2026-70429
Analyzed
8.1
Jenkins Jenkins

Jenkins 2

2026-08-06
CVE-2026-7042
7.3
Unknown Multiple Products

A flaw has been found in 666ghj MiroFish up to 0

2026-04-27
CVE-2026-7040
7.5
Unknown Multiple Products

Text::Minify::XS versions from v0

2026-04-28
CVE-2026-7039
7.8
Infor Multiple Products

A security vulnerability has been detected in tufantunc ssh-mcp up to 1

2026-04-27
CVE-2026-70376
Analyzed
9.6
Unknown Pluck CMS

Pluck CMS lacks robust CSRF protection, allowing attackers to force authenticated administrators to perform sensitive actions including remote code ex...

2026-08-05
CVE-2026-70375
Analyzed
8.8
HashBrownCMS hashbrown-cms

HashBrown CMS through 1

2026-08-06
CVE-2026-70374
Analyzed
8.8
HashBrownCMS hashbrown-cms

HashBrown CMS through 1

2026-08-06
CVE-2026-7037
Analyzed
9.8
TOTOLINK A8000RU

A remote OS command injection vulnerability exists in the Totolink A8000RU router via the pptpPassThru argument in the setVpnPassCfg function.

2026-04-27
CVE-2026-7036
7.3
Tenda i9

A vulnerability was identified in Tenda i9 1

2026-04-27
CVE-2026-7035
8.8
Tenda FH1202

A vulnerability was determined in Tenda FH1202 1

2026-04-27
CVE-2026-7034
8.8
Tenda FH1202

A vulnerability was found in Tenda FH1202 1

2026-04-27
CVE-2026-7033
8.8
Tenda F456

A vulnerability has been found in Tenda F456 1

2026-04-27
CVE-2026-7032
8.8
Tenda F456

A flaw has been found in Tenda F456 1

2026-04-27