21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 9101-9150 of 21553 CVEs Page 183 of 432
CVE-2026-24836
Analyzed
7.6
Microsoft Multiple Products

DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem

2026-01-28
CVE-2026-24834
Analyzed
9.3
Kata Multiple Products

Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. In...

2026-02-20
CVE-2026-24833
Analyzed
7.6
Microsoft Multiple Products

DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem

2026-01-28
CVE-2026-24832
Analyzed
9.8
Unknown Multiple Products

Out-of-bounds Write vulnerability in ixray-team ixray-1.6-stcop.This issue affects ixray-1.6-stcop: before 1.3.

2026-01-28
CVE-2026-24831
7.5
Loop Multiple Products

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in ixray-team ixray-1

2026-01-28
CVE-2026-24830
Analyzed
9.8
Unknown Multiple Products

Integer Overflow or Wraparound vulnerability in Ralim IronOS.This issue affects IronOS: before v2.23-rc2.

2026-01-28
CVE-2026-24828
7.5
Unknown Multiple Products

Missing Release of Memory after Effective Lifetime vulnerability in Is-Daouda is-Engine

2026-01-28
CVE-2026-24827
7.5
Unknown Multiple Products

Out-of-bounds Write vulnerability in gerstrong Commander-Genius

2026-01-28
CVE-2026-24792
Analyzed
8.1
Unknown Multiple Products

in OpenHarmony v6

2026-05-19
CVE-2026-24790
Analyzed
8.2
Unknown Multiple Products

The underlying PLC of the device can be remotely influenced, without proper safeguards or authentication

2026-02-21
CVE-2026-24789
Analyzed
9.8
Unknown Multiple Products

An unprotected API endpoint in the affected software allows unauthenticated remote attackers to change the device password, leading to complete unauth...

2026-02-12
CVE-2026-24788
Analyzed
8.8
Unknown Multiple Products

RaspAP raspap-webgui versions prior to 3

2026-02-02
CVE-2026-24783
7.5
Unknown Multiple Products

soroban-fixed-point-math is a fixed-point math library for Soroban smart contacts

2026-01-28
CVE-2026-24781
Analyzed
9.8
Node.js (vm2) vm2

A sandbox breakout vulnerability in the vm2 library's `inspect` function allows attackers to escape the sandbox and execute arbitrary commands on the...

2026-05-05
CVE-2026-24779
7.1
Unknown Multiple Products

vLLM is an inference and serving engine for large language models (LLMs)

2026-01-28
CVE-2026-24778
8.8
Ghost Multiple Products

Ghost is an open source content management system

2026-01-28
CVE-2026-24773
Analyzed
7.5
Unknown Multiple Products

The Open eClass platform (formerly known as GUnet eClass) is a complete course management system

2026-02-04
CVE-2026-24772
8.9
OpenProject Multiple Products

OpenProject is an open-source, web-based project management software

2026-01-29
CVE-2026-24770
Analyzed
9.8
Unknown Multiple Products

RAGFlow is an open-source RAG (Retrieval-Augmented Generation) engine. In version 0.23.1 and possibly earlier versions, the MinerU parser contains a "...

2026-01-28
CVE-2026-24765
Analyzed
7.8
HP Multiple Products

PHPUnit is a testing framework for PHP

2026-01-28
CVE-2026-24763
Analyzed
8.8
OpenClaw Multiple Products

OpenClaw (formerly Clawdbot) is a personal AI assistant you run on your own devices

2026-02-03
CVE-2026-2476
7.6
Mattermost Multiple Products

Mattermost Plugins versions <=2

2026-03-17
CVE-2026-24750
7.6
Unknown Multiple Products

Kiteworks is a private data network (PDN)

2026-03-26
CVE-2026-24747
8.8
PyTorch Multiple Products

PyTorch is a Python package that provides tensor computation

2026-01-28
CVE-2026-24741
8.1
ConvertXis Multiple Products

ConvertXis a self-hosted online file converter

2026-01-28
CVE-2026-2474
7.5
Unknown Multiple Products

Crypt::URandom versions from 0

2026-02-18
CVE-2026-24737
Analyzed
8.1
Unknown Multiple Products

jsPDF is a library to generate PDFs in JavaScript

2026-02-03
CVE-2026-24736
Analyzed
9.1
Unknown Multiple Products

Squidex is an open source headless content management system and content management hub. Versions of the application up to and including 7.21.0 allow...

2026-01-28
CVE-2026-24735
Analyzed
7.5
Apache Answer

Exposure of Private Personal Information to an Unauthorized Actor vulnerability in Apache Answer

2026-02-05
CVE-2026-24731
Analyzed
9.4
OCPP Implementations OCPP WebSocket Endpoint

Unauthenticated attackers can impersonate EV charging stations due to missing authentication mechanisms in OCPP WebSocket endpoints, enabling data man...

2026-02-27
CVE-2026-24727
Analyzed
9.3
SUNNET Technology Co. Corporate Training Management System

An unrestricted file upload vulnerability in the e-paper draft upload function allows authenticated administrators to execute arbitrary commands by up...

2026-07-25
CVE-2026-24724
Analyzed
8.1
QNAP File Station 6

An incorrect authorization vulnerability has been reported to affect File Station 6

2026-06-14
CVE-2026-24714
7.5
Netgear Multiple Products

Some end of service NETGEAR products provide "TelnetEnable" functionality, which allows a magic packet to activate telnet service on the box

2026-01-30
CVE-2026-2471
Analyzed
7.5
HP is vulnerable

The WP Mail Logging plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1

2026-02-28
CVE-2026-24708
8.2
Nova Multiple Products

An issue was discovered in OpenStack Nova before 30

2026-02-19
CVE-2026-24696
7.5
Unknown Multiple Products

The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests

2026-03-08
CVE-2026-24695
8
Pro Multiple Products

An OS command injection vulnerability exists in XWEB Pro version 1

2026-02-27
CVE-2026-24694
Analyzed
7.8
Cloud Multiple Products

The installer for Roland Cloud Manager ver

2026-02-03
CVE-2026-24690
Analyzed
7.5
Gitea Gitea Open Source Git Server

Gitea versions before 1.25.5 have insufficient permission checks for updating or rebasing pull request branches.

2026-07-08
CVE-2026-2469
7.6
HP due to

Versions of the package directorytree/imapengine before 1

2026-02-14
CVE-2026-24689
8
Pro Multiple Products

An OS command injection vulnerability exists in XWEB Pro version 1

2026-02-27
CVE-2026-2468
7.5
WordPress is vulnerable

The Quentn WP plugin for WordPress is vulnerable to SQL Injection via the 'qntn_wp_access' cookie in all versions up to, and including, 1

2026-03-22
CVE-2026-24672
Analyzed
7.3
Unknown Multiple Products

The Open eClass platform (formerly known as GUnet eClass) is a complete course management system

2026-02-04
CVE-2026-24669
Analyzed
7.8
Unknown Multiple Products

The Open eClass platform (formerly known as GUnet eClass) is a complete course management system

2026-02-04
CVE-2026-24665
Analyzed
8.7
Unknown Multiple Products

The Open eClass platform (formerly known as GUnet eClass) is a complete course management system

2026-02-04
CVE-2026-24663
Analyzed
9
Copeland XWEB Pro

An unauthenticated OS command injection vulnerability in Copeland XWEB Pro allows remote code execution via a crafted request to the libraries install...

2026-02-27
CVE-2026-24660
8.1
Unknown Multiple Products

A heap-based buffer overflow vulnerability exists in the x3f_load_huffman functionality of LibRaw Commit d20315b

2026-04-08
CVE-2026-2465
Analyzed
8.8
Hardware Multiple Products

Incorrect Authorization vulnerability in E-Kalite Software Hardware Engineering Design and Internet Services Industry and Trade Ltd

2026-05-13
CVE-2026-24637
Analyzed
8.5
PowerPress PowerPress Podcasting

Contributor SQL Injection in PowerPress Podcasting <= 11

2026-06-16
CVE-2026-24635
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in DevsBlink EduBlink Core edubl...

2026-01-24