21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 9201-9250 of 21553 CVEs Page 185 of 432
CVE-2026-24359
8.8
Dokan Multiple Products

Authentication Bypass Using an Alternate Path or Channel vulnerability in Dokan, Inc

2026-03-27
CVE-2026-24352
Analyzed
9.8
PluXml PluXml CMS

PluXml CMS is vulnerable to session fixation, allowing unauthenticated attackers to pre-set a victim's session ID and hijack the session after the vic...

2026-02-28
CVE-2026-24343
8.8
Apache HertzBeat

Improper Neutralization of Data within XPath Expressions ('XPath Injection') vulnerability in Apache HertzBeat

2026-02-11
CVE-2026-24322
Analyzed
7.7
SAP Solution Tools

SAP Solution Tools Plug-In (ST-PI) contains a function module that does not perform the necessary authorization checks for authenticated users, allowi...

2026-02-10
CVE-2026-24307
Analyzed
9.3
Unknown Multiple Products

Improper validation of specified type of input in M365 Copilot allows an unauthorized attacker to disclose information over a network.

2026-01-23
CVE-2026-24306
Analyzed
9.8
Microsoft Multiple Products

Improper access control in Azure Front Door (AFD) allows an unauthorized attacker to elevate privileges over a network.

2026-01-23
CVE-2026-24305
Analyzed
9.3
Microsoft Multiple Products

Azure Entra ID Elevation of Privilege Vulnerability

2026-01-23
CVE-2026-24304
Analyzed
9.9
Microsoft Multiple Products

Improper access control in Azure Resource Manager allows an authorized attacker to elevate privileges over a network.

2026-01-23
CVE-2026-24303
Analyzed
9.6
Microsoft Partner Center

Improper access control in Microsoft Partner Center allows an authorized attacker to elevate privileges over a network.

2026-04-24
CVE-2026-24302
Analyzed
8.6
Microsoft Arc Elevation

Azure Arc Elevation of Privilege Vulnerability

2026-02-06
CVE-2026-24300
Analyzed
9.8
Microsoft Front Door

A critical elevation of privilege vulnerability in Azure Front Door allows attackers to gain unauthorized access levels. Successful exploitation could...

2026-02-06
CVE-2026-24294
7.8
Microsoft Multiple Products

Improper authentication in Windows SMB Server allows an authorized attacker to elevate privileges locally

2026-03-11
CVE-2026-24293
7.8
Microsoft Multiple Products

Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally

2026-03-11
CVE-2026-24292
7.8
Unknown Multiple Products

Use after free in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate privileges locally

2026-03-11
CVE-2026-24291
7.8
Microsoft Multiple Products

Incorrect permission assignment for critical resource in Windows Accessibility Infrastructure (ATBroker

2026-03-11
CVE-2026-24290
7.8
Microsoft Multiple Products

Improper access control in Windows Projected File System allows an authorized attacker to elevate privileges locally

2026-03-11
CVE-2026-24289
7.8
Microsoft Multiple Products

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally

2026-03-11
CVE-2026-24287
7.8
Microsoft Multiple Products

External control of file name or path in Windows Kernel allows an authorized attacker to elevate privileges locally

2026-03-11
CVE-2026-24283
8.8
Microsoft Multiple Products

Heap-based buffer overflow in Windows File Server allows an authorized attacker to elevate privileges locally

2026-03-11
CVE-2026-2428
7.5
WordPress is vulnerable

The Fluent Forms Pro Add On Pack plugin for WordPress is vulnerable to Insufficient Verification of Data Authenticity in all versions up to, and inclu...

2026-02-27
CVE-2026-24270
Analyzed
9.8
NVIDIA AIStore framework

The NVIDIA AIStore framework contains an authentication bypass vulnerability that could lead to unauthorized access, privilege escalation, and data ta...

2026-07-02
CVE-2026-24260
Analyzed
8.5
NVIDIA Container Toolkit

NVIDIA Container Toolkit for Linux contains a vulnerability where an attacker could cause a time-of-check time-of-use race condition

2026-07-02
CVE-2026-24254
Analyzed
9.8
NVIDIA Dynamo

NVIDIA Dynamo for Linux is vulnerable to an out-of-bounds write in the multimodal serving topology, potentially leading to remote code execution or sy...

2026-08-05
CVE-2026-24253
Analyzed
8.2
NVIDIA Dynamo

NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause an out-of-bounds write

2026-08-05
CVE-2026-24252
Analyzed
7.8
NVIDIA NeMo Framework

NVIDIA NeMo for Linux contains a vulnerability where an attacker may cause OS command injection

2026-07-28
CVE-2026-24222
8.6
NVIDIA NeMoClaw contains

NVIDIA NeMoClaw contains a vulnerability in the sandbox environment initialization component, where a remote attacker could cause improper access cont...

2026-04-29
CVE-2026-24218
Analyzed
8.1
NVIDIA DGX OS

NVIDIA DGX OS contains a vulnerability in the factory provisioning process, where the cloning of a base image causes identical SSH host keys to be de...

2026-05-21
CVE-2026-24217
Analyzed
8.8
NVIDIA contains

NVIDIA BioNeMo Core for Linux contains a vulnerability where a user could cause a path traversal by loading a malicious file

2026-05-21
CVE-2026-24216
Analyzed
7.8
NVIDIA contains

NVIDIA BioNemo for Linux contains a vulnerability where a user could cause a deserialization of untrusted data

2026-05-21
CVE-2026-24214
Analyzed
8
NVIDIA Triton Inference

NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker could cause an integer overflow

2026-05-20
CVE-2026-24213
Analyzed
8
NVIDIA Triton Inference

NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker could cause an out-of-bounds read

2026-05-20
CVE-2026-24210
Analyzed
7.5
NVIDIA Triton Inference

NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an integer overflow

2026-05-20
CVE-2026-24209
Analyzed
7.5
NVIDIA Triton Inference

NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a path traversal issue

2026-05-20
CVE-2026-24207
Analyzed
9.8
NVIDIA Triton Inference

NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass. A successful exploit of this vulnerabi...

2026-05-20
CVE-2026-24206
Analyzed
7.3
NVIDIA Triton Inference

NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass

2026-05-20
CVE-2026-24189
8.2
NVIDIA CUDA

NVIDIA CUDA-Q contains a vulnerability in an endpoint, where an unauthenticated attacker could cause an out-of-bounds read by sending a maliciously cr...

2026-04-22
CVE-2026-24188
Analyzed
8.2
NVIDIA TensorRT contains

NVIDIA TensorRT contains a vulnerability where an attacker could cause an out-of-bounds write

2026-05-21
CVE-2026-24187
Analyzed
8.8
NVIDIA Display Driver for Linux

NVIDIA Display Driver for Linux contains a vulnerability where an attacker could cause a use-after-free

2026-05-27
CVE-2026-24186
8.8
NVIDIA FLARE SDK

NVIDIA FLARE SDK contains a vulnerability in FOBS, where an attacker may cause deserialization of untrusted data by sending a malicious FOBS- encoded...

2026-04-29
CVE-2026-24178
Analyzed
9.8
NVIDIA NVFlare Dashboard

NVIDIA NVFlare Dashboard contains a vulnerability in the user management and authentication system where an unauthenticated attacker may cause authori...

2026-04-29
CVE-2026-24177
7.7
NVIDIA KAI Scheduler

NVIDIA KAI Scheduler contains a vulnerability where an attacker could access API endpoints without authorization

2026-04-22
CVE-2026-24175
7.5
NVIDIA Triton Inference

NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request header to the serv...

2026-04-09
CVE-2026-24174
7.5
NVIDIA Triton Inference

NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server

2026-04-09
CVE-2026-24173
7.5
NVIDIA Triton Inference

NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server

2026-04-09
CVE-2026-24165
7.8
NVIDIA BioNeMo contains

NVIDIA BioNeMo contains a vulnerability where a user could cause a deserialization of untrusted data

2026-04-01
CVE-2026-24164
8.8
NVIDIA BioNeMo contains

NVIDIA BioNeMo contains a vulnerability where a user could cause a deserialization of untrusted data

2026-04-01
CVE-2026-24163
Analyzed
7.5
NVIDIA TRT

NVIDIA TRT-LLM for any platform contains a vulnerability in RPC testing, where an attacker could cause an unsafe deserialization

2026-05-20
CVE-2026-2416
7.5
WordPress is vulnerable

The Geo Mashup plugin for WordPress is vulnerable to SQL Injection via the 'sort' parameter in all versions up to, and including, 1

2026-02-25
CVE-2026-24159
7.8
NVIDIA NeMo Framework

NVIDIA NeMo Framework contains a vulnerability where an attacker may cause remote code execution

2026-03-25
CVE-2026-24157
7.8
NVIDIA NeMo Framework

NVIDIA NeMo Framework contains a vulnerability in checkpoint loading where an attacker could cause remote code execution

2026-03-25