21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 9301-9350 of 21553 CVEs Page 187 of 432
CVE-2026-2397
Analyzed
9.8
Adam Retail Automation MobilMen 20T

Adam Retail Automation MobilMen 20T contains an SQL injection vulnerability that allows unauthenticated attackers to execute malicious database querie...

2026-07-11
CVE-2026-23967
Analyzed
7.5
Unknown Multiple Products

sm-crypto provides JavaScript implementations of the Chinese cryptographic algorithms SM2, SM3, and SM4

2026-01-22
CVE-2026-23966
Analyzed
9.1
Oracle Multiple Products

sm-crypto provides JavaScript implementations of the Chinese cryptographic algorithms SM2, SM3, and SM4. A private key recovery vulnerability exists i...

2026-01-22
CVE-2026-23965
Analyzed
7.5
Unknown Multiple Products

sm-crypto provides JavaScript implementations of the Chinese cryptographic algorithms SM2, SM3, and SM4

2026-01-22
CVE-2026-23962
7.5
Unknown Multiple Products

Mastodon is a free, open-source social network server based on ActivityPub

2026-01-22
CVE-2026-23957
7.5
Unknown Multiple Products

seroval facilitates JS value stringification, including complex structures beyond JSON

2026-01-22
CVE-2026-23956
7.5
Unknown Multiple Products

seroval facilitates JS value stringification, including complex structures beyond JSON

2026-01-22
CVE-2026-23954
8.7
Unknown Multiple Products

Incus is a system container and virtual machine manager

2026-01-23
CVE-2026-23953
8.7
Unknown Multiple Products

Incus is a system container and virtual machine manager

2026-01-23
CVE-2026-23950
Analyzed
8.8
Intel Multiple Products

node-tar,a Tar for Node

2026-01-20
CVE-2026-23949
Analyzed
8.6
Unknown Multiple Products

jaraco

2026-01-20
CVE-2026-23948
7.5
Unknown Multiple Products

FreeRDP is a free implementation of the Remote Desktop Protocol

2026-02-11
CVE-2026-2393
Analyzed
7.1
Unknown Multiple Products

A Server-Side Request Forgery (SSRF) vulnerability exists in MLflow versions prior to 3

2026-05-12
CVE-2026-23918
8.8
Apache HTTP Server

Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol

2026-05-05
CVE-2026-23906
Analyzed
9.8
Apache Druid

Apache Druid is vulnerable to an authentication bypass when LDAP is configured to allow anonymous binds, allowing attackers to access restricted resou...

2026-02-11
CVE-2026-23902
Analyzed
8.1
Apache DolphinScheduler allows

Incorrect Authorization vulnerability in Apache DolphinScheduler allows authenticated users with system login permissions to use tenants that are not...

2026-04-25
CVE-2026-23897
Analyzed
7.5
Apollo Apollo Server

Apollo Server is an open-source, spec-compliant GraphQL server that's compatible with any GraphQL client, including Apollo Client

2026-02-05
CVE-2026-23896
7.2
Unknown Multiple Products

immich is a high performance self-hosted photo and video management solution

2026-01-30
CVE-2026-23881
Analyzed
7.7
Kubernetes Multiple Products

Kyverno is a policy engine designed for cloud native platform engineering teams

2026-01-28
CVE-2026-23880
Analyzed
7.3
Intel Multiple Products

OnboardLite is a comprehensive membership lifecycle platform built for student organizations at the University of Central Florida

2026-01-20
CVE-2026-23876
Analyzed
8.1
ImageMagick Multiple Products

ImageMagick is free and open-source software used for editing and manipulating digital images

2026-01-20
CVE-2026-23869
7.5
React Multiple Products

A denial of service vulnerability exists in React Server Components, affecting the following packages: react-server-dom-parcel, react-server-dom-turbo...

2026-04-10
CVE-2026-23864
7.5
React Multiple Products

Multiple denial of service vulnerabilities exist in React Server Components, affecting the following packages: react-server-dom-parcel, react-server-d...

2026-01-27
CVE-2026-23862
7.8
Dell ThinOS

Dell ThinOS 10 versions prior to ThinOS 2602_10

2026-03-17
CVE-2026-23857
8.2
Dell Update Package

Dell Update Package (DUP) Framework, versions 23

2026-02-12
CVE-2026-23856
7.8
Microsoft Multiple Products

Dell iDRAC Service Module (iSM) for Windows, versions prior to 6

2026-02-13
CVE-2026-23853
8.4
Dell PowerProtect Data

Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7

2026-04-17
CVE-2026-23846
Analyzed
8.1
Docker Multiple Products

Tugtainer is a self-hosted app for automating updates of Docker containers

2026-01-20
CVE-2026-23843
Analyzed
7.1
HP Multiple Products

teklifolustur_app is a web-based PHP application that allows users to create, manage, and track quotes for their clients

2026-01-20
CVE-2026-23842
Analyzed
7.5
Intel Multiple Products

ChatterBot is a machine learning, conversational dialog engine for creating chat bots

2026-01-20
CVE-2026-23841
Analyzed
9.3
Unknown Multiple Products

Movary is a web application to track, rate and explore your movie watch history. Due to insufficient input validation, attackers can trigger cross-sit...

2026-01-20
CVE-2026-23840
Analyzed
9.3
Unknown Multiple Products

Movary is a web application to track, rate and explore your movie watch history. Due to insufficient input validation, attackers can trigger cross-sit...

2026-01-20
CVE-2026-23839
Analyzed
9.3
Unknown Multiple Products

Movary is a web application to track, rate and explore your movie watch history. Due to insufficient input validation, attackers can trigger cross-sit...

2026-01-20
CVE-2026-23837
Analyzed
9.8
Nginx Multiple Products

MyTube is a self-hosted downloader and player for several video websites. A vulnerability present in version 1.7.65 and poetntially earlier versions a...

2026-01-20
CVE-2026-23836
Analyzed
9.9
HP Multiple Products

HotCRP is conference review software. A problem introduced in April 2024 in version 3.1 led to inadequately sanitized code generation for HotCRP formu...

2026-01-20
CVE-2026-23830
Analyzed
10
Unknown Multiple Products

SandboxJS is a JavaScript sandboxing library. Versions prior to 0.8.26 have a sandbox escape vulnerability due to `AsyncFunction` not being isolated i...

2026-01-28
CVE-2026-23819
Analyzed
8.8
Unknown Multiple Products

A vulnerability in the web-based management interface of Access Points running AOS-10 and AOS-8 Instant could allow an unauthenticated remote attacker...

2026-05-13
CVE-2026-23818
8.8
HP Multiple Products

A vulnerability has been identified in the graphical user interface (GUI) of HPE Aruba Networking Private 5G Core On-Prem that could allow an attacker...

2026-04-08
CVE-2026-23814
8.8
Unknown Multiple Products

A vulnerability in the command parameters of a certain AOS-CX CLI command could allow a low-privilege authenticated remote attacker to inject maliciou...

2026-03-11
CVE-2026-23813
Analyzed
9.8
HP AOS-CX switches

An unauthenticated remote attacker can bypass authentication controls on AOS-CX switches, potentially allowing them to reset the administrative passwo...

2026-03-11
CVE-2026-23800
Analyzed
10
Unknown Multiple Products

Incorrect Privilege Assignment vulnerability in Modular DS modular-connector allows Privilege Escalation.This issue affects Modular DS: from 2.5.2 bef...

2026-01-17
CVE-2026-2378
7.4
Google for Android

ArcSearch for Android versions prior to 1

2026-03-22
CVE-2026-23778
7.2
Dell PowerProtect Data

Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7

2026-04-18
CVE-2026-23776
7.2
Dell PowerProtect Data

Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7

2026-04-18
CVE-2026-23775
7.6
Dell PowerProtect Data

Dell PowerProtect Data Domain appliances with Data Domain Operating System (DD OS) of Feature Release versions 8

2026-04-18
CVE-2026-23774
7.2
Dell PowerProtect Data

Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7

2026-04-21
CVE-2026-23772
7.3
Microsoft Servers

Dell Storage Manager - Replay Manager for Microsoft Servers, version(s) 8

2026-04-17
CVE-2026-23760
KEV
9.5
SmarterTools SmarterMail

SmarterTools SmarterMail Authentication Bypass Using an Alternate Path or Channel Vulnerability - Active in CISA KEV catalog.

2026-01-27
CVE-2026-23759
7.2
Unknown Multiple Products

Perle IOLAN STS/SCS terminal server models with firmware versions prior to 6

2026-03-19
CVE-2026-23751
Analyzed
9.8
Kofax Multiple Products

Kofax Capture, now referred to as Tungsten Capture, version 6.0.0.0 (other versions may be affected) exposes a deprecated .NET Remoting HTTP channel o...

2026-04-24