21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 9601-9650 of 21553 CVEs Page 193 of 432
CVE-2026-22273
Analyzed
8.8
Dell Multiple Products

Dell ECS, versions 3

2026-01-24
CVE-2026-22271
7.5
Dell Multiple Products

Dell ECS, versions 3

2026-01-24
CVE-2026-22267
8.1
Dell PowerProtect Data

Dell PowerProtect Data Manager, version(s) prior to 19

2026-02-20
CVE-2026-22265
Analyzed
7.5
Apache Multiple Products

Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers

2026-01-16
CVE-2026-22264
7.4
NSM Multiple Products

Suricata is a network IDS, IPS and NSM engine

2026-01-28
CVE-2026-22260
7.5
NSM Multiple Products

Suricata is a network IDS, IPS and NSM engine

2026-01-28
CVE-2026-22259
7.5
NSM Multiple Products

Suricata is a network IDS, IPS and NSM engine

2026-01-28
CVE-2026-22258
7.5
NSM Multiple Products

Suricata is a network IDS, IPS and NSM engine

2026-01-28
CVE-2026-22257
8.8
Salvo Multiple Products

Salvo is a Rust web backend framework

2026-01-09
CVE-2026-22256
8.8
Salvo Multiple Products

Salvo is a Rust web backend framework

2026-01-09
CVE-2026-22255
8.8
Unknown Multiple Products

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) col...

2026-01-09
CVE-2026-22252
Analyzed
9.1
Unknown Multiple Products

LibreChat is a ChatGPT clone with additional features. Prior to v0.8.2-rc2, LibreChat's MCP stdio transport accepts arbitrary commands without validat...

2026-01-13
CVE-2026-2225
7.3
HP of the

A flaw has been found in itsourcecode News Portal Project 1

2026-02-09
CVE-2026-22248
8
HP instantiation

GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing

2026-03-12
CVE-2026-22235
7.5
Unknown Multiple Products

OPEXUS eComplaint before version 9

2026-01-09
CVE-2026-22234
Analyzed
9.8
Unknown Multiple Products

OPEXUS eCasePortal before version 9.0.45.0 allows an unauthenticated attacker to navigate to the 'Attachments.aspx' endpoint, iterate through predicta...

2026-01-09
CVE-2026-22230
Analyzed
7.6
Unknown Multiple Products

OPEXUS eCASE Audit allows an authenticated attacker to modify client-side JavaScript or craft HTTP requests to access functions or buttons that have b...

2026-01-09
CVE-2026-2223
7.3
HP Multiple Products

A security vulnerability has been detected in code-projects Online Reviewer System 1

2026-02-09
CVE-2026-2221
7.3
HP of the

A security flaw has been discovered in code-projects Online Reviewer System 1

2026-02-09
CVE-2026-22208
Analyzed
9.6
OpenS100 OpenS100 (S-100 Viewer)

OpenS100 is vulnerable to remote code execution via an unsandboxed Lua interpreter. Attackers can execute arbitrary commands by tricking a user into i...

2026-02-18
CVE-2026-22206
8.8
HP tag processing

SPIP versions prior to 4

2026-02-28
CVE-2026-22205
7.5
HP type juggling

SPIP versions prior to 4

2026-02-28
CVE-2026-22202
8.1
Unknown Multiple Products

wpDiscuz before 7

2026-03-14
CVE-2026-2220
7.3
HP Multiple Products

A vulnerability was identified in code-projects Online Reviewer System 1

2026-02-09
CVE-2026-22193
8.1
Unknown Multiple Products

wpDiscuz before 7

2026-03-14
CVE-2026-22182
7.5
HP endpoint with

wpDiscuz before 7

2026-03-14
CVE-2026-22175
7.1
Unknown Multiple Products

OpenClaw versions prior to 2026

2026-03-19
CVE-2026-22172
Analyzed
9.9
Unknown OpenClaw

OpenClaw versions prior to 2026.3.12 suffer from an authorization bypass in the WebSocket path, allowing authenticated users to self-declare administr...

2026-03-21
CVE-2026-22171
8.2
Unknown Multiple Products

OpenClaw versions prior to 2026

2026-03-18
CVE-2026-2217
7.3
HP Multiple Products

A vulnerability was found in itsourcecode Event Management System 1

2026-02-09
CVE-2026-22167
7.8
Unknown Multiple Products

Software installed and run as a non-privileged user may conduct improper GPU system calls to force GPU to write to arbitrary physical memory pages

2026-05-02
CVE-2026-22166
8.1
Unknown Multiple Products

A web page that contains unusual WebGPU content loaded into the GPU GLES render process and can trigger write UAF crash in the GPU GLES user-space sha...

2026-05-02
CVE-2026-22165
Analyzed
8.1
Unknown Multiple Products

A web page that contains unusual WebGPU content loaded into the GPU GLES render process and can trigger a write UAF crash in the GPU GLES user-space s...

2026-05-02
CVE-2026-22153
8.1
Apple FortiOS

An Authentication Bypass by Primary Weakness vulnerability [CWE-305] vulnerability in Fortinet FortiOS 7

2026-02-11
CVE-2026-2212
7.3
HP Multiple Products

A vulnerability was identified in code-projects Online Music Site 1

2026-02-09
CVE-2026-2211
7.3
HP Multiple Products

A vulnerability was determined in code-projects Online Music Site 1

2026-02-09
CVE-2026-22104
Analyzed
7.1
Hashtopolis Server

Improper access control in Hashtopolis server web-interface chunk activity component for versions prior to 0

2026-07-19
CVE-2026-22103
Analyzed
9.3
EVbee DC-80

The EVbee DC-80 web server contains a command injection vulnerability in the NPC start endpoint on port 8090, enabling unauthenticated remote code exe...

2026-07-14
CVE-2026-22102
Analyzed
9.3
EVbee DC-80

An unauthenticated arbitrary file write vulnerability in the EVbee DC-80 webserver allows attackers to overwrite system files via a crafted POST reque...

2026-07-14
CVE-2026-22100
Analyzed
8.6
EVbee DC-80

The OCPP DataTransfer message `ReserveLogin` is vulnerable to command injection

2026-07-14
CVE-2026-2210
7.2
D-Link DIR

A vulnerability has been found in D-Link DIR-823X 250416

2026-02-09
CVE-2026-22099
Analyzed
8.7
EVbee DC-80

The charging station does not require authentication for Bluetooth commands to perform actions

2026-07-14
CVE-2026-22098
Analyzed
9.2
EVbee DC-80

The EVbee DC-80 writes sensitive information, including passwords and charging card UIDs, to log files in plaintext, leading to potential credential e...

2026-07-14
CVE-2026-22097
Analyzed
9.3
EVbee DC-80

The EVbee DC-80 firmware update mechanism lacks cryptographic signature validation, allowing unauthenticated remote attackers to execute arbitrary cod...

2026-07-14
CVE-2026-22096
Analyzed
9.3
EVbee DC-80

The EVbee DC-80 web server on port 8090 lacks authentication, permitting unauthorized sensitive data exposure and file uploads.

2026-07-14
CVE-2026-22095
Analyzed
9.3
EVbee DC-80

The network diagnosis endpoint on EVbee DC-80 chargers (port 8090) is vulnerable to command injection, enabling unauthenticated remote code execution.

2026-07-14
CVE-2026-22093
Analyzed
9.5
Google EVbee Service

The EVbee Service Android app fails to validate server certificates and uses weak encryption, allowing network-based attackers to intercept and manipu...

2026-07-14
CVE-2026-22078
Analyzed
7.3
O+ Connect O+ Connect

Because O+ Connect's IPC service does not authenticate clients, external applications can escalate privileges and perform sensitive actions through th...

2026-06-29
CVE-2026-22072
Analyzed
8.3
OPPO OPPO Health

Loading arbitrary external URLs through WebView components introduces malicious JS code that can steal arbitrary user tokens

2026-08-17
CVE-2026-22070
7.1
Unknown Multiple Products

ColorOS Assistant has an unauthenticated start-download channel, leading to file path traversal

2026-05-01