21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 10551-10600 of 21553 CVEs Page 212 of 432
CVE-2026-17061
Analyzed
10
Dassault Systèmes SIMULIA Execution Engine

A deserialization of untrusted data vulnerability in the SIMULIA Execution Engine allows unauthenticated remote code execution.

2026-08-12
CVE-2026-17044
Analyzed
8.6
WordPress File Upload WordPress plugin

The Iptanus File Upload WordPress plugin before 5.1.8 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to...

2026-08-16
CVE-2026-17032
Analyzed
9.8
Google Google Maps Easy Pro, Supsystic Gallery Pro, Tables Generator Pro

Multiple Supsystic Pro plugins were distributed with malicious code via a compromised update server, allowing unauthenticated attackers to steal sensi...

2026-08-07
CVE-2026-17029
Analyzed
8.8
IBM i

IBM i 7

2026-08-14
CVE-2026-17022
Analyzed
7.5
WordPress Salon Booking System

The Salon Booking System WordPress plugin through 10

2026-08-11
CVE-2026-17017
Analyzed
8.1
WordPress CubeWP Framework WordPress plugin

The CubeWP Framework WordPress plugin before 1.1.31 does not properly sanitize and escape a parameter before using it in a SQL statement through an AJ...

2026-08-16
CVE-2026-1701
7.3
Unknown Multiple Products

A security vulnerability has been detected in itsourcecode Student Management System 1

2026-01-31
CVE-2026-1699
Analyzed
10
GitHub Multiple Products

In the Eclipse Theia Website repository, the GitHub Actions workflow .github/workflows/preview.yml used pull_request_target trigger while checking out...

2026-01-31
CVE-2026-16988
Analyzed
7.5
WordPress GeoDirectory

The GeoDirectory WordPress plugin before 2.8.169 does not perform any authorization check when returning map marker data for a single requested listi...

2026-08-17
CVE-2026-16987
Analyzed
8.8
IBM i

IBM i 7

2026-08-14
CVE-2026-16985
Analyzed
8.8
HP Squeeze

The Squeeze WordPress plugin before 1.7.12 does not validate the file type or extension of the per-size image data written by one of its attachment-u...

2026-08-18
CVE-2026-16975
Analyzed
8.8
IBM i

IBM i 7

2026-08-14
CVE-2026-16969
Analyzed
7.6
Unknown iris-web

The IRIS web application in version 2

2026-08-01
CVE-2026-16956
Analyzed
9.8
IBM Db2 Mirror for i

IBM Db2 Mirror for i is susceptible to a remote OS command injection vulnerability, allowing unauthenticated attackers to execute arbitrary commands o...

2026-08-13
CVE-2026-16948
Analyzed
8.1
WordPress Solace Extra WordPress plugin

The Solace Extra WordPress plugin before 1.6.1 does not perform capability checks in several of its AJAX actions and exposes the nonce that protects t...

2026-08-16
CVE-2026-16940
Analyzed
10
WordPress Custom Fields (WordPress Plugin)

The Custom Fields WordPress plugin before version 1.5.1 is vulnerable to path traversal, allowing unauthenticated attackers to delete arbitrary files...

2026-08-06
CVE-2026-16915
Analyzed
7.5
IBM Db2 Mirror for i

IBM Db2 Mirror for i 7

2026-08-16
CVE-2026-16911
Analyzed
8.8
IBM AIX / PowerVM VIOS

IBM AIX 7

2026-08-20
CVE-2026-16909
Analyzed
8.8
IBM AIX / PowerVM VIOS

IBM AIX 7

2026-08-20
CVE-2026-16906
Analyzed
8.8
IBM i

IBM i 7

2026-08-13
CVE-2026-16901
Analyzed
8.8
IBM AIX

IBM AIX 7

2026-08-20
CVE-2026-1689
7.3
Tenda Multiple Products

A vulnerability was detected in Tenda HG10 US_HG7_HG9_HG10re_300001138_en_xpon

2026-01-31
CVE-2026-16881
Analyzed
8.7
Google LINE client for Android

A code injection vulnerability exists in the LINE Android app prior to version 26

2026-08-04
CVE-2026-1688
7.3
Unknown Multiple Products

A security vulnerability has been detected in itsourcecode Directory Management System 1

2026-01-31
CVE-2026-16879
Analyzed
8.8
IBM Db2 Mirror for i

IBM Db2 Mirror for i 7

2026-08-15
CVE-2026-16877
Analyzed
8.8
IBM AIX / PowerVM VIOS

IBM AIX 7

2026-08-20
CVE-2026-16870
Analyzed
8.8
Snowflake libsnowflakeclient

Multiple security vulnerabilities in Snowflake libsnowflakeclient versions prior to 2

2026-07-24
CVE-2026-1687
7.3
Tenda Multiple Products

A weakness has been identified in Tenda HG10 US_HG7_HG9_HG10re_300001138_en_xpon

2026-01-31
CVE-2026-16865
Analyzed
8.8
IBM AIX

IBM AIX 7

2026-08-20
CVE-2026-16860
Analyzed
9.9
IBM i

IBM i versions 7.3 through 7.6 contain an uncontrolled search path element vulnerability that allows authenticated attackers to execute arbitrary code...

2026-08-13
CVE-2026-1686
Analyzed
8.8
TOTOLINK Multiple Products

A security flaw has been discovered in Totolink A3600R 5

2026-01-31
CVE-2026-16856
Analyzed
8.8
IBM i

IBM i 7

2026-08-13
CVE-2026-16850
Analyzed
8.8
IBM AIX

IBM AIX 7

2026-08-20
CVE-2026-16848
Analyzed
8.8
IBM AIX

IBM AIX 7

2026-08-20
CVE-2026-16847
Analyzed
8.8
IBM AIX

IBM AIX 7

2026-08-20
CVE-2026-16844
Analyzed
8.8
IBM AIX

IBM AIX 7

2026-08-20
CVE-2026-16843
Analyzed
7.2
Hikvision Wireless Access Points (DS-3WAP series)

Some Hikvision Wireless Access Points are vulnerable to authenticated command execution due to insufficient input validation

2026-08-02
CVE-2026-16842
Analyzed
8.8
IBM AIX

IBM AIX 7

2026-08-20
CVE-2026-16841
Analyzed
8.8
IBM AIX

IBM AIX 7

2026-08-20
CVE-2026-16816
Analyzed
9.9
IBM AIX

A command injection vulnerability in IBM AIX and PowerVM VIOS allows authenticated remote attackers to execute arbitrary system commands via improper...

2026-08-20
CVE-2026-16815
Analyzed
8.6
IBM i

IBM i 7

2026-08-14
CVE-2026-16814
Analyzed
8.8
IBM AIX

IBM AIX 7

2026-08-20
CVE-2026-16812
KEV Analyzed
10
Arista Networks VeloCloud Orchestrator On-Prem

An OS command injection vulnerability in Arista VeloCloud Orchestrator On-Prem allows unauthenticated remote attackers to execute arbitrary commands w...

2026-07-28
CVE-2026-16807
Analyzed
8.8
Google Chrome

Out of bounds write in Codecs in Google Chrome prior to 150

2026-07-25
CVE-2026-16806
Analyzed
8.8
Google Chrome

Use after free in WebMCP in Google Chrome prior to 150

2026-07-25
CVE-2026-16805
Analyzed
8.8
Google Chrome

Use after free in Blink in Google Chrome prior to 150

2026-07-25
CVE-2026-16804
Analyzed
8.3
Google Chrome

Use after free in Input in Google Chrome prior to 150

2026-07-25
CVE-2026-16801
Analyzed
8.8
Devolutions PowerShell Universal

Improper control of generation of code ('Code Injection') in the variables feature in Devolutions PowerShell Universal 2026

2026-07-25
CVE-2026-16800
Analyzed
8.8
Devolutions PowerShell Universal

Improper control of generation of code ('Code Injection') in the schedule feature in Devolutions PowerShell Universal 2026

2026-07-25
CVE-2026-16793
Analyzed
8.8
Lenovo XClarity Orchestrator

An improper neutralization of special elements used in an operating system command vulnerability was reported in Lenovo XClarity Orchestrator (LXCO) 2

2026-08-05