21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 11101-11150 of 21553 CVEs Page 223 of 432
CVE-2026-14471
Analyzed
8.1
Amazon MCP Gateway & Registry

Improper Neutralization of Special Elements in the metrics-service retention policy management component in Amazon mcp-gateway-registry before 1

2026-07-07
CVE-2026-14468
Analyzed
7.7
HashiCorp Terraform Enterprise

HashiCorp Terraform Enterprise contained an issue in its version control system (VCS) ingestion of registry modules that did not correctly enforce the...

2026-07-07
CVE-2026-14460
Analyzed
8.8
TUBITAK BILGEM pardus-software

Missing Authorization vulnerability in TUBITAK BILGEM Software Technologies Research Institute pardus-software allows Argument Injection

2026-07-03
CVE-2026-14459
Analyzed
8.8
TUBITAK BILGEM pardus-software

Improper neutralization of argument delimiters in a command ('argument injection') vulnerability in TUBITAK BILGEM Software Technologies Research Inst...

2026-07-03
CVE-2026-14454
Analyzed
9.8
TONYC Imager

Imager for Perl mishandles large EXIF IFD entry counts, leading to excessive memory allocation attempts and process termination.

2026-07-12
CVE-2026-14453
Analyzed
9.6
Centreon Infra Monitoring

Centreon Infra Monitoring is vulnerable to Server-Side Template Injection (SSTI) in the open-tickets module, allowing authenticated users to execute a...

2026-07-13
CVE-2026-14446
Analyzed
9.8
IBM WebSphere Application Server

IBM WebSphere Application Server versions 9.0 and 8.5 contain a broken access control vulnerability in the administrative console that allows for priv...

2026-07-29
CVE-2026-14433
Analyzed
7.2
WordPress Online Booking & Scheduling Calendar for WordPress

The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'business_id...

2026-08-16
CVE-2026-14432
Analyzed
8.8
Google Chrome

Use after free in V8 in Google Chrome prior to 150

2026-07-02
CVE-2026-14431
Analyzed
8.8
Google Chrome

Type Confusion in V8 in Google Chrome prior to 150

2026-07-02
CVE-2026-14430
Analyzed
8.8
Google Chrome

Integer overflow in V8 in Google Chrome prior to 150

2026-07-02
CVE-2026-1443
7.3
Unknown Multiple Products

A flaw has been found in code-projects Online Music Site 1

2026-01-27
CVE-2026-14429
Analyzed
8.3
Google Chrome

Insufficient validation of untrusted input in Skia in Google Chrome prior to 150

2026-07-03
CVE-2026-14428
Analyzed
8.3
Google Chrome for Android

Insufficient validation of untrusted input in Dawn in Google Chrome on Android prior to 150

2026-07-03
CVE-2026-14427
Analyzed
8.3
Google Chrome

Heap buffer overflow in Skia in Google Chrome prior to 150

2026-07-03
CVE-2026-14422
Analyzed
8.8
Google Chrome

Out of bounds read and write in Tint in Google Chrome prior to 150

2026-07-03
CVE-2026-1442
7.8
LG Multiple Products

Since the encryption algorithm used to protect firmware updates is itself encrypted using key material available to an attacker (or anyone paying atte...

2026-02-27
CVE-2026-14415
Analyzed
8.8
Google Chrome

Inappropriate implementation in V8 in Google Chrome prior to 150

2026-07-03
CVE-2026-14413
Analyzed
8.3
Google Chrome

Uninitialized Use in ANGLE in Google Chrome prior to 150

2026-07-03
CVE-2026-14412
Analyzed
8.3
Google Chrome

Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150

2026-07-03
CVE-2026-14407
Analyzed
8.8
Google Chrome

Inappropriate implementation in V8 in Google Chrome prior to 150

2026-07-02
CVE-2026-14403
Analyzed
8.8
Google Chrome

Use after free in V8 in Google Chrome prior to 150

2026-07-02
CVE-2026-14401
Analyzed
8.3
Google Chrome for Android

Insufficient validation of untrusted input in ANGLE in Google Chrome on Android prior to 150

2026-07-03
CVE-2026-14400
Analyzed
8.3
Google Chrome

Out of bounds write in ANGLE in Google Chrome prior to 150

2026-07-03
CVE-2026-14395
Analyzed
8.8
Google Chrome

Out of bounds write in V8 in Google Chrome prior to 150

2026-07-02
CVE-2026-14394
Analyzed
8.8
Google Chrome

Use after free in V8 in Google Chrome prior to 150

2026-07-03
CVE-2026-14393
Analyzed
8.8
Google Chrome

Use after free in V8 in Google Chrome prior to 150

2026-07-02
CVE-2026-14389
Analyzed
8.3
Google Chrome

Integer overflow in Skia in Google Chrome prior to 150

2026-07-03
CVE-2026-14385
Analyzed
8.8
Google Chrome

Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 150

2026-07-03
CVE-2026-14383
Analyzed
8.8
Google Chrome

Inappropriate implementation in V8 in Google Chrome prior to 150

2026-07-02
CVE-2026-14371
Analyzed
8.8
Microsoft XClarity Integrator for Microsoft Windows Admin Center

The Lenovo XClarity Integrator for Windows Admin Center plugin version 5

2026-07-17
CVE-2026-14365
Analyzed
9.8
WordPress TrueBooker – Appointment Booking and Scheduler System

The TrueBooker WordPress plugin is vulnerable to authorization bypass, allowing unauthenticated attackers to perform unauthorized actions such as chan...

2026-08-07
CVE-2026-14364
Analyzed
9.8
WordPress TrueBooker – Appointment Booking and Scheduler System

The TrueBooker WordPress plugin is vulnerable to account takeover due to improper password reset validation, allowing unauthenticated attackers to res...

2026-08-07
CVE-2026-14356
Analyzed
8.8
WordPress FleekDash V2

The FleekDash V2 plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2

2026-07-30
CVE-2026-14354
Analyzed
8.7
Schneider Electric EcoStruxure Cybersecurity Admin Expert

CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, pot...

2026-07-30
CVE-2026-1435
Analyzed
9.8
Graylog Web Graylog Web Interface

Graylog Web Interface 2.2.3 fails to invalidate old session identifiers upon new logins, allowing attackers with a leaked sessionId to maintain unauth...

2026-02-19
CVE-2026-14345
Analyzed
9.8
WordPress WPFunnels – Funnel Builder for WooCommerce

The WPFunnels WordPress plugin is vulnerable to unauthenticated remote code execution due to improper sanitization of log data combined with unsafe fi...

2026-07-07
CVE-2026-14336
Analyzed
8.2
Jenkins PIA (OIDC issuer allowlist)

PIA's OIDC issuer allowlist for Jenkins tokens uses a bare string-prefix check (issuer

2026-07-03
CVE-2026-14334
Analyzed
8.8
WordPress Booking calendar, Appointment Booking System

The Booking calendar, Appointment Booking System WordPress plugin through 3

2026-08-20
CVE-2026-14333
Analyzed
7.5
WordPress Demi

The Demi WordPress plugin before 0

2026-08-01
CVE-2026-14328
Analyzed
8.8
WordPress Eazy Plugin Manager – Powerful Plugin Management Solution for WordPress

The Eazy Plugin Manager – Powerful Plugin Management Solution for WordPress plugin for WordPress is vulnerable to Privilege Escalation in all versions...

2026-07-29
CVE-2026-14319
Analyzed
7.5
WordPress GiveWP

The GiveWP WordPress plugin before 4

2026-08-01
CVE-2026-14293
Analyzed
8.8
WordPress WordPress Plugin

The Autopay WordPress plugin before 5.0.1 does not perform any capability or nonce check before saving a styling option from a public request, and doe...

2026-08-17
CVE-2026-14291
7.5
WordPress security-ninja-premium

The security-ninja-premium WordPress plugin before 5.290 does not verify the second authentication factor in one of its two-factor authentication code...

2026-08-12
CVE-2026-14289
Analyzed
9
FacturaONE FacturaONE para WooCommerce con VeriFactu

A code injection vulnerability in FacturaONE para WooCommerce con VeriFactu allows unauthenticated attackers to write arbitrary files to the server vi...

2026-07-28
CVE-2026-14282
Analyzed
9.8
WordPress GoDAM – Organize WordPress Media Library & File Manager

The GoDAM WordPress plugin suffers from an unrestricted arbitrary file upload vulnerability allowing unauthenticated remote code execution via insuffi...

2026-07-24
CVE-2026-1428
Analyzed
8.8
Unknown Multiple Products

Single Sign-On Portal System developed by WellChoose has a OS Command Injection vulnerability, allowing authenticated remote attackers to inject arbit...

2026-01-26
CVE-2026-14279
Analyzed
8.8
WordPress Wholesale Market

The Wholesale Market plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 2

2026-08-15
CVE-2026-14270
Analyzed
8.8
WordPress Extra Checkout Options - addon for Extra Product Options plugin

The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in...

2026-07-30
CVE-2026-1427
Analyzed
8.8
Unknown Multiple Products

Single Sign-On Portal System developed by WellChoose has a OS Command Injection vulnerability, allowing authenticated remote attackers to inject arbit...

2026-01-26