21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 11151-11200 of 21553 CVEs Page 224 of 432
CVE-2026-14262
Analyzed
8.8
WordPress Simple JWT Login

The Simple JWT Login – Allows you to use JWT on REST endpoints

2026-07-11
CVE-2026-14261
Analyzed
9.1
Intel Xerte Online Tools

Xerte Online Tools is vulnerable to an authentication bypass and remote code execution flaw via the /setup/ folder, allowing attackers to force a serv...

2026-07-10
CVE-2026-1426
8.8
HP is vulnerable

The Advanced AJAX Product Filters plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3

2026-02-19
CVE-2026-14254
Analyzed
8.3
Perforce Delphix Continuous Data

A race condition in the account lockout mechanism in Delphix Continous Data allowed the lockout threshold to be bypassed through concurrent authentica...

2026-07-17
CVE-2026-14245
Analyzed
9.8
WordPress miniOrange OTP Login, Verification and SMS Notifications

The miniOrange OTP Login, Verification and SMS Notifications plugin for WordPress is vulnerable to an authentication bypass that allows unauthenticate...

2026-07-09
CVE-2026-14237
Analyzed
7.2
WordPress WordPress Plugin

The vitepos WordPress plugin before 3.6.0, Vitepos WordPress plugin before 3.5.0 do not perform a per-target authorization check in their point-of-sa...

2026-08-17
CVE-2026-14235
Analyzed
7.5
WordPress Download Manager

The Download Manager WordPress plugin before 3

2026-07-28
CVE-2026-1422
Analyzed
7.3
Examination Multiple Products

A vulnerability was found in code-projects Online Examination System 1

2026-01-26
CVE-2026-14206
Analyzed
7.5
WordPress HT Contact Form

The HT Contact Form WordPress plugin before 2

2026-08-11
CVE-2026-14205
Analyzed
9.8
WordPress WP Events Manager

The WP Events Manager WordPress plugin contains a vulnerability that allows authenticated users to bypass payment requirements when registering for pa...

2026-08-08
CVE-2026-1420
Analyzed
8.8
Tenda Multiple Products

A flaw has been found in Tenda AC23 16

2026-01-26
CVE-2026-14193
Analyzed
7.5
Delta Electronics DVP80ES300T

DVP80ES300T with Improper Validation of Array Index Vulnerability

2026-07-01
CVE-2026-14191
Analyzed
7.8
RARLAB WinRAR

An out-of-bounds heap write exists in the RAR5 recovery-volume (

2026-07-01
CVE-2026-14182
Analyzed
9.8
WooCommerce Customer Email Verification

The Customer Email Verification for WooCommerce plugin allows unauthenticated users to hijack accounts due to a loose comparison in the email verifica...

2026-08-14
CVE-2026-14175
Analyzed
9.8
Unknown HUMANIST Digital Human Resources

An unrestricted file upload vulnerability in HUMANIST Digital Human Resources allows remote, unauthenticated attackers to upload and execute malicious...

2026-08-04
CVE-2026-14172
Analyzed
7.8
Rapid7 InsightVM, Nexpose, and Insight Agent

Rapid7 InsightVM, Nexpose, and the Insight Agent execute discovered executables during authenticated assessment without validating file ownership, all...

2026-07-24
CVE-2026-14169
Analyzed
8.1
Unknown DVG-IRF1401, DVG-IRF1421, DVG-IRF3401, DVG-IRF3421, DVG-IRF3801, DVG-IRF3821

Due to incorrect behavior order a low privileged remote attacker could trigger account inconsistent state via crafted input and overwrites existing us...

2026-07-30
CVE-2026-14168
Analyzed
8.8
Unknown Industrial IT DVG-IRF series

A low privileged remote attacker can gain administrator privileges due to missing authorization at the insert path of the configuration table resultin...

2026-07-29
CVE-2026-14167
Analyzed
8.8
Unknown DVG-IRF1401

A low privileged remote attacker can perform privileged configuration changes reserved for the administrator level including permission management due...

2026-07-29
CVE-2026-14165
Analyzed
7.5
Dassault Systèmes Tuleap Enterprise Edition

An Authorization Bypass Through User-Controlled Key vulnerability affecting Tuleap Enterprise Edition from 17

2026-07-13
CVE-2026-14164
Analyzed
7.5
Red Hat Red Hat Enterprise Linux 10

A double free issue has been identified in libarchive's RAR5 reader

2026-06-30
CVE-2026-14162
Analyzed
9.8
Advantech Hospital Queuing Management

Advantech Hospital Queuing Management contains a sensitive data exposure vulnerability that allows unauthenticated remote attackers to access API docu...

2026-07-01
CVE-2026-14158
Analyzed
8.8
WordPress Widget Logic Visual

The Widget Logic Visual plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1

2026-07-08
CVE-2026-14149
Analyzed
8.8
Google Chrome

Use after free in Audio in Google Chrome on Linux prior to 150

2026-07-02
CVE-2026-1412
Analyzed
7.3
Unknown Multiple Products

A vulnerability has been found in Sangfor Operation and Maintenance Security Management System up to 3

2026-01-26
CVE-2026-14108
Analyzed
8.8
Google Chrome

Use after free in PDFium in Google Chrome prior to 150

2026-07-02
CVE-2026-14107
Analyzed
8.8
Google Chrome

Use after free in Scheduling in Google Chrome prior to 150

2026-07-02
CVE-2026-14104
Analyzed
8.8
Google Chrome

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome prior to 150

2026-07-02
CVE-2026-14102
Analyzed
8.8
Google Chrome

Use after free in Passwords in Google Chrome prior to 150

2026-07-02
CVE-2026-14099
Analyzed
8.8
Apple Chrome for iOS

Use after free in Chrome for iOS in Google Chrome on iOS prior to 150

2026-07-02
CVE-2026-14091
Analyzed
8.8
Google Chrome

Use after free in DevTools in Google Chrome prior to 150

2026-07-02
CVE-2026-14087
Analyzed
8.8
Microsoft Chrome for Windows

Heap buffer overflow in WebNN in Google Chrome on Windows prior to 150

2026-07-02
CVE-2026-14086
Analyzed
8.8
Google Chrome

Insufficient policy enforcement in HID in Google Chrome prior to 150

2026-07-02
CVE-2026-14084
Analyzed
8.8
Google Chrome

Insufficient validation of untrusted input in Chromoting in Google Chrome prior to 150

2026-07-02
CVE-2026-14078
Analyzed
8.8
Google Chrome

Insufficient validation of untrusted input in WebRTC in Google Chrome prior to 150

2026-07-02
CVE-2026-14067
Analyzed
8.8
Apple Chrome for iOS

Use after free in Chrome for iOS in Google Chrome on iOS prior to 150

2026-07-02
CVE-2026-1405
Analyzed
9.8
WordPress is vulnerable

The Slider Future plugin for WordPress allows unauthenticated arbitrary file uploads, which can be leveraged to achieve remote code execution on the s...

2026-02-20
CVE-2026-14041
Analyzed
8.8
Google Chrome

Insufficient policy enforcement in Serial in Google Chrome prior to 150

2026-07-02
CVE-2026-14040
Analyzed
8.8
Google Chrome

Use after free in BrowserTag in Google Chrome prior to 150

2026-07-02
CVE-2026-14036
Analyzed
8.8
Google Chrome

Insufficient policy enforcement in Bluetooth in Google Chrome prior to 150

2026-07-02
CVE-2026-14027
Analyzed
8.8
Google Chrome

Use after free in SignIn in Google Chrome prior to 150

2026-07-02
CVE-2026-14025
Analyzed
8.8
Google Chrome

Use after free in Views in Google Chrome on Mac prior to 150

2026-07-02
CVE-2026-14024
Analyzed
8.8
Google Chrome

Use after free in Ozone in Google Chrome on Linux prior to 150

2026-07-02
CVE-2026-14009
Analyzed
8.8
Google Chrome

Inappropriate implementation in Passwords in Google Chrome prior to 150

2026-07-02
CVE-2026-14006
Analyzed
8.8
Google Chrome

Use after free in Navigation in Google Chrome prior to 150

2026-07-02
CVE-2026-14005
Analyzed
8.8
Google Chrome for Android

Use after free in Omnibox in Google Chrome on Android prior to 150

2026-07-02
CVE-2026-1400
Analyzed
7.2
WordPress Multiple Products

The AI Engine – The Chatbot and AI Framework for WordPress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type valid...

2026-01-28
CVE-2026-13967
Analyzed
8.8
Google Chrome

Heap buffer overflow in V8 in Google Chrome prior to 150

2026-07-02
CVE-2026-13965
Analyzed
8.8
Google Chrome

Use after free in Oilpan in Google Chrome prior to 150

2026-07-02
CVE-2026-13928
Analyzed
8.8
Google Chrome

Insufficient validation of untrusted input in Enterprise in Google Chrome prior to 150

2026-07-02