8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 1101-1150 of 8341 CVEs Page 23 of 167
CVE-2025-8238
7.3
Unknown Multiple Products

A vulnerability classified as critical has been found in code-projects Exam Form Submission 1

2025-07-28
CVE-2025-8237
7.3
Unknown Multiple Products

A vulnerability was found in code-projects Exam Form Submission 1

2025-07-28
CVE-2025-8236
7.3
Unknown Multiple Products

A vulnerability was found in code-projects Online Ordering System 1

2025-07-28
CVE-2025-8235
7.3
Unknown Multiple Products

A vulnerability was found in code-projects Online Ordering System 1

2025-07-28
CVE-2025-8234
7.3
Unknown Multiple Products

A vulnerability was found in code-projects Online Ordering System 1

2025-07-28
CVE-2025-8233
7.3
Unknown Multiple Products

A vulnerability has been found in code-projects Online Ordering System 1

2025-07-28
CVE-2025-8232
7.3
Unknown Multiple Products

A vulnerability, which was classified as critical, was found in code-projects Online Ordering System 1

2025-07-28
CVE-2025-8220
7.3
Unknown Multiple Products

A vulnerability classified as critical has been found in Engeman Web up to 12

2025-07-28
CVE-2025-8218
Analyzed
8.8
WordPress Multiple Products

The Real Spaces - WordPress Properties Directory Theme theme for WordPress is vulnerable to privilege escalation via the 'change_role_member' paramete...

2025-08-19
CVE-2025-8213
Analyzed
7.2
WordPress Multiple Products

The NinjaScanner – Virus & Malware scan plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the...

2025-07-31
CVE-2025-8198
7.5
WordPress Multiple Products

The MinimogWP – The High Converting eCommerce WordPress Theme theme for WordPress is vulnerable to price manipulation in all versions up to, and inclu...

2025-07-28
CVE-2025-8194
Analyzed
7.5
Unknown Multiple Products

There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry enumeration APIs

2025-07-28
CVE-2025-8185
7.3
Unknown Multiple Products

A vulnerability was found in 1000 Projects ABC Courier Management System 1

2025-07-28
CVE-2025-8184
8.8
D-Link Multiple Products

A vulnerability was found in D-Link DIR-513 up to 1

2025-07-28
CVE-2025-8181
7.2
TOTOLINK Multiple Products

A vulnerability, which was classified as critical, was found in TOTOLINK N600R and X2000R 1

2025-07-28
CVE-2025-8180
8.8
Tenda Multiple Products

A vulnerability, which was classified as critical, has been found in Tenda CH22 1

2025-07-28
CVE-2025-8179
7.3
HP Multiple Products

A vulnerability classified as critical was found in PHPGurukul Local Services Search Engine Management System 2

2025-07-28
CVE-2025-8178
8.8
Tenda Multiple Products

A vulnerability classified as critical has been found in Tenda AC10 16

2025-07-28
CVE-2025-8145
Analyzed
8.8
HP Multiple Products

The Redirection for Contact Form 7 plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3

2025-08-20
CVE-2025-8142
Analyzed
8.8
WordPress Multiple Products

The Soledad theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 8

2025-08-17
CVE-2025-8141
Analyzed
8.8
WordPress Multiple Products

The Redirection for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the delet...

2025-08-20
CVE-2025-8110
KEV
9.5
Gogs Gogs

Gogs Path Traversal Vulnerability - Active in CISA KEV catalog.

2026-01-13
CVE-2025-8109
8.8
Software Multiple Products

Software installed and run as a non-privileged user may conduct ptrace system calls to issue writes to GPU origin read only memory

2025-08-05
CVE-2025-8105
Analyzed
7.3
WordPress Multiple Products

The The Soledad theme for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 8

2025-08-17
CVE-2025-8098
Analyzed
7.8
Unknown Multiple Products

An improper permission vulnerability was reported in Lenovo PC Manager that could allow a local attacker to escalate privileges

2025-08-19
CVE-2025-8092
7.6
Drupal Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal COOKiES Consent Management allows Cross-S...

2025-08-15
CVE-2025-8088
KEV
9.5
RARLAB WinRAR

RARLAB WinRAR Path Traversal Vulnerability - Active in CISA KEV catalog.

2025-08-12
CVE-2025-8085
Analyzed
8.6
WordPress Multiple Products

The Ditty WordPress plugin before 3

2025-09-08
CVE-2025-8083
8.6
Preset Multiple Products

The Preset configuration https://v2

2025-12-13
CVE-2025-8078
7.2
Zyxel Multiple Products

A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4

2025-10-21
CVE-2025-8077
Analyzed
9.8
Unknown Multiple Products

A vulnerability exists in NeuVector versions up to and including 5.4.5, where a fixed string is used as the default password for the built-in `admin`...

2025-09-17
CVE-2025-8076
7.2
Supermicro BMC Multiple Products

There is a vulnerability in the Supermicro BMC web function at Supermicro MBD-X13SEDW-F

2025-11-19
CVE-2025-8069
Analyzed
7.8
Microsoft Multiple Products

During the AWS Client VPN client installation on Windows devices, the install process references the C:\usr\local\windows-x86_64-openssl-localbuild\ss...

2025-07-23
CVE-2025-8067
8.5
Unknown Multiple Products

A flaw was found in the Udisks daemon, where it allows unprivileged users to create loop devices using the D-BUS system

2025-08-28
CVE-2025-8061
7
Lenovo Multiple Products

A potential insufficient access control vulnerability was reported in the Lenovo Dispatcher 3

2025-09-12
CVE-2025-8060
8.8
Tenda Multiple Products

A vulnerability has been found in Tenda AC23 16

2025-07-23
CVE-2025-8059
Analyzed
9.8
WordPress Multiple Products

The B Blocks plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization and improper input validation within the rgfr_reg...

2025-08-12
CVE-2025-8047
Analyzed
9.8
WordPress Multiple Products

The disable-right-click-powered-by-pixterme through v1.2 and pixter-image-digital-license thtough v1.0 WordPress plugins load a JavaScript file which...

2025-08-14
CVE-2025-8044
9.8
Unknown Multiple Products

Memory safety bugs present in Firefox 140 and Thunderbird 140. Some of these bugs showed evidence of memory corruption and we presume that with enough...

2025-07-24
CVE-2025-8043
9.8
Unknown Multiple Products

Focus incorrectly truncated URLs towards the beginning instead of around the origin. This vulnerability affects Firefox < 141 and Thunderbird < 141.

2025-07-24
CVE-2025-8042
Analyzed
9.8
Google Multiple Products

Firefox for Android allowed a sandboxed iframe without the `allow-downloads` attribute to start downloads. This vulnerability affects Firefox < 141.

2025-08-20
CVE-2025-8040
Analyzed
8.8
Mozilla Multiple Products

Memory safety bugs present in Firefox ESR 140

2025-07-23
CVE-2025-8039
8.1
Unknown Multiple Products

In some cases search terms persisted in the URL bar even after navigating away from the search page

2025-07-23
CVE-2025-8038
9.8
Unknown Multiple Products

Thunderbird ignored paths when checking the validity of navigations in a frame. This vulnerability affects Firefox < 141, Firefox ESR < 140.1, Thunder...

2025-07-24
CVE-2025-8037
9.1
Unknown Multiple Products

Setting a nameless cookie with an equals sign in the value shadowed other cookies. Even if the nameless cookie was set over HTTP and the shadowed cook...

2025-07-24
CVE-2025-8036
8.1
Thunderbird Multiple Products

Thunderbird cached CORS preflight responses across IP address changes

2025-07-23
CVE-2025-8035
Analyzed
8.8
Mozilla Multiple Products

Memory safety bugs present in Firefox ESR 128

2025-07-23
CVE-2025-8034
Analyzed
8.8
Mozilla Multiple Products

Memory safety bugs present in Firefox ESR 115

2025-07-23
CVE-2025-8032
8.1
XSLT Multiple Products

XSLT document loading did not correctly propagate the source document which bypassed its CSP

2025-07-23
CVE-2025-8031
9.8
Unknown Multiple Products

The `username:password` part was not correctly stripped from URLs in CSP reports potentially leaking HTTP Basic Authentication credentials. This vulne...

2025-07-24