21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 11601-11650 of 21553 CVEs Page 233 of 432
CVE-2026-12083
Analyzed
8.1
WordPress Admin and Site Enhancements (ASE)

The Admin and Site Enhancements (ASE) WordPress plugin before 8

2026-07-07
CVE-2026-12076
Analyzed
9.3
Raytha Raytha CMS

Raytha CMS contains an SQL injection vulnerability in its OData filter parsing pipeline, enabling unauthenticated remote attackers to execute arbitrar...

2026-07-01
CVE-2026-12073
Analyzed
9.8
WordPress ProfileGrid – User Profiles, Groups and Communities

The ProfileGrid WordPress plugin is vulnerable to unauthenticated account takeover due to improper validation of registration parameters, allowing att...

2026-06-30
CVE-2026-12070
Analyzed
8.4
AMD TeamDavid

Tobit Laboratories AG TeamDavid's Webbox is vulnerable to an arbitrary file deletion vulnerability in the send email, fax, SMS, etc

2026-08-08
CVE-2026-12064
Analyzed
7.5
Unknown curl

When a user invokes curl using a schemeless URL combined with `--proto-default` sftp (or scp), a disconnect occurs between the tool layer and libcurl....

2026-07-09
CVE-2026-12059
Analyzed
8.8
Cellopoint CelloOS

The SSH service of CelloOS developed by Cellopoint has an Improper Access Control vulnerability, allowing authenticated remote attackers to bypass the...

2026-06-12
CVE-2026-12057
Analyzed
8.6
Foxit Foxit AI

When the application executes the JavaScript script embedded in the PDF within the sandbox, it fails to intercept some dangerous interfaces, which all...

2026-06-16
CVE-2026-12053
Analyzed
8.6
GitLab GitLab EE

GitLab has remediated an issue in GitLab EE affecting all versions from 19

2026-06-25
CVE-2026-12044
Analyzed
8.8
PostgreSQL pgAdmin 4

SQL injection in pgAdmin 4 across every dialog template that renders ``COMMENT ON

2026-06-19
CVE-2026-12043
Analyzed
8.8
HP aws-c-http

Improper handling of HPACK dynamic table size updates in the AWS Common Runtime aws-c-http library might allow a remote threat actor operating a serve...

2026-06-13
CVE-2026-12035
Analyzed
8.8
Microsoft Chrome

Use after free in Views in Google Chrome on Windows prior to 149

2026-06-13
CVE-2026-12034
Analyzed
8.3
Google Chrome

Insufficient validation of untrusted input in Linux Toolkit Theming in Google Chrome on Linux prior to 149

2026-06-12
CVE-2026-12031
Analyzed
8.3
Microsoft Chrome

Inappropriate implementation in Views in Google Chrome on Windows prior to 149

2026-06-12
CVE-2026-12030
Analyzed
8.3
Google Chrome

Out of bounds write in GPU in Google Chrome on Android prior to 149

2026-06-12
CVE-2026-12029
Analyzed
8.3
Microsoft Chrome

Use after free in Video in Google Chrome on Windows prior to 149

2026-06-12
CVE-2026-12028
Analyzed
8.3
Google Chrome

Use after free in GPU in Google Chrome on Android prior to 149

2026-06-12
CVE-2026-12023
Analyzed
8.3
Google Chrome

Use after free in GPU in Google Chrome on Mac prior to 149

2026-06-12
CVE-2026-12022
Analyzed
8.3
Google Chrome

Race in Safe Browsing in Google Chrome on Mac prior to 149

2026-06-12
CVE-2026-12020
Analyzed
8.8
Google Chrome

Use after free in Autofill in Google Chrome on Mac prior to 149

2026-06-12
CVE-2026-1202
Analyzed
7.3
Unknown Multiple Products

A security flaw has been discovered in CRMEB up to 5

2026-01-20
CVE-2026-12019
Analyzed
8.3
Google Chrome

Heap buffer overflow in Codecs in Google Chrome on Linux and ChromeOS prior to 149

2026-06-12
CVE-2026-12018
Analyzed
8.8
Microsoft Chrome on Windows

Inappropriate implementation in Mojo in Google Chrome on Windows prior to 149

2026-06-12
CVE-2026-12016
Analyzed
8.3
Google Chrome

Inappropriate implementation in DevTools in Google Chrome prior to 149

2026-06-12
CVE-2026-12014
Analyzed
8.3
Google Chrome

Use after free in Cast in Google Chrome prior to 149

2026-06-12
CVE-2026-12013
Analyzed
8.8
Microsoft Chrome

Use after free in Media in Google Chrome on Windows prior to 149

2026-06-12
CVE-2026-12012
Analyzed
8.1
Google Chrome

Use after free in Network in Google Chrome prior to 149

2026-06-13
CVE-2026-12011
Analyzed
8.3
Microsoft Chrome

Use after free in WebMIDI in Google Chrome on Windows prior to 149

2026-06-12
CVE-2026-12010
Analyzed
8.3
Google Chrome

Heap buffer overflow in GPU in Google Chrome on Android prior to 149

2026-06-12
CVE-2026-12009
Analyzed
8.3
Google Chrome

Insufficient validation of untrusted input in Accessibility in Google Chrome on Mac prior to 149

2026-06-12
CVE-2026-12008
Analyzed
8.3
Google Chrome

Use after free in DigitalCredentials in Google Chrome prior to 149

2026-06-12
CVE-2026-12007
Analyzed
8.8
Microsoft Chrome

Use after free in Core in Google Chrome on Windows prior to 149

2026-06-12
CVE-2026-12004
Analyzed
8.7
IBM Security Verify Access

IBM Security Verify Access 10

2026-08-14
CVE-2026-11999
Analyzed
8.2
Unknown wolfSSL

X

2026-06-26
CVE-2026-11976
Analyzed
10
HP MonsterInsights Pro

The official MonsterInsights Pro update distribution bucket was compromised, resulting in the delivery of a malicious file that grants an attacker per...

2026-08-07
CVE-2026-11974
Analyzed
8.6
WordPress wp-media-folder-addon

The wp-media-folder-addon WordPress plugin through 4

2026-07-30
CVE-2026-11972
Analyzed
8.2
Python CPython

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, meaning an archive...

2026-06-24
CVE-2026-11964
Analyzed
9.1
WordPress User Registration & Membership

The User Registration & Membership WordPress plugin fails to validate payment-provider webhooks, allowing unauthenticated attackers to bypass subscrip...

2026-07-14
CVE-2026-11963
Analyzed
8.1
WordPress User Registration & Membership

The User Registration & Membership WordPress plugin before 5

2026-07-14
CVE-2026-11962
Analyzed
8.8
WordPress FileOrganizer

The FileOrganizer WordPress plugin before 1

2026-07-07
CVE-2026-11961
Analyzed
8.1
WordPress User Registration & Membership

The User Registration & Membership WordPress plugin before 5

2026-07-18
CVE-2026-11940
Analyzed
7.8
Python CPython

tarfile

2026-06-24
CVE-2026-11933
Analyzed
8.8
MongoDB Server

A use-after-free vulnerability exists in MongoDB Server's server-side JavaScript engine when converting BSON documents to JavaScript arrays

2026-06-12
CVE-2026-1192
Analyzed
7.3
Unknown Multiple Products

A vulnerability was determined in Tosei Online Store Management System ネット店舗管理システム 1

2026-01-20
CVE-2026-11913
Analyzed
9.8
Drupal Mother May I

A critical vulnerability in the Drupal Mother May I module allows unauthenticated attackers to execute arbitrary code or perform unauthorized actions...

2026-07-16
CVE-2026-11903
Analyzed
8
Progress MOVEit Transfer

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Progress MOVEit Transfer (Ad Hoc module)

2026-07-09
CVE-2026-11885
Analyzed
8.4
IBM PowerVM Hypervisor

IBM PowerVM Hypervisor FW1110

2026-07-31
CVE-2026-11878
Analyzed
8.2
OpenText Access Manager

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in OpenText Access Manager allows Cross-Site Script...

2026-06-25
CVE-2026-11856
Analyzed
7.5
Unknown curl

Successfully using libcurl to do a transfer to a specific HTTP origin (`hostA`) with **Digest** authentication and then changing the origin to a diffe...

2026-07-09
CVE-2026-11855
Analyzed
8.8
WordPress Simple Membership

The Simple Membership WordPress plugin before 4

2026-07-07
CVE-2026-11849
Analyzed
9.8
IEI Integration Corp iRM-IEI Remote Management

IEI Integration Corp's iRM-IEI Remote Management system contains hardcoded credentials, allowing unauthenticated remote access to the database.

2026-06-13