17874 Total CVEs
9409 AI Analyzed
270 CISA KEV
3637 Critical
All Vendors
Showing 11751-11800 of 17874 CVEs Page 236 of 358
CVE-2025-57797
7.8
ScanSnap Multiple Products

Incorrect privilege assignment vulnerability exists in ScanSnap Manager installers versions prior to V6

2025-08-27
CVE-2025-57795
Analyzed
9.9
Unknown Multiple Products

Explorance Blue versions prior to 8.14.13 contain an authenticated remote file download vulnerability in a web service component. In default configura...

2026-01-29
CVE-2025-57794
Analyzed
9.1
HP Multiple Products

Explorance Blue versions prior to 8.14.9 contain an authenticated unrestricted file upload vulnerability in the administrative interface. The applicat...

2026-01-29
CVE-2025-57793
8.6
Unknown Multiple Products

Explorance Blue versions prior to 8

2026-01-29
CVE-2025-57792
Analyzed
10
Unknown Multiple Products

Explorance Blue versions prior to 8.14.9 contain a SQL injection vulnerability caused by insufficient validation of user input in a web application en...

2026-01-29
CVE-2025-57790
8.8
Commvault Multiple Products

An issue was discovered in Commvault before 11

2025-08-21
CVE-2025-57781
7.8
Unknown Multiple Products

The installers of DENSO TEN drive recorder viewer contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Librari...

2025-10-06
CVE-2025-57780
8.8
F5 Multiple Products

A vulnerability exists in F5OS-A and F5OS-C system that may allow an authenticated attacker with local access to escalate their privileges

2025-10-15
CVE-2025-57778
7.8
Unknown Multiple Products

There is an out of bounds write vulnerability due to improper bounds checking resulting in an invalid source address when parsing a DSB file with Digi...

2025-09-02
CVE-2025-57777
7.8
Unknown Multiple Products

There is an out of bounds write vulnerability due to improper bounds checking in displ2

2025-09-02
CVE-2025-57776
7.8
Unknown Multiple Products

There is an out of bounds write vulnerability due to improper bounds checking resulting in an invalid address when parsing a DSB file with Digilent DA...

2025-09-02
CVE-2025-57775
7.8
Unknown Multiple Products

There is a heap-based Buffer Overflow vulnerability due to improper bounds checking when parsing a DSB file with Digilent DASYLab

2025-09-02
CVE-2025-57774
7.8
Unknown Multiple Products

There is an out of bounds write vulnerability due to improper bounds checking resulting in invalid data when parsing a DSB file with Digilent DASYLab

2025-09-02
CVE-2025-57771
8.1
Roo Multiple Products

Roo Code is an AI-powered autonomous coding agent that lives in users' editors

2025-08-23
CVE-2025-57767
Analyzed
7.5
Asterisk Multiple Products

Asterisk is an open source private branch exchange and telephony toolkit

2025-08-28
CVE-2025-57761
8.8
Web Multiple Products

WeGIA is a Web manager for charitable institutions

2025-08-23
CVE-2025-57760
8.8
Langflow Multiple Products

Langflow is a tool for building and deploying AI-powered agents and workflows

2025-08-25
CVE-2025-57754
Analyzed
9.8
Unknown Multiple Products

eslint-ban-moment is an Eslint plugin for final assignment in VIHU. In 3.0.0 and earlier, a sensitive Supabase URI is exposed in .env. A valid Supabas...

2025-08-21
CVE-2025-57741
7.8
Unknown Multiple Products

An Incorrect Permission Assignment for Critical Resource vulnerability [CWE-732] in FortiClientMac 7

2025-10-14
CVE-2025-57738
Analyzed
7.2
Apache Multiple Products

Apache Syncope offers the ability to extend / customize the base behavior on every deployment by allowing to provide custom implementations of a few J...

2025-10-20
CVE-2025-57735
Analyzed
9.1
Unknown Multiple Products

When user logged out, the JWT token the user had authtenticated with was not invalidated, which could lead to reuse of that token in case it was inter...

2026-04-10
CVE-2025-57732
7.5
TeamCity Multiple Products

In JetBrains TeamCity before 2025

2025-08-20
CVE-2025-57731
8.7
YouTrack Multiple Products

In JetBrains YouTrack before 2025

2025-08-20
CVE-2025-57713
7.5
File Multiple Products

A weak authentication vulnerability has been reported to affect File Station 5

2026-02-13
CVE-2025-57709
8.1
Unknown Multiple Products

A buffer overflow vulnerability has been reported to affect Qsync Central

2026-02-13
CVE-2025-57707
8.8
File Multiple Products

An improper neutralization of directives in statically saved code ('Static Code Injection') vulnerability has been reported to affect File Station 5

2026-02-13
CVE-2025-57644
Analyzed
9.1
Unknown Multiple Products

Accela Automation Platform 22.2.3.0.230103 contains multiple vulnerabilities in the Test Script feature. An authenticated administrative user can exec...

2025-09-19
CVE-2025-57638
7.5
Tenda Multiple Products

Buffer overflow vulnerability in Tenda AC9 1

2025-09-24
CVE-2025-57637
7.5
D-Link Multiple Products

Buffer overflow vulnerability in D-Link DI-7100G 2020-02-21 in the sub_451754 function of the jhttpd service in the viav4 parameter allowing attackers...

2025-09-24
CVE-2025-57633
Analyzed
9.8
Unknown Multiple Products

A command injection vulnerability in FTP-Flask-python through 5173b68 allows unauthenticated remote attackers to execute arbitrary OS commands. The /f...

2025-09-10
CVE-2025-57632
7.5
Unknown Multiple Products

libsmb2 6

2025-09-26
CVE-2025-57631
Analyzed
9.8
Unknown Multiple Products

SQL Injection vulnerability in TDuckCloud v.5.1 allows a remote attacker to execute arbitrary code via the Add a file upload module

2025-09-17
CVE-2025-57625
Analyzed
8.8
Microsoft Multiple Products

CYRISMA Sensor before 444 for Windows has an Insecure Folder and File Permissions vulnerability

2025-09-17
CVE-2025-57624
7.8
CYRISMA Agent before Multiple Products

A DLL hijacking vulnerability in CYRISMA Agent before 444 allows local users to escalate privileges and execute arbitrary code via multiple DLLs

2025-09-17
CVE-2025-57616
7.5
Unknown Multiple Products

An issue was discovered in rust-ffmpeg 0

2025-09-03
CVE-2025-57615
7.5
Unknown Multiple Products

An issue was discovered in rust-ffmpeg 0

2025-09-03
CVE-2025-57614
7.5
Unknown Multiple Products

An issue was discovered in rust-ffmpeg 0

2025-09-03
CVE-2025-57613
7.5
Unknown Multiple Products

An issue was discovered in rust-ffmpeg 0

2025-09-03
CVE-2025-57612
7.5
Unknown Multiple Products

An issue was discovered in rust-ffmpeg 0

2025-09-02
CVE-2025-57605
Analyzed
8.8
Lack Multiple Products

Lack of server-side authorisation on department admin assignment APIs in AiKaan IoT Platform allows authenticated users to elevate their privileges by...

2025-09-23
CVE-2025-57602
Analyzed
9.8
Unknown Multiple Products

Insufficient hardening of the proxyuser account in the AiKaan IoT management platform, combined with the use of a shared, hardcoded SSH private key, a...

2025-09-23
CVE-2025-57601
Analyzed
9.8
Unknown Multiple Products

AiKaan Cloud Controller uses a single hardcoded SSH private key and the username `proxyuser` for remote terminal access to all managed IoT/edge device...

2025-09-23
CVE-2025-57579
8
TOTOLINK Multiple Products

An issue in TOTOLINK Wi-Fi 6 Router Series Device X2000R-Gh-V2

2025-09-12
CVE-2025-57578
Analyzed
8
H3C Multiple Products

An issue in H3C Magic M Device M2V100R006 allows a remote attacker to execute arbitrary code via the default password

2025-09-12
CVE-2025-57577
Analyzed
8
H3C Multiple Products

An issue in H3C Device R365V300R004 allows a remote attacker to execute arbitrary code via the default password

2025-09-12
CVE-2025-57567
Analyzed
9.1
HP Multiple Products

A remote code execution (RCE) vulnerability exists in the PluXml CMS theme editor, specifically in the minify.php file located under the default theme...

2025-10-17
CVE-2025-57564
Analyzed
8.2
CubeAPM Multiple Products

CubeAPM nightly-2025-08-01-1 allow unauthenticated attackers to inject arbitrary log entries into production systems via the /api/logs/insert/elastics...

2025-10-08
CVE-2025-57528
7.7
Tenda Multiple Products

An issue was discovered in Tenda AC6 US_AC6V1

2025-09-19
CVE-2025-57515
Analyzed
9.8
Unknown Multiple Products

A SQL injection vulnerability has been identified in Uniclare Student Portal v2. This flaw allows remote attackers to inject arbitrary SQL commands vi...

2025-10-06
CVE-2025-57489
8.1
Unknown Multiple Products

Incorrect access control in the SDAgent component of Shirt Pocket SuperDuper! v3

2025-12-02