21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 12151-12200 of 21553 CVEs Page 244 of 432
CVE-2026-0713
8.3
Unknown Multiple Products

A security vulnerability in the /apis/dashboard

2026-01-16
CVE-2026-0712
7.6
Unknown Multiple Products

An open redirect vulnerability has been identified in Grafana OSS that can be exploited to achieve XSS attacks

2026-01-16
CVE-2026-0710
8.4
Unknown Multiple Products

A flaw was found in SIPp

2026-01-23
CVE-2026-0709
7.2
Hikvision Multiple Products

Some Hikvision Wireless Access Points are vulnerable to authenticated command execution due to insufficient input validation

2026-01-31
CVE-2026-0708
8.3
Unknown Multiple Products

A flaw was found in libucl

2026-03-17
CVE-2026-0702
Analyzed
7.5
WordPress Multiple Products

The VidShop – Shoppable Videos for WooCommerce plugin for WordPress is vulnerable to time-based SQL Injection via the 'fields' parameter in all versio...

2026-01-28
CVE-2026-0700
7.3
Unknown Multiple Products

A vulnerability was determined in code-projects Intern Membership Management System 1

2026-01-08
CVE-2026-0695
Analyzed
8.7
Unknown Multiple Products

In ConnectWise PSA versions older than 2026

2026-01-17
CVE-2026-0692
Analyzed
7.5
WordPress is vulnerable

The BlueSnap Payment Gateway for WooCommerce plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 3

2026-02-14
CVE-2026-0685
Analyzed
9.8
Edgewall Genshi

A server-side template injection vulnerability in the Genshi template engine allows remote attackers to execute arbitrary code via crafted template ex...

2026-06-27
CVE-2026-0677
7.2
TotalSuite Multiple Products

Deserialization of Untrusted Data vulnerability in TotalSuite TotalContest Lite allows Object Injection

2026-03-22
CVE-2026-0669
7.5
Wikimedia Foundation Multiple Products

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Wikimedia Foundation MediaWiki - CSS extension allows...

2026-01-08
CVE-2026-0662
Analyzed
7.8
Arch Path being

A maliciously crafted project directory, when opening a max file in Autodesk 3ds Max, could lead to execution of arbitrary code in the context of the...

2026-02-05
CVE-2026-0661
Analyzed
7.8
Intel 3ds Max

A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability

2026-02-05
CVE-2026-0660
Analyzed
7.8
Intel 3ds Max

A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can cause a Stack-Based Buffer Overflow vulnerability

2026-02-05
CVE-2026-0659
Analyzed
7.8
Intel Arnold and 3ds Max

A maliciously crafted USD file, when loaded or imported into Autodesk Arnold or Autodesk 3ds Max, can force an Out-of-Bounds Write vulnerability

2026-02-05
CVE-2026-0656
Analyzed
8.2
WordPress Multiple Products

The iPaymu Payment Gateway for WooCommerce plugin for WordPress is vulnerable to Missing Authentication in all versions up to, and including, 2

2026-01-08
CVE-2026-0648
7.8
Unknown Multiple Products

The vulnerability stems from an incorrect error-checking logic in the CreateCounter() function (in threadx/utility/rtos_compatibility_layers/OSEK/tx_o...

2026-01-28
CVE-2026-0643
7.3
Property Multiple Products

A flaw has been found in projectworlds House Rental and Property Listing 1

2026-01-08
CVE-2026-0640
8.8
Tenda Multiple Products

A weakness has been identified in Tenda AC23 16

2026-01-07
CVE-2026-0634
7.8
Google Multiple Products

Code execution in AssistFeedbackService of TECNO Pova7 Pro 5G on Android allows local apps to execute arbitrary code as system via command injection

2026-04-03
CVE-2026-0628
Analyzed
8.8
Google Multiple Products

Insufficient policy enforcement in WebView tag in Google Chrome prior to 143

2026-01-08
CVE-2026-0617
Analyzed
7.2
WordPress Multiple Products

The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the customer...

2026-02-03
CVE-2026-0616
7.5
TheLibrarians Multiple Products

TheLibrarians web_fetch tool can be used to retrieve the Adminer interface content, which can then be used to log into the internal TheLibrarian backe...

2026-01-18
CVE-2026-0615
7.3
Librarian Multiple Products

The Librarian `supervisord` status page can be retrieved by the `web_fetch` tool, which can be used to retrieve running processes within TheLibrarian...

2026-01-18
CVE-2026-0613
7.5
Librarian Multiple Products

The Librarian contains an internal port scanning vulnerability, facilitated by the `web_fetch` tool, which can be used with SSRF-style behavior to per...

2026-01-18
CVE-2026-0612
Analyzed
7.5
Librarian Multiple Products

The Librarian contains a information leakage vulnerability through the `web_fetch` tool, which can be used to retrieve arbitrary external content prov...

2026-01-18
CVE-2026-0611
Analyzed
9.8
Spacelabs Healthcare Sentinel

Spacelabs Healthcare Sentinel contains an unauthenticated RCE vulnerability via a deprecated .NET Remoting HTTP channel, allowing attackers to write w...

2026-06-03
CVE-2026-0607
7.3
Unknown Multiple Products

A flaw has been found in code-projects Online Music Site 1

2026-01-06
CVE-2026-0606
7.3
Unknown Multiple Products

A vulnerability was detected in code-projects Online Music Site 1

2026-01-06
CVE-2026-0605
7.3
Unknown Multiple Products

A security vulnerability has been detected in code-projects Online Music Site 1

2026-01-06
CVE-2026-0603
8.3
Unknown Multiple Products

A flaw was found in Hibernate

2026-01-23
CVE-2026-0599
Analyzed
7.5
Unknown Multiple Products

A vulnerability in huggingface/text-generation-inference version 3

2026-02-02
CVE-2026-0596
Analyzed
9.6
MLflow MLflow

MLflow is vulnerable to command injection when serving models with `enable_mlserver=True`. Shell metacharacters in the `model_uri` allow for arbitrary...

2026-04-01
CVE-2026-0592
7.3
Unknown Multiple Products

A security flaw has been discovered in code-projects Online Product Reservation System 1

2026-01-06
CVE-2026-0589
7.3
Unknown Multiple Products

A vulnerability was found in code-projects Online Product Reservation System 1

2026-01-06
CVE-2026-0585
7.3
Unknown Multiple Products

A security vulnerability has been detected in code-projects Online Product Reservation System 1

2026-01-06
CVE-2026-0583
7.3
Unknown Multiple Products

A security flaw has been discovered in code-projects Online Product Reservation System 1

2026-01-06
CVE-2026-0579
Analyzed
7.3
Unknown Multiple Products

A vulnerability was found in code-projects Online Product Reservation System 1

2026-01-05
CVE-2026-0578
Analyzed
7.3
Unknown Multiple Products

A vulnerability has been found in code-projects Online Product Reservation System 1

2026-01-05
CVE-2026-0576
Analyzed
7.3
Unknown Multiple Products

A vulnerability was detected in code-projects Online Product Reservation System 1

2026-01-04
CVE-2026-0575
Analyzed
7.3
Unknown Multiple Products

A security vulnerability has been detected in code-projects Online Product Reservation System 1

2026-01-04
CVE-2026-0570
Analyzed
7.3
Unknown Multiple Products

A vulnerability was found in code-projects Online Music Site 1

2026-01-03
CVE-2026-0569
Analyzed
7.3
Unknown Multiple Products

A vulnerability has been found in code-projects Online Music Site 1

2026-01-03
CVE-2026-0568
Analyzed
7.3
Unknown Multiple Products

A flaw has been found in code-projects Online Music Site 1

2026-01-03
CVE-2026-0567
Analyzed
7.3
Unknown Multiple Products

A vulnerability was detected in code-projects Content Management System 1

2026-01-03
CVE-2026-0565
Analyzed
7.3
Unknown Multiple Products

A weakness has been identified in code-projects Content Management System 1

2026-01-03
CVE-2026-0562
8.3
Unknown Multiple Products

A critical security vulnerability in parisneo/lollms versions up to 2

2026-03-30
CVE-2026-0560
7.5
Unknown Multiple Products

A Server-Side Request Forgery (SSRF) vulnerability exists in parisneo/lollms versions prior to 2

2026-03-30
CVE-2026-0558
7.5
Unknown Multiple Products

A vulnerability in parisneo/lollms, up to and including version 2

2026-03-30