21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 12501-12550 of 21553 CVEs Page 251 of 432
CVE-2025-9223
8.8
Applications Multiple Products

Zohocorp ManageEngine Applications Manager versions 178100 and below are vulnerable to authenticated command injection vulnerability due to the improp...

2025-11-13
CVE-2025-9222
8.7
GitLab Multiple Products

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18

2026-01-10
CVE-2025-9216
Analyzed
8.8
WordPress Multiple Products

The StoreEngine – Powerful WordPress eCommerce Plugin for Payments, Memberships, Affiliates, Sales & More plugin for WordPress is vulnerable to arbitr...

2025-09-17
CVE-2025-9213
Analyzed
8.8
WordPress Multiple Products

The TextBuilder plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions 1

2025-10-03
CVE-2025-9212
Analyzed
7.5
WordPress Multiple Products

The WP Dispatcher plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the wp_dispatcher_process_upload...

2025-10-03
CVE-2025-9209
Analyzed
9.8
WordPress Multiple Products

The RestroPress – Online Food Ordering System plugin for WordPress is vulnerable to Authentication Bypass in versions 3.0.0 to 3.1.9.2. This is due to...

2025-10-03
CVE-2025-9201
7.8
Unknown Multiple Products

A potential DLL hijacking vulnerability was discovered in Lenovo Browser during an internal security assessment that could allow a local user to execu...

2025-09-12
CVE-2025-9200
Analyzed
7.5
Apple Multiple Products

The Blappsta Mobile App Plugin – Your native, mobile iPhone App and Android App plugin for WordPress is vulnerable to SQL Injection via the nh_ynaa_co...

2025-10-03
CVE-2025-9189
7.8
Unknown Multiple Products

There is an out of bounds write vulnerability due to improper bounds checking resulting in a large destination address when parsing a DSB file with Di...

2025-09-02
CVE-2025-9188
7.8
Unknown Multiple Products

There is a deserialization of untrusted data vulnerability in Digilent DASYLab

2025-09-02
CVE-2025-9187
Analyzed
9.8
Intel Multiple Products

Memory safety bugs present in Firefox 141 and Thunderbird 141. Some of these bugs showed evidence of memory corruption and we presume that with enough...

2025-08-20
CVE-2025-9182
7.5
Unknown Multiple Products

'Denial-of-service due to out-of-memory in the Graphics: WebRender component

2025-08-20
CVE-2025-9180
8.1
Unknown Multiple Products

'Same-origin policy bypass in the Graphics: Canvas2D component

2025-08-20
CVE-2025-9179
Analyzed
9.8
Unknown Multiple Products

An attacker was able to perform memory corruption in the GMP process which processes encrypted media. This process is also heavily sandboxed, but repr...

2025-08-20
CVE-2025-9172
Analyzed
7.5
WordPress Multiple Products

The Vibes plugin for WordPress is vulnerable to time-based SQL Injection via the ‘resource’ parameter in all versions up to, and including, 2

2025-08-26
CVE-2025-9156
7.3
Unknown Multiple Products

A vulnerability was found in itsourcecode Sports Management System 1

2025-08-19
CVE-2025-9155
7.3
Unknown Multiple Products

A vulnerability has been found in itsourcecode Online Tour and Travel Management System 1

2025-08-19
CVE-2025-9154
7.3
Unknown Multiple Products

A flaw has been found in itsourcecode Online Tour and Travel Management System 1

2025-08-19
CVE-2025-9152
Analyzed
9.8
Unknown Multiple Products

An improper privilege management vulnerability exists in WSO2 API Manager due to missing authentication and authorization checks in the keymanager-ope...

2025-10-16
CVE-2025-9150
Analyzed
7.3
HP Multiple Products

A vulnerability was identified in Surbowl dormitory-management-php up to 9f1d9d1f528cabffc66fda3652c56ff327fda317

2025-08-19
CVE-2025-9142
Analyzed
7.5
Microsoft Multiple Products

A local user can trigger Harmony SASE Windows client to write or delete files outside the intended certificate working directory

2026-01-16
CVE-2025-9133
8.1
Zyxel Multiple Products

A missing authorization vulnerability in Zyxel ATP series firmware versions from V4

2025-10-21
CVE-2025-9132
8.8
Google Multiple Products

Out of bounds write in V8 in Google Chrome prior to 139

2025-08-20
CVE-2025-9121
Analyzed
8.8
Intel Multiple Products

Pentaho Data Integration and Analytics Community Dashboard Editor plugin versions before 10

2025-12-16
CVE-2025-9114
Analyzed
9.8
WordPress Multiple Products

The Doccure theme for WordPress is vulnerable to Arbitrary User Password Change in versions up to, and including, 1.4.8. This is due to the plugin pro...

2025-09-08
CVE-2025-9113
Analyzed
9.8
WordPress Multiple Products

The Doccure theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'doccure_temp_upload_to_media' func...

2025-09-08
CVE-2025-9112
Analyzed
8.8
WordPress Multiple Products

The Doccure theme for WordPress is vulnerable to arbitrary file uploads due to incorrect file type validation in the 'doccure_temp_file_uploader' func...

2025-09-08
CVE-2025-9089
Analyzed
8.8
Tenda Multiple Products

A vulnerability was determined in Tenda AC20 16

2025-08-17
CVE-2025-9088
Analyzed
8.8
Tenda Multiple Products

A vulnerability was found in Tenda AC20 16

2025-08-17
CVE-2025-9087
Analyzed
8.8
Tenda Multiple Products

A vulnerability has been found in Tenda AC20 16

2025-08-17
CVE-2025-9086
7.5
Unknown Multiple Products

1

2025-09-12
CVE-2025-9079
8
Mattermost Multiple Products

Mattermost versions 10

2025-09-19
CVE-2025-9073
Analyzed
7.5
WordPress Multiple Products

The All in one Minifier plugin for WordPress is vulnerable to SQL Injection via the 'post_id' parameter in all versions up to, and including, 3

2025-09-12
CVE-2025-9072
Analyzed
7.6
Mattermost Multiple Products

Mattermost versions 10

2025-09-15
CVE-2025-9062
7.3
Unknown Multiple Products

Authorization Bypass Through User-Controlled Key vulnerability in MeCODE Informatics and Engineering Services Ltd

2026-02-20
CVE-2025-9060
Analyzed
9.1
Adobe Multiple Products

A vulnerability has been found in the  MSoft MFlash application that allows execution of arbitrary code on the server. The issue occurs in the int...

2025-08-15
CVE-2025-9054
Analyzed
9.8
WordPress Multiple Products

The MultiLoca - WooCommerce Multi Locations Inventory Management plugin for WordPress is vulnerable to unauthorized modification of data that can lead...

2025-09-24
CVE-2025-9053
7.3
Unknown Multiple Products

A vulnerability has been found in projectworlds Travel Management System 1

2025-08-17
CVE-2025-9052
7.3
Unknown Multiple Products

A vulnerability was identified in projectworlds Travel Management System 1

2025-08-17
CVE-2025-9051
7.3
Unknown Multiple Products

A vulnerability was determined in projectworlds Travel Management System 1

2025-08-17
CVE-2025-9050
7.3
Unknown Multiple Products

A vulnerability was found in projectworlds Travel Management System 1

2025-08-17
CVE-2025-9048
Analyzed
8.1
WordPress Multiple Products

The Wptobe-memberships plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the del_img_ajax_call...

2025-08-24
CVE-2025-9047
7.3
Unknown Multiple Products

A vulnerability has been found in projectworlds Visitor Management System 1

2025-08-17
CVE-2025-9046
8.8
Tenda Multiple Products

A vulnerability was identified in Tenda AC20 16

2025-08-15
CVE-2025-9028
7.3
Unknown Multiple Products

A vulnerability was found in code-projects Online Medicine Guide 1

2025-08-17
CVE-2025-9023
8.8
Tenda Multiple Products

A vulnerability has been found in Tenda AC7 and AC18 15

2025-08-15
CVE-2025-9018
Analyzed
8.8
WordPress Multiple Products

The Time Tracker plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the 'tt_update_...

2025-09-12
CVE-2025-9012
Analyzed
9.3
Cmsjunkie Wp-Businessdirectory

SQL injection vulnerability in CMSJunkie WP-BusinessDirectory plugin allows blind SQL injection attacks through search parameters.

2025-07-20
CVE-2025-9007
8.8
Tenda Multiple Products

A vulnerability has been found in Tenda CH22 1

2025-08-15
CVE-2025-9006
8.8
Tenda Multiple Products

A vulnerability was identified in Tenda CH22 1

2025-08-15