21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 12551-12600 of 21553 CVEs Page 252 of 432
CVE-2025-8995
Analyzed
9.8
Drupal Multiple Products

Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Authenticator Login allows Authentication Bypass.This issue affects A...

2025-08-15
CVE-2025-8973
7.3
Queuing Multiple Products

A vulnerability has been found in SourceCodester Cashier Queuing System 1

2025-08-15
CVE-2025-8972
7.3
Unknown Multiple Products

A vulnerability was identified in itsourcecode Online Tour and Travel Management System 1

2025-08-15
CVE-2025-8971
7.3
Unknown Multiple Products

A vulnerability was determined in itsourcecode Online Tour and Travel Management System 1

2025-08-15
CVE-2025-8970
7.3
Unknown Multiple Products

A vulnerability was found in itsourcecode Online Tour and Travel Management System 1

2025-08-15
CVE-2025-8969
7.3
Unknown Multiple Products

A vulnerability has been found in itsourcecode Online Tour and Travel Management System 1

2025-08-15
CVE-2025-8968
7.3
Unknown Multiple Products

A vulnerability was identified in itsourcecode Online Tour and Travel Management System 1

2025-08-15
CVE-2025-8967
7.3
Unknown Multiple Products

A vulnerability was determined in itsourcecode Online Tour and Travel Management System 1

2025-08-15
CVE-2025-8966
7.3
Unknown Multiple Products

A vulnerability was found in itsourcecode Online Tour and Travel Management System 1

2025-08-15
CVE-2025-8960
7.3
Unknown Multiple Products

A vulnerability has been found in Campcodes Online Flight Booking Management System 1

2025-08-15
CVE-2025-8959
7.5
Unknown Multiple Products

HashiCorp's go-getter library subdirectory download feature is vulnerable to symlink attacks leading to unauthorized read access beyond the designated...

2025-08-15
CVE-2025-8958
8.8
Tenda Multiple Products

A vulnerability was identified in Tenda TX3 16

2025-08-14
CVE-2025-8957
7.3
Unknown Multiple Products

A vulnerability was determined in Campcodes Online Flight Booking Management System 1

2025-08-15
CVE-2025-8955
7.3
HP Multiple Products

A vulnerability has been found in PHPGurukul Hospital Management System 4

2025-08-15
CVE-2025-8954
7.3
HP Multiple Products

A vulnerability was identified in PHPGurukul Hospital Management System 4

2025-08-15
CVE-2025-8953
7.3
SourceCodester Multiple Products

A vulnerability was determined in SourceCodester COVID 19 Testing Management System 1

2025-08-15
CVE-2025-8952
7.3
Unknown Multiple Products

A vulnerability was found in Campcodes Online Flight Booking Management System 1

2025-08-15
CVE-2025-8951
7.3
HP Multiple Products

A vulnerability has been found in PHPGurukul Teachers Record Management System 2

2025-08-15
CVE-2025-8950
7.3
Unknown Multiple Products

A vulnerability was identified in Campcodes Online Recruitment Management System 1

2025-08-15
CVE-2025-8948
7.3
Unknown Multiple Products

A vulnerability was determined in projectworlds Visitor Management System 1

2025-08-15
CVE-2025-8947
7.3
Unknown Multiple Products

A vulnerability was found in projectworlds Visitor Management System 1

2025-08-15
CVE-2025-8946
7.3
Sharing Multiple Products

A vulnerability has been found in projectworlds Online Notes Sharing Platform 1

2025-08-15
CVE-2025-8943
Analyzed
9.8
Unknown Multiple Products

The Custom MCPs feature is designed to execute OS commands, for instance, using tools like `npx` to spin up local MCP Servers. However, Flowise's inhe...

2025-08-14
CVE-2025-8941
7.8
Linux Multiple Products

A flaw was found in linux-pam

2025-08-14
CVE-2025-8940
8.8
Tenda Multiple Products

A vulnerability was identified in Tenda AC20 up to 16

2025-08-14
CVE-2025-8939
8.8
Tenda Multiple Products

A vulnerability was determined in Tenda AC20 up to 16

2025-08-14
CVE-2025-8936
7.3
Unknown Multiple Products

A vulnerability was determined in 1000 Projects Sales Management System 1

2025-08-15
CVE-2025-8935
7.3
Unknown Multiple Products

A vulnerability was found in 1000 Projects Sales Management System 1

2025-08-15
CVE-2025-8932
7.3
Unknown Multiple Products

A vulnerability was determined in 1000 Projects Sales Management System 1

2025-08-15
CVE-2025-8913
Analyzed
9.8
Intel Multiple Products

Organization Portal System developed by WellChoose has a Local File Inclusion vulnerability, allowing unauthenticated remote attackers to execute arbi...

2025-08-13
CVE-2025-8912
7.5
Organization Multiple Products

Organization Portal System developed by WellChoose has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attackers to exploit A...

2025-08-14
CVE-2025-8901
Analyzed
9.8
WordPress Multiple Products

WordPress Bears Backup plugin is vulnerable to remote code execution in all versions up to 2.0.0 due to improper input validation in the backup restor...

2025-07-20
CVE-2025-8900
Analyzed
9.8
WordPress Multiple Products

The Doccure Core plugin for WordPress is vulnerable to privilege escalation in versions up to, and excluding, 1.5.4. This is due to the plugin allowin...

2025-11-04
CVE-2025-8899
8.8
WordPress is vulnerable

The Paid Videochat Turnkey Site – HTML5 PPV Live Webcams plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and includi...

2026-03-07
CVE-2025-8898
9.8
WordPress Multiple Products

The Taxi Booking Manager for Woocommerce | E-cab plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to...

2025-08-17
CVE-2025-8895
Analyzed
9.8
WordPress Multiple Products

The WP Webhooks plugin for WordPress is vulnerable to arbitrary file copy due to missing validation of user-supplied input in all versions up to, and...

2025-08-21
CVE-2025-8894
7.8
Unknown Multiple Products

A maliciously crafted PDF file, when parsed through certain Autodesk products, can force a Heap-Based Overflow vulnerability

2025-09-16
CVE-2025-8893
7.8
Unknown Multiple Products

A maliciously crafted PDF file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-09-16
CVE-2025-8892
7.8
Unknown Multiple Products

A maliciously crafted PRT file, when parsed through certain Autodesk products, can force a Memory Corruption vulnerability

2025-09-22
CVE-2025-8882
Analyzed
8.8
Google Multiple Products

Use after free in Aura in Google Chrome prior to 139

2025-08-13
CVE-2025-8880
8.8
Google Multiple Products

Race in V8 in Google Chrome prior to 139

2025-08-13
CVE-2025-8879
Analyzed
8.8
Google Multiple Products

Heap buffer overflow in libaom in Google Chrome prior to 139

2025-08-13
CVE-2025-8877
Analyzed
7.5
WordPress Multiple Products

The AffiliateWP plugin for WordPress is vulnerable to SQL Injection via the ajax_get_affiliate_id_from_login function in all versions up to, and inclu...

2025-09-30
CVE-2025-8876
KEV Analyzed
9.5
N-able N-Central

N-able N-Central Command Injection Vulnerability - Active in CISA KEV catalog.

2025-08-13
CVE-2025-8875
KEV Analyzed
9.5
N-able N-Central

N-able N-Central Insecure Deserialization Vulnerability - Active in CISA KEV catalog.

2025-08-13
CVE-2025-8868
Analyzed
9.8
Linux Multiple Products

In Progress Chef Automate, versions earlier than 4.13.295, on Linux x86 platform, an authenticated attacker can gain access to Chef Automate restricte...

2025-09-29
CVE-2025-8861
Analyzed
9.8
Unknown Multiple Products

TSA developed by Changing has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to read, modify, and delete database c...

2025-08-29
CVE-2025-8858
Analyzed
7.5
Clinic Multiple Products

Clinic Image System developed by Changing has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL command...

2025-08-29
CVE-2025-8857
Analyzed
9.8
Unknown Multiple Products

Clinic Image System developed by Changing contains hard-coded Credentials, allowing unauthenticated remote attackers to log into the system using admi...

2025-08-29
CVE-2025-8855
Analyzed
8.1
Optimus Software Multiple Products

Authorization Bypass Through User-Controlled Key, Weak Password Recovery Mechanism for Forgotten Password, Authentication Bypass by Assumed-Immutable...

2025-11-15