17874 Total CVEs
9409 AI Analyzed
270 CISA KEV
3637 Critical
All Vendors
Showing 12751-12800 of 17874 CVEs Page 256 of 358
CVE-2025-52288
Analyzed
7.5
Assertion Multiple Products

Assertion failure in function ngap_build_downlink_nas_transport in file src/amf/ngap-build

2025-09-08
CVE-2025-52287
8.8
Script Multiple Products

OperaMasks SDK ELite Script Engine v0

2025-08-23
CVE-2025-52268
7.5
StarCharge Multiple Products

StarCharge Artemis AC Charger 7-22 kW v1

2025-10-27
CVE-2025-52263
8
Unknown Multiple Products

An issue in the Web Configuration module of Startcharge Artemis AC Charger 7-22 kW v1

2025-10-27
CVE-2025-52239
Analyzed
9.8
HP Multiple Products

An arbitrary file upload vulnerability in ZKEACMS v4.1 allows attackers to execute arbitrary code via a crafted file.

2025-08-05
CVE-2025-52218
7.5
Platform Multiple Products

SelectZero Data Observability Platform before 2025

2025-08-27
CVE-2025-52203
Analyzed
7.6
HP Multiple Products

A stored cross-site scripting (XSS) vulnerability exists in DevaslanPHP project-management v1

2025-07-31
CVE-2025-52196
7.5
Unknown Multiple Products

Server-Side Request Forgery (SSRF) vulnerability in Ctera Portal 8

2025-12-18
CVE-2025-52194
Analyzed
7.5
Unknown Multiple Products

A buffer overflow vulnerability exists in libsndfile version 1

2025-08-21
CVE-2025-52187
8.2
Unknown Multiple Products

GetProjectsIdea Create School Management System 1

2025-07-30
CVE-2025-52161
Analyzed
9.8
Intel Multiple Products

Scholl Communications AG Weblication CMS Core v019.004.000.000 was discovered to contain a cross-site scripting (XSS) vulnerability.

2025-09-08
CVE-2025-52159
8.8
Hardcoded Multiple Products

Hardcoded credentials in default configuration of PPress 0

2025-09-19
CVE-2025-52122
Analyzed
9.8
Apache Multiple Products

Freeform 5.0.0 to before 5.10.16, a plugin for CraftCMS, contains an Server-side template injection (SSTI) vulnerability, resulting in arbitrary code...

2025-08-27
CVE-2025-52101
Analyzed
9.8
Unknown Multiple Products

linjiashop <=0.9 is vulnerable to Incorrect Access Control. When using the default-generated JWT authentication, attackers can bypass the authenticati...

2025-07-06
CVE-2025-52099
7.5
SQLite Integer Multiple Products

Integer Overflow vulnerability in SQLite SQLite3 v

2025-10-24
CVE-2025-52079
8.8
D-Link Multiple Products

The administrator password setting of the D-Link DIR-820L 1

2025-10-22
CVE-2025-52053
Analyzed
9.8
TOTOLINK Multiple Products

TOTOLINK X6000R V9.4.0cu.1360_B20241207 was found to contain a command injection vulnerability in the sub_417D74 function via the file_name parameter....

2025-09-15
CVE-2025-52044
7.5
Frappe Multiple Products

In Frappe ERPNext v15

2025-09-17
CVE-2025-52042
8.2
Frappe Multiple Products

In Frappe ERPNext 15

2025-10-01
CVE-2025-52041
8.2
Frappe Multiple Products

In Frappe ERPNext 15

2025-10-01
CVE-2025-52040
8.2
Frappe Multiple Products

In Frappe ERPNext 15

2025-10-01
CVE-2025-52039
8.2
Frappe Multiple Products

In Frappe ERPNext 15

2025-10-01
CVE-2025-52021
Analyzed
9.8
HP Multiple Products

A SQL Injection vulnerability exists in the edit_product.php file of PuneethReddyHC Online Shopping System Advanced 1.0. The product_id GET parameter...

2025-10-08
CVE-2025-51991
8.8
Unknown Multiple Products

XWiki through version 17

2025-08-20
CVE-2025-51989
7
Unknown Multiple Products

HTML injection vulnerability in the registration interface in Evolution Consulting Kft

2025-08-23
CVE-2025-51986
7.5
Linux Multiple Products

An issue was discovered in the demo/LINUXTCP implementation of cwalter-at freemodbus v

2025-08-14
CVE-2025-51970
Analyzed
7.7
Unknown Multiple Products

A SQL Injection vulnerability exists in the action

2025-07-29
CVE-2025-51958
Analyzed
9.8
HP Multiple Products

aelsantex runcommand 2014-04-01, a plugin for DokuWiki, allows unauthenticated attackers to execute arbitrary system commands via lib/plugins/runcomma...

2026-01-31
CVE-2025-51865
8.8
Unknown Multiple Products

Ai2 playground web service (playground

2025-07-23
CVE-2025-51846
7.5
CryptPad Multiple Products

CryptPad 2025

2026-05-01
CVE-2025-51741
7.5
Community Multiple Products

An issue was discovered in Veal98 Echo Open-Source Community System 2

2025-11-26
CVE-2025-51735
Analyzed
7.5
Microsoft Multiple Products

CSV formula injection vulnerability in HCL Technologies Ltd

2025-11-29
CVE-2025-51726
Analyzed
8.4
Unknown Multiple Products

CyberGhostVPNSetup

2025-08-05
CVE-2025-51667
Analyzed
7
Unknown Multiple Products

An issue was discovered in simple-admin-core v1

2025-08-27
CVE-2025-51663
7.5
Unknown Multiple Products

A vulnerability found in IPRateLimit implementation of FileCodeBox up to 2

2025-11-20
CVE-2025-51661
7.5
Unknown Multiple Products

A path Traversal vulnerability found in FileCodeBox v2

2025-11-20
CVE-2025-51630
Analyzed
9.8
TOTOLINK Multiple Products

TOTOLINK N350RT V9.3.5u.6139_B20201216 was discovered to contain a buffer overflow via the ePort parameter in the function setIpPortFilterRules.

2025-07-17
CVE-2025-51629
8.8
PdfViewer Multiple Products

A cross-site scripting (XSS) vulnerability in the PdfViewer component of Agenzia Impresa Eccobook 2

2025-08-07
CVE-2025-51628
7.5
Unknown Multiple Products

Insecure Direct Object Reference (IDOR) vulnerability in PdfHandler component in Agenzia Impresa Eccobook v2

2025-08-05
CVE-2025-51624
7.6
Zone Bitaqati thru Multiple Products

Cross-site scripting (XSS) vulnerability in Zone Bitaqati thru 3

2025-08-07
CVE-2025-51606
8.8
Unknown Multiple Products

hippo4j 1

2025-08-23
CVE-2025-51605
8.1
Unknown Multiple Products

An issue was discovered in Shopizer 3

2025-08-23
CVE-2025-51567
Analyzed
9.1
HP Multiple Products

A SQL Injection was found in the /exam/user/profile.php page of kashipara Online Exam System V1.0, which allows remote attackers to execute arbitrary...

2026-01-13
CVE-2025-51543
Analyzed
9.8
Unknown Multiple Products

An issue was discovered in Cicool builder 3.4.4 allowing attackers to reset the administrator's password via the /administrator/auth/reset_password en...

2025-08-20
CVE-2025-51536
Analyzed
9.8
Intel Multiple Products

Austrian Archaeological Institute (AI) OpenAtlas v8.11.0 as discovered to contain a hardcoded Administrator password.

2025-08-05
CVE-2025-51535
Analyzed
9.1
Intel Multiple Products

Austrian Archaeological Institute (AI) OpenAtlas v8.11.0 as discovered to contain a SQL injection vulnerability.

2025-08-05
CVE-2025-51534
8.1
Austrian Multiple Products

A cross-site scripting (XSS) vulnerability in Austrian Archaeological Institute (AI) OpenAtlas v8

2025-08-05
CVE-2025-51532
7.5
Unknown Multiple Products

Incorrect access control in Sage DPW v2024

2025-08-07
CVE-2025-51511
Analyzed
9.8
Cadmium CMS Multiple Products

Cadmium CMS v.0.4.9 has a background arbitrary file upload vulnerability in /admin/content/filemanager/uploads.

2025-12-24
CVE-2025-51504
7.6
Microweber Multiple Products

Microweber CMS 2

2025-08-01