8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 1251-1300 of 8341 CVEs Page 26 of 167
CVE-2025-7749
7.3
Unknown Multiple Products

A vulnerability, which was classified as critical, has been found in code-projects Online Appointment Booking System 1

2025-07-17
CVE-2025-7747
8.8
Tenda Multiple Products

A vulnerability classified as critical has been found in Tenda FH451 1

2025-07-17
CVE-2025-7744
Analyzed
9.8
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Dolusoft Omaspot allows SQL Injection.This issue...

2025-09-16
CVE-2025-7743
9.6
Unknown Multiple Products

Cleartext Transmission of Sensitive Information vulnerability in Dolusoft Omaspot allows Interception, Privilege Escalation.This issue affects Omaspot...

2025-09-16
CVE-2025-7739
8.7
GitLab Multiple Products

An issue has been discovered in GitLab CE/EE affecting all versions from 18

2025-08-13
CVE-2025-7735
Analyzed
7.5
Hospital Multiple Products

The Hospital Information System developed by UNIMAX has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary S...

2025-07-17
CVE-2025-7734
8.7
GitLab Multiple Products

An issue has been discovered in GitLab CE/EE affecting all versions from 14

2025-08-13
CVE-2025-7731
Analyzed
7.5
Mitsubishi Electric Multiple Products

Cleartext Transmission of Sensitive Information vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthe...

2025-09-02
CVE-2025-7725
Analyzed
7.2
WordPress Multiple Products

The Photos, Files, YouTube, Twitter, Instagram, TikTok, Ecommerce Contest Gallery – Upload, Vote, Sell via PayPal or Stripe, Social Share Buttons, Ope...

2025-08-01
CVE-2025-7722
Analyzed
8.8
WordPress Multiple Products

The Social Streams plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1

2025-07-23
CVE-2025-7721
Analyzed
9.8
WordPress Multiple Products

The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, a...

2025-10-03
CVE-2025-7718
Analyzed
8.8
WordPress Multiple Products

The Resideo Plugin for Resideo - Real Estate WordPress Theme plugin for WordPress is vulnerable to privilege escalation via account takeover in all ve...

2025-09-10
CVE-2025-7714
Analyzed
7.5
Global Interactive Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Global Interactive Design Media Software Inc

2026-01-30
CVE-2025-7713
7.5
Global Interactive Multiple Products

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Global Interactive Design Media Software...

2026-01-30
CVE-2025-7712
Analyzed
9.1
WordPress Multiple Products

The Madara - Core plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the wp_manga_delete_zip()...

2025-07-17
CVE-2025-7710
9.8
WordPress Multiple Products

The Brave Conversion Engine (PRO) plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 0.7.7. This is due...

2025-08-04
CVE-2025-7707
7.1
Unknown Multiple Products

The llama_index library version 0

2025-10-13
CVE-2025-7695
Analyzed
8.8
WordPress Multiple Products

The Dataverse Integration plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization checks within its reset_password_lin...

2025-07-25
CVE-2025-7692
Analyzed
8.1
WordPress Multiple Products

The Orion Login with SMS plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 1

2025-07-23
CVE-2025-7689
Analyzed
8.8
WordPress Multiple Products

The Hydra Booking plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on the tfhb_reset_password_callback() f...

2025-07-29
CVE-2025-7679
7.4
Unknown Multiple Products

Missing Authentication for Critical Function vulnerability in ABB Aspect

2025-08-11
CVE-2025-7675
7.8
Unknown Multiple Products

A maliciously crafted 3DM file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-07-29
CVE-2025-7673
Analyzed
9.8
Zyxel Multiple Products

A buffer overflow vulnerability in the URL parser of the zhttpd web server in Zyxel VMG8825-T50K firmware versions prior to V5.50(ABOM.5)C0 could allo...

2025-07-16
CVE-2025-7670
Analyzed
7.5
WordPress Multiple Products

The JS Archive List plugin for WordPress is vulnerable to time-based SQL Injection via the build_sql_where() function in all versions up to, and inclu...

2025-08-19
CVE-2025-7667
Analyzed
8.1
WordPress Multiple Products

The Restrict File Access plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1

2025-07-15
CVE-2025-7665
Analyzed
8.1
WordPress Multiple Products

The Miniorange OTP Verification with Firebase plugin for WordPress is vulnerable to privilege escalation due to a missing capability check on the 'han...

2025-09-19
CVE-2025-7664
Analyzed
7.5
WordPress Multiple Products

The AL Pack plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the check_activate_permission() permission...

2025-08-17
CVE-2025-7657
Analyzed
8.8
Google Multiple Products

Use after free in WebRTC in Google Chrome prior to 138

2025-07-15
CVE-2025-7656
Analyzed
8.8
Google Multiple Products

Integer overflow in V8 in Google Chrome prior to 138

2025-07-15
CVE-2025-7654
Analyzed
8.8
WordPress Multiple Products

Multiple FunnelKit plugins are vulnerable to Sensitive Information Exposure via the wf_get_cookie shortcode

2025-08-19
CVE-2025-7650
7.5
WordPress Multiple Products

The BizCalendar Web plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1

2025-08-15
CVE-2025-7647
Analyzed
7.3
Unknown Multiple Products

The llama-index-core package, up to version 0

2025-09-28
CVE-2025-7645
Analyzed
8.1
WordPress Multiple Products

The Extensions For CF7 (Contact form 7 Database, Conditional Fields and Redirection) plugin for WordPress is vulnerable to arbitrary file deletion due...

2025-07-23
CVE-2025-7642
Analyzed
9.8
WordPress Multiple Products

The Simpler Checkout plugin for WordPress is vulnerable to Authentication Bypass in versions 0.7.0 to 1.1.9. This is due to the plugin not properly ve...

2025-08-24
CVE-2025-7641
7.5
WordPress Multiple Products

The Assistant for NextGEN Gallery plugin for WordPress is vulnerable to arbitrary directory deletion due to insufficient file path validation in the /...

2025-08-15
CVE-2025-7640
Analyzed
8.1
WordPress Multiple Products

The hiWeb Export Posts plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0

2025-07-25
CVE-2025-7634
Analyzed
9.8
WordPress Multiple Products

The WP Travel Engine – Tour Booking Plugin – Tour Operator Software plugin for WordPress is vulnerable to Local File Inclusion in all versions up to,...

2025-10-09
CVE-2025-7624
Analyzed
9.8
Unknown Multiple Products

An SQL injection vulnerability in the legacy (transparent) SMTP proxy of Sophos Firewall versions older than 21.0 MR2 (21.0.2) can lead to remote code...

2025-07-22
CVE-2025-7620
Analyzed
8.8
Unknown Multiple Products

The cross-browser document creation component produced by Digitware System Integration Corporation has a Remote Code Execution vulnerability

2025-07-14
CVE-2025-7619
Analyzed
8.8
Microsoft Multiple Products

BatchSignCS, a background Windows application developed by WellChoose, has an Arbitrary File Write vulnerability

2025-07-14
CVE-2025-7612
7.3
Mobile Multiple Products

A vulnerability was found in code-projects Mobile Shop 1

2025-07-14
CVE-2025-7611
7.3
Wedding Multiple Products

A vulnerability was found in code-projects Wedding Reservation 1

2025-07-14
CVE-2025-7610
7.3
Billing Multiple Products

A vulnerability was found in code-projects Electricity Billing System 1

2025-07-14
CVE-2025-7609
7.3
Shopping Multiple Products

A vulnerability has been found in code-projects Simple Shopping Cart 1

2025-07-14
CVE-2025-7608
7.3
Shopping Multiple Products

A vulnerability, which was classified as critical, was found in code-projects Simple Shopping Cart 1

2025-07-14
CVE-2025-7607
7.3
Shopping Multiple Products

A vulnerability, which was classified as critical, has been found in code-projects Simple Shopping Cart 1

2025-07-14
CVE-2025-7606
7.3
AVL Multiple Products

A vulnerability classified as critical has been found in code-projects AVL Rooms 1

2025-07-14
CVE-2025-7605
7.3
AVL Multiple Products

A vulnerability was found in code-projects AVL Rooms 1

2025-07-14
CVE-2025-7604
Analyzed
7.3
HP Multiple Products

A vulnerability was found in PHPGurukul Hospital Management System 4

2025-07-14
CVE-2025-7603
7.2
D-Link Multiple Products

A vulnerability was found in D-Link DI-8100 16

2025-07-14