18466 Total CVEs
9986 AI Analyzed
280 CISA KEV
3815 Critical
All Vendors
Showing 13001-13050 of 18466 CVEs Page 261 of 370
CVE-2025-5391
Analyzed
8.1
WordPress Multiple Products

The WooCommerce Purchase Orders plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the delete_f...

2025-08-12
CVE-2025-53909
Analyzed
9.1
Docker Multiple Products

mailcow: dockerized is an open source groupware/email suite based on docker. A Server-Side Template Injection (SSTI) vulnerability exists in versions...

2025-07-17
CVE-2025-53899
Analyzed
7.2
Intel Multiple Products

Kiteworks MFT orchestrates end-to-end file transfer workflows

2025-11-30
CVE-2025-53896
Analyzed
7.1
Kiteworks Multiple Products

Kiteworks MFT orchestrates end-to-end file transfer workflows

2025-11-30
CVE-2025-53890
Analyzed
9.8
Unknown Multiple Products

pyload is an open-source Download Manager written in pure Python. An unsafe JavaScript evaluation vulnerability in pyLoad’s CAPTCHA processing code al...

2025-07-15
CVE-2025-53882
Analyzed
9.1
Unknown Multiple Products

A Reliance on Untrusted Inputs in a Security Decision vulnerability in the logrotate configuration for openSUSEs mailman3 package allows potential esc...

2025-07-23
CVE-2025-53868
8.7
Unknown Multiple Products

When running in Appliance mode, a highly privileged authenticated attacker with access to SCP and SFTP may be able to bypass Appliance mode restrictio...

2025-10-15
CVE-2025-53856
7.5
Unknown Multiple Products

When a virtual server, network address translation (NAT) object, or secure network address translation (SNAT) object uses the embedded Packet Velocity...

2025-10-16
CVE-2025-53855
7.8
Unknown Multiple Products

An out-of-bounds write vulnerability exists in the XML parser functionality of GCC Productions Inc

2025-10-28
CVE-2025-53853
Analyzed
9.8
Unknown Multiple Products

A heap-based buffer overflow vulnerability exists in the ISHNE parsing functionality of The Biosig Project libbiosig 3.9.0 and Master Branch (35a819fa...

2025-08-25
CVE-2025-53844
Analyzed
8.8
Apple FortiOS

A out-of-bounds write vulnerability in Fortinet FortiOS 7

2026-05-13
CVE-2025-53843
Analyzed
7.5
Apple Multiple Products

A stack-based buffer overflow in Fortinet FortiOS 7

2025-11-19
CVE-2025-53841
Analyzed
7.8
Linux Multiple Products

Akamai Guardicore Platform Agent before 52

2025-12-03
CVE-2025-53836
Analyzed
9.9
Unknown Multiple Products

XWiki Rendering is a generic rendering system that converts textual input in a given syntax (wiki syntax, HTML, etc) into another syntax (XHTML, etc)....

2025-07-15
CVE-2025-53835
Analyzed
9
Unknown Multiple Products

XWiki Rendering is a generic rendering system that converts textual input in a given syntax (wiki syntax, HTML, etc) into another syntax (XHTML, etc)....

2025-07-14
CVE-2025-53833
Analyzed
10
Apache Multiple Products

LaRecipe is an application that allows users to create documentation with Markdown inside a Laravel app. Versions prior to 2.8.1 are vulnerable to Ser...

2025-07-14
CVE-2025-53831
Analyzed
8.2
Unknown DrawIO for ownCloud

DrawIO for ownCloud is an application for using DrawIO with the file storage, synchronization, and sharing application ownCloud Classic

2026-07-07
CVE-2025-53830
Analyzed
9.1
Unknown Anti-Virus for ownCloud

A Server-Side Request Forgery (SSRF) vulnerability in the Anti-Virus for ownCloud application allows high-privileged users to trigger unauthorized req...

2026-07-07
CVE-2025-53829
Analyzed
8
Unknown ownCloud 10

ownCloud is a file storage, synchronization, and sharing application

2026-07-07
CVE-2025-53828
Analyzed
8.5
Microsoft SharePoint for ownCloud

SharePoint for ownCloud is an application for using SharePoint with the file storage, synchronization, and sharing application ownCloud Classic

2026-07-07
CVE-2025-53827
Analyzed
9.1
Unknown ownCloud Core

ownCloud Core contains an exposed dangerous method in the Updater, allowing an authenticated administrator to achieve arbitrary code execution.

2026-07-07
CVE-2025-53825
Analyzed
9.4
Unknown Multiple Products

Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to version 0.24.3, an unauthenticated preview deployment vulnerability in Dokploy...

2025-07-14
CVE-2025-53823
8.8
Unknown Multiple Products

WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions

2025-07-15
CVE-2025-53819
7.9
Linux Multiple Products

Nix is a package manager for Linux and other Unix systems

2025-07-14
CVE-2025-53814
7.8
Unknown Multiple Products

A use-after-free vulnerability exists in the XML parser functionality of GCC Productions Inc

2025-10-28
CVE-2025-53801
7.8
Microsoft Multiple Products

Untrusted pointer dereference in Windows DWM allows an authorized attacker to elevate privileges locally

2025-09-09
CVE-2025-53800
7.8
Microsoft Multiple Products

No cwe for this issue in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally

2025-09-09
CVE-2025-53795
Analyzed
9.1
Microsoft Multiple Products

Improper authorization in Microsoft PC Manager allows an unauthorized attacker to elevate privileges over a network.

2025-08-21
CVE-2025-53792
Analyzed
9.1
Microsoft Multiple Products

Azure Portal Elevation of Privilege Vulnerability

2025-08-07
CVE-2025-53789
7.8
Microsoft Multiple Products

Missing authentication for critical function in Windows StateRepository API allows an authorized attacker to elevate privileges locally

2025-08-13
CVE-2025-53787
Analyzed
8.2
Microsoft Multiple Products

Microsoft 365 Copilot BizChat Information Disclosure Vulnerability

2025-08-07
CVE-2025-53786
Analyzed
8
Microsoft Multiple Products

On April 18th 2025, Microsoft announced Exchange Server Security Changes for Hybrid Deployments and accompanying non-security Hot Fix

2025-08-07
CVE-2025-53784
Analyzed
8.4
Microsoft Multiple Products

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally

2025-08-12
CVE-2025-53782
Analyzed
8.4
Microsoft Multiple Products

Incorrect implementation of authentication algorithm in Microsoft Exchange Server allows an unauthorized attacker to elevate privileges locally

2025-10-14
CVE-2025-53778
8.8
Microsoft Multiple Products

Improper authentication in Windows NTLM allows an authorized attacker to elevate privileges over a network

2025-08-12
CVE-2025-53773
7.8
GitHub Multiple Products

Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio allows an unauthorized attacke...

2025-08-13
CVE-2025-53772
8.8
Deserialization Multiple Products

Deserialization of untrusted data in Web Deploy allows an authorized attacker to execute code over a network

2025-08-12
CVE-2025-53770
KEV
9.8
Microsoft SharePoint Server

Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft...

2025-07-21
CVE-2025-53768
7.8
Unknown Multiple Products

Use after free in Xbox allows an authorized attacker to elevate privileges locally

2025-10-14
CVE-2025-53767
Analyzed
10
Microsoft Multiple Products

Azure OpenAI Elevation of Privilege Vulnerability

2025-08-07
CVE-2025-53766
Analyzed
9.8
Microsoft Multiple Products

Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.

2025-08-12
CVE-2025-53763
Analyzed
9.8
Microsoft Multiple Products

Improper access control in Azure Databricks allows an unauthorized attacker to elevate privileges over a network.

2025-08-21
CVE-2025-53761
7.8
Microsoft Multiple Products

Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally

2025-08-13
CVE-2025-53759
7.8
Microsoft Multiple Products

Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-08-13
CVE-2025-53741
7.8
Microsoft Multiple Products

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-08-13
CVE-2025-53740
Analyzed
8.4
Microsoft Multiple Products

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally

2025-08-12
CVE-2025-53739
7.8
Microsoft Multiple Products

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-08-13
CVE-2025-53738
7.8
Microsoft Multiple Products

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally

2025-08-13
CVE-2025-53737
7.8
Microsoft Multiple Products

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-08-12
CVE-2025-53735
7.8
Microsoft Multiple Products

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-08-12