21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 13051-13100 of 21553 CVEs Page 262 of 432
CVE-2025-7406
Analyzed
7.8
Nokia MantaRay NM

Nokia MantaRay NM is vulnerable to a sudo privilege escalation vulnerability where a local attacker possessing administrative (local admin) privileges...

2026-07-01
CVE-2025-7405
Analyzed
7.3
Mitsubishi Electric Multiple Products

Missing Authentication for Critical Function vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthenti...

2025-09-02
CVE-2025-7403
7.6
Unsafe Multiple Products

Unsafe handling in bt_conn_tx_processor causes a use-after-free, resulting in a write-before-zero

2025-09-19
CVE-2025-7402
Analyzed
7.5
WordPress Multiple Products

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to time-based SQL Injection via the ‘site_id’ para...

2025-11-25
CVE-2025-7390
Analyzed
9.1
Unknown Multiple Products

A malicious client can bypass the client certificate trust check of an opc.https server when the server endpoint is configured to allow only secure co...

2025-08-21
CVE-2025-7388
Analyzed
8.4
Unknown Multiple Products

It was possible to perform Remote Command Execution (RCE) via Java RMI interface in the OpenEdge AdminServer, allowing authenticated users to inject a...

2025-09-04
CVE-2025-7384
Analyzed
9.8
HP Multiple Products

The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and includ...

2025-08-13
CVE-2025-7382
8.8
Unknown Multiple Products

A command injection vulnerability in WebAdmin of Sophos Firewall versions older than 21

2025-07-22
CVE-2025-7370
7.5
Unknown Multiple Products

A flaw was found in libsoup

2025-07-11
CVE-2025-7366
Analyzed
7.3
WordPress Multiple Products

The The REHub - Price Comparison, Multi Vendor Marketplace Wordpress Theme theme for WordPress is vulnerable to arbitrary shortcode execution in all v...

2025-09-07
CVE-2025-7361
7.8
Unknown Multiple Products

A code injection vulnerability due to an improper initialization check exists in NI LabVIEW that may result in arbitrary code execution

2025-07-29
CVE-2025-7360
Analyzed
9.1
WordPress Multiple Products

The HT Contact Form Widget For Elementor Page Builder & Gutenberg Blocks & Form Builder. plugin for WordPress is vulnerable to arbitrary file moving d...

2025-07-15
CVE-2025-7359
Analyzed
8.2
WordPress Multiple Products

The Counter live visitors for WooCommerce plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in th...

2025-07-16
CVE-2025-7358
7.5
Utarit Informatics Multiple Products

Use of Hard-coded Credentials vulnerability in Utarit Informatics Services Inc

2025-12-20
CVE-2025-7347
Analyzed
8.8
Dinibh Puzzle Multiple Products

Authorization Bypass Through User-Controlled Key vulnerability in Dinibh Puzzle Software Solutions Dinibh Patrol Tracking System allows Exploitation o...

2026-02-11
CVE-2025-7344
Analyzed
8.8
EAI Multiple Products

The EAI developed by Digiwin has a Privilege Escalation vulnerability, allowing remote attackers with regular privileges to elevate their privileges t...

2025-07-22
CVE-2025-7343
Analyzed
9.8
Intel Multiple Products

The SFT developed by Digiwin has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, mo...

2025-07-22
CVE-2025-7342
Analyzed
7.5
Kubernetes Multiple Products

A security issue was discovered in the Kubernetes Image Builder where default credentials are enabled during the image build process

2025-08-18
CVE-2025-7341
Analyzed
9.1
WordPress Multiple Products

The HT Contact Form Widget For Elementor Page Builder & Gutenberg Blocks & Form Builder. plugin for WordPress is vulnerable to arbitrary file deletion...

2025-07-15
CVE-2025-7340
Analyzed
9.8
WordPress Multiple Products

The HT Contact Form Widget For Elementor Page Builder & Gutenberg Blocks & Form Builder. plugin for WordPress is vulnerable to arbitrary file uploads...

2025-07-15
CVE-2025-7338
7.5
Multer Multiple Products

Multer is a node

2025-07-17
CVE-2025-7327
Analyzed
8.8
Google Multiple Products

The Widget for Google Reviews plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1

2025-07-08
CVE-2025-7222
Analyzed
7.8
Intel Multiple Products

Luxion KeyShot 3DM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

2025-07-22
CVE-2025-7220
7.3
Unknown Multiple Products

A vulnerability was found in Campcodes Payroll Management System 1

2025-07-11
CVE-2025-7219
7.3
Unknown Multiple Products

A vulnerability was found in Campcodes Payroll Management System 1

2025-07-11
CVE-2025-7218
7.3
Unknown Multiple Products

A vulnerability was found in Campcodes Payroll Management System 1

2025-07-11
CVE-2025-7217
7.3
Unknown Multiple Products

A vulnerability has been found in Campcodes Payroll Management System 1

2025-07-11
CVE-2025-7216
7.3
Unknown Multiple Products

A vulnerability, which was classified as critical, was found in lty628 Aidigu up to 1

2025-07-11
CVE-2025-7211
7.3
LifeStyle Multiple Products

A vulnerability was found in code-projects LifeStyle Store 1

2025-07-11
CVE-2025-7206
Analyzed
9.8
D-Link Multiple Products

A vulnerability, which was classified as critical, has been found in D-Link DIR-825 2.10. This issue affects the function sub_410DDC of the file switc...

2025-07-10
CVE-2025-7194
8.8
D-Link Multiple Products

A vulnerability was found in D-Link DI-500WF 17

2025-07-10
CVE-2025-71412
Analyzed
7.1
ATN-B1 CPDLC

Injection of false emergency or status messages over CPDLC may lead to misallocation of resources, operational confusion, and improper response action...

2026-08-09
CVE-2025-71409
Analyzed
7.1
ATN-B1 CPDLC

Lack of authentication for Very High Frequency Data Link messages allows rogue ground stations to inject CPDLC messages leading to unexpected or misle...

2026-08-09
CVE-2025-71408
Analyzed
7.8
Unknown ntlk

NLTK (Natural Language Toolkit) before version 3

2026-07-25
CVE-2025-71403
Analyzed
7.1
Unknown better-auth

better-auth versions before 1

2026-08-02
CVE-2025-71400
Analyzed
7.1
Unknown passkey

better-auth passkey versions before 1

2026-08-03
CVE-2025-71399
Analyzed
8.6
Unknown better-auth

Better Auth relies on better-call, which uses the rou3 router library

2026-08-03
CVE-2025-71397
Analyzed
7.1
SurrealDB SurrealDB

SurrealDB before 2

2026-07-19
CVE-2025-71395
Analyzed
7.1
SurrealDB SurrealDB

SurrealDB versions before 2

2026-07-19
CVE-2025-71392
Analyzed
9.4
Unknown surrealdb

SurrealDB is vulnerable to a second-order command injection via the export command, where malicious table or field names can lead to arbitrary code ex...

2026-07-19
CVE-2025-71391
Analyzed
7.1
SurrealDB surrealdb

SurrealDB versions before 2

2026-07-19
CVE-2025-71389
Analyzed
10
Unknown cal.diy

Cal.com (cal.diy) versions before 5.9.9 are vulnerable to unauthenticated remote code execution via insecure React Server Components request handling...

2026-07-24
CVE-2025-71388
Analyzed
7.6
Unknown stoatchat

stoatchat (delta/Revolt) versions from 20241213-1 before 20250210-1 allow users with only ViewChannel (read) permission on a channel to fetch that cha...

2026-07-18
CVE-2025-71380
Analyzed
8.8
Unknown n8n

The Execute Command node in n8n allows authenticated users to execute arbitrary commands on the host system where n8n runs

2026-07-04
CVE-2025-71378
Analyzed
8.1
Picklescan Picklescan

picklescan before 0

2026-06-22
CVE-2025-71377
Analyzed
8.7
Stoatchat Stoatchat

stoatchat (delta) versions before 20250210-1 (0

2026-07-17
CVE-2025-71376
Analyzed
8.1
Unknown picklescan

picklescan before 0

2026-06-24
CVE-2025-71375
Analyzed
8.1
Picklescan Picklescan

picklescan before 0

2026-07-04
CVE-2025-71374
Analyzed
8.1
Picklescan Picklescan

picklescan before 0

2026-07-01
CVE-2025-71373
Analyzed
8.1
Picklescan Picklescan

picklescan before 0

2026-07-04