21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 13701-13750 of 21553 CVEs Page 275 of 432
CVE-2025-67041
Analyzed
9.8
Lantronix EDS3000PS

The Lantronix EDS3000PS Filesystem Browser page contains a command injection vulnerability in the TFTP client host parameter, allowing root-level arbi...

2026-03-12
CVE-2025-6704
Analyzed
9.8
Unknown Multiple Products

An arbitrary file writing vulnerability in the Secure PDF eXchange (SPX) feature of Sophos Firewall versions older than 21.0 MR2 (21.0.2) can lead to...

2025-07-22
CVE-2025-67038
KEV Analyzed
9.5
Lantronix EDS5000

The Lantronix EDS5000 contains a code injection vulnerability that is currently being actively exploited in the wild.

2026-06-24
CVE-2025-67037
8.8
Unknown Multiple Products

An issue was discovered in Lantronix EDS5000 2

2026-03-13
CVE-2025-67036
8.8
Unknown Multiple Products

An issue was discovered in Lantronix EDS5000 2

2026-03-13
CVE-2025-67034
8.8
Unknown Multiple Products

An issue was discovered in Lantronix EDS5000 2

2026-03-13
CVE-2025-67015
Analyzed
7.5
Unknown Multiple Products

Incorrect access control in Comtech EF Data CDM-625 / CDM-625A Advanced Satellite Modem with firmware v2

2025-12-27
CVE-2025-67014
Analyzed
7.5
GmbH Multiple Products

Incorrect access control in DEV Systemtechnik GmbH DEV 7113 RF over Fiber Distribution System 32-0078 H

2025-12-27
CVE-2025-66960
7.5
Unknown Multiple Products

An issue in ollama v

2026-01-23
CVE-2025-66959
7.5
Unknown Multiple Products

An issue in ollama v

2026-01-23
CVE-2025-66956
Analyzed
9.9
Insecure Access SEE Live 2.0

Asseco SEE Live 2.0 contains insecure access control in its communication components, allowing remote attackers to access and execute attachments via...

2026-03-12
CVE-2025-66953
8.8
Unknown Multiple Products

CSRF vulnerability in narda miteq Uplink Power Contril Unit UPC2 v

2025-12-19
CVE-2025-66923
7.2
Unknown Multiple Products

A Cross-site scripting (XSS) vulnerability in Create/Update Customer(s) in Open Source Point of Sale v3

2025-12-18
CVE-2025-66921
7.2
Unknown Multiple Products

A Cross-site scripting (XSS) vulnerability in Create/Update Item(s) Module in Open Source Point of Sale v3

2025-12-18
CVE-2025-66918
8.8
Unknown Multiple Products

edoc-doctor-appointment-system v1

2025-12-12
CVE-2025-66916
Analyzed
9.4
Unknown Multiple Products

The snailjob component in RuoYi-Vue-Plus versions 5.5.1 and earlier, interface /snail-job/workflow/check-node-expression can execute QLExpress express...

2026-01-09
CVE-2025-66913
Analyzed
9.8
JimuReport thru version Multiple Products

JimuReport thru version 2.1.3 is vulnerable to remote code execution when processing user-controlled H2 JDBC URLs. The application passes the attacker...

2026-01-09
CVE-2025-6691
Analyzed
8.1
WordPress Multiple Products

The SureForms – Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path v...

2025-07-10
CVE-2025-66909
7.5
Turms Multiple Products

Turms AI-Serving module v0

2025-12-20
CVE-2025-66905
7.5
Unknown Multiple Products

The Takes web framework's TkFiles take thru 2

2025-12-20
CVE-2025-66902
7.5
Unknown Multiple Products

An input validation issue in in Pithikos websocket-server v

2026-01-22
CVE-2025-66877
7.5
Unknown Multiple Products

Buffer overflow vulnerability in function dcputchar in decompile

2025-12-31
CVE-2025-66869
7.5
Unknown Multiple Products

Buffer overflow vulnerability in function strcat in asan_interceptors

2025-12-31
CVE-2025-66865
7.5
Unknown Multiple Products

An issue was discovered in function d_print_comp_inner in file cp-demangle

2025-12-31
CVE-2025-66863
7.5
Unknown Multiple Products

An issue was discovered in function d_discriminator in file cp-demangle

2025-12-31
CVE-2025-66862
7.5
Unknown Multiple Products

A buffer overflow vulnerability in function gnu_special in file cplus-dem

2025-12-31
CVE-2025-6685
8.8
ATEN Multiple Products

ATEN eco DC Missing Authorization Privilege Escalation Vulnerability

2025-09-02
CVE-2025-66802
Analyzed
9.8
HP Multiple Products

Sourcecodester Covid-19 Contact Tracing System 1.0 is vulnerable to RCE (Remote Code Execution). The application receives a reverse shell (php) into i...

2026-01-13
CVE-2025-6679
Analyzed
9.8
WordPress Multiple Products

The Bit Form builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in all versions up to, and inclu...

2025-08-15
CVE-2025-66786
7.5
OpenAirInterface Multiple Products

OpenAirInterface CN5G AMF<=v2

2026-01-08
CVE-2025-66769
7.5
Microsoft Multiple Products

A NULL pointer dereference in Nitro PDF Pro for Windows v14

2026-04-14
CVE-2025-66738
Analyzed
8.8
Unknown Multiple Products

An issue in Yealink T21P_E2 Phone 52

2025-12-28
CVE-2025-66736
7.1
Unknown Multiple Products

youlai-boot V2

2025-12-23
CVE-2025-66735
7.5
Unknown Multiple Products

youlai-boot V2

2025-12-23
CVE-2025-66720
7.5
Unknown Multiple Products

Null pointer dereference in free5gc pcf 1

2026-01-24
CVE-2025-66719
Analyzed
9.1
Unknown Multiple Products

An issue was discovered in Free5gc NRF 1.4.0. In the access-token generation logic of free5GC, the AccessTokenScopeCheck() function in file internal/s...

2026-01-24
CVE-2025-6670
8.8
Unknown Multiple Products

A Cross-Site Request Forgery (CSRF) vulnerability exists in multiple WSO2 products due to the use of the HTTP GET method for state-changing operations...

2025-11-19
CVE-2025-66698
8.6
Unknown Multiple Products

An issue in Semantic machines v5

2026-01-14
CVE-2025-66692
7.5
Unknown Multiple Products

A buffer over-read in the PublicKey::verify() method of Binance - Trust Wallet Core before commit 5668c67 allows attackers to cause a Denial of Servic...

2026-01-22
CVE-2025-66687
7.5
Doom Multiple Products

Doom Launcher 3

2026-03-18
CVE-2025-66680
7.1
Unknown Multiple Products

An issue in the WiseDelfile64

2026-03-05
CVE-2025-66675
8.2
Apache Multiple Products

Denial of Service vulnerability in Apache Struts, file leak in multipart request processing causes disk exhaustion

2025-12-11
CVE-2025-66648
7.2
Unknown Multiple Products

vega-functions provides function implementations for the Vega expression language

2026-01-06
CVE-2025-66644
KEV
7.2
Unknown Multiple Products

Array Networks ArrayOS AG before 9

2025-12-06
CVE-2025-66635
Analyzed
7.2
Unknown Multiple Products

Stack-based buffer overflow vulnerability exists in SEIKO EPSON Web Config

2025-12-16
CVE-2025-6663
Analyzed
7.8
GStreamer Multiple Products

GStreamer H266 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability

2025-07-07
CVE-2025-66628
7.5
ImageMagick Multiple Products

ImageMagick is a software suite to create, edit, compose, or convert bitmap images

2025-12-12
CVE-2025-66627
8.4
Wasmi Multiple Products

Wasmi is a WebAssembly interpreter focused on constrained and embedded systems

2025-12-10
CVE-2025-66626
8.1
Kubernetes Multiple Products

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes

2025-12-10
CVE-2025-66624
7.5
Unknown Multiple Products

BACnet Protocol Stack library provides a BACnet application layer, network layer and media access (MAC) layer communications services

2025-12-06