21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 14451-14500 of 21553 CVEs Page 290 of 432
CVE-2025-62054
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in favethemes Houzez Theme - Fun...

2025-10-23
CVE-2025-62053
8
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in favethemes Houzez houzez

2025-11-06
CVE-2025-6205
KEV Analyzed
9.1
Intel Multiple Products

A missing authorization vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025 could allow an attacker to gain privileged access...

2025-08-05
CVE-2025-62047
Analyzed
9.9
Unknown Multiple Products

Unrestricted Upload of File with Dangerous Type vulnerability in Case-Themes Case Addons case-addons.This issue affects Case Addons: from n/a through...

2025-11-06
CVE-2025-62045
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in CodexThemes TheGem Theme Elem...

2025-11-06
CVE-2025-62041
7.1
CodexThemes TheGem Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodexThemes TheGem (Elementor) thegem-elementor

2025-11-06
CVE-2025-62040
7.1
YOP YOP Poll Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in YOP YOP Poll yop-poll

2025-11-06
CVE-2025-6204
KEV
8
Unknown Multiple Products

An Improper Control of Generation of Code (Code Injection) vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025 could allow an...

2025-08-05
CVE-2025-62039
7.5
Ays Pro AI ChatBot Multiple Products

Insertion of Sensitive Information Into Sent Data vulnerability in Ays Pro AI ChatBot with ChatGPT and Content Generator by AYS ays-chatgpt-assistant...

2025-11-06
CVE-2025-62036
7.1
Unknown Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in uxper Togo togo

2025-11-06
CVE-2025-62035
8.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in uxper Togo togo

2025-11-06
CVE-2025-62034
8.8
Unknown Multiple Products

Incorrect Privilege Assignment vulnerability in uxper Togo togo

2025-11-08
CVE-2025-62031
7.1
Unknown Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tagDiv tagDiv Composer td-composer

2025-11-06
CVE-2025-6203
Analyzed
7.5
Unknown Multiple Products

A malicious user may submit a specially-crafted complex payload that otherwise meets the default request size limit which results in excessive memory...

2025-08-28
CVE-2025-62029
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in themesion Grevo grevo

2025-10-23
CVE-2025-62025
Analyzed
9.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in eyecix JobSearch wp-jobsearch.This issue affects JobSearch: from n/a through < 3.0.8.

2025-10-23
CVE-2025-62023
Analyzed
9.8
Unknown Multiple Products

Improper Control of Generation of Code ('Code Injection') vulnerability in Cristián Lávaque s2Member s2member.This issue affects s2Member: from n/a th...

2025-10-23
CVE-2025-62022
7.5
BuddyPress BuddyPress Multiple Products

Missing Authorization vulnerability in BuddyPress BuddyPress buddypress

2025-10-23
CVE-2025-62014
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ApusTheme ITok itok

2025-11-08
CVE-2025-62010
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ApusTheme Famita famita allow...

2025-11-08
CVE-2025-62001
8.8
BullWall Multiple Products

BullWall Ransomware Containment contains excluded file paths, such as '$recycle

2025-12-19
CVE-2025-62000
7.1
BullWall Multiple Products

BullWall Ransomware Containment does not entirely inspect a file to determine if it is ransomware

2025-12-20
CVE-2025-61990
7.5
Unknown Multiple Products

When using a multi-bladed platform with more than one blade, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate

2025-10-16
CVE-2025-61982
7.8
OpenCFD Multiple Products

An arbitrary code execution vulnerability exists in the Code Stream directive functionality of OpenCFD OpenFOAM 2506

2026-02-19
CVE-2025-61977
7
Unknown Multiple Products

A weak password recovery mechanism for forgotten password vulnerability was discovered in Productivity Suite software version v4

2025-10-24
CVE-2025-61976
7.5
CHOCO Multiple Products

CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or exceptional conditions

2025-12-16
CVE-2025-61974
7.5
Unknown Multiple Products

When a client SSL profile is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization

2025-10-16
CVE-2025-61973
Analyzed
8.8
Microsoft Multiple Products

A local privilege escalation vulnerability exists during the installation of Epic Games Store via the Microsoft Store

2026-01-16
CVE-2025-61960
7.5
APM Multiple Products

When a per-request policy is configured on a BIG-IP APM portal access virtual server, undisclosed traffic can cause the Traffic Management Microkernel...

2025-10-16
CVE-2025-61958
8.7
Unknown Multiple Products

A vulnerability exists in the iHealth command that may allow an authenticated attacker with at least a resource administrator role to bypass tmsh rest...

2025-10-15
CVE-2025-61956
Analyzed
10
Unknown Multiple Products

Radiometrics VizAir is vulnerable to a lack of authentication mechanisms for critical functions, such as admin access and API requests. Attackers can...

2025-11-04
CVE-2025-61955
8.8
F5 Multiple Products

A vulnerability exists in F5OS-A and F5OS-C systems that may allow an authenticated attacker with local access to escalate their privileges

2025-10-15
CVE-2025-61951
7.5
Undisclosed Multiple Products

Undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate

2025-10-16
CVE-2025-61945
Analyzed
10
Unknown Multiple Products

Radiometrics VizAir is vulnerable to any remote attacker via access to the admin panel of the VizAir system without authentication. Once inside, the a...

2025-11-04
CVE-2025-61943
8.4
Unknown Multiple Products

The vulnerability, if exploited, could allow an authenticated miscreant (Process Optimization Standard User) to tamper with queries in Captive Histo...

2026-01-16
CVE-2025-61941
7.2
Unknown Multiple Products

A path traversal issue exists in WXR9300BE6P series firmware versions prior to Ver

2025-10-16
CVE-2025-61940
8.3
Unknown Multiple Products

NMIS/BioDose V22

2025-12-03
CVE-2025-61939
8.8
Unknown Multiple Products

An unused function in MicroServer can start a reverse SSH connection to a vendor registered domain, without mutual authentication

2026-01-08
CVE-2025-61938
7.5
Unknown Multiple Products

When a BIG-IP Advanced WAF or ASM security policy is configured with a URL greater than 1024 characters in length for the Data Guard Protection Enforc...

2025-10-16
CVE-2025-61937
Analyzed
10
Unknown Multiple Products

The vulnerability, if exploited, could allow an unauthenticated miscreant to achieve remote code execution under OS system privileges of “taoimr” se...

2026-01-16
CVE-2025-61935
7.5
Unknown Multiple Products

When a BIG IP Advanced WAF or ASM security policy is configured on a virtual server, undisclosed requests can cause the bd process to terminate

2025-10-16
CVE-2025-61934
Analyzed
10
HP Multiple Products

A binding to an unrestricted IP address vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an una...

2025-10-23
CVE-2025-61932
KEV Analyzed
9.8
Lanscope Endpoint Manager Multiple Products

Lanscope Endpoint Manager (On-Premises) (Client program (MR) and Detection agent (DA)) improperly verifies the origin of incoming requests, allowing a...

2025-10-20
CVE-2025-61930
8.1
Emlog Multiple Products

Emlog is an open source website building system

2025-10-10
CVE-2025-61929
Analyzed
9.6
Unknown Multiple Products

Cherry Studio is a desktop client that supports for multiple LLM providers. Cherry Studio registers a custom protocol called `cherrystudio://`. When h...

2025-10-10
CVE-2025-61922
Analyzed
9.1
Unknown Multiple Products

PrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal. In versions prior to 4.4.1 and 5.0.5, missing validation on...

2025-10-16
CVE-2025-61920
7.5
Connect Multiple Products

Authlib is a Python library which builds OAuth and OpenID Connect servers

2025-10-10
CVE-2025-6192
Analyzed
8.8
Google Chrome

Use after free in Metrics in Google Chrome prior to 137

2026-06-19
CVE-2025-61919
Analyzed
7.5
Unknown Multiple Products

Rack is a modular Ruby web server interface

2025-10-10
CVE-2025-61917
Analyzed
7.7
Infor n8n Workflow Automation Platform

n8n is an open source workflow automation platform

2026-02-05