18466 Total CVEs
9986 AI Analyzed
280 CISA KEV
3815 Critical
All Vendors
Showing 14551-14600 of 18466 CVEs Page 292 of 370
CVE-2025-36156
7.4
IBM Multiple Products

IBM InfoSphere Data Replication VSAM for z/OS Remote Source 11

2025-10-07
CVE-2025-36137
7.2
IBM Multiple Products

IBM Sterling Connect Direct for Unix 6

2025-10-30
CVE-2025-36128
7.5
IBM Multiple Products

IBM MQ 9

2025-10-16
CVE-2025-36120
Analyzed
8.8
IBM Multiple Products

IBM Storage Virtualize 8

2025-08-19
CVE-2025-36119
7.1
IBM Multiple Products

IBM i 7

2025-08-08
CVE-2025-36118
7.5
IBM Multiple Products

IBM Storage Virtualize 8

2025-11-18
CVE-2025-36097
7.5
IBM Multiple Products

IBM WebSphere Application Server 9

2025-07-16
CVE-2025-36096
Analyzed
9
IBM Multiple Products

IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 stores NIM private keys used in NIM environments in an insecure way which is susceptible to unauthorize...

2025-11-14
CVE-2025-36087
8.1
IBM Multiple Products

IBM Security Verify Access 10

2025-10-13
CVE-2025-36072
8.8
IBM Multiple Products

IBM webMethods Integration 10

2025-11-20
CVE-2025-36007
7.8
IBM Multiple Products

IBM QRadar SIEM 7

2025-10-27
CVE-2025-36003
Analyzed
7.5
IBM Multiple Products

IBM Security Verify Governance Identity Manager 10

2025-08-28
CVE-2025-35998
Analyzed
7.9
Intel Quick Assist Technology (QAT)

Missing protection mechanism for alternate hardware interface in the Intel(R) Quick Assist Technology for some Intel(R) Platforms within Ring 0: Kerne...

2026-02-11
CVE-2025-35984
Analyzed
8.8
Intel Multiple Products

A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL Image Decoding Library v0

2025-08-25
CVE-2025-35971
8.2
Microsoft Multiple Products

Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23

2025-11-13
CVE-2025-35970
7.5
Unknown Multiple Products

On multiple products of SEIKO EPSON and FUJIFILM Corporation, the initial administrator password is easy to guess from the information available via S...

2025-08-07
CVE-2025-35966
7.5
Unknown Multiple Products

A null pointer dereference vulnerability exists in the CDB2SQLQUERY protocol buffer message handling of Bloomberg Comdb2 8

2025-07-23
CVE-2025-35452
Analyzed
9.8
Zoom Multiple Products

PTZOptics and possibly other ValueHD-based pan-tilt-zoom cameras use default, shared credentials for the administrative web interface.

2025-09-05
CVE-2025-35451
Analyzed
9.8
Zoom Multiple Products

PTZOptics and possibly other ValueHD-based pan-tilt-zoom cameras use hard-coded, default administrative credentials. The passwords can readily be crac...

2025-09-05
CVE-2025-35115
8.1
Agiloft Multiple Products

Agiloft Release 28 downloads critical system packages over an insecure HTTP connection

2025-08-26
CVE-2025-35114
Analyzed
7.5
Agiloft Multiple Products

Agiloft Release 28 contains several accounts with default credentials that could allow local privilege escalation

2025-08-26
CVE-2025-35055
Analyzed
8.8
Microsoft Multiple Products

Newforma Info Exchange (NIX) '/UserWeb/Common/UploadBlueimp

2025-10-09
CVE-2025-35051
Analyzed
9.8
Intel Multiple Products

Newforma Project Center Server (NPCS) accepts serialized .NET data via the '/ProjectCenter.rem' endpoint on 9003/tcp, allowing a remote, unauthenticat...

2025-10-09
CVE-2025-35050
Analyzed
9.8
Microsoft Multiple Products

Newforma Info Exchange (NIX) accepts serialized .NET data via the '/remoteweb/remote.rem' endpoint, allowing a remote, unauthenticated attacker to exe...

2025-10-09
CVE-2025-35042
Analyzed
9.8
Unknown Multiple Products

Airship AI Acropolis includes a default administrative account that uses the same credentials on every installation. Instances of Airship AI that do n...

2025-09-22
CVE-2025-35041
7.5
Unknown Multiple Products

Airship AI Acropolis allows unlimited MFA attempts for 15 minutes after a user has logged in with valid credentials

2025-09-22
CVE-2025-35030
Analyzed
8.1
Informatics Multiple Products

Medical Informatics Engineering Enterprise Health has a cross site request forgery vulnerability that allows an unauthenticated attacker to trick admi...

2025-09-29
CVE-2025-35028
Analyzed
9.1
Unknown Multiple Products

By providing a command-line argument starting with a semi-colon ; to an API endpoint created by the EnhancedCommandExecutor class of the HexStrike AI...

2025-12-01
CVE-2025-35027
7.3
Unknown Multiple Products

Multiple robotic products by Unitree sharing a common firmware, including the Go2, G1, H1, and B2 devices, contain a command injection vulnerability

2025-09-26
CVE-2025-3500
Analyzed
9
Microsoft Multiple Products

Integer Overflow or Wraparound vulnerability in Avast Antivirus (25.1.981.6) on Windows allows Privilege Escalation.This issue affects Antivirus: from...

2025-12-02
CVE-2025-3499
Analyzed
10
Unknown Multiple Products

The device has two web servers that expose unauthenticated REST APIs on the management network (TCP ports 8084 and 8086). Exploiting OS command inject...

2025-07-10
CVE-2025-3498
Analyzed
9.9
SAP Multiple Products

An unauthenticated user with management network access can get and modify the Radiflow iSAP Smart Collector (CentOS 7 - VSAP 1.20) configuration. Th...

2025-07-10
CVE-2025-3497
Analyzed
8.7
SAP Multiple Products

The Linux distribution underlying the Radiflow iSAP Smart Collector (CentOS 7 - VSAP 1

2025-07-10
CVE-2025-3465
Analyzed
7.1
Intel Multiple Products

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ABB CoreSenseā„¢ HM, ABB CoreSenseā„¢ M10

2025-10-20
CVE-2025-3450
Analyzed
10
Unknown Multiple Products

Improper Resource Locking vulnerability in B&R Industrial Automation Automation Runtime.This issue affects Automation Runtime: from 6.0 before 6.3, be...

2025-10-07
CVE-2025-34438
8.1
Unknown Multiple Products

AVideo versions prior to 20

2025-12-19
CVE-2025-34437
8.8
Unknown Multiple Products

AVideo versions prior to 20

2025-12-19
CVE-2025-34436
8.8
Unknown Multiple Products

AVideo versions prior to 20

2025-12-19
CVE-2025-34291
KEV Analyzed
9.5
Langflow Langflow

Langflow Origin Validation Error Vulnerability - Active in CISA KEV catalog.

2026-05-22
CVE-2025-34026
KEV
9.5
Versa Concerto

Versa Concerto Improper Authentication Vulnerability - Active in CISA KEV catalog.

2026-01-23
CVE-2025-3356
8.6
IBM Multiple Products

IBM Tivoli Monitoring 6

2025-10-30
CVE-2025-3355
7.5
IBM Multiple Products

IBM Tivoli Monitoring 6

2025-10-30
CVE-2025-3354
8.1
IBM Multiple Products

IBM Tivoli Monitoring 6

2025-08-07
CVE-2025-33255
Analyzed
7.5
NVIDIA TRT

NVIDIA TRT-LLM for any platform contains a vulnerability in MPI server, where an attacker could cause an unsafe deserialization

2026-05-20
CVE-2025-33253
7.8
NVIDIA NeMo Framework

NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution by convincing a user to load a maliciously crafted...

2026-02-19
CVE-2025-33252
7.8
NVIDIA NeMo Framework

NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution

2026-02-19
CVE-2025-33251
7.8
NVIDIA NeMo Framework

NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution

2026-02-19
CVE-2025-33250
7.8
NVIDIA NeMo Framework

NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution

2026-02-19
CVE-2025-33249
7.8
NVIDIA NeMo Framework

NVIDIA NeMo Framework for all platforms contains a vulnerability in a voice-preprocessing script, where malicious input created by an attacker could c...

2026-02-19
CVE-2025-33248
7.8
NVIDIA Megatron

NVIDIA Megatron-LM contains a vulnerability in the hybrid conversion script where an Attacker may cause an RCE by convincing a user to load a maliciou...

2026-03-25