8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 1451-1500 of 8341 CVEs Page 30 of 167
CVE-2025-69821
7.4
Unknown Multiple Products

An issue in Beat XP VEGA Smartwatch (Firmware Version - RB303ATV006229) allows an attacker to cause a denial of service via the BLE connection

2026-01-24
CVE-2025-6980
7.5
Captive Multiple Products

Captive Portal can expose sensitive information

2025-10-23
CVE-2025-6979
8.8
Captive Multiple Products

Captive Portal can allow authentication bypass

2025-10-23
CVE-2025-6978
7.2
Diagnostics Multiple Products

Diagnostics command injection vulnerability

2025-10-24
CVE-2025-69764
Analyzed
9.8
Tenda Multiple Products

Tenda AX3 firmware v16.03.12.11 contains a stack-based buffer overflow in the formGetIptv function due to improper handling of the stbpvid stack buffe...

2026-01-23
CVE-2025-6974
7.8
SOLIDWORKS Multiple Products

Use of Uninitialized Variable vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025

2025-07-15
CVE-2025-6973
7.8
SOLIDWORKS Multiple Products

Use After Free vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025

2025-07-15
CVE-2025-6972
7.8
SOLIDWORKS Multiple Products

Use After Free vulnerability exists in the CATPRODUCT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025

2025-07-15
CVE-2025-6971
7.8
SOLIDWORKS Multiple Products

Use After Free vulnerability exists in the CATPRODUCT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025

2025-07-15
CVE-2025-6970
Analyzed
7.5
WordPress Multiple Products

The Events Manager – Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderby’ parameter...

2025-07-11
CVE-2025-69662
Analyzed
8.6
Unknown Multiple Products

SQL injection vulnerability in geopandas before v

2026-01-31
CVE-2025-69581
7.5
Chamillo Multiple Products

An issue was discovered in Chamillo LMS 1

2026-01-18
CVE-2025-6953
8.8
TOTOLINK Multiple Products

A vulnerability, which was classified as critical, was found in TOTOLINK A3002RU 3

2025-07-06
CVE-2025-69516
8.8
Unknown Multiple Products

A Server-Side Template Injection (SSTI) vulnerability in the /reporting/templates/preview/ endpoint of Amidaware Tactical RMM, affecting versions equa...

2026-01-30
CVE-2025-6948
Analyzed
8.7
GitLab Multiple Products

An issue has been discovered in GitLab CE/EE affecting all versions from 17

2025-07-11
CVE-2025-69420
7.5
Unknown Multiple Products

Issue summary: A type confusion vulnerability exists in the TimeStamp Response verification code where an ASN1_TYPE union member is accessed without f...

2026-01-29
CVE-2025-69415
Analyzed
7.1
Media Multiple Products

In Plex Media Server (PMS) through 1

2026-01-03
CVE-2025-69414
Analyzed
8.5
Media Multiple Products

Plex Media Server (PMS) through 1

2026-01-03
CVE-2025-6940
8.8
TOTOLINK Multiple Products

A vulnerability classified as critical was found in TOTOLINK A702R 4

2025-07-06
CVE-2025-6939
8.8
TOTOLINK Multiple Products

A vulnerability classified as critical has been found in TOTOLINK A3002RU 3

2025-07-06
CVE-2025-69342
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in VanKarWai Calafate calafate a...

2026-01-07
CVE-2025-6934
Analyzed
9.8
WordPress Multiple Products

The Opal Estate Pro – Property Management and Submission plugin for WordPress, used by the FullHouse - Real Estate Responsive WordPress Theme, is vuln...

2025-07-06
CVE-2025-69288
Analyzed
9.1
Unknown Multiple Products

Titra is open source project time tracking software. Prior to version 0.99.49, Titra allows any authenticated Admin user to modify the timeEntryRule i...

2026-01-01
CVE-2025-69264
8.8
Unknown Multiple Products

pnpm is a package manager

2026-01-08
CVE-2025-69263
7.5
Unknown Multiple Products

pnpm is a package manager

2026-01-08
CVE-2025-69262
7.5
Unknown Multiple Products

pnpm is a package manager

2026-01-08
CVE-2025-69260
7.5
Trend Micro Multiple Products

A message out-of-bounds read vulnerability in Trend Micro Apex Central could allow a remote attacker to create a denial-of-service condition on affect...

2026-01-09
CVE-2025-6926
8.8
Unknown Multiple Products

Improper Authentication vulnerability in Wikimedia Foundation Mediawiki - CentralAuth Extension allows : Bypass Authentication

2025-07-06
CVE-2025-69259
7.5
Trend Micro Multiple Products

A message unchecked NULL return value vulnerability in Trend Micro Apex Central could allow a remote attacker to create a denial-of-service condition...

2026-01-09
CVE-2025-69258
9.8
Unknown Multiple Products

A LoadLibraryEX vulnerability in Trend Micro Apex Central could allow an unauthenticated remote attacker to load an attacker-controlled DLL into a key...

2026-01-09
CVE-2025-69256
7.5
Unknown Multiple Products

The Serverless Framework is a framework for using AWS Lambda and other managed cloud services to build applications

2025-12-31
CVE-2025-69223
Analyzed
7.5
HTTP Multiple Products

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python

2026-01-06
CVE-2025-69222
Analyzed
9.1
Docker Multiple Products

LibreChat is a ChatGPT clone with additional features. Version 0.8.1-rc2 is prone to a server-side request forgery (SSRF) vulnerability due to missing...

2026-01-08
CVE-2025-69220
7.1
LibreChat Multiple Products

LibreChat is a ChatGPT clone with additional features

2026-01-08
CVE-2025-69217
7.7
STUN Multiple Products

coturn is a free open source implementation of TURN and STUN Server

2025-12-30
CVE-2025-69200
Analyzed
7.5
HP Multiple Products

phpMyFAQ is an open source FAQ web application

2025-12-30
CVE-2025-69195
7.6
Unknown Multiple Products

A flaw was found in GNU Wget2

2026-01-09
CVE-2025-69194
8.8
Unknown Multiple Products

A security issue was discovered in GNU Wget2 when handling Metalink documents

2026-01-09
CVE-2025-6919
Analyzed
9.8
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cats Information Technology Software Development...

2025-10-13
CVE-2025-69180
8.8
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in themepassion Ultra Portfolio ultra-portfolio all...

2026-01-24
CVE-2025-6918
Analyzed
9.8
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ncvav Virtual PBX Software allows SQL Injection....

2025-07-28
CVE-2025-6916
8.8
TOTOLINK Multiple Products

A vulnerability, which was classified as critical, was found in TOTOLINK T6 4

2025-07-06
CVE-2025-69087
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in jwsthemes FreeAgent allows PH...

2026-01-06
CVE-2025-69086
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Jwsthemes Issabella allows PH...

2026-01-07
CVE-2025-69085
7.1
Unknown Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in e-plugins JobBank allows Reflected XSS

2026-01-07
CVE-2025-69084
7.1
Unknown Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GT3 themes Photo Gallery allows Reflected XSS

2026-01-07
CVE-2025-69083
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Elated-Themes Frappé allows P...

2026-01-07
CVE-2025-69082
7.1
Frenify Arlo arlo Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Frenify Arlo arlo allows Reflected XSS

2026-01-08
CVE-2025-69081
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Group Hope charity-i...

2026-01-08
CVE-2025-69080
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in JanStudio Gecko allows PHP Lo...

2026-01-08