18466 Total CVEs
9986 AI Analyzed
280 CISA KEV
3815 Critical
All Vendors
Showing 15651-15700 of 18466 CVEs Page 314 of 370
CVE-2025-14570
7.3
Unknown Multiple Products

A flaw has been found in projectworlds Advanced Library Management System 1

2025-12-14
CVE-2025-14566
7.3
Unknown Multiple Products

A security flaw has been discovered in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464

2025-12-14
CVE-2025-14565
7.3
Unknown Multiple Products

A vulnerability was identified in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464

2025-12-14
CVE-2025-14558
7.2
Arch list options

The rtsol(8) and rtsold(8) programs do not validate the domain search list options provided in router advertisement messages; the option body is passe...

2026-03-10
CVE-2025-14554
Analyzed
7.2
WordPress Multiple Products

The Sell BTC - Cryptocurrency Selling Calculator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'orderform_data' AJAX actio...

2026-02-01
CVE-2025-14550
Analyzed
7.5
Unknown Multiple Products

An issue was discovered in 6

2026-02-04
CVE-2025-14542
Analyzed
7.5
Unknown Multiple Products

The vulnerability arises when a client fetches a tools’ JSON specification, known as a Manual, from a remote Manual Endpoint

2025-12-14
CVE-2025-14537
7.3
Timetable Multiple Products

A weakness has been identified in code-projects Class and Exam Timetable Management 1

2025-12-12
CVE-2025-14536
7.3
Timetable Multiple Products

A security flaw has been discovered in code-projects Class and Exam Timetable Management 1

2025-12-12
CVE-2025-14535
Analyzed
9.8
Unknown Multiple Products

A vulnerability was identified in UTT 进取 512W up to 3.1.7.7-171114. Affected is the function strcpy of the file /goform/formConfigFastDirectionW. The...

2025-12-12
CVE-2025-14534
Analyzed
9.8
Unknown Multiple Products

A vulnerability was determined in UTT 进取 512W up to 3.1.7.7-171114. This impacts the function strcpy of the file /goform/formNatStaticMap of the compo...

2025-12-12
CVE-2025-14533
Analyzed
9.8
WordPress Multiple Products

The Advanced Custom Fields: Extended plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 0.9.2.1. This is...

2026-01-20
CVE-2025-14529
7.3
Online Multiple Products

A flaw has been found in Campcodes Retro Basketball Shoes Online Store 1

2025-12-12
CVE-2025-14527
7.3
Unknown Multiple Products

A weakness has been identified in projectworlds Advanced Library Management System 1

2025-12-12
CVE-2025-14526
8.8
Tenda Multiple Products

A security flaw has been discovered in Tenda CH22 1

2025-12-12
CVE-2025-14523
8.2
Unknown Multiple Products

A flaw in libsoup’s HTTP header handling allows multiple Host: headers in a request and returns the last occurrence for server-side processing

2025-12-12
CVE-2025-14515
7.3
Unknown Multiple Products

A vulnerability has been found in Campcodes Supplier Management System 1

2025-12-12
CVE-2025-14514
7.3
Unknown Multiple Products

A flaw has been found in Campcodes Supplier Management System 1

2025-12-12
CVE-2025-14511
7.5
GitLab has remediated

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12

2026-02-26
CVE-2025-14510
Analyzed
8.1
ABB ABB Ability Multiple Products

Incorrect Implementation of Authentication Algorithm vulnerability in ABB ABB Ability OPTIMAX

2026-01-17
CVE-2025-14509
Analyzed
7.2
HP Multiple Products

The Lucky Wheel for WooCommerce – Spin a Sale plugin for WordPress is vulnerable to PHP Code Injection in all versions up to, and including, 1

2025-12-31
CVE-2025-14503
7.2
Unknown Multiple Products

An overly-permissive IAM trust policy in the Harmonix on AWS framework may allow authenticated users to escalate privileges via role assumption

2025-12-16
CVE-2025-14502
Analyzed
9.8
HP Multiple Products

The News and Blog Designer Bundle plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.1 via the templat...

2026-01-14
CVE-2025-14500
Analyzed
9.8
Unknown Multiple Products

IceWarp14 X-File-Operation Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code...

2025-12-24
CVE-2025-14499
8.8
IceWarp Multiple Products

IceWarp gmaps Cross-Site Scripting Authentication Bypass Vulnerability

2025-12-24
CVE-2025-14498
7.8
TradingView Multiple Products

TradingView Desktop Electron Uncontrolled Search Path Local Privilege Escalation Vulnerability

2025-12-24
CVE-2025-14497
7.8
RealDefense Multiple Products

RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability

2025-12-24
CVE-2025-14496
7.8
RealDefense Multiple Products

RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability

2025-12-24
CVE-2025-14495
7.8
RealDefense Multiple Products

RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability

2025-12-24
CVE-2025-14494
7.8
RealDefense Multiple Products

RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability

2025-12-24
CVE-2025-14493
7.8
RealDefense Multiple Products

RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability

2025-12-24
CVE-2025-14492
7.8
RealDefense Multiple Products

RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability

2025-12-24
CVE-2025-14491
7.8
RealDefense Multiple Products

RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability

2025-12-24
CVE-2025-14490
7.8
RealDefense Multiple Products

RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability

2025-12-24
CVE-2025-14489
7.8
RealDefense Multiple Products

RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability

2025-12-24
CVE-2025-14488
7.8
RealDefense Multiple Products

RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability

2025-12-24
CVE-2025-14478
Analyzed
7.5
WordPress Multiple Products

The Demo Importer Plus plugin for WordPress is vulnerable to XML External Entity Injection (XXE) in all versions up to, and including, 2

2026-01-18
CVE-2025-14476
Analyzed
8.8
HP Multiple Products

The Doubly – Cross Domain Copy Paste for WordPress plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1

2025-12-14
CVE-2025-14475
Analyzed
8.1
WordPress Multiple Products

The Extensive VC Addons for WPBakery page builder plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1

2025-12-14
CVE-2025-14472
8.1
Drupal Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Drupal Acquia Content Hub allows Cross Site Request Forgery

2026-01-30
CVE-2025-14459
Analyzed
8.5
Kubernetes Multiple Products

A flaw was found in KubeVirt Containerized Data Importer (CDI)

2026-01-27
CVE-2025-14443
Analyzed
8.5
Red Hat Multiple Products

A flaw was found in ose-openshift-apiserver

2025-12-17
CVE-2025-14440
Analyzed
9.8
WordPress Multiple Products

The JAY Login & Register plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.4.01. This is due to incorrec...

2025-12-14
CVE-2025-14437
Analyzed
7.5
WordPress Multiple Products

The Hummingbird Performance plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3

2025-12-20
CVE-2025-14436
Analyzed
7.2
WordPress Multiple Products

The Brevo for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘user_connection_id’ parameter in all versions up...

2026-01-09
CVE-2025-14431
Analyzed
9.8
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in THEMELOGI Navian navian allow...

2026-01-09
CVE-2025-14430
Analyzed
9.8
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Brook - Agency Busi...

2026-01-09
CVE-2025-14429
Analyzed
9.8
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove AeroLand aeroland a...

2026-01-09
CVE-2025-14425
7.8
GIMP Multiple Products

GIMP JP2 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

2025-12-24
CVE-2025-14424
7.8
GIMP Multiple Products

GIMP XCF File Parsing Use-After-Free Remote Code Execution Vulnerability

2025-12-24