17282 Total CVEs
8582 AI Analyzed
264 CISA KEV
3488 Critical
All Vendors
Showing 15801-15850 of 17282 CVEs Page 317 of 346
CVE-2024-57155
Analyzed
9.8
Unknown Multiple Products

Incorrect access control in radar v1.0.8 allows attackers to bypass authentication and access sensitive APIs without a token.

2025-08-21
CVE-2024-57154
Analyzed
9.8
Unknown Multiple Products

Incorrect access control in dts-shop v0.0.1-SNAPSHOT allows attackers to bypass authentication via sending a crafted payload to /admin/auth/index.

2025-08-21
CVE-2024-57152
7.5
Unknown Multiple Products

Incorrect access control in the preHandle function of my-site v1

2025-08-21
CVE-2024-56836
7.5
Unknown Multiple Products

A vulnerability has been identified in RUGGEDCOM ROX II family (All versions < V2

2025-12-11
CVE-2024-56835
8.8
Unknown Multiple Products

A vulnerability has been identified in RUGGEDCOM ROX II family (All versions < V2

2025-12-10
CVE-2024-56808
7.8
Unknown Multiple Products

A command injection vulnerability has been reported to affect Media Streaming add-on

2026-02-13
CVE-2024-56373
8.4
Infor Multiple Products

DAG Author (who already has quite a lot of permissions) could manipulate database of Airflow 2 in the way to execute arbitrary code in the web-server...

2026-02-25
CVE-2024-56190
Analyzed
7.8
Unknown Multiple Products

In wl_update_hidden_ap_ie() of wl_cfgscan

2025-09-04
CVE-2024-56189
Analyzed
7.5
Unknown Multiple Products

In SAEMM_DiscloseMsId of SAEMM_RadioMessageCodec

2025-09-04
CVE-2024-56179
Analyzed
7.8
Microsoft Multiple Products

In MindManager Windows versions prior to 24

2025-08-23
CVE-2024-56143
Analyzed
8.2
Strapi Multiple Products

Strapi is an open-source headless content management system

2025-10-16
CVE-2024-56089
7.5
Unknown Multiple Products

An issue in Technitium through v13

2025-12-02
CVE-2024-55568
Analyzed
7.5
Samsung Multiple Products

An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 240...

2025-10-20
CVE-2024-55270
8.8
HP Multiple Products

phpgurukul Student Management System 1

2026-02-18
CVE-2024-55027
7.5
Weintek Multiple Products

Weintek cMT-3072XH2 easyweb v2

2026-03-05
CVE-2024-55024
8.8
Unknown Multiple Products

An authentication bypass vulnerability in the authorization mechanism of Weintek cMT-3072XH2 easyweb v2

2026-03-04
CVE-2024-55022
8.8
Weintek Multiple Products

Weintek cMT-3072XH2 easyweb v2

2026-03-05
CVE-2024-55021
7.5
Weintek Multiple Products

Weintek cMT-3072XH2 easyweb v2

2026-03-05
CVE-2024-55020
Analyzed
9.8
Unknown cMT-3072XH2 (easyweb)

A command injection vulnerability in the DHCP activation feature of Weintek cMT-3072XH2 allows attackers to execute arbitrary commands with root privi...

2026-03-04
CVE-2024-55019
7.5
Unknown Multiple Products

Incorrect access control in the component download_wb

2026-03-05
CVE-2024-55017
Analyzed
7.5
Account Multiple Products

Account Takeover in Corezoid 6

2025-09-30
CVE-2024-54678
8.2
Unknown Multiple Products

A vulnerability has been identified in SIMATIC PCS neo V4

2025-08-12
CVE-2024-54263
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Talemy Spirit Framework allow...

2026-02-02
CVE-2024-54085
KEV Analyzed
9.5
AMI MegaRAC SPx

AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability - Active in CISA KEV catalog.

2025-07-10
CVE-2024-53946
8.8
Unknown Multiple Products

The KuWFi 4G LTE AC900 router 1

2025-08-14
CVE-2024-53945
8.8
Unknown Multiple Products

The KuWFi 4G AC900 LTE router 1

2025-08-14
CVE-2024-5386
Analyzed
9.6
Unknown Multiple Products

In lunary-ai/lunary version 1.2.2, an account hijacking vulnerability exists due to a password reset token leak. A user with a 'viewer' role can explo...

2026-02-02
CVE-2024-53735
Analyzed
7.1
Apple Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Corourke iPhone Webclip Manager allows Stored XS...

2026-01-06
CVE-2024-53684
7.5
Unknown Multiple Products

A cross-site request forgery (csrf) vulnerability exists in the WEBVIEW-M functionality of Socomec DIRIS Digiware M-70 1

2025-12-02
CVE-2024-53621
7.5
Tenda Multiple Products

A buffer overflow in the formSetCfm() function of Tenda AC1206 1200M 11ac US_AC1206V1

2025-07-06
CVE-2024-53496
Analyzed
9.8
Unknown Multiple Products

Incorrect access control in the doFilter function of my-site v1.0.2.RELEASE allows attackers to access sensitive components without authentication.

2025-08-23
CVE-2024-53495
7.5
Unknown Multiple Products

Incorrect access control in the preHandle function of my-site v1

2025-08-21
CVE-2024-53412
8.4
NietThijmen Multiple Products

Command injection in the connect function in NietThijmen ShoppingCart 0

2026-04-16
CVE-2024-53286
Analyzed
7.2
Synology Multiple Products

Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in DDNS Record functionality in Synology Rout...

2025-07-23
CVE-2024-52786
Analyzed
9.8
Intel Multiple Products

An authentication bypass vulnerability in anji-plus AJ-Report up to v1.4.2 allows unauthenticated attackers to execute arbitrary code via a crafted UR...

2025-08-23
CVE-2024-52284
7.7
Unauthorized Multiple Products

Unauthorized disclosure of sensitive data: Any user with `GET` or `LIST` permissions on `BundleDeployment` resources could retrieve Helm values contai...

2025-09-02
CVE-2024-51770
7.5
HP Multiple Products

An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9

2025-07-15
CVE-2024-51769
Analyzed
7.5
HP Multiple Products

An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9

2025-07-14
CVE-2024-51768
Analyzed
8
HP Multiple Products

An hsqldb-related remote code execution vulnerability exists in HPE AutoPass License Server (APLS) prior to 9

2025-07-14
CVE-2024-51767
Analyzed
7.3
HP Multiple Products

An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9

2025-07-14
CVE-2024-51348
8.8
Unknown Multiple Products

A stack-based buffer overflow vulnerability in the P2P API service in BS Producten Petcam with firmware 33

2026-03-26
CVE-2024-51346
7.7
Eufy Multiple Products

An issue in Eufy Homebase 2 version 3

2026-03-26
CVE-2024-51092
Analyzed
9.1
HP Multiple Products

LibreNMS before 24.10.0 allows a remote attacker to execute arbitrary code via OS command injection involving AboutController.php's index(), SettingsC...

2026-05-09
CVE-2024-50645
Analyzed
9.8
MallChat Multiple Products

MallChat v1.0-SNAPSHOT has an authentication bypass vulnerability. An attacker can exploit this vulnerability to access API without any token.

2025-08-23
CVE-2024-50641
Analyzed
8.1
Unknown Multiple Products

An authentication bypass vulnerability in PandoraNext-TokensTool v0

2025-08-21
CVE-2024-50640
Analyzed
9.8
Unknown Multiple Products

jeewx-boot 1.3 has an authentication bypass vulnerability in the preHandle function

2025-08-21
CVE-2024-50620
8.8
CIPAce Multiple Products

Unrestricted Upload of File with Dangerous Type vulnerabilities exist in the rich text editor and document manage components in CIPPlanner CIPAce befo...

2026-02-13
CVE-2024-50619
8.8
CIPAce Multiple Products

Vulnerabilities in the My Account and User Management components in CIPPlanner CIPAce before 9

2026-02-13
CVE-2024-49730
Analyzed
7.8
Unknown Multiple Products

In FuseDaemon

2025-09-03
CVE-2024-49720
Analyzed
7.8
Unknown Multiple Products

In multiple functions of Permissions

2025-09-03