8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 1551-1600 of 8341 CVEs Page 32 of 167
CVE-2025-68860
Analyzed
9.8
Unknown Multiple Products

Authentication Bypass Using an Alternate Path or Channel vulnerability in Mobile Builder Mobile builder allows Authentication Abuse.This issue affects...

2025-12-30
CVE-2025-6886
8.8
Tenda Multiple Products

A vulnerability has been found in Tenda AC5 15

2025-07-06
CVE-2025-68850
7.5
Codepeople Sell Multiple Products

Missing Authorization vulnerability in Codepeople Sell Downloads allows Exploiting Incorrectly Configured Access Control Security Levels

2026-01-06
CVE-2025-6885
7.3
HP Multiple Products

A vulnerability, which was classified as critical, was found in PHPGurukul Teachers Record Management System 2

2025-07-06
CVE-2025-6882
8.8
D-Link Multiple Products

A vulnerability classified as critical has been found in D-Link DIR-513 1

2025-07-06
CVE-2025-6881
8.8
D-Link Multiple Products

A vulnerability was found in D-Link DI-8100 16

2025-07-06
CVE-2025-68719
8.8
Unknown Multiple Products

KAYSUS KS-WR3600 routers with firmware 1

2026-01-09
CVE-2025-68717
9.4
KAYSUS Multiple Products

KAYSUS KS-WR3600 routers with firmware 1.0.5.9.1 allow authentication bypass during session validation. If any user is logged in, endpoints such as /c...

2026-01-09
CVE-2025-68716
8.4
Unknown Multiple Products

KAYSUS KS-WR3600 routers with firmware 1

2026-01-09
CVE-2025-6871
7.3
Unknown Multiple Products

A vulnerability classified as critical has been found in SourceCodester Simple Company Website 1

2025-07-06
CVE-2025-68697
Analyzed
7.1
Unknown Multiple Products

n8n is an open source workflow automation platform

2025-12-27
CVE-2025-68675
Analyzed
7.5
Apache Multiple Products

In Apache Airflow versions before 3

2026-01-18
CVE-2025-68670
Analyzed
9.1
Unknown Multiple Products

xrdp is an open source RDP server. xrdp before v0.10.5 contains an unauthenticated stack-based buffer overflow vulnerability. The issue stems from imp...

2026-01-28
CVE-2025-68669
9.6
Intel Multiple Products

5ire is a cross-platform desktop artificial intelligence assistant and model context protocol client. In versions 0.15.2 and prior, an RCE vulnerabili...

2025-12-24
CVE-2025-68668
Analyzed
9.9
HP Multiple Products

n8n is an open source workflow automation platform. From version 1.0.0 to before 2.0.0, a sandbox bypass vulnerability exists in the Python Code Node...

2025-12-27
CVE-2025-68665
8.6
LangChain Multiple Products

LangChain is a framework for building LLM-powered applications

2025-12-24
CVE-2025-68664
Analyzed
9.3
Unknown Multiple Products

LangChain is a framework for building agents and LLM-powered applications. Prior to versions 0.3.81 and 1.2.5, a serialization injection vulnerability...

2025-12-24
CVE-2025-68662
7.6
Discourse Multiple Products

Discourse is an open source discussion platform

2026-01-29
CVE-2025-68645
KEV Analyzed
8.8
Unknown Multiple Products

A Local File Inclusion (LFI) vulnerability exists in the Webmail Classic UI of Zimbra Collaboration (ZCS) 10

2025-12-23
CVE-2025-68644
Analyzed
7.4
RPS Multiple Products

Yealink RPS before 2025-06-27 allows unauthorized access to information, including AutoP URL addresses

2025-12-21
CVE-2025-68637
Analyzed
9.1
Unknown Multiple Products

The Uniffle HTTP client is configured to trust all SSL certificates and disables hostname verification by default. This insecure configuration expose...

2026-01-08
CVE-2025-6863
7.3
HP Multiple Products

A vulnerability classified as critical was found in PHPGurukul Local Services Search Engine Management System 2

2025-07-06
CVE-2025-68620
Analyzed
9.1
Unknown Multiple Products

Signal K Server is a server application that runs on a central hub in a boat. Versions prior to 2.19.0 expose two features that can be chained togethe...

2026-01-02
CVE-2025-68616
Analyzed
7.5
Intel Multiple Products

WeasyPrint helps web developers to create PDF documents

2026-01-20
CVE-2025-68615
Analyzed
9.8
Unknown Multiple Products

net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd d...

2025-12-23
CVE-2025-68613
Analyzed
9.9
Unknown Multiple Products

n8n is an open source workflow automation platform. Versions starting with 0.211.0 and prior to 1.120.4, 1.121.1, and 1.122.0 contain a critical Remot...

2025-12-20
CVE-2025-68608
8.8
DeluxeThemes Userpro Multiple Products

Missing Authorization vulnerability in DeluxeThemes Userpro userpro allows Exploiting Incorrectly Configured Access Control Security Levels

2025-12-25
CVE-2025-68606
7.5
WPXPO PostX Exposure Multiple Products

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in WPXPO PostX ultimate-post allows Retrieve Embedded Sensiti...

2025-12-26
CVE-2025-68603
8.1
Marketing Fire Multiple Products

Missing Authorization vulnerability in Marketing Fire Editorial Calendar editorial-calendar allows Exploiting Incorrectly Configured Access Control Se...

2025-12-25
CVE-2025-68601
8.8
Rustaurius Five Star Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Rustaurius Five Star Restaurant Reservations restaurant-reservations allows Cross Site Request Forg...

2025-12-25
CVE-2025-68600
9.1
Unknown Multiple Products

Server-Side Request Forgery (SSRF) vulnerability in Yannick Lefebvre Link Library link-library allows Server Side Request Forgery.This issue affects L...

2025-12-25
CVE-2025-68596
8.8
Bit Apps Bit Assist Multiple Products

Missing Authorization vulnerability in Bit Apps Bit Assist bit-assist allows Exploiting Incorrectly Configured Access Control Security Levels

2025-12-25
CVE-2025-68595
8.8
Trustindex Widgets Multiple Products

Missing Authorization vulnerability in Trustindex Widgets for Social Photo Feed social-photo-feed-widget allows Exploiting Incorrectly Configured Acce...

2025-12-25
CVE-2025-68594
8.1
Unknown Multiple Products

Missing Authorization vulnerability in Assaf Parag Poll, Survey & Quiz Maker Plugin by Opinion Stage social-polls-by-opinionstage allows Exploiting In...

2025-12-25
CVE-2025-68593
8.8
Liton Arefin WP Multiple Products

Missing Authorization vulnerability in Liton Arefin WP Adminify adminify allows Exploiting Incorrectly Configured Access Control Security Levels

2025-12-25
CVE-2025-68592
8.8
Liton Arefin WP Multiple Products

Missing Authorization vulnerability in Liton Arefin WP Adminify adminify allows Exploiting Incorrectly Configured Access Control Security Levels

2025-12-25
CVE-2025-68591
8.1
Mitchell Bennis Multiple Products

Missing Authorization vulnerability in Mitchell Bennis Simple File List simple-file-list allows Exploiting Incorrectly Configured Access Control Secur...

2025-12-25
CVE-2025-68590
Analyzed
9.8
WordPress Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CRM Perks Integration for Contact Form 7 HubSpot...

2025-12-25
CVE-2025-68589
8.1
WP Socio WP Telegram Multiple Products

Missing Authorization vulnerability in WP Socio WP Telegram Widget and Join Link wptelegram-widget allows Exploiting Incorrectly Configured Access Con...

2025-12-25
CVE-2025-68588
8.1
Unknown Multiple Products

Missing Authorization vulnerability in totalsoft TS Poll poll-wp allows Exploiting Incorrectly Configured Access Control Security Levels

2025-12-25
CVE-2025-68587
8.1
Bob Watu Quiz watu Multiple Products

Missing Authorization vulnerability in Bob Watu Quiz watu allows Exploiting Incorrectly Configured Access Control Security Levels

2025-12-25
CVE-2025-68586
8.8
Gora Tech Cooked Multiple Products

Missing Authorization vulnerability in Gora Tech Cooked cooked allows Exploiting Incorrectly Configured Access Control Security Levels

2025-12-25
CVE-2025-68585
8.8
Ben Balter WP Multiple Products

Missing Authorization vulnerability in Ben Balter WP Document Revisions wp-document-revisions allows Exploiting Incorrectly Configured Access Control...

2025-12-25
CVE-2025-68584
8.8
Constantin Boiangiu Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Constantin Boiangiu Vimeotheque codeflavors-vimeo-video-post-lite allows Cross Site Request Forgery

2025-12-25
CVE-2025-68583
8.8
Unknown Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Tikweb Management Fast User Switching fast-user-switching allows Cross Site Request Forgery

2025-12-25
CVE-2025-68582
8.8
Funnelforms Multiple Products

Missing Authorization vulnerability in Funnelforms Funnelforms Free funnelforms-free allows Exploiting Incorrectly Configured Access Control Security...

2025-12-25
CVE-2025-68581
8.1
YITHEMES YITH Slider Multiple Products

Missing Authorization vulnerability in YITHEMES YITH Slider for page builders yith-slider-for-page-builders allows Exploiting Incorrectly Configured A...

2025-12-25
CVE-2025-68580
8.8
Unknown Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in pluginsware Advanced Classifieds & Directory Pro advanced-classifieds-and-directory-pro allows Cros...

2025-12-25
CVE-2025-68579
8.1
FolioVision FV Multiple Products

Missing Authorization vulnerability in FolioVision FV Simpler SEO fv-all-in-one-seo-pack allows Exploiting Incorrectly Configured Access Control Secur...

2025-12-25
CVE-2025-68578
8.1
Addonify Addonify Multiple Products

Missing Authorization vulnerability in Addonify Addonify addonify-quick-view allows Exploiting Incorrectly Configured Access Control Security Levels

2025-12-25