20297 Total CVEs
11590 AI Analyzed
295 CISA KEV
4359 Critical
All Vendors
Showing 1551-1600 of 20297 CVEs Page 32 of 406
CVE-2026-6315
Analyzed
8.8
Google Chrome on

Use after free in Permissions in Google Chrome on Android prior to 147

2026-04-16
CVE-2026-6314
8.3
Google Chrome prior

Out of bounds write in GPU in Google Chrome prior to 147

2026-04-16
CVE-2026-6311
Analyzed
8.3
Microsoft Chrome on

Uninitialized Use in Accessibility in Google Chrome on Windows prior to 147

2026-04-16
CVE-2026-63108
Analyzed
8.8
RooCodeInc Roo-Code

Roo Code through 3

2026-07-21
CVE-2026-63101
Analyzed
7.5
FOSSASIA open-event-server

Open Event Server through 1

2026-07-19
CVE-2026-6310
Analyzed
8.3
Google Chrome prior

Use after free in Dawn in Google Chrome prior to 147

2026-04-16
CVE-2026-63094
Analyzed
8.1
SigNoz signoz

SigNoz through 0

2026-07-18
CVE-2026-63093
Analyzed
8.8
Microsoft Cursor

Cursor for Windows version 3

2026-07-18
CVE-2026-63090
Analyzed
8.8
ProFTPD proftpd

ProFTPD before 1

2026-07-21
CVE-2026-6309
8.3
Google Chrome prior

Use after free in Viz in Google Chrome prior to 147

2026-04-16
CVE-2026-63089
Analyzed
9.3
Unknown wg-easy

WireGuard Easy contains a cryptographically weak one-time link token generation vulnerability, allowing unauthenticated attackers to brute-force crede...

2026-07-17
CVE-2026-63088
Analyzed
8.6
Stoatchat Stoatchat

stoatchat before 0

2026-07-17
CVE-2026-63087
Analyzed
9.8
Unknown oncall

An unauthenticated access vulnerability in Grafana OnCall allows remote attackers to hijack plugin tokens, authenticate as administrators, and redirec...

2026-07-17
CVE-2026-63086
Analyzed
8.6
Hugging Face text-generation-inference

text-generation-inference through 3

2026-07-17
CVE-2026-63085
Analyzed
8.8
Axelor Axelor Open Platform

Axelor Open Platform versions 8

2026-07-17
CVE-2026-6308
7.5
Google Chrome prior

Out of bounds read in Media in Google Chrome prior to 147

2026-04-17
CVE-2026-63077
KEV Analyzed
9.8
JetBrains TeamCity

An unauthenticated remote code execution vulnerability exists in the JetBrains TeamCity agent polling protocol.

2026-07-28
CVE-2026-6307
8.8
Google Chrome prior

Type Confusion in Turbofan in Google Chrome prior to 147

2026-04-16
CVE-2026-6306
Analyzed
8.8
Google Chrome prior

Heap buffer overflow in PDFium in Google Chrome prior to 147

2026-04-17
CVE-2026-6305
Analyzed
8.8
Google Chrome prior

Heap buffer overflow in PDFium in Google Chrome prior to 147

2026-04-16
CVE-2026-63047
Analyzed
7.5
Joomla Events Booking extension for Joomla

The Joomla extension Events Booking prior version 5.0-5.8.1 did not properly verify that an actor is allowed to download invoice information.

2026-07-29
CVE-2026-6304
8.3
Google Chrome prior

Use after free in Graphite in Google Chrome prior to 147

2026-04-16
CVE-2026-63035
Analyzed
8.1
Unknown open62541

A heap use-after-free vulnerability in the TransferSubscriptions service in open62541 may allow an authenticated attacker to cause a denial of servi...

2026-08-01
CVE-2026-63030
KEV Analyzed
9.8
WordPress WordPress

WordPress is affected by a REST API batch endpoint route confusion issue which, when combined with other vulnerabilities, can lead to SQL injection an...

2026-07-18
CVE-2026-6303
Analyzed
8.8
Google Chrome prior

Use after free in Codecs in Google Chrome prior to 147

2026-04-17
CVE-2026-6302
Analyzed
8.8
Google Chrome prior

Use after free in Video in Google Chrome prior to 147

2026-04-16
CVE-2026-6301
Analyzed
8.8
Google Chrome prior

Type Confusion in Turbofan in Google Chrome prior to 147

2026-04-16
CVE-2026-6300
Analyzed
8.8
Google Chrome prior

Use after free in CSS in Google Chrome prior to 147

2026-04-16
CVE-2026-62999
Analyzed
7.5
Unknown copier

Copier is a library and CLI app for rendering project templates

2026-08-01
CVE-2026-6299
Analyzed
8.8
Google Chrome prior

Use after free in Prerender in Google Chrome prior to 147

2026-04-16
CVE-2026-6297
Analyzed
8.3
Google Chrome prior

Use after free in Proxy in Google Chrome prior to 147

2026-04-16
CVE-2026-62963
Analyzed
8.7
Centrifugal Centrifugo

Centrifugo is an open-source scalable real-time messaging server

2026-07-17
CVE-2026-6296
Analyzed
9.6
Google Chrome prior

Heap buffer overflow in ANGLE in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to potentially perform a sandbox escape via a crafted...

2026-04-16
CVE-2026-62959
Analyzed
8.2
STUN coturn

Coturn is a free open source implementation of TURN and STUN Server

2026-08-01
CVE-2026-62948
Analyzed
9.6
Unknown openwrt

A vulnerability in the OpenWrt DHCPv6 client allows for Cross-site Scripting (XSS) via injected lease hostnames displayed in the web administrative in...

2026-07-16
CVE-2026-62927
Analyzed
8.7
Eclipse Foundation Eclipse Milo

In Eclipse Milo versions 1

2026-08-05
CVE-2026-6290
8
Unknown Multiple Products

Velociraptor versions prior to 0

2026-04-16
CVE-2026-62870
Analyzed
8.8
Microsoft Microsoft 365 Apps for Enterprise

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code over a network

2026-08-04
CVE-2026-62857
Analyzed
8.8
Unknown fedify

Fedify is a TypeScript library for building federated server apps powered by ActivityPub

2026-08-07
CVE-2026-6284
Analyzed
9.1
Unknown Multiple Products

An attacker with network access to the PLC is able to brute force discover passwords to gain unauthorized access to systems and services. The limited...

2026-04-18
CVE-2026-62835
Analyzed
9.3
Microsoft Azure Portal

Improper authorization in the Microsoft Azure Portal allows unauthenticated remote attackers to disclose sensitive information over a network.

2026-07-25
CVE-2026-62825
Analyzed
10
Microsoft Azure Key Vault

An improper authentication vulnerability in Microsoft Azure Key Vault allows an unauthenticated remote attacker to escalate privileges and compromise...

2026-07-25
CVE-2026-6281
Analyzed
8.8
Lenovo Personal Cloud

A potential vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow a remote authenticated user on the local network...

2026-05-14
CVE-2026-6279
Analyzed
9.8
HP is vulnerable

The Avada Builder plugin for WordPress is vulnerable to unauthenticated remote code execution via PHP function injection in the `fusion_get_widget_mar...

2026-05-21
CVE-2026-6274
Analyzed
9.8
DTS Electronics Redline WR3200

A critical authentication bypass vulnerability in DTS Electronics Redline WR3200 allows unauthenticated attackers to access restricted functions due t...

2026-06-06
CVE-2026-6271
Analyzed
9.8
WordPress is vulnerable

The Career Section WordPress plugin is vulnerable to arbitrary file upload due to missing file type validation, enabling remote code execution.

2026-05-14
CVE-2026-6270
Analyzed
9.1
Fastify @fastify/middie

The @fastify/middie package fails to inherit middleware in child plugin scopes, leading to an authentication bypass for unauthenticated requests.

2026-04-17
CVE-2026-6267
Analyzed
8.5
GitLab GitLab CE/EE

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10

2026-07-30
CVE-2026-6266
8.3
AAP Multiple Products

A flaw was found in the AAP gateway

2026-05-05
CVE-2026-6264
Analyzed
9.8
Unknown Multiple Products

A critical vulnerability in the Talend JobServer and Talend Runtime allows unauthenticated remote code execution via the JMX monitoring port. The atta...

2026-04-14