17874 Total CVEs
9409 AI Analyzed
270 CISA KEV
3637 Critical
All Vendors
Showing 16001-16050 of 17874 CVEs Page 321 of 358
CVE-2025-11030
7.3
Unknown Multiple Products

A vulnerability was detected in Tutorials-Website Employee Management System up to 611887d8f8375271ce8abc704507d46340837a60

2025-09-26
CVE-2025-11024
Analyzed
9.8
Unknown E-Commerce Website

The Akilli Commerce E-Commerce Website is susceptible to Blind SQL Injection, allowing attackers to manipulate database queries via special characters...

2026-05-15
CVE-2025-11023
Analyzed
9.8
HP Multiple Products

Inclusion of Functionality from Untrusted Control Sphere, Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File...

2025-10-23
CVE-2025-11022
Analyzed
9.6
Unknown Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Personal Project Panilux allows Cross Site Request Forgery.  This CSRF vulnerability resulting i...

2025-12-10
CVE-2025-11021
7.5
Unknown Multiple Products

A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication

2025-09-26
CVE-2025-11020
Analyzed
8.8
Microsoft Multiple Products

An attacker can obtain server information using Path Traversal vulnerability to conduct SQL Injection, which possibly exploits Unrestricted Upload of...

2025-10-02
CVE-2025-11008
Analyzed
9.8
WordPress Multiple Products

The CE21 Suite plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.3.1 via the log file. This...

2025-11-04
CVE-2025-11007
Analyzed
9.8
WordPress Multiple Products

The CE21 Suite plugin for WordPress is vulnerable to unauthorized plugin settings update due to a missing capability check on the wp_ajax_nopriv_ce21_...

2025-11-04
CVE-2025-11001
Analyzed
7
Microsoft Multiple Products

7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability

2025-11-20
CVE-2025-10990
Analyzed
7.5
Unknown Multiple Products

A flaw was found in REXML

2026-02-28
CVE-2025-10973
7.3
Unknown Multiple Products

A flaw has been found in JackieDYH Resume-management-system up to fb6b857d852dd796e748ce30c606fe5e61c18273

2025-09-25
CVE-2025-10970
Analyzed
9.8
Kolay Software Talentics

Kolay Software's Talentics platform is vulnerable to Blind SQL Injection, allowing unauthenticated attackers to extract sensitive information from the...

2026-02-21
CVE-2025-10969
Analyzed
9.8
Farktor Software E-Commerce Package

Farktor Software E-Commerce Package is vulnerable to Blind SQL Injection due to improper neutralization of special elements in SQL commands, affecting...

2026-02-13
CVE-2025-10968
Analyzed
8.8
GG Soft Software Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 564 - SQL Injection: Hibernate vulnerability in GG Soft So...

2025-11-08
CVE-2025-10967
Analyzed
7.3
HP Multiple Products

A vulnerability was detected in MuFen-mker PHP-Usermm up to 37f2d24e51b04346dfc565b93fc2fc6b37bdaea9

2025-09-25
CVE-2025-10953
8.8
Unknown Multiple Products

A security vulnerability has been detected in UTT 1200GW and 1250GW up to 3

2025-09-25
CVE-2025-10951
7.3
Unknown Multiple Products

A vulnerability was identified in geyang ml-logger up to acf255bade5be6ad88d90735c8367b28cbe3a743

2025-09-25
CVE-2025-10948
8.8
MikroTik Multiple Products

A vulnerability has been found in MikroTik RouterOS 7

2025-09-25
CVE-2025-10942
8.8
H3C Multiple Products

A vulnerability was identified in H3C Magic B3 up to 100R002

2025-09-25
CVE-2025-10941
Analyzed
7.8
SERVCore Multiple Products

A vulnerability was determined in Topaz SERVCore Teller 2

2025-09-25
CVE-2025-10934
7.8
GIMP Multiple Products

GIMP XWD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10932
8.2
Progress MOVEit Multiple Products

Uncontrolled Resource Consumption vulnerability in Progress MOVEit Transfer (AS2 module)

2025-10-29
CVE-2025-10925
7.8
GIMP Multiple Products

GIMP ILBM File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10924
7.8
GIMP Multiple Products

GIMP FF File Parsing Integer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10923
7.8
GIMP Multiple Products

GIMP WBMP File Parsing Integer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10922
7.8
GIMP Multiple Products

GIMP DCM File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10921
7.8
GIMP Multiple Products

GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10920
Analyzed
7.8
Apple Multiple Products

GIMP ICNS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10916
Analyzed
9.1
WordPress Multiple Products

The FormGent WordPress plugin before 1.0.4 is vulnerable to arbitrary file deletion due to insufficient file path validation. This makes it possible...

2025-10-21
CVE-2025-10915
Analyzed
9.8
WordPress Multiple Products

The Dreamer Blog WordPress theme through 1.2 is vulnerable to arbitrary installations due to a missing capability check.

2026-01-14
CVE-2025-10914
7.6
Proliz Software Multiple Products

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Proliz Software Ltd

2025-10-23
CVE-2025-10913
8.3
Saastech Cleaning and Multiple Products

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Saastech Cleaning and Internet Services I...

2026-02-11
CVE-2025-10908
Analyzed
7.3
Unknown Multiple Products

Due to a lack of user account state validation during authentication, locked user accounts can be successfully authenticated using Magic Link or Pass...

2026-05-12
CVE-2025-10907
8.4
Unknown Multiple Products

An arbitrary file upload vulnerability exists in multiple WSO2 products due to insufficient validation of uploaded content and destination in SOAP adm...

2025-11-06
CVE-2025-10906
8.4
Unknown Multiple Products

A flaw has been found in Magnetism Studios Endurance up to 3

2025-09-24
CVE-2025-10900
7.8
Unknown Multiple Products

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-12-16
CVE-2025-10899
7.8
Unknown Multiple Products

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-12-16
CVE-2025-10898
7.8
Unknown Multiple Products

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-12-16
CVE-2025-10897
Analyzed
8.6
WordPress Multiple Products

The WooCommerce Designer Pro theme for WordPress is vulnerable to arbitrary file read in all versions up to, and including, 1

2025-10-31
CVE-2025-10896
Analyzed
8.8
WordPress Multiple Products

Multiple plugins for WordPress with the Jewel Theme Recommended Plugins Library are vulnerable to Unrestricted Upload of File with Dangerous Type via...

2025-11-04
CVE-2025-10894
Analyzed
9.6
Intel Multiple Products

Malicious code was inserted into the Nx (build system) package and several related plugins. The tampered package was published to the npm software reg...

2025-09-24
CVE-2025-10892
Analyzed
8.8
Google Multiple Products

Integer overflow in V8 in Google Chrome prior to 140

2025-09-24
CVE-2025-10891
Analyzed
8.8
Google Multiple Products

Integer overflow in V8 in Google Chrome prior to 140

2025-09-24
CVE-2025-10890
Analyzed
9.1
Google Multiple Products

Side-channel information leakage in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to leak cross-origin data via a crafted HTML...

2025-09-24
CVE-2025-10889
7.8
Unknown Multiple Products

A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability

2025-12-16
CVE-2025-10888
7.8
Unknown Multiple Products

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-12-16
CVE-2025-10887
7.8
Unknown Multiple Products

A maliciously crafted MODEL file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability

2025-12-16
CVE-2025-10886
7.8
Unknown Multiple Products

A maliciously crafted MODEL file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability

2025-12-16
CVE-2025-10885
7.8
Unknown Multiple Products

A maliciously crafted file, when executed on the victim's machine, can lead to privilege escalation to NT AUTHORITY/SYSTEM due to an insufficient vali...

2025-11-06
CVE-2025-10884
7.8
Unknown Multiple Products

AA maliciously crafted CATPART file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-12-16