21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 1601-1650 of 21637 CVEs Page 33 of 433
CVE-2026-6653
Analyzed
7
GNOME libxml2

Use After Free in libxml2's xmlParseInternalSubset from GNOME libxml2 version 2

2026-06-23
CVE-2026-66494
Analyzed
8.7
Joomla SP Page Builder extension for Joomla

Joomla Extension - joomshaper

2026-08-08
CVE-2026-66491
Analyzed
8.2
Joomla Phoca Commander extension for Joomla

Joomla Extension - phoca

2026-08-07
CVE-2026-66473
Analyzed
7.5
WordPress Xendit Payment

Unauthenticated Broken Access Control in Xendit Payment <= 7

2026-07-28
CVE-2026-66465
Analyzed
9.8
WordPress Cartify

A critical broken authentication vulnerability in the AgniHD Cartify WordPress theme allows unauthenticated attackers to perform account takeover oper...

2026-08-14
CVE-2026-66453
Analyzed
9.8
WordPress Salon booking system

A critical authentication bypass vulnerability exists in the Dimitri Grassi Salon booking system plugin for WordPress, allowing unauthenticated attack...

2026-08-14
CVE-2026-6645
Analyzed
7.3
PaperCut Print Deploy

An insecure process execution vulnerability exists in the pc-printer-updater

2026-06-22
CVE-2026-66427
Analyzed
7.6
Google WP Google Review Slider

Administrator SQL Injection in WP Google Review Slider <= 18

2026-07-28
CVE-2026-66424
Analyzed
9.8
WordPress SMS Alert Order Notifications

An unauthenticated privilege escalation vulnerability in the SMS Alert Order Notifications plugin for WordPress versions 3.9.7 and below allows attack...

2026-08-14
CVE-2026-66420
Analyzed
8.8
Unknown openclaw-dashboard

MeshCentral 1

2026-07-31
CVE-2026-66416
Analyzed
8.8
Leantime Leantime

Leantime 3

2026-07-31
CVE-2026-66415
Analyzed
8.5
Leantime Leantime

Leantime 3

2026-07-31
CVE-2026-66407
Analyzed
8.1
ECOVACS DEEBOT PRO M1, DEEBOT PRO K1VAC

DEEBOT PRO M1 and DEEBOT PRO K1VAC improperly implement authentication in WebSocket communication

2026-08-10
CVE-2026-66405
Analyzed
8.8
ECOVACS ROBOTICS DEEBOT PRO M1, DEEBOT PRO K1VAC

DEEBOT PRO M1 and DEEBOT PRO K1VAC leave the telnet servers enabled

2026-08-10
CVE-2026-66403
Analyzed
7.5
ECOVACS ROBOTICS DEEBOT PRO M1, DEEBOT PRO K1VAC

DEEBOT PRO M1 and DEEBOT PRO K1VAC leave the web server for debugging purposes enabled

2026-08-10
CVE-2026-66402
Analyzed
9.8
FreeRDP FreeRDP

FreeRDP contains multiple TLS certificate validation flaws allowing attackers to bypass server identity verification due to improper handling of Commo...

2026-08-02
CVE-2026-66398
Analyzed
9.4
HP phpMyFAQ

phpMyFAQ before version 4.1.6 allows authenticated administrators to achieve remote code execution via the configuration API by manipulating upgrade s...

2026-07-28
CVE-2026-66397
Analyzed
8.6
HP phpMyFAQ

phpMyFAQ before 4

2026-07-28
CVE-2026-66396
Analyzed
8.4
Unknown siyuan

SiYuan before v3

2026-07-28
CVE-2026-66395
Analyzed
9.6
Unknown SiYuan

A reflected cross-site scripting vulnerability in SiYuan desktop allows attackers to achieve remote code execution through malicious deep links that l...

2026-07-28
CVE-2026-66394
Analyzed
8.7
SiYuan-Note SiYuan

SiYuan before v3

2026-07-28
CVE-2026-66374
Analyzed
8.1
Unknown Knot Resolver

Knot Resolver before 6

2026-07-25
CVE-2026-66373
Analyzed
7.5
GitHub Redis

Redis before 8

2026-07-26
CVE-2026-6637
Analyzed
8.8
PostgreSQL module

Stack buffer overflow in PostgreSQL module "refint" allows an unprivileged database user to execute arbitrary code as the operating system user runnin...

2026-05-15
CVE-2026-6635
7.3
Unknown Multiple Products

A security vulnerability has been detected in rowboatlabs rowboat up to 0

2026-04-21
CVE-2026-6632
8.8
Tenda F451

A vulnerability was identified in Tenda F451 1

2026-04-21
CVE-2026-66318
Analyzed
8.1
Microsoft Microsoft Edge (Chromium-based)

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network

2026-08-04
CVE-2026-66315
Analyzed
7.5
Microsoft Microsoft Edge (Chromium-based)

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network

2026-08-04
CVE-2026-66310
Analyzed
7.7
Google Microsoft Edge for Android

External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information locally

2026-08-04
CVE-2026-6631
8.8
Tenda F451

A vulnerability was determined in Tenda F451 1

2026-04-21
CVE-2026-6630
8.8
Tenda F451

A vulnerability was found in Tenda F451 1

2026-04-21
CVE-2026-66298
Analyzed
8.6
Unknown livebook

Origin Validation Error vulnerability in livebook-dev livebook allows untrusted notebook output JavaScript to trigger session-wide keyboard shortcuts,...

2026-08-06
CVE-2026-6629
7.3
Unknown Multiple Products

A vulnerability has been found in Metasoft 美特软件 MetaCRM up to 6

2026-04-21
CVE-2026-66271
Analyzed
7.2
Dell Wyse Management Suite (WMS)

Dell Wyse Management Suite (WMS), versions prior to 2605

2026-08-16
CVE-2026-66270
Analyzed
7.2
Dell Wyse Management Suite (WMS)

Dell Wyse Management Suite (WMS), versions prior to 2605

2026-08-16
CVE-2026-6627
Analyzed
8.2
WordPress WPFormify

The WPFormify – Stripe Payments with Form and Checkout plugin for WordPress is vulnerable to unauthorized modification and deletion of Stripe payment...

2026-08-05
CVE-2026-6625
7.3
Unknown Multiple Products

A security vulnerability has been detected in moxi624 Mogu Blog v2 up to 5

2026-04-21
CVE-2026-6621
7.3
Unknown Multiple Products

A vulnerability was determined in 1024bit extend-deep up to 0

2026-04-21
CVE-2026-6615
7.3
Unknown Multiple Products

A weakness has been identified in TransformerOptimus SuperAGI up to 0

2026-04-20
CVE-2026-66144
Analyzed
7.5
Apache Apache Neethi

Although remote policy references are not retrieved during policy normalization, if they are manually retrieved via the API it can cause a denial of s...

2026-07-26
CVE-2026-66143
Analyzed
7.5
Apache Apache Neethi

It is possible to bypass the maximum number of normalized policy alternatives that was introduced in Apache Neethi 3

2026-07-26
CVE-2026-66142
Analyzed
7.5
Apache Apache Neethi

Apache Neethi is vulnerable to uncontrolled recursion when parsing policies that lack policy Ids or with deeply nested structures, which may lead to a...

2026-07-26
CVE-2026-66140
Analyzed
8.4
Exim Exim

Exim before 4

2026-07-24
CVE-2026-66065
Analyzed
8.4
Q00 ouroboros

Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to constrain behavior

2026-08-04
CVE-2026-66061
Analyzed
7.1
Home Assistant core

Home Assistant is open source home automation software focused on local control and privacy

2026-08-09
CVE-2026-66060
Analyzed
7.1
Home Assistant core

Home Assistant is open source home automation software focused on local control and privacy

2026-08-09
CVE-2026-6606
7.3
Unknown Multiple Products

A weakness has been identified in modelscope agentscope up to 1

2026-04-20
CVE-2026-66050
Analyzed
7.5
NitroShare nitroshare-desktop

NitroShare Desktop through 0

2026-07-28
CVE-2026-6605
7.3
Unknown Multiple Products

A security flaw has been discovered in modelscope agentscope up to 1

2026-04-20
CVE-2026-66041
Analyzed
8.8
F5 FFmpeg

FFmpeg 7

2026-07-25