18466 Total CVEs
9986 AI Analyzed
280 CISA KEV
3815 Critical
All Vendors
Showing 16601-16650 of 18466 CVEs Page 333 of 370
CVE-2025-10941
Analyzed
7.8
SERVCore Multiple Products

A vulnerability was determined in Topaz SERVCore Teller 2

2025-09-25
CVE-2025-10934
7.8
GIMP Multiple Products

GIMP XWD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10932
8.2
Progress MOVEit Multiple Products

Uncontrolled Resource Consumption vulnerability in Progress MOVEit Transfer (AS2 module)

2025-10-29
CVE-2025-10925
7.8
GIMP Multiple Products

GIMP ILBM File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10924
7.8
GIMP Multiple Products

GIMP FF File Parsing Integer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10923
7.8
GIMP Multiple Products

GIMP WBMP File Parsing Integer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10922
7.8
GIMP Multiple Products

GIMP DCM File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10921
7.8
GIMP Multiple Products

GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10920
Analyzed
7.8
Apple Multiple Products

GIMP ICNS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

2025-10-29
CVE-2025-10916
Analyzed
9.1
WordPress Multiple Products

The FormGent WordPress plugin before 1.0.4 is vulnerable to arbitrary file deletion due to insufficient file path validation. This makes it possible...

2025-10-21
CVE-2025-10915
Analyzed
9.8
WordPress Multiple Products

The Dreamer Blog WordPress theme through 1.2 is vulnerable to arbitrary installations due to a missing capability check.

2026-01-14
CVE-2025-10914
7.6
Proliz Software Multiple Products

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Proliz Software Ltd

2025-10-23
CVE-2025-10913
8.3
Saastech Cleaning and Multiple Products

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Saastech Cleaning and Internet Services I...

2026-02-11
CVE-2025-10908
Analyzed
7.3
Unknown Multiple Products

Due to a lack of user account state validation during authentication, locked user accounts can be successfully authenticated using Magic Link or Pass...

2026-05-12
CVE-2025-10907
8.4
Unknown Multiple Products

An arbitrary file upload vulnerability exists in multiple WSO2 products due to insufficient validation of uploaded content and destination in SOAP adm...

2025-11-06
CVE-2025-10906
8.4
Unknown Multiple Products

A flaw has been found in Magnetism Studios Endurance up to 3

2025-09-24
CVE-2025-10900
7.8
Unknown Multiple Products

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-12-16
CVE-2025-10899
7.8
Unknown Multiple Products

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-12-16
CVE-2025-10898
7.8
Unknown Multiple Products

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-12-16
CVE-2025-10897
Analyzed
8.6
WordPress Multiple Products

The WooCommerce Designer Pro theme for WordPress is vulnerable to arbitrary file read in all versions up to, and including, 1

2025-10-31
CVE-2025-10896
Analyzed
8.8
WordPress Multiple Products

Multiple plugins for WordPress with the Jewel Theme Recommended Plugins Library are vulnerable to Unrestricted Upload of File with Dangerous Type via...

2025-11-04
CVE-2025-10894
Analyzed
9.6
Intel Multiple Products

Malicious code was inserted into the Nx (build system) package and several related plugins. The tampered package was published to the npm software reg...

2025-09-24
CVE-2025-10892
Analyzed
8.8
Google Multiple Products

Integer overflow in V8 in Google Chrome prior to 140

2025-09-24
CVE-2025-10891
Analyzed
8.8
Google Multiple Products

Integer overflow in V8 in Google Chrome prior to 140

2025-09-24
CVE-2025-10890
Analyzed
9.1
Google Multiple Products

Side-channel information leakage in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to leak cross-origin data via a crafted HTML...

2025-09-24
CVE-2025-10889
7.8
Unknown Multiple Products

A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability

2025-12-16
CVE-2025-10888
7.8
Unknown Multiple Products

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-12-16
CVE-2025-10887
7.8
Unknown Multiple Products

A maliciously crafted MODEL file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability

2025-12-16
CVE-2025-10886
7.8
Unknown Multiple Products

A maliciously crafted MODEL file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability

2025-12-16
CVE-2025-10885
7.8
Unknown Multiple Products

A maliciously crafted file, when executed on the victim's machine, can lead to privilege escalation to NT AUTHORITY/SYSTEM due to an insufficient vali...

2025-11-06
CVE-2025-10884
7.8
Unknown Multiple Products

AA maliciously crafted CATPART file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-12-16
CVE-2025-10883
7.8
Unknown Multiple Products

A maliciously crafted CATPRODUCT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerability

2025-12-16
CVE-2025-10882
7.8
Unknown Multiple Products

AA maliciously crafted X_T file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability

2025-12-16
CVE-2025-10881
7.8
Unknown Multiple Products

A maliciously crafted CATPRODUCT file, when parsed through certain Autodesk products, can force a Heap-Based Overflow vulnerability

2025-12-16
CVE-2025-10878
Analyzed
10
Fikir Odalari AdminPando

A critical SQL injection vulnerability in Fikir Odalari AdminPando allows unauthenticated attackers to bypass login and gain full administrative acces...

2026-02-04
CVE-2025-10865
7.8
Software Multiple Products

Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of reference counting to cause a pote...

2026-01-15
CVE-2025-10862
Analyzed
7.5
WordPress Multiple Products

The Popup builder with Gamification, Multi-Step Popups, Page-Level Targeting, and WooCommerce Triggers plugin for WordPress is vulnerable to SQL Injec...

2025-10-09
CVE-2025-10861
Analyzed
7.5
WordPress Multiple Products

The Popup builder with Gamification, Multi-Step Popups, Page-Level Targeting, and WooCommerce Triggers plugin for WordPress is vulnerable to Server-Si...

2025-10-24
CVE-2025-10858
7.5
GitLab Multiple Products

An issue was discovered in GitLab CE/EE affecting all versions before 18

2025-09-26
CVE-2025-10857
7.3
Unknown Multiple Products

A security flaw has been discovered in Campcodes Point of Sale System POS 1

2025-09-23
CVE-2025-10856
8.1
Solvera Software Multiple Products

Unrestricted Upload of File with Dangerous Type vulnerability in Solvera Software Services Trade Inc

2026-01-23
CVE-2025-10855
7.5
Solvera Software Multiple Products

Authorization Bypass Through User-Controlled Key vulnerability in Solvera Software Services Trade Inc

2026-01-23
CVE-2025-10854
8.1
Unknown Multiple Products

The txtai framework allows the loading of compressed tar files as embedding indices

2025-09-22
CVE-2025-10851
7.3
Unknown Multiple Products

A security flaw has been discovered in Campcodes Gym Management System 1

2025-09-23
CVE-2025-10850
Analyzed
9.8
WordPress Multiple Products

The Felan Framework plugin for WordPress is vulnerable to improper authentication in versions up to, and including, 1.1.4. This is due to the hardcode...

2025-10-16
CVE-2025-10843
7.3
Unknown Multiple Products

A flaw has been found in Reservation Online Hotel Reservation System 1

2025-09-23
CVE-2025-10842
7.3
Bidding Multiple Products

A vulnerability was detected in code-projects Online Bidding System 1

2025-09-23
CVE-2025-10841
7.3
Bidding Multiple Products

A security vulnerability has been detected in code-projects Online Bidding System 1

2025-09-23
CVE-2025-10838
8.8
Tenda Multiple Products

A vulnerability was identified in Tenda AC21 16

2025-09-23
CVE-2025-10836
7.3
Unknown Multiple Products

A weakness has been identified in SourceCodester Pet Grooming Management Software 1

2025-09-23