21553 Total CVEs
12734 AI Analyzed
304 CISA KEV
4720 Critical
All Vendors
Showing 17051-17100 of 21553 CVEs Page 342 of 432
CVE-2025-46386
8.8
Unknown Multiple Products

CWE-639 Authorization Bypass Through User-Controlled Key

2025-08-07
CVE-2025-46385
Analyzed
8.6
Unknown Multiple Products

CWE-918 Server-Side Request Forgery (SSRF)

2025-07-21
CVE-2025-46384
Analyzed
8.8
HP Multiple Products

CWE-434 Unrestricted Upload of File with Dangerous Type

2025-07-21
CVE-2025-46373
Analyzed
7.8
Microsoft Multiple Products

A Heap-based Buffer Overflow vulnerability [CWE-122] in Fortinet FortiClientWindows 7

2025-11-19
CVE-2025-46369
7.8
Dell Multiple Products

Dell Alienware Command Center 6

2025-11-14
CVE-2025-46367
7.8
Dell Multiple Products

Dell Alienware Command Center 6

2025-11-14
CVE-2025-46359
7.2
Unknown Multiple Products

A path traversal issue exists in backup and restore feature of multiple versions of PowerCMS

2025-07-31
CVE-2025-46358
7.7
Emerson Multiple Products

Emerson ValveLink products do not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against t...

2025-07-11
CVE-2025-46354
7.5
Unknown Multiple Products

A denial of service vulnerability exists in the Distributed Transaction Commit/Abort Operation functionality of Bloomberg Comdb2 8

2025-07-23
CVE-2025-46334
8.6
Git Multiple Products

Git GUI allows you to use the Git source control management tools via a GUI

2025-07-11
CVE-2025-46295
Analyzed
9.8
Apache Multiple Products

Apache Commons Text versions prior to 1.10.0 included interpolation features that could be abused when applications passed untrusted input into the te...

2025-12-17
CVE-2025-46281
8.8
Unknown Multiple Products

A logic issue was addressed with improved checks

2025-12-19
CVE-2025-46269
Analyzed
7.8
Intel Multiple Products

In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12

2025-08-19
CVE-2025-46255
7.5
Marketing Fire LLC Multiple Products

Missing Authorization vulnerability in Marketing Fire LLC LoginWP - Pro allows Accessing Functionality Not Properly Constrained by ACLs

2026-01-06
CVE-2025-46205
8.1
Unknown Multiple Products

A heap-use-after free in the PdfTokenizer::ReadDictionary function of podofo v0

2025-10-01
CVE-2025-46183
8.2
Unknown Multiple Products

The Utils

2025-10-24
CVE-2025-46117
8.8
Unknown Multiple Products

An issue was discovered in CommScope Ruckus Unleashed prior to 200

2025-07-22
CVE-2025-46116
8.8
Unknown Multiple Products

An issue was discovered in CommScope Ruckus Unleashed prior to 200

2025-07-22
CVE-2025-46099
7.1
Pluck Multiple Products

In Pluck CMS 4

2025-07-23
CVE-2025-46093
Analyzed
9.9
LiquidFiles before Multiple Products

LiquidFiles before 4.1.2 supports FTP SITE CHMOD for mode 6777 (setuid and setgid), which allows FTPDrop users to execute arbitrary code as root by le...

2025-08-05
CVE-2025-46070
Analyzed
9.8
Unknown Multiple Products

An issue in Automai BotManager v.25.2.0 allows a remote attacker to execute arbitrary code via the BotManager.exe component

2026-01-13
CVE-2025-46068
Analyzed
8.8
Intel Multiple Products

An issue in Automai Director v

2026-01-13
CVE-2025-46067
Analyzed
8.2
Unknown Multiple Products

An issue in Automai Director v

2026-01-13
CVE-2025-46066
Analyzed
9.9
Unknown Multiple Products

An issue in Automai Director v.25.2.0 allows a remote attacker to escalate privileges

2026-01-13
CVE-2025-4606
Analyzed
9.8
WordPress Multiple Products

The Sala - Startup & SaaS WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and in...

2025-07-10
CVE-2025-46059
Analyzed
9.8
Unknown Multiple Products

langchain-ai v0.3.51 was discovered to contain an indirect prompt injection vulnerability in the GmailToolkit component. This vulnerability allows att...

2025-07-29
CVE-2025-46014
8.8
Unknown Multiple Products

Several services in Honor Device Co

2025-07-06
CVE-2025-45968
Analyzed
9.8
Unknown Multiple Products

An issue in System PDV v1.0 allows a remote attacker to obtain sensitive information via the hash parameter in a URL. The application contains an Inse...

2025-08-25
CVE-2025-45931
9.8
D-Link Multiple Products

An issue D-Link DIR-816-A2 DIR-816A2_FWv1.10CNB05_R1B011D88210 allows a remote attacker to execute arbitrary code via system() function in the bin/goa...

2025-07-06
CVE-2025-45868
Analyzed
8.8
GitHub Enterprise

LogicalDOC Enterprise up to and for v9.1.1 is vulnerable to blind SQL injection in the ComparisonServlet component, allowing authenticated user to man...

2026-07-21
CVE-2025-45814
Analyzed
9.8
Unknown Multiple Products

Missing authentication checks in the query.fcgi endpoint of NS3000 v8.1.1.125110 , v7.2.8.124852 , and v7.x and NS2000 v7.02.08 allows attackers to ex...

2025-07-06
CVE-2025-45813
Analyzed
9.8
ENENSYS IPGuard Multiple Products

ENENSYS IPGuard v2 2.10.0 was discovered to contain hardcoded credentials.

2025-07-06
CVE-2025-45805
Analyzed
7.6
HP Multiple Products

In phpgurukul Doctor Appointment Management System 1

2025-09-03
CVE-2025-45770
7
Unknown Multiple Products

jwt v5

2025-07-31
CVE-2025-45769
Analyzed
7.3
HP Multiple Products

php-jwt v6

2025-07-31
CVE-2025-45768
7
Unknown Multiple Products

pyjwt v2

2025-07-31
CVE-2025-45767
7
Unknown Multiple Products

jose v6

2025-08-01
CVE-2025-45766
7
Unknown Multiple Products

poco v1

2025-08-07
CVE-2025-45691
7.5
Unknown Multiple Products

An Arbitrary File Read vulnerability exists in the ImageTextPromptValue class in Exploding Gradients RAGAS v0

2026-03-07
CVE-2025-45620
8.1
Unknown Multiple Products

An issue in Aver PTC310UV2 v

2025-07-30
CVE-2025-45422
Analyzed
8.1
GitHub b-box

Incorrect access control in Proximus b-box v8c.725A allows authenticated attackers to bypass normal restrictions and make arbitrary changes to port fo...

2026-07-12
CVE-2025-45379
Analyzed
8.4
Dell Multiple Products

Dell CloudLink, versions prior to 8

2025-11-06
CVE-2025-45376
Analyzed
7.5
Dell Multiple Products

Dell Repository Manager (DRM), versions 3

2025-09-30
CVE-2025-45346
Analyzed
8.1
Unknown Multiple Products

SQL Injection vulnerability in Bacula-web before v

2025-07-29
CVE-2025-4521
8.8
WordPress is vulnerable

The IDonate – Blood Donation, Request And Donor Management System plugin for WordPress is vulnerable to Privilege Escalation due to a missing capabili...

2026-02-20
CVE-2025-4519
Analyzed
8.8
WordPress Multiple Products

The IDonate – Blood Donation, Request And Donor Management System plugin for WordPress is vulnerable to Privilege Escalation due to a missing capabili...

2025-11-08
CVE-2025-45150
Analyzed
9.8
Intel Multiple Products

Insecure permissions in LangChain-ChatGLM-Webui commit ef829 allows attackers to arbitrarily view and download sensitive files via supplying a crafted...

2025-08-01
CVE-2025-45146
Analyzed
9.8
Unknown Multiple Products

ModelCache for LLM through v0.2.0 was discovered to contain an deserialization vulnerability via the component /manager/data_manager.py. This vulnerab...

2025-08-11
CVE-2025-45095
7.3
Lavasoft Multiple Products

Lavasoft Web Companion (also known as Ad-Aware WebCompanion) versions 8

2025-10-09
CVE-2025-45081
8.8
Unknown Multiple Products

Misconfigured settings in IITB SSO v1

2025-07-06