18466 Total CVEs
9986 AI Analyzed
280 CISA KEV
3815 Critical
All Vendors
Showing 17151-17200 of 18466 CVEs Page 344 of 370
CVE-2024-13786
Analyzed
9.8
HP Multiple Products

The education theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.6.10 via deserialization of untrusted...

2025-07-05
CVE-2024-13507
Analyzed
7.5
WordPress Multiple Products

The GeoDirectory – WP Business Directory Plugin and Classified Listings Directory plugin for WordPress is vulnerable to time-based SQL Injection via t...

2025-07-28
CVE-2024-13342
Analyzed
8.1
WordPress Multiple Products

The Booster for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'add_files_to_orde...

2025-08-29
CVE-2024-13174
Analyzed
8.6
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in E1 Informatics Web Application allows SQL Inject...

2025-09-16
CVE-2024-13151
Analyzed
10
Unknown Multiple Products

Authorization Bypass Through User-Controlled SQL Primary Key, CWE - 89 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Inje...

2025-09-18
CVE-2024-13150
Analyzed
9.8
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Fayton Software and Consulting Services fayton.P...

2025-09-29
CVE-2024-13149
Analyzed
9.8
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 200 - Exposure of Sensitive Information to an Unauthorized...

2025-09-16
CVE-2024-13068
Analyzed
7.3
Akinsoft LimonDesk Multiple Products

Origin Validation Error vulnerability in Akinsoft LimonDesk allows Forceful Browsing

2025-09-03
CVE-2024-12925
7.3
Unknown Multiple Products

Improper Validation of Certificate with Host Mismatch vulnerability in Akınsoft QR Menü allows HTTP Response Splitting

2025-09-02
CVE-2024-12918
Analyzed
8.8
Agito Computer Health4All

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Agito Computer Health4All allows SQL Injection

2026-06-02
CVE-2024-12916
Analyzed
8.8
Agito Computer Life4All

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Agito Computer Life4All allows SQL Injection

2026-06-02
CVE-2024-12913
Analyzed
8.8
Megatek Communication Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Megatek Communication System Azora Wireless Netw...

2025-09-16
CVE-2024-12651
Analyzed
8.5
PTT Inc. HGS Mobile App

Exposed Dangerous Method or Function vulnerability in PTT Inc

2026-06-02
CVE-2024-12612
Analyzed
7.5
WordPress Multiple Products

The School Management System for Wordpress plugin for WordPress is vulnerable to SQL Injection via several parameters across multiple AJAX action in a...

2025-08-17
CVE-2024-12367
Analyzed
8.6
Vegagrup Software Multiple Products

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Vegagrup Software Vega Master allows Directory Indexing

2025-09-16
CVE-2024-11976
Analyzed
7.3
WordPress Multiple Products

The The BuddyPress plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 14

2026-01-24
CVE-2024-11142
Analyzed
8.8
Gosoft Software Proticaret E-Commerce

Cross-Site Request Forgery (CSRF) vulnerability in Gosoft Software Proticaret E-Commerce allows Cross Site Request Forgery

2026-06-02
CVE-2024-0769
KEV Analyzed
9.5
D-Link DIR-859 Router

D-Link DIR-859 Router Path Traversal Vulnerability - Active in CISA KEV catalog.

2025-07-10
CVE-2023-7343
Analyzed
7.8
Unknown Multiple Products

HiSecOS web server versions 05

2026-04-03
CVE-2023-7342
Analyzed
8.8
Unknown Multiple Products

HiSecOS web server versions 03

2026-04-03
CVE-2023-7337
7.5
WordPress is vulnerable

The JS Help Desk – AI-Powered Support & Ticketing System plugin for WordPress is vulnerable to SQL Injection via the 'js-support-ticket-token-tkstatus...

2026-03-05
CVE-2023-54366
Analyzed
8.8
SurrealDB SurrealDB

SurrealDB before 1

2026-07-19
CVE-2023-54359
8.2
WordPress adivaha Travel

WordPress adivaha Travel Plugin 2

2026-04-10
CVE-2023-54353
Analyzed
7.8
Personify ChromaCam

Chromacam 4

2026-06-21
CVE-2023-54352
Analyzed
9.8
HP Seotheme

WordPress Seotheme contains a critical remote code execution vulnerability allowing unauthenticated attackers to upload and execute arbitrary PHP file...

2026-06-08
CVE-2023-54351
Analyzed
7.2
WordPress Sonaar Music Plugin

WordPress Sonaar Music Plugin 4

2026-06-08
CVE-2023-54350
Analyzed
7.5
HP Augmented-Reality plugin

WordPress Augmented-Reality plugin contains a remote code execution vulnerability in the elFinder connector that allows unauthenticated attackers to u...

2026-06-08
CVE-2023-54348
Analyzed
8.8
ERPGo Multiple Products

ERPGo SaaS 3

2026-05-06
CVE-2023-54347
7.5
OpenEMR Multiple Products

OpenEMR 7

2026-05-06
CVE-2023-54346
7.5
WordPress Plugin Backup

WordPress Plugin Backup Migration 1

2026-05-06
CVE-2023-54345
8.8
Framework Multiple Products

Frappe Framework ERPNext 13

2026-05-06
CVE-2023-54344
Analyzed
9.8
Eclipse Equinox Equinox OSGi

Eclipse Equinox OSGi version 3.7.2 and earlier contains a remote code execution vulnerability allowing unauthenticated attackers to execute commands v...

2026-05-06
CVE-2023-54342
Analyzed
9.8
Unknown Equinox OSGi

Eclipse Equinox OSGi versions 3.8 through 3.18 are vulnerable to unauthenticated remote code execution via the console interface's fork command.

2026-05-06
CVE-2023-54340
8.2
WorkOrder Multiple Products

WorkOrder CMS 0

2026-01-14
CVE-2023-54339
Analyzed
9.8
HP Multiple Products

Webgrind 1.1 contains a remote command execution vulnerability that allows unauthenticated attackers to inject OS commands via the dataFile parameter...

2026-01-14
CVE-2023-54338
8.4
Unknown Multiple Products

Tftpd32 SE 4

2026-01-14
CVE-2023-54336
8.4
Mediconta Multiple Products

Mediconta 3

2026-01-14
CVE-2023-54335
Analyzed
9.8
HP Multiple Products

eXtplorer 2.1.14 contains an authentication bypass vulnerability that allows attackers to login without a password by manipulating the login request....

2026-01-14
CVE-2023-54334
Analyzed
9.8
Unknown Multiple Products

Explorer32++ 1.3.5.531 contains a buffer overflow vulnerability in Structured Exception Handler (SEH) records that allows attackers to execute arbitra...

2026-01-14
CVE-2023-54333
8.2
Unknown Multiple Products

Social-Share-Buttons 2

2026-01-14
CVE-2023-54331
8.4
Outline Multiple Products

Outline 1

2026-01-14
CVE-2023-54330
Analyzed
9.8
Microsoft Multiple Products

Inbit Messenger versions 4.6.0 to 4.9.0 contain a remote stack-based buffer overflow vulnerability that allows unauthenticated attackers to execute ar...

2026-01-14
CVE-2023-54329
Analyzed
9.8
Inbit Messenger Multiple Products

Inbit Messenger 4.6.0 - 4.9.0 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands by...

2026-01-14
CVE-2023-54328
Analyzed
9.8
AimOne Video Converter Multiple Products

AimOne Video Converter 2.04 Build 103 contains a buffer overflow vulnerability in its registration form that causes application crashes. Attackers can...

2026-01-14
CVE-2023-54327
7.5
LAN Multiple Products

Tinycontrol LAN Controller 1

2025-12-31
CVE-2023-54163
8.2
Unknown Multiple Products

NLB mKlik Macedonia 3

2025-12-31
CVE-2023-53984
8.4
HotKey Multiple Products

Clevo HotKey Clipboard 2

2026-01-14
CVE-2023-53983
7.5
Anevia Multiple Products

Anevia Flamingo XL/XS 3

2025-12-31
CVE-2023-53982
8.2
PMB Multiple Products

PMB 7

2025-12-24
CVE-2023-53981
Analyzed
8.8
PhotoShow Multiple Products

PhotoShow 3

2025-12-23