8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 1801-1850 of 8341 CVEs Page 37 of 167
CVE-2025-67076
7.5
Omnispace Agora Multiple Products

Directory traversal vulnerability in Omnispace Agora Project before 25

2026-01-16
CVE-2025-67073
Analyzed
9.8
Tenda Multiple Products

A Buffer overflow vulnerability in function fromAdvSetMacMtuWan of bin httpd in Tenda AC10V4.0 V16.03.10.20 allows remote attackers to cause denial of...

2025-12-18
CVE-2025-67070
8.2
Intel Multiple Products

A vulnerability exists in Intelbras CFTV IP NVD 9032 R Ftd V2

2026-01-10
CVE-2025-6704
Analyzed
9.8
Unknown Multiple Products

An arbitrary file writing vulnerability in the Secure PDF eXchange (SPX) feature of Sophos Firewall versions older than 21.0 MR2 (21.0.2) can lead to...

2025-07-22
CVE-2025-67015
Analyzed
7.5
Unknown Multiple Products

Incorrect access control in Comtech EF Data CDM-625 / CDM-625A Advanced Satellite Modem with firmware v2

2025-12-27
CVE-2025-67014
Analyzed
7.5
GmbH Multiple Products

Incorrect access control in DEV Systemtechnik GmbH DEV 7113 RF over Fiber Distribution System 32-0078 H

2025-12-27
CVE-2025-66960
7.5
Unknown Multiple Products

An issue in ollama v

2026-01-23
CVE-2025-66959
7.5
Unknown Multiple Products

An issue in ollama v

2026-01-23
CVE-2025-66953
8.8
Unknown Multiple Products

CSRF vulnerability in narda miteq Uplink Power Contril Unit UPC2 v

2025-12-19
CVE-2025-66923
7.2
Unknown Multiple Products

A Cross-site scripting (XSS) vulnerability in Create/Update Customer(s) in Open Source Point of Sale v3

2025-12-18
CVE-2025-66921
7.2
Unknown Multiple Products

A Cross-site scripting (XSS) vulnerability in Create/Update Item(s) Module in Open Source Point of Sale v3

2025-12-18
CVE-2025-66918
8.8
Unknown Multiple Products

edoc-doctor-appointment-system v1

2025-12-12
CVE-2025-66916
9.4
Unknown Multiple Products

The snailjob component in RuoYi-Vue-Plus versions 5.5.1 and earlier, interface /snail-job/workflow/check-node-expression can execute QLExpress express...

2026-01-09
CVE-2025-66913
Analyzed
9.8
JimuReport thru version Multiple Products

JimuReport thru version 2.1.3 is vulnerable to remote code execution when processing user-controlled H2 JDBC URLs. The application passes the attacker...

2026-01-09
CVE-2025-6691
Analyzed
8.1
WordPress Multiple Products

The SureForms – Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path v...

2025-07-10
CVE-2025-66909
7.5
Turms Multiple Products

Turms AI-Serving module v0

2025-12-20
CVE-2025-66905
7.5
Unknown Multiple Products

The Takes web framework's TkFiles take thru 2

2025-12-20
CVE-2025-66902
7.5
Unknown Multiple Products

An input validation issue in in Pithikos websocket-server v

2026-01-22
CVE-2025-66877
7.5
Unknown Multiple Products

Buffer overflow vulnerability in function dcputchar in decompile

2025-12-31
CVE-2025-66869
7.5
Unknown Multiple Products

Buffer overflow vulnerability in function strcat in asan_interceptors

2025-12-31
CVE-2025-66865
7.5
Unknown Multiple Products

An issue was discovered in function d_print_comp_inner in file cp-demangle

2025-12-31
CVE-2025-66863
7.5
Unknown Multiple Products

An issue was discovered in function d_discriminator in file cp-demangle

2025-12-31
CVE-2025-66862
7.5
Unknown Multiple Products

A buffer overflow vulnerability in function gnu_special in file cplus-dem

2025-12-31
CVE-2025-6685
8.8
ATEN Multiple Products

ATEN eco DC Missing Authorization Privilege Escalation Vulnerability

2025-09-02
CVE-2025-66802
Analyzed
9.8
HP Multiple Products

Sourcecodester Covid-19 Contact Tracing System 1.0 is vulnerable to RCE (Remote Code Execution). The application receives a reverse shell (php) into i...

2026-01-13
CVE-2025-6679
Analyzed
9.8
WordPress Multiple Products

The Bit Form builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in all versions up to, and inclu...

2025-08-15
CVE-2025-66786
7.5
OpenAirInterface Multiple Products

OpenAirInterface CN5G AMF<=v2

2026-01-08
CVE-2025-66738
Analyzed
8.8
Unknown Multiple Products

An issue in Yealink T21P_E2 Phone 52

2025-12-28
CVE-2025-66736
7.1
Unknown Multiple Products

youlai-boot V2

2025-12-23
CVE-2025-66735
7.5
Unknown Multiple Products

youlai-boot V2

2025-12-23
CVE-2025-66720
7.5
Unknown Multiple Products

Null pointer dereference in free5gc pcf 1

2026-01-24
CVE-2025-66719
9.1
Unknown Multiple Products

An issue was discovered in Free5gc NRF 1.4.0. In the access-token generation logic of free5GC, the AccessTokenScopeCheck() function in file internal/s...

2026-01-24
CVE-2025-6670
8.8
Unknown Multiple Products

A Cross-Site Request Forgery (CSRF) vulnerability exists in multiple WSO2 products due to the use of the HTTP GET method for state-changing operations...

2025-11-19
CVE-2025-66698
8.6
Unknown Multiple Products

An issue in Semantic machines v5

2026-01-14
CVE-2025-66692
7.5
Unknown Multiple Products

A buffer over-read in the PublicKey::verify() method of Binance - Trust Wallet Core before commit 5668c67 allows attackers to cause a Denial of Servic...

2026-01-22
CVE-2025-66675
8.2
Apache Multiple Products

Denial of Service vulnerability in Apache Struts, file leak in multipart request processing causes disk exhaustion

2025-12-11
CVE-2025-66648
7.2
Unknown Multiple Products

vega-functions provides function implementations for the Vega expression language

2026-01-06
CVE-2025-66644
KEV
7.2
Unknown Multiple Products

Array Networks ArrayOS AG before 9

2025-12-06
CVE-2025-66635
Analyzed
7.2
Unknown Multiple Products

Stack-based buffer overflow vulnerability exists in SEIKO EPSON Web Config

2025-12-16
CVE-2025-6663
7.8
GStreamer Multiple Products

GStreamer H266 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability

2025-07-07
CVE-2025-66628
7.5
ImageMagick Multiple Products

ImageMagick is a software suite to create, edit, compose, or convert bitmap images

2025-12-12
CVE-2025-66627
8.4
Wasmi Multiple Products

Wasmi is a WebAssembly interpreter focused on constrained and embedded systems

2025-12-10
CVE-2025-66626
8.1
Kubernetes Multiple Products

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes

2025-12-10
CVE-2025-66624
7.5
Unknown Multiple Products

BACnet Protocol Stack library provides a BACnet application layer, network layer and media access (MAC) layer communications services

2025-12-06
CVE-2025-66623
7.4
Kubernetes Multiple Products

Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations

2025-12-06
CVE-2025-66620
8
Unknown Multiple Products

An unused webshell in MicroServer allows unlimited login attempts, with sudo rights on certain files and directories

2026-01-08
CVE-2025-66580
Analyzed
9.6
Unknown Multiple Products

Dive is an open-source MCP Host Desktop Application that enables integration with function-calling LLMs. A critical Stored Cross-Site Scripting (XSS)...

2025-12-20
CVE-2025-66570
10
Docker Multiple Products

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.27.0, a vulnerability allows attacker-controlled HTTP hea...

2025-12-06
CVE-2025-66564
7.5
Unknown Multiple Products

Sigstore Timestamp Authority is a service for issuing RFC 3161 timestamps

2025-12-05
CVE-2025-66561
7.3
Unknown Multiple Products

SysReptor is a fully customizable pentest reporting platform

2025-12-05