20685 Total CVEs
11938 AI Analyzed
298 CISA KEV
4466 Critical
All Vendors
Showing 18551-18600 of 20685 CVEs Page 372 of 414
CVE-2025-11704
Analyzed
7.5
WordPress Multiple Products

The Elegance Menu plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1

2025-11-04
CVE-2025-11702
8.5
GitLab Multiple Products

GitLab has remediated an issue in EE affecting all versions from 17

2025-10-29
CVE-2025-11699
7.1
Unknown Multiple Products

nopCommerce v4

2025-12-02
CVE-2025-11695
Analyzed
8
Unknown Multiple Products

When tlsInsecure=False appears in a connection string, certificate validation is disabled

2025-10-13
CVE-2025-11693
Analyzed
9.8
WordPress Multiple Products

The Export WP Page to Static HTML & PDF plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.3...

2025-12-14
CVE-2025-11690
8.5
Insecure Multiple Products

An Insecure Direct Object Reference (IDOR) vulnerability exists in the vehicleId parameter, allowing unauthorized access to sensitive information of o...

2025-11-04
CVE-2025-11675
Analyzed
7.2
HP Multiple Products

Enterprise Cloud Database developed by Ragic has an Arbitrary File Upload vulnerability, allowing privileged remote attackers to upload and execute we...

2025-10-13
CVE-2025-11673
Analyzed
7.2
Unknown Multiple Products

SOOP-CLM developed by PiExtract has a Hidden Functionality vulnerability, allowing privileged remote attackers to exploit a hidden functionality to ex...

2025-10-13
CVE-2025-11669
8.1
Unknown Multiple Products

Zohocorp ManageEngine PAM360 versions before 8202; Password Manager Pro versions before 13221; Access Manager Plus versions prior to 4401 are vulnerab...

2026-01-14
CVE-2025-11662
7.3
Unknown Multiple Products

A security flaw has been discovered in SourceCodester Best Salon Management System 1

2025-10-13
CVE-2025-11661
7.3
Unknown Multiple Products

A vulnerability was found in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59

2025-10-13
CVE-2025-11660
7.3
Unknown Multiple Products

A vulnerability has been found in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59

2025-10-13
CVE-2025-11659
7.3
Unknown Multiple Products

A flaw has been found in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59

2025-10-13
CVE-2025-11658
7.3
Unknown Multiple Products

A vulnerability was detected in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59

2025-10-13
CVE-2025-11657
7.3
Unknown Multiple Products

A security vulnerability has been detected in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59

2025-10-13
CVE-2025-11656
7.3
Unknown Multiple Products

A weakness has been identified in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59

2025-10-13
CVE-2025-11654
Analyzed
7.3
F5 Multiple Products

A vulnerability was identified in yousaf530 Inferno Online Clothing Store up to 827dd42bfbe380e8de76fdc67958c24cf1246208

2025-10-13
CVE-2025-11653
Analyzed
8.8
UTT Multiple Products

A vulnerability was determined in UTT HiPER 2620G up to 3

2025-10-13
CVE-2025-11652
Analyzed
8.8
Unknown Multiple Products

A vulnerability was found in UTT 进取 518G up to V3v3

2025-10-13
CVE-2025-11651
Analyzed
8.8
Unknown Multiple Products

A vulnerability has been found in UTT 进取 518G up to V3v3

2025-10-13
CVE-2025-11649
Analyzed
7
Tomofun Multiple Products

A vulnerability was found in Tomofun Furbo 360 and Furbo Mini

2025-10-12
CVE-2025-11622
Analyzed
7.8
Endpoint Multiple Products

Insecure deserialization in Ivanti Endpoint Manager allows a local authenticated attacker to escalate their privileges

2025-10-13
CVE-2025-11621
8.1
Vault Multiple Products

Vault and Vault Enterprise’s (“Vault”) AWS Auth method may be susceptible to authentication bypass if the role of the configured bound_principal_iam i...

2025-10-23
CVE-2025-11620
7.2
WordPress Multiple Products

The Multiple Roles per User plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'mrpu_add...

2025-11-19
CVE-2025-11619
8.8
Devolutions Multiple Products

Improper certificate validation when connecting to gateways in Devolutions Server 2025

2025-10-15
CVE-2025-11615
Analyzed
7.3
Unknown Multiple Products

A security flaw has been discovered in SourceCodester Best Salon Management System 1

2025-10-12
CVE-2025-11614
Analyzed
7.3
Unknown Multiple Products

A vulnerability was identified in SourceCodester Best Salon Management System 1

2025-10-12
CVE-2025-1161
7.1
Unknown Multiple Products

Incorrect Use of Privileged APIs vulnerability in NomySoft Information Technology Training and Consulting Inc

2025-12-12
CVE-2025-11608
Analyzed
7.3
Banking Multiple Products

A security vulnerability has been detected in code-projects E-Banking System 1

2025-10-12
CVE-2025-11604
Analyzed
7.3
Food Multiple Products

A vulnerability was determined in projectworlds Online Ordering Food System 1

2025-10-12
CVE-2025-11601
Analyzed
7.3
Result Multiple Products

A vulnerability was detected in SourceCodester Online Student Result System 1

2025-10-12
CVE-2025-11599
Analyzed
7.3
Unknown Multiple Products

A weakness has been identified in Campcodes Online Apartment Visitor Management System 1

2025-10-12
CVE-2025-11596
Analyzed
7.3
Unknown Multiple Products

A vulnerability was determined in code-projects E-Commerce Website 1

2025-10-12
CVE-2025-11586
8.8
Tenda Multiple Products

A vulnerability was determined in Tenda AC7 15

2025-10-10
CVE-2025-11585
7.3
Monitoring Multiple Products

A vulnerability was found in code-projects Project Monitoring System 1

2025-10-10
CVE-2025-11584
7.3
Search Multiple Products

A vulnerability has been found in code-projects Online Job Search Engine 1

2025-10-10
CVE-2025-11583
7.3
Search Multiple Products

A flaw has been found in code-projects Online Job Search Engine 1

2025-10-10
CVE-2025-11582
7.3
Search Multiple Products

A vulnerability was detected in code-projects Online Job Search Engine 1

2025-10-10
CVE-2025-11575
Analyzed
7.8
Microsoft Multiple Products

Incorrect Default Permissions vulnerability in MongoDB Atlas SQL ODBC driver on Windows allows Privilege Escalation

2025-10-23
CVE-2025-11573
7.5
Unknown Multiple Products

An infinite loop issue in Amazon

2025-10-09
CVE-2025-11569
7.5
All Multiple Products

All versions of the package cross-zip are vulnerable to Directory Traversal via consecutive usage of zipSync() and unzipSync () functions that allow a...

2025-10-10
CVE-2025-11561
8.8
Linux Multiple Products

A flaw was found in the integration of Active Directory and the System Security Services Daemon (SSSD) on Linux systems

2025-10-09
CVE-2025-11558
7.3
Unknown Multiple Products

A vulnerability was found in code-projects E-Commerce Website 1

2025-10-09
CVE-2025-11557
7.3
Unknown Multiple Products

A vulnerability has been found in projectworlds Gate Pass Management System 1

2025-10-09
CVE-2025-11556
7.3
Leave Multiple Products

A flaw has been found in code-projects Simple Leave Manager 1

2025-10-09
CVE-2025-11555
7.3
Unknown Multiple Products

A vulnerability was detected in Campcodes Online Learning Management System 1

2025-10-09
CVE-2025-11549
8.8
Tenda Multiple Products

A vulnerability has been found in Tenda W12 3

2025-10-09
CVE-2025-11547
7.8
Unknown Multiple Products

AXIS Camera Station Pro contained a flaw to perform a privilege escalation attack on the server as a non-admin user

2026-02-10
CVE-2025-11539
Analyzed
9.9
Unknown Multiple Products

Grafana Image Renderer is vulnerable to remote code execution due to an arbitrary file write vulnerability. This is due to the fact that the /render/c...

2025-10-09
CVE-2025-11533
Analyzed
9.8
WordPress Multiple Products

The WP Freeio plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.2.21. This is due to the process_regi...

2025-10-12