20685 Total CVEs
11938 AI Analyzed
298 CISA KEV
4466 Critical
All Vendors
Showing 18701-18750 of 20685 CVEs Page 375 of 414
CVE-2025-11252
Analyzed
9.8
Signum Technology Windesk.Fm

Signum Technology's Windesk.Fm platform contains an SQL injection vulnerability that allows attackers to execute arbitrary database commands via unsan...

2026-02-28
CVE-2025-11251
Analyzed
9.8
Dayneks Software E-Commerce Platform

The Dayneks E-Commerce Platform is vulnerable to SQL injection due to improper neutralization of special elements in SQL commands, potentially exposin...

2026-02-28
CVE-2025-11250
Analyzed
9.1
Unknown Multiple Products

Zohocorp ManageEngine ADSelfService Plus versions before 6519 are vulnerable to Authentication Bypass due to improper filter configurations.

2026-01-14
CVE-2025-11242
Analyzed
9.8
Teknolist Computer Okulistik

The Okulistik platform contains a Server-Side Request Forgery (SSRF) vulnerability, allowing attackers to make unauthorized requests from the server t...

2026-02-10
CVE-2025-11234
7.5
Unknown Multiple Products

A flaw was found in QEMU

2025-10-03
CVE-2025-11232
7.5
Unknown Multiple Products

To trigger the issue, three configuration parameters must have specific settings: "hostname-char-set" must be left at the default setting, which is "[...

2025-10-29
CVE-2025-11230
Analyzed
7.5
Inefficient Multiple Products

Inefficient algorithm complexity in mjson in HAProxy allows remote attackers to cause a denial of service via specially crafted JSON requests

2025-11-20
CVE-2025-11224
7.7
GitLab Multiple Products

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15

2026-01-16
CVE-2025-11223
7.8
AutoDownloader Multiple Products

Installer of Panasonic AutoDownloader version 1

2025-10-03
CVE-2025-11221
8.8
GTONE ChangeFlow Multiple Products

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Unrestricted Upload of File with Dangerous Type vulnerability in GTONE...

2025-10-02
CVE-2025-11206
7.1
Google Multiple Products

Heap buffer overflow in Video in Google Chrome prior to 141

2025-11-08
CVE-2025-11205
8.8
Google Multiple Products

Heap buffer overflow in WebGPU in Google Chrome prior to 141

2025-11-08
CVE-2025-11204
Analyzed
7.2
WordPress Multiple Products

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to SQL Injection in a...

2025-10-08
CVE-2025-11202
Analyzed
9.8
Unknown Multiple Products

win-cli-mcp-server resolveCommandPath Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arb...

2025-10-29
CVE-2025-11201
Analyzed
8.1
Intel Multiple Products

MLflow Tracking Server Model Creation Directory Traversal Remote Code Execution Vulnerability

2025-10-29
CVE-2025-11200
8.1
MLflow Multiple Products

MLflow Weak Password Requirements Authentication Bypass Vulnerability

2025-10-29
CVE-2025-11198
Analyzed
7.4
Juniper Multiple Products

A Missing Authentication for Critical Function vulnerability in Juniper Networks Security Director Policy Enforcer allows an unauthenticated, network-...

2025-10-09
CVE-2025-11178
7.3
Unknown Multiple Products

Local privilege escalation due to DLL hijacking vulnerability

2025-09-30
CVE-2025-11177
Analyzed
7.5
WordPress Multiple Products

The External Login plugin for WordPress is vulnerable to SQL Injection via the 'log' parameter in all versions up to, and including, 1

2025-10-16
CVE-2025-11168
Analyzed
8.8
WordPress Multiple Products

The Mementor Core plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2

2025-11-13
CVE-2025-11158
Analyzed
9.1
Hitachi Vantara Multiple Products

Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.6, including 9.3.x and 8.3.x, do not restrict Groovy scripts in new PRPT r...

2026-03-11
CVE-2025-11157
Analyzed
7.8
Unknown Multiple Products

A high-severity remote code execution vulnerability exists in feast-dev/feast version 0

2026-01-01
CVE-2025-11153
Analyzed
7.5
Unknown Multiple Products

This vulnerability affects Firefox < 143

2025-10-01
CVE-2025-11152
Analyzed
8.6
Mozilla Multiple Products

This vulnerability affects Firefox < 143

2025-10-01
CVE-2025-11151
8.2
Beyaz Bilgisayar Multiple Products

Exposure of Sensitive Information to an Unauthorized Actor, Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability i...

2025-10-21
CVE-2025-11149
7.5
Unknown Multiple Products

This affects all versions of the package node-static; all versions of the package @nubosoftware/node-static

2025-09-30
CVE-2025-11148
Analyzed
9.8
Intel Multiple Products

All versions of the package check-branches are vulnerable to Command Injection check-branches is a command-line tool that is interacted with locally,...

2025-09-30
CVE-2025-11145
7.5
CBK Soft Software Multiple Products

Observable Discrepancy, Exposure of Sensitive Information to an Unauthorized Actor, Exposure of Private Personal Information to an Unauthorized Actor...

2025-10-24
CVE-2025-11142
7.1
Unknown Multiple Products

The VAPIX API mediaclip

2026-02-10
CVE-2025-11140
7.3
Unknown Multiple Products

A vulnerability was identified in Bjskzy Zhiyou ERP up to 11

2025-09-29
CVE-2025-11135
7.3
Unknown Multiple Products

A vulnerability was detected in pmTicket Project-Management-Software up to 2ef379da2075f4761a2c9029cf91d073474e7486

2025-09-29
CVE-2025-11133
7.5
Unknown Multiple Products

In nr modem, there is a possible system crash due to improper input validation

2025-12-02
CVE-2025-11132
7.5
Unknown Multiple Products

In nr modem, there is a possible system crash due to improper input validation

2025-12-02
CVE-2025-11131
7.5
Unknown Multiple Products

In nr modem, there is a possible system crash due to improper input validation

2025-12-02
CVE-2025-11130
Analyzed
8.4
Unknown Multiple Products

A weakness has been identified in iHongRen pptp-vpn 1

2025-09-29
CVE-2025-11127
Analyzed
9.8
WordPress Multiple Products

The Mstoreapp Mobile App WordPress plugin through 2.08 and Mstoreapp Mobile Multivendor through 9.0.1 do not properly verify users identify when using...

2025-11-22
CVE-2025-11126
Analyzed
9.8
Unknown Multiple Products

A security flaw has been discovered in Apeman ID71 218.53.203.117. This vulnerability affects unknown code of the file /system/www/system.ini. The man...

2025-09-29
CVE-2025-11123
Analyzed
8.8
Tenda Multiple Products

A flaw has been found in Tenda AC18 15

2025-09-28
CVE-2025-11122
Analyzed
8.8
Tenda Multiple Products

A vulnerability was detected in Tenda AC18 15

2025-09-28
CVE-2025-11120
Analyzed
8.8
Tenda Multiple Products

A weakness has been identified in Tenda AC8 16

2025-09-28
CVE-2025-11118
7.3
Grading Multiple Products

A vulnerability was identified in CodeAstro Student Grading System 1

2025-09-28
CVE-2025-11117
Analyzed
8.8
Tenda Multiple Products

A vulnerability was determined in Tenda CH22 1

2025-09-28
CVE-2025-11116
7.3
Scheduling Multiple Products

A vulnerability was found in code-projects Simple Scheduling System 1

2025-09-28
CVE-2025-11115
7.3
Scheduling Multiple Products

A vulnerability has been found in code-projects Simple Scheduling System 1

2025-09-28
CVE-2025-11111
7.3
Unknown Multiple Products

A weakness has been identified in Campcodes Advanced Online Voting Management System 1

2025-09-28
CVE-2025-11110
7.3
Unknown Multiple Products

A security flaw has been discovered in Campcodes Online Learning Management System 1

2025-09-28
CVE-2025-11109
7.3
Unknown Multiple Products

A vulnerability was identified in Campcodes Computer Sales and Inventory System 1

2025-09-28
CVE-2025-11108
7.3
Scheduling Multiple Products

A vulnerability was determined in code-projects Simple Scheduling System 1

2025-09-28
CVE-2025-11107
7.3
Scheduling Multiple Products

A vulnerability was found in code-projects Simple Scheduling System 1

2025-09-28
CVE-2025-11106
7.3
Scheduling Multiple Products

A vulnerability has been found in code-projects Simple Scheduling System 1

2025-09-28