20685 Total CVEs
11938 AI Analyzed
298 CISA KEV
4466 Critical
All Vendors
Showing 18901-18950 of 20685 CVEs Page 379 of 414
CVE-2025-10690
Analyzed
9.8
WordPress Multiple Products

The Goza - Nonprofit Charity WordPress Theme theme for WordPress is vulnerable to unauthorized arbitrary file uploads due to a missing capability chec...

2025-09-19
CVE-2025-10688
7.3
Unknown Multiple Products

A vulnerability was determined in SourceCodester Pet Grooming Management Software 1

2025-09-18
CVE-2025-10687
7.3
Learning Multiple Products

A vulnerability was found in SourceCodester Responsive E-Learning System 1

2025-09-18
CVE-2025-10686
Analyzed
7.2
WordPress Multiple Products

The Creta Testimonial Showcase WordPress plugin before 1

2025-11-15
CVE-2025-10681
Analyzed
8.6
Storage Mobile App and Device Firmware

Storage credentials are hardcoded in the mobile app and device firmware

2026-04-04
CVE-2025-10680
Analyzed
8.8
OpenVPN Multiple Products

OpenVPN 2

2025-10-24
CVE-2025-10679
Analyzed
7.3
Google Reviews

The ReviewX – WooCommerce Product Reviews with Multi-Criteria, Reminder Emails, Google Reviews, Schema & More plugin for WordPress is vulnerable to ar...

2026-03-23
CVE-2025-10673
7.3
Unknown Multiple Products

A vulnerability was determined in itsourcecode Student Information Management System 1

2025-09-18
CVE-2025-10672
7.8
Unknown Multiple Products

A vulnerability was found in whuan132 AIBattery up to 1

2025-09-18
CVE-2025-10670
7.3
Unknown Multiple Products

A flaw has been found in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1

2025-09-18
CVE-2025-10668
7.3
Discussion Multiple Products

A security vulnerability has been detected in itsourcecode Online Discussion Forum 1

2025-09-18
CVE-2025-10667
7.3
Discussion Multiple Products

A weakness has been identified in itsourcecode Online Discussion Forum 1

2025-09-18
CVE-2025-10666
8.8
D-Link Multiple Products

A security flaw has been discovered in D-Link DIR-825 up to 2

2025-09-18
CVE-2025-10664
Analyzed
7.3
HP Multiple Products

A vulnerability was determined in PHPGurukul Small CRM 4

2025-09-18
CVE-2025-10663
Analyzed
7.3
HP Multiple Products

A vulnerability was found in PHPGurukul Online Course Registration 3

2025-09-18
CVE-2025-10659
Analyzed
9.8
HP Multiple Products

The Telenium Online Web Application is vulnerable due to a PHP endpoint accessible to unauthenticated network users that improperly handles user-suppl...

2025-09-30
CVE-2025-10656
Analyzed
9.8
WordPress Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light

The Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light plugin contains a missing authorization flaw that permits unauthenticated user...

2026-07-30
CVE-2025-10653
8.6
Unknown Multiple Products

An unauthenticated debug port may allow access to the device file system

2025-10-02
CVE-2025-10647
Analyzed
8.8
WordPress Multiple Products

The Embed PDF for WPForms plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ajax_handler_downloa...

2025-09-19
CVE-2025-10644
Analyzed
9.4
Unknown Multiple Products

Wondershare Repairit SAS Token Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypa...

2025-09-17
CVE-2025-10643
Analyzed
9.1
Unknown Multiple Products

Wondershare Repairit Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authent...

2025-09-17
CVE-2025-10641
7.1
Unknown Multiple Products

All WorkExaminer Professional traffic between monitoring client, console and server is transmitted as plain text

2025-10-22
CVE-2025-10640
Analyzed
9.8
Unknown Multiple Products

An unauthenticated attacker with access to TCP port 12306 of the WorkExaminer server can exploit missing server-side authentication checks to bypass t...

2025-10-22
CVE-2025-10639
8.8
Professional Multiple Products

The WorkExaminer Professional server installation comes with an FTP server that is used to receive the client logs on TCP port 12304

2025-10-22
CVE-2025-10635
Analyzed
7.7
WordPress Multiple Products

The Find Me On WordPress plugin through 2

2025-10-08
CVE-2025-10624
Analyzed
7.3
HP Multiple Products

A security flaw has been discovered in PHPGurukul User Management System 1

2025-09-18
CVE-2025-10623
7.3
Unknown Multiple Products

A vulnerability was identified in SourceCodester Hotel Reservation System 1

2025-09-18
CVE-2025-10622
8
Red Hat Multiple Products

A flaw was found in Red Hat Satellite (Foreman component)

2025-11-06
CVE-2025-10621
7.3
Unknown Multiple Products

A vulnerability was determined in SourceCodester Hotel Reservation System 1

2025-09-18
CVE-2025-10611
Analyzed
9.8
Unknown Multiple Products

Due to an insufficient access control implementation in multiple WSO2 Products, authentication and authorization checks for certain REST APIs can be b...

2025-10-16
CVE-2025-10610
Analyzed
9.8
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SFS Consulting Information Processing Industry a...

2025-10-14
CVE-2025-10604
Analyzed
7.3
HP Multiple Products

A vulnerability was identified in PHPGurukul Online Discussion Forum 1

2025-09-18
CVE-2025-10603
Analyzed
7.3
HP Multiple Products

A vulnerability was determined in PHPGurukul Online Discussion Forum 1

2025-09-18
CVE-2025-10601
7.3
Unknown Multiple Products

A vulnerability has been found in SourceCodester Online Exam Form Submission 1

2025-09-18
CVE-2025-10600
7.3
Unknown Multiple Products

A flaw has been found in SourceCodester Online Exam Form Submission 1

2025-09-18
CVE-2025-10599
7.3
Unknown Multiple Products

A security flaw has been discovered in itsourcecode Web-Based Internet Laboratory Management System 1

2025-09-18
CVE-2025-10598
7.3
Unknown Multiple Products

A vulnerability was identified in SourceCodester Pet Grooming Management Software 1

2025-09-18
CVE-2025-10597
7.3
Unknown Multiple Products

A vulnerability was determined in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464

2025-09-17
CVE-2025-10596
7.3
Unknown Multiple Products

A vulnerability was found in SourceCodester Online Exam Form Submission 1

2025-09-17
CVE-2025-10589
8.8
Unknown Multiple Products

The N-Reporter, N-Cloud, and N-Probe developed by N-Partner has an OS Command Injection vulnerability, allowing authenticated remote attackers to inje...

2025-09-17
CVE-2025-10587
Analyzed
9.8
WordPress Multiple Products

The Community Events plugin for WordPress is vulnerable to SQL Injection via the event_category parameter in all versions up to, and including, 1.5.1...

2025-10-08
CVE-2025-10586
Analyzed
9.8
WordPress Multiple Products

The Community Events plugin for WordPress is vulnerable to SQL Injection via the ‘event_venue’ parameter in all versions up to, and including, 1.5.1 d...

2025-10-09
CVE-2025-10585
KEV Analyzed
9.5
Google Chromium V8

Google Chromium V8 Type Confusion Vulnerability - Active in CISA KEV catalog.

2025-09-23
CVE-2025-10582
Analyzed
8.8
WordPress Multiple Products

The WP Dispatcher plugin for WordPress is vulnerable to SQL Injection via the ‘id’ parameter in all versions up to, and including, 1

2025-10-03
CVE-2025-10581
7.8
Unknown Multiple Products

A potential DLL hijacking vulnerability was discovered in the Lenovo PC Manager during an internal security assessment that could allow a local authen...

2025-10-16
CVE-2025-10573
Analyzed
9.6
Unknown Multiple Products

Stored XSS in Ivanti Endpoint Manager prior to version 2024 SU4 SR1 allows a remote unauthenticated attacker to execute arbitrary JavaScript in the co...

2025-12-10
CVE-2025-10571
Analyzed
9.6
Unknown Multiple Products

Authentication Bypass Using an Alternate Path or Channel vulnerability in ABB ABB Ability Edgenius.This issue affects ABB Ability Edgenius: 3.2.0.0, 3...

2025-11-20
CVE-2025-10565
7.3
Unknown Multiple Products

A vulnerability was determined in Campcodes Grocery Sales and Inventory System 1

2025-09-16
CVE-2025-10564
7.3
Unknown Multiple Products

A vulnerability was found in Campcodes Grocery Sales and Inventory System 1

2025-09-16
CVE-2025-10563
7.3
Unknown Multiple Products

A vulnerability has been found in Campcodes Grocery Sales and Inventory System 1

2025-09-16