24780 Total CVEs
24685 AI Analyzed
346 CISA KEV
5750 Critical
All Vendors
Showing 19801-19850 of 24780 CVEs Page 397 of 496
CVE-2025-49758
Analyzed
8.8

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges...

2025-08-12
CVE-2025-49757
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-08-12
CVE-2025-49753
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49752
Analyzed
10
Microsoft Azure Bastion Developer

Azure Bastion Elevation of Privilege Vulnerability

2025-11-20
CVE-2025-49741
7.4
Microsoft Microsoft Edge (Chromium-based)

No cwe for this issue in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network

2025-07-06
CVE-2025-49740
Analyzed
8.8
Microsoft Windows 10 Version 1507

Protection mechanism failure in Windows SmartScreen allows an unauthorized attacker to bypass a security feature over a network

2025-07-08
CVE-2025-49739
Analyzed
8.8
Microsoft Microsoft Visual Studio 2015 Update 3

Improper link resolution before file access ('link following') in Visual Studio allows an unauthorized attacker to elevate privileges over a network

2025-07-10
CVE-2025-49735
Analyzed
8.1
Microsoft Windows Server 2012

Use after free in Windows KDC Proxy Service (KPSSVC) allows an unauthorized attacker to execute code over a network

2025-07-10
CVE-2025-49729
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49724
Analyzed
8.8
Microsoft Windows 10 Version 1809

Use after free in Windows Connected Devices Platform Service allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49723
Analyzed
8.8
Microsoft Windows 10 Version 1809

Missing authorization in Windows StateRepository API allows an authorized attacker to perform tampering locally

2025-07-08
CVE-2025-49717
Analyzed
8.5
Microsoft Microsoft SQL Server 2019 (CU 32)

Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network

2025-07-10
CVE-2025-49713
Analyzed
8.8
Microsoft Microsoft Edge (Chromium-based)

Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over...

2025-07-05
CVE-2025-49712
Analyzed
8.8
Microsoft Microsoft SharePoint Enterprise Server 2016

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network

2025-08-12
CVE-2025-49708
Analyzed
9.9
Microsoft Windows 10 Version 1809

Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges over a network.

2025-10-14
CVE-2025-49707
Analyzed
7.9
Microsoft DCadsv5-series Azure VM

Improper access control in Azure Virtual Machines allows an authorized attacker to perform spoofing locally

2025-08-12
CVE-2025-49704
Analyzed
8.8
Microsoft Microsoft SharePoint Enterprise Server 2016

Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network

2025-07-08
CVE-2025-49701
Analyzed
8.8
Microsoft Microsoft SharePoint Enterprise Server 2016

Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network

2025-07-08
CVE-2025-49697
Analyzed
8.4
Microsoft Microsoft 365 Apps for Enterprise

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally

2025-07-08
CVE-2025-49696
Analyzed
8.4
Microsoft Microsoft 365 Apps for Enterprise

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally

2025-07-08
CVE-2025-49695
Analyzed
8.4
Microsoft Microsoft 365 Apps for Enterprise

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally

2025-07-08
CVE-2025-49692
Analyzed
7.8
Microsoft Azure Connected Machine Agent

Improper access control in Azure Windows Virtual Machine Agent allows an authorized attacker to elevate privileges locally

2025-09-09
CVE-2025-49691
Analyzed
8
Microsoft Windows 10 Version 1507

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over an adjacent network

2025-07-10
CVE-2025-49688
Analyzed
8.8
Microsoft Windows Server 2012 R2

Double free in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49687
Analyzed
8.8
Microsoft Windows 10 Version 1507

Out-of-bounds read in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges locally

2025-07-08
CVE-2025-49676
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49674
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49673
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49672
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49670
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49669
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49668
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49663
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49657
Analyzed
8.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-07-08
CVE-2025-49655
Analyzed
9.8
Keras Keras

Deserialization of untrusted data can occur in versions of the Keras framework running versions 3.11.0 up to but not including 3.11.3, enabling a mali...

2025-10-17
CVE-2025-4962
Analyzed
7.7
lunary-ai lunary-ai/lunary

An Insecure Direct Object Reference (IDOR) vulnerability was identified in the `POST /v1/templates` endpoint of the Lunary API, affecting versions up...

2025-08-19
CVE-2025-4960
Analyzed
7.8
EPSON EPSON Printer Controller Installer

The com

2026-02-20
CVE-2025-4957
Analyzed
7.1
Metagauss ProfileGrid

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss ProfileGrid allows Reflected XSS

2025-09-26
CVE-2025-49569
Analyzed
7.8
Adobe Substance3D - Viewer

Substance3D - Viewer versions 0

2025-08-13
CVE-2025-49564
Analyzed
7.8
Adobe Illustrator

Illustrator versions 28

2025-08-12
CVE-2025-49563
Analyzed
7.8
Adobe Illustrator

Illustrator versions 28

2025-08-12
CVE-2025-49560
Analyzed
7.8
Adobe Substance3D - Viewer

Substance3D - Viewer versions 0

2025-08-13
CVE-2025-49557
Analyzed
8.7
Adobe Adobe Commerce

Adobe Commerce versions 2

2025-08-12
CVE-2025-49555
Analyzed
8.1
Adobe Adobe Commerce

Adobe Commerce versions 2

2025-08-12
CVE-2025-49553
Analyzed
9.3
Adobe Adobe Connect

Adobe Connect versions 12.9 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability that could be exploited by an attacker to...

2025-10-14
CVE-2025-49551
Analyzed
8.8
Adobe ColdFusion

ColdFusion versions 2025

2025-07-10
CVE-2025-49537
Analyzed
7.9
Adobe ColdFusion

ColdFusion versions 2025

2025-07-10
CVE-2025-49533
Analyzed
9.8
Adobe Adobe Experience Manager (MS)

Adobe Experience Manager (MS) versions 6.5.23.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could lead to arbit...

2025-07-08
CVE-2025-4953
Analyzed
7.4
Red Hat Red Hat Enterprise Linux 8

A flaw was found in Podman

2025-09-16
CVE-2025-49521
8.8

A flaw was found in the EDA component of the Ansible Automation Platform, where user-supplied Git branch or refspec values are evaluated as Jinja2 tem...

2025-07-06