8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 1951-2000 of 8341 CVEs Page 40 of 167
CVE-2025-65805
7.5
OpenAirInterface Multiple Products

OpenAirInterface CN5G AMF<=v2

2026-01-08
CVE-2025-65795
Analyzed
7.5
Unknown Multiple Products

Incorrect access control in the /api/v1/user endpoint of usememos memos v0

2025-12-09
CVE-2025-65781
8.2
Unknown Multiple Products

An issue was discovered in Wekan The Open Source kanban board system up to version 18

2025-12-17
CVE-2025-65778
8.1
Unknown Multiple Products

An issue was discovered in Wekan The Open Source kanban board system up to version 18

2025-12-17
CVE-2025-65742
8.2
Newgen OmniDocs Multiple Products

An unauthenticated Broken Function Level Authorization (BFLA) vulnerability in Newgen OmniDocs v11

2025-12-16
CVE-2025-6574
Analyzed
8.8
WordPress Multiple Products

The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and excluding, 6

2025-11-01
CVE-2025-65656
9.8
HP Multiple Products

dcat-admin v2.2.3-beta and before is vulnerable to file inclusion in admin/src/Extend/VersionManager.php.

2025-12-04
CVE-2025-65637
7.5
GitHub Multiple Products

A denial-of-service vulnerability exists in github

2025-12-06
CVE-2025-65594
8.1
OpenSIS Multiple Products

OpenSIS 9

2025-12-11
CVE-2025-65593
8.8
Unknown Multiple Products

nopCommerce 4

2025-12-18
CVE-2025-6558
KEV Analyzed
8.8
Google Multiple Products

Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138

2025-07-15
CVE-2025-65568
7.5
Unknown Multiple Products

A denial-of-service vulnerability exists in the omec-project UPF (pfcpiface component) in version upf-epc-pfcpiface:2

2025-12-20
CVE-2025-65567
7.5
Unknown Multiple Products

A denial-of-service vulnerability exists in the omec-project UPF (pfcpiface component) in version upf-epc-pfcpiface:2

2025-12-20
CVE-2025-65566
7.5
Unknown Multiple Products

A denial-of-service vulnerability exists in the omec-project UPF (pfcpiface component) in version upf-epc-pfcpiface:2

2025-12-20
CVE-2025-65565
7.5
Unknown Multiple Products

A denial-of-service vulnerability exists in the omec-project UPF (pfcpiface component) in version upf-epc-pfcpiface:2

2025-12-20
CVE-2025-65564
7.5
Unknown Multiple Products

A denial-of-service vulnerability exists in the omec-upf (upf-epc-pfcpiface) in version upf-epc-pfcpiface:2

2025-12-20
CVE-2025-65563
7.5
Unknown Multiple Products

A denial-of-service vulnerability exists in the omec-project UPF (component upf-epc/pfcpiface) up to at least version upf-epc-pfcpiface:2

2025-12-20
CVE-2025-65562
7.5
Unknown Multiple Products

The free5GC UPF suffers from a lack of bounds checking on the SEID when processing PFCP Session Deletion Requests

2025-12-20
CVE-2025-65561
7.5
Unknown Multiple Products

An issue was discovered in function LocalNode

2025-12-20
CVE-2025-65559
7.5
Unknown Multiple Products

An issue was discovered in Open5GS 2

2025-12-20
CVE-2025-6554
KEV Analyzed
8.1
Google Multiple Products

Type confusion in V8 in Google Chrome prior to 138

2025-07-05
CVE-2025-65530
Analyzed
8.8
Linux Multiple Products

An eval injection in the malware de-obfuscation routines of CloudLinux ai-bolit before v32

2025-12-13
CVE-2025-6553
Analyzed
9.8
WordPress Multiple Products

The Ovatheme Events Manager plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the process_checkout()...

2025-10-12
CVE-2025-65518
7.5
Obsidian Multiple Products

Plesk Obsidian versions 8

2026-01-09
CVE-2025-65512
7.5
Unknown Multiple Products

A Server-Side Request Forgery (SSRF) vulnerability was discovered in the webpage-to-markdown conversion feature of markdownify-mcp v0

2025-12-12
CVE-2025-65503
Analyzed
7.5
Unknown Multiple Products

Use after free in endpoint destructors in Redboltz async_mqtt 10

2025-11-25
CVE-2025-65495
Analyzed
7.5
Integer Multiple Products

Integer signedness error in tls_verify_call_back() in src/coap_openssl

2025-11-25
CVE-2025-65494
Analyzed
7.5
Unknown Multiple Products

NULL pointer dereference in get_san_or_cn_from_cert() in src/coap_openssl

2025-11-25
CVE-2025-65493
Analyzed
7.5
Unknown Multiple Products

NULL pointer dereference in src/coap_openssl

2025-11-25
CVE-2025-65473
Analyzed
9.1
HP Multiple Products

An arbitrary file rename vulnerability in the /admin/filer.php component of EasyImages 2.0 v2.8.6 and below allows attackers with Administrator privil...

2025-12-12
CVE-2025-6544
Analyzed
9.8
Unknown Multiple Products

A deserialization vulnerability exists in h2oai/h2o-3 versions <= 3.46.0.8, allowing attackers to read arbitrary system files and execute arbitrary co...

2025-09-22
CVE-2025-6543
KEV Analyzed
9.5
Citrix NetScaler ADC and Gateway

Citrix NetScaler ADC and Gateway Buffer Overflow Vulnerability - Recently added to CISA KEV.

2025-07-05
CVE-2025-65397
8.4
Unknown Multiple Products

An insecure authentication mechanism in the safe_exec

2026-01-15
CVE-2025-65363
7.2
Ruijie Multiple Products

Authenticated append-style command-injection Ruijie APs (AP_RGOS 11

2025-12-09
CVE-2025-65358
9.8
HP Multiple Products

Edoc-doctor-appointment-system v1.0.1 was discovered to contain SQl injection vulnerability via the 'docid' parameter at /admin/appointment.php.

2025-12-04
CVE-2025-65354
Analyzed
9.8
HP Multiple Products

Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management 1.0 permits SQL injection via the sitem_name POST par...

2025-12-24
CVE-2025-65346
9.1
Unknown Multiple Products

alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The unzip/extraction functionality improperly allows archive cont...

2025-12-06
CVE-2025-65320
7.5
Abacre Multiple Products

Abacre Restaurant Point of Sale (POS) up to 15

2025-12-03
CVE-2025-65297
7.5
Aqara Multiple Products

Aqara Hub devices including Camera Hub G3 4

2025-12-12
CVE-2025-65295
8.1
Unknown Multiple Products

Multiple vulnerabilities in Aqara Hub firmware update process in the Camera Hub G3 4

2025-12-12
CVE-2025-65292
7.3
Aqara Hub devices Multiple Products

Command injection vulnerability in Aqara Hub devices including Camera Hub G3 4

2025-12-12
CVE-2025-65290
7.4
Aqara Multiple Products

Aqara Hub devices including Camera Hub G3 4

2025-12-12
CVE-2025-65267
Analyzed
9
Intel Multiple Products

In ERPNext v15.83.2 and Frappe Framework v15.86.0, improper validation of uploaded SVG avatar images allows attackers to embed malicious JavaScript. T...

2025-12-03
CVE-2025-6523
7.7
Devolutions Multiple Products

Use of weak credentials in emergency authentication component in Devolutions Server allows an unauthenticated attacker to bypass authentication via br...

2025-07-23
CVE-2025-65213
Analyzed
9.8
Intel Multiple Products

MooreThreads torch_musa through all versions contains an unsafe deserialization vulnerability in torch_musa.utils.compare_tool. The compare_for_single...

2025-12-16
CVE-2025-65212
Analyzed
9.8
Unknown Multiple Products

An issue was discovered in NJHYST HY511 POE core before 2.1 and plugins before 0.1. The vulnerability stems from the device's insufficient cookie veri...

2026-01-07
CVE-2025-65203
7.1
Browser Multiple Products

KeePassXC-Browser thru 1

2025-12-18
CVE-2025-6520
Analyzed
9.8
Intel Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Abis Technology BAPSIS allows Blind SQL Injectio...

2025-10-31
CVE-2025-65199
7.8
Linux Multiple Products

A command injection vulnerability exists in Windscribe for Linux Desktop App that allows a local user who is a member of the windscribe group to execu...

2025-12-11
CVE-2025-65176
7.5
OneAgent Multiple Products

An issue was discovered in Dynatrace OneAgent before 1

2025-12-17