20297 Total CVEs
11590 AI Analyzed
295 CISA KEV
4359 Critical
All Vendors
Showing 1951-2000 of 20297 CVEs Page 40 of 406
CVE-2026-59935
Analyzed
8.7
Unknown pypdf

pypdf is a free and open-source pure-python PDF library

2026-07-09
CVE-2026-5993
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setWiFiGuestCfg function, allowing remote attackers to execute...

2026-04-10
CVE-2026-5992
8.8
Tenda F451

A vulnerability was determined in Tenda F451 1

2026-04-10
CVE-2026-59913
Analyzed
7.8
Dell Display and Peripheral Manager (DDPM Mac)

Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2

2026-08-04
CVE-2026-59912
Analyzed
7.8
Dell Display and Peripheral Manager (DDPM Mac)

Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2

2026-08-04
CVE-2026-5991
8.8
Tenda F451

A vulnerability was found in Tenda F451 1

2026-04-10
CVE-2026-59901
Analyzed
8.7
Unknown netty

Netty is an asynchronous, event-driven network application framework

2026-07-30
CVE-2026-5990
8.8
Tenda F451

A vulnerability has been found in Tenda F451 1

2026-04-10
CVE-2026-59891
Analyzed
9.6
Docker sigstore-js

A credential disclosure vulnerability in sigstore-js allows authentication keys to be transmitted to incorrect registries due to improper substring ma...

2026-07-15
CVE-2026-5989
8.8
Tenda F451

A flaw has been found in Tenda F451 1

2026-04-10
CVE-2026-59880
Analyzed
8.7
Unknown immutable-js

Immutable

2026-07-09
CVE-2026-5988
8.8
Tenda F451

A vulnerability was detected in Tenda F451 1

2026-04-10
CVE-2026-59879
Analyzed
8.7
Unknown immutable-js

Immutable

2026-07-09
CVE-2026-59874
Analyzed
8.7
Unknown node-tar

node-tar is a tar archive manipulation library for Node

2026-07-09
CVE-2026-59873
Analyzed
9.2
Unknown node-tar

The node-tar library for Node.js fails to enforce resource limits during archive extraction, allowing attackers to trigger denial-of-service via craft...

2026-07-09
CVE-2026-59866
Analyzed
9.3
Microsoft Kiota

Kiota versions prior to 1.32.5 are vulnerable to path traversal and code injection due to improper sanitization of generated client class names, names...

2026-07-17
CVE-2026-59865
Analyzed
9.3
Microsoft Kiota

Kiota incorrectly processes dependency installation commands from OpenAPI descriptions, leading to potential command injection when these commands are...

2026-07-17
CVE-2026-59864
Analyzed
9.3
Microsoft Kiota

The Kiota code generator fails to validate paths in plugin manifest templates, enabling path traversal or arbitrary file inclusion when generated plug...

2026-07-17
CVE-2026-59860
Analyzed
8.7
Microsoft Kiota

Kiota is an OpenAPI based HTTP Client code generator

2026-07-17
CVE-2026-59859
Analyzed
8.7
Microsoft Kiota

Kiota is an OpenAPI based HTTP Client code generator

2026-07-17
CVE-2026-59858
Analyzed
8.4
Vim Vim

Vim is an open source, command line text editor

2026-07-10
CVE-2026-59856
Analyzed
8.4
Vim Vim

Vim is an open source, command line text editor

2026-07-10
CVE-2026-59855
Analyzed
8.6
SiYuan SiYuan

SiYuan is an open-source personal knowledge management system

2026-07-10
CVE-2026-5984
8.8
D-Link DIR

A vulnerability was identified in D-Link DIR-605L 2

2026-04-10
CVE-2026-59833
Analyzed
8.6
Unknown siyuan

SiYuan is an open-source personal knowledge management system

2026-07-10
CVE-2026-59832
Analyzed
7.7
SiYuan SiYuan

SiYuan is an open-source personal knowledge management system

2026-07-10
CVE-2026-5983
8.8
D-Link DIR

A vulnerability was determined in D-Link DIR-605L 2

2026-04-10
CVE-2026-59827
Analyzed
9.9
Intel metabase

Metabase instances using H2 database connections are vulnerable to remote code execution via the deserialization of untrusted data in native query res...

2026-07-10
CVE-2026-59826
Analyzed
9.1
Metabase Metabase

Metabase fails to validate H2 database connection properties, allowing an authenticated administrator to execute arbitrary Java code on the server.

2026-07-10
CVE-2026-59822
Analyzed
8.8
BerriAI LiteLLM

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format

2026-07-09
CVE-2026-5982
8.8
D-Link DIR

A vulnerability was found in D-Link DIR-605L 2

2026-04-10
CVE-2026-5981
8.8
D-Link DIR

A vulnerability has been found in D-Link DIR-605L 2

2026-04-10
CVE-2026-59802
Analyzed
8.2
PasswordPusher PasswordPusher

PasswordPusher before 2

2026-07-09
CVE-2026-59801
Analyzed
9.8
Unknown 9Router

A missing authentication vulnerability in decolua 9Router allows unauthenticated remote attackers to interact with management API endpoints.

2026-07-14
CVE-2026-59800
Analyzed
9.8
Unknown 9router

9Router contains an OS command injection vulnerability in an unauthenticated API endpoint, allowing remote attackers to execute arbitrary system comma...

2026-07-08
CVE-2026-5980
8.8
D-Link DIR

A flaw has been found in D-Link DIR-605L 2

2026-04-10
CVE-2026-59796
Analyzed
8.1
JetBrains TeamCity

In JetBrains TeamCity before 2026

2026-07-11
CVE-2026-59795
Analyzed
8.1
JetBrains TeamCity

In JetBrains TeamCity before 2026

2026-07-11
CVE-2026-59794
Analyzed
7.3
JetBrains TeamCity

In JetBrains TeamCity before 2026

2026-07-12
CVE-2026-59793
Analyzed
8.8
JetBrains TeamCity

In JetBrains TeamCity before 2026

2026-07-11
CVE-2026-59792
Analyzed
9.6
Intel IntelliJ IDEA

JetBrains IntelliJ IDEA is vulnerable to remote code execution due to path traversal in project workspace ID handling.

2026-07-11
CVE-2026-5979
8.8
D-Link DIR

A vulnerability was detected in D-Link DIR-605L 2

2026-04-10
CVE-2026-5978
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setWiFiAclRules function, allowing remote attackers to execute...

2026-04-10
CVE-2026-5977
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setWiFiBasicCfg function, allowing remote attackers to execute...

2026-04-10
CVE-2026-59764
Analyzed
8.6
ELECOM WRC-X3000GS3-B and WRC-X3000GS3A-B

ELECOM wireless LAN routers and access points devices contain an OS Command Injection vulnerability in WebUI

2026-07-29
CVE-2026-5976
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setStorageCfg function, allowing remote attackers to execute ar...

2026-04-10
CVE-2026-5975
Analyzed
9.8
TOTOLINK A7100RU

The Totolink A7100RU CGI Handler contains an OS command injection vulnerability in the setDmzCfg function, allowing remote attackers to execute arbitr...

2026-04-10
CVE-2026-59734
Analyzed
8.8
Coollabs Coolify

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases

2026-07-10
CVE-2026-59733
Analyzed
8.8
Unknown rclone

Rclone is a command-line program to sync files and directories to and from different cloud storage providers

2026-07-15
CVE-2026-59731
Analyzed
8.2
Unknown Astro

Astro is a web framework for content-driven websites

2026-07-09