25704 Total CVEs
25609 AI Analyzed
356 CISA KEV
5950 Critical
All Vendors
Showing 20551-20600 of 25704 CVEs Page 412 of 515
CVE-2025-51005
Analyzed
7.5
Unknown

A heap-buffer-overflow vulnerability exists in the tcpliveplay utility of the tcpreplay-4

2025-09-24
CVE-2025-50989
Analyzed
8.8
opnsense OPNsense

OPNsense 25

2025-08-27
CVE-2025-50983
Analyzed
8.3
Unknown

SQL Injection vulnerability exists in the sortKey parameter of the GET /api/v1/wanted/cutoff API endpoint in readarr 0

2025-08-27
CVE-2025-50979
Analyzed
8.6
NodeBB

NodeBB v4

2025-08-27
CVE-2025-50972
Analyzed
9.8
Unknown

SQL Injection vulnerability in AbanteCart 1.4.2, allows unauthenticated attackers to execute arbitrary SQL commands via the tmpl_id parameter to index...

2025-08-27
CVE-2025-50951
Analyzed
7.5

FontForge v20230101 was discovered to contain a memory leak via the utf7toutf8_copy function at /fontforge/sfd

2025-10-23
CVE-2025-50950
Analyzed
7.5
Audiofile

Audiofile v0

2025-10-23
CVE-2025-5095
Analyzed
9.8
Burk Technology ARC Solo

Burk Technology ARC Solo's password change mechanism can be utilized without proper authentication procedures, allowing an attacker to take over the...

2025-08-08
CVE-2025-50944
Analyzed
8.8
Unknown

An issue was discovered in the method push

2025-09-15
CVE-2025-50904
Analyzed
9.8
Unknown

There is an authentication bypass vulnerability in WinterChenS my-site thru commit 6c79286 (2025-06-11). An attacker can exploit this vulnerability to...

2025-08-21
CVE-2025-50902
Analyzed
8.8
Unknown

Cross Site Request Forgery (CSRF) vulnerability in old-peanut Open-Shop (aka old-peanut/wechat_applet__open_source) thru 1

2025-08-21
CVE-2025-50901
Analyzed
9.8
JEEWMS

JeeWMS 771e4f5d0c01ffdeae1671be4cf102b73a3fe644 (2025-05-19) contains incorrect authentication bypass vulnerability, which can lead to arbitrary file...

2025-08-21
CVE-2025-50900
Analyzed
9.8
Unknown

An issue was discovered in getrebuild/rebuild 4.0.4. The affected source code class is com.rebuild.web.RebuildWebInterceptor, and the affected functio...

2025-08-26
CVE-2025-50892
Analyzed
7.8
Unknown

The eudskacs

2025-09-10
CVE-2025-50881
Analyzed
8.8
HP code after

The `flow/admin/moniteur

2026-03-18
CVE-2025-50870
Analyzed
9.8
Unknown

Institute-of-Current-Students 1.0 is vulnerable to Incorrect Access Control in the mydetailsstudent.php endpoint. The myds GET parameter accepts an em...

2025-08-01
CVE-2025-5086
KEV Analyzed
9.5
Dassault Systèmes DELMIA Apriso

Dassault Systèmes DELMIA Apriso Deserialization of Untrusted Data Vulnerability - Active in CISA KEV catalog.

2025-09-12
CVE-2025-50857
Analyzed
9.8
HP ZenTaoPMS

ZenTaoPMS is vulnerable to a directory traversal flaw in its AI module, enabling unauthenticated attackers to achieve remote code execution via malici...

2026-02-27
CVE-2025-50850
Analyzed
8.6
Unknown

An issue was discovered in CS Cart 4

2025-07-31
CVE-2025-50849
Analyzed
8
Cart

CS Cart 4

2025-07-31
CVE-2025-50819
Analyzed
7.1
Unknown

Directory traversal vulnerability in beiyuouo arxiv-daily thru 2025-05-06 (commit fad168770b0e68aef3e5acfa16bb2e7a7765d687) when parsing the the topic

2025-07-15
CVE-2025-50777
Analyzed
7.8
Unknown

The firmware of the AZIOT 2MP Full HD Smart Wi-Fi CCTV Home Security Camera (version V1

2025-07-30
CVE-2025-50756
Analyzed
9.8

Wavlink WN535K3 20191010 was found to contain a command injection vulnerability in the set_sys_adm function via the newpass parameter. This vulnerabil...

2025-07-15
CVE-2025-50754
Analyzed
9.6
Unisite CMS version

Unisite CMS version 5.0 contains a stored Cross-Site Scripting (XSS) vulnerability in the "Report" functionality. A malicious script submitted by an a...

2025-08-05
CVE-2025-50753
Analyzed
8.4
Mitrastar

Mitrastar GPT-2741GNAC-N2 devices are provided with access through ssh into a restricted default shell

2025-08-27
CVE-2025-50738
Analyzed
9.8
Unknown

The Memos application, up to version v0.24.3, allows for the embedding of markdown images with arbitrary URLs. When a user views a memo containing suc...

2025-07-29
CVE-2025-50735
Analyzed
7.5
NextChat thru

Directory traversal vulnerability in NextChat thru 2

2025-11-04
CVE-2025-50722
Analyzed
9.8
Unknown

Insecure Permissions vulnerability in sparkshop v.1.1.7 allows a remote attacker to execute arbitrary code via the Common.php component

2025-08-25
CVE-2025-50707
Analyzed
9.8
Unknown

An issue in thinkphp3 v.3.2.5 allows a remote attacker to execute arbitrary code via the index.php component

2025-08-05
CVE-2025-50706
Analyzed
9.8
Unknown

An issue in thinkphp v.5.1 allows a remote attacker to execute arbitrary code via the routecheck function

2025-08-05
CVE-2025-50681
Analyzed
7.5
Unknown

igmpproxy 0

2025-12-20
CVE-2025-50675
Analyzed
7.8
GPMAW

GPMAW 14, a bioinformatics software, has a critical vulnerability related to insecure file permissions in its installation directory

2025-08-08
CVE-2025-50674
Analyzed
7.8
Unknown

An issue was discovered in the changePassword method in file /usr/share/php/openmediavault/system/user

2025-08-23
CVE-2025-50635
Analyzed
7.5
Unknown

A null pointer dereference vulnerability was discovered in Netis WF2780 v2

2025-08-14
CVE-2025-50617
Analyzed
7.5
Unknown

A buffer overflow vulnerability has been discovered in Netis WF2880 v2

2025-08-14
CVE-2025-50616
Analyzed
7.5
Unknown

A buffer overflow vulnerability has been discovered in Netis WF2880 v2

2025-08-14
CVE-2025-50615
Analyzed
7.5
Unknown

A buffer overflow vulnerability has been discovered in Netis WF2880 v2

2025-08-14
CVE-2025-50614
Analyzed
7.5
Unknown

A buffer overflow vulnerability has been discovered in the Netis WF2880 v2

2025-08-14
CVE-2025-50613
Analyzed
7.5
Unknown

A buffer overflow vulnerability has been discovered in Netis WF2880 v2

2025-08-14
CVE-2025-50612
Analyzed
7.5
Unknown

A buffer overflow vulnerability has been discovered in the Netis WF2880 v2

2025-08-14
CVE-2025-50611
Analyzed
7.5
Unknown

A buffer overflow vulnerability has been discovered in Netis WF2880 v2

2025-08-14
CVE-2025-50610
Analyzed
7.5
Unknown

A buffer overflow vulnerability has been discovered in Netis WF2880 v2

2025-08-14
CVE-2025-5061
Analyzed
7.5
vjinfotech WP Import Export Lite

The WP Import Export Lite plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'wpie_parse_upload_d...

2025-08-05
CVE-2025-50609
Analyzed
7.5
Unknown

A buffer overflow vulnerability has been discovered in Netis WF2880 v2

2025-08-14
CVE-2025-50608
Analyzed
7.5
Unknown

A buffer overflow vulnerability has been discovered in Netis WF2880 v2

2025-08-14
CVE-2025-5060
Analyzed
8.1
Bravis-Themes Bravis User

The Bravis User plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 1

2025-08-24
CVE-2025-50594
Analyzed
9.8
Unknown

An issue was discovered in /Code/Websites/DanpheEMR/Controllers/Settings/SecuritySettingsController.cs in Danphe Health Hospital Management System EMR...

2025-08-14
CVE-2025-50578
Analyzed
9.8
Unknown

LinuxServer.io heimdall 2.6.3-ls307 contains a vulnerability in how it handles user-supplied HTTP headers, specifically `X-Forwarded-Host` and `Refere...

2025-07-30
CVE-2025-50572
Analyzed
8.8
RSA

An issue was discovered in Archer Technology RSA Archer 6

2025-07-31
CVE-2025-50567
Analyzed
10
Saurus CMS Community Edition

Saurus CMS Community Edition 4.7.1 contains a vulnerability in the custom DB::prepare() function, which uses preg_replace() with the deprecated /e (ev...

2025-08-19