18005 Total CVEs
9537 AI Analyzed
271 CISA KEV
3678 Critical
All Vendors
Showing 2051-2100 of 18005 CVEs Page 42 of 361
CVE-2026-50644
Analyzed
8.6
SOPlanning SOPlanning

SOPlanning is vulnerable to SQL injection in the audit retention configuration

2026-07-10
CVE-2026-50637
Analyzed
8.2
CPAN (Metrics::Any) Metrics::Any::Adapter::Statsd

Metrics::Any::Adapter::Statsd versions before 0

2026-06-12
CVE-2026-50636
Analyzed
8.8
Oracle Multiple Products

The RemoteControl API methods invite_participants and remind_participants pass a caller-supplied token-ID array into TokenDynamic::findUninvited(), wh...

2026-06-10
CVE-2026-50635
Analyzed
8.8
LimeSurvey LimeSurvey

LimeSurvey constructs account password-reset links from the client-supplied HTTP Host header without validating it

2026-06-10
CVE-2026-50633
Analyzed
8.1
Apache CXF

A JNDI Injection vulnerability has been discovered in Apache CXF's JCA integration module, which can allow for code execution, if an attacker is able...

2026-06-14
CVE-2026-50632
Analyzed
8.1
Apache CXF

A further incomplete fix for a previous advisory CVE-2026-44417 (Untrusted JMS configuration can lead to RCE) for Apache CXF has been identified, whic...

2026-06-14
CVE-2026-5063
7.2
WordPress plugin for

The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via POST parameter key names in...

2026-05-04
CVE-2026-5059
Analyzed
9.8
AWS CLI Command

The aws-mcp-server is vulnerable to remote code execution via AWS CLI command injection, allowing attackers to execute arbitrary system commands witho...

2026-04-11
CVE-2026-5058
Analyzed
9.8
AWS aws-mcp-server

The aws-mcp-server is vulnerable to remote code execution via command injection due to improper validation of user-supplied input in the allowed comma...

2026-04-11
CVE-2026-50574
Analyzed
8.3
Unknown yt-dlp

yt-dlp is a command-line audio/video downloader

2026-06-24
CVE-2026-50570
Analyzed
8.5
Kubernetes Fission

Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and applications on Kubernetes

2026-06-12
CVE-2026-50566
Analyzed
9.9
Kubernetes Fission Framework

An RBAC flaw in Fission allows tenants to run privileged containers under high-privilege service accounts, enabling container-sandbox escape and clust...

2026-06-11
CVE-2026-50564
Analyzed
9.9
Kubernetes Fission (Kubernetes Framework)

Fission prior to 1.24.0 contains a vulnerability in its Environment CRD that allows for privilege escalation by propagating insecure podspec fields wi...

2026-06-11
CVE-2026-50563
Analyzed
9.9
Kubernetes Fission Framework

A privilege management flaw in Fission’s Container Executor allows tenants to supply arbitrary pod specifications, creating potential for unauthorized...

2026-06-11
CVE-2026-50556
Analyzed
8.6
Google Angular

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages

2026-06-23
CVE-2026-50555
Analyzed
8.6
Google Angular

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages

2026-06-23
CVE-2026-50551
Analyzed
9.9
SiYuan SiYuan

A stored cross-site scripting (XSS) vulnerability in the SiYuan Attribute View allows for remote code execution (RCE) within the Electron desktop clie...

2026-06-25
CVE-2026-5055
7.8
Arch Path Element

NoMachine Uncontrolled Search Path Element Local Privilege Escalation Vulnerability

2026-04-11
CVE-2026-50549
Analyzed
9.3
Intel Cursor

A path canonicalization flaw in the Cursor AI code editor allows malicious agents to bypass sandbox restrictions and write arbitrary files, facilitati...

2026-06-26
CVE-2026-50548
Analyzed
9.3
Cursor Cursor

A sandbox escape vulnerability in the Cursor AI code editor allows malicious agents to write arbitrary files outside the workspace, leading to non-san...

2026-06-26
CVE-2026-50545
Analyzed
9.9
Kubernetes Fission Framework

A validation flaw in Fission’s pod specification handling allows for the propagation of dangerous fields, leading to unauthorized control over generat...

2026-06-11
CVE-2026-5054
Analyzed
7.8
Unknown Multiple Products

NoMachine External Control of File Path Local Privilege Escalation Vulnerability

2026-04-11
CVE-2026-5053
7.1
Unknown Multiple Products

NoMachine External Control of File Path Arbitrary File Deletion Vulnerability

2026-04-12
CVE-2026-50529
Analyzed
8.7
Intel DataEase

DataEase is an open source data visualization and analysis tool

2026-07-08
CVE-2026-50521
Analyzed
8.3
Microsoft Edge (Chromium-based)

Use after free in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network

2026-07-03
CVE-2026-5050
7.5
Google Pay gateway

The Payment Gateway for Redsys & WooCommerce Lite plugin for WordPress is vulnerable to Improper Verification of Cryptographic Signature in versions u...

2026-04-17
CVE-2026-5046
8.8
Tenda FH1201

A flaw has been found in Tenda FH1201 1

2026-03-30
CVE-2026-5045
8.8
Tenda FH1201

A vulnerability was detected in Tenda FH1201 1

2026-03-30
CVE-2026-5044
Analyzed
8.8
Belkin F9K1122

A security vulnerability has been detected in Belkin F9K1122 1

2026-03-30
CVE-2026-5043
Analyzed
8.8
Belkin F9K1122

A weakness has been identified in Belkin F9K1122 1

2026-03-30
CVE-2026-5042
Analyzed
8.8
Belkin F9K1122

A security flaw has been discovered in Belkin F9K1122 1

2026-03-30
CVE-2026-5036
8.8
Tenda Multiple Products

A vulnerability was found in Tenda 4G06 04

2026-03-29
CVE-2026-5035
7.3
HP of the

A vulnerability has been found in code-projects Accounting System 1

2026-03-29
CVE-2026-5034
7.3
HP of the

A flaw has been found in code-projects Accounting System 1

2026-03-29
CVE-2026-5033
7.3
HP of the

A vulnerability was detected in code-projects Accounting System 1

2026-03-29
CVE-2026-5032
7.5
WordPress is vulnerable

The W3 Total Cache plugin for WordPress is vulnerable to information exposure in all versions up to, and including, 2

2026-04-03
CVE-2026-5027
Analyzed
8.8
Unknown Multiple Products

The 'POST /api/v2/files' endpoint does not sanitize the 'filename' parameter from the multipart form data, allowing an attacker to write files to arbi...

2026-03-28
CVE-2026-50242
Analyzed
10
JetBrains Hub

JetBrains Hub contains an authentication bypass vulnerability via direct database access that allows unauthorized administrative control.

2026-06-20
CVE-2026-5024
8.8
D-Link DIR

A vulnerability was found in D-Link DIR-513 1

2026-03-29
CVE-2026-50223
Analyzed
8.8
Apache OFBiz

Improper Control of Generation of Code ('Code Injection') vulnerability in Apache OFBiz allows a low-privileged authenticated user with Content/DataRe...

2026-06-12
CVE-2026-50211
Analyzed
9.8
Acer Connect M6E 5G

Exposed diagnostic software on retail builds of Acer Connect M6E 5G allows malicious applications to write to internal NVRAM registers.

2026-06-05
CVE-2026-5021
8.8
Tenda F453

A flaw has been found in Tenda F453 1

2026-03-29
CVE-2026-5019
7.3
HP of the

A security vulnerability has been detected in code-projects Simple Food Order System 1

2026-03-29
CVE-2026-50189
Analyzed
8.9
Appsmith Appsmith

Appsmith is a platform to build admin panels, internal tools, and dashboards

2026-06-25
CVE-2026-50180
Analyzed
8.7
Unknown langroid

Langroid is a framework for building large-language-model-powered applications

2026-07-10
CVE-2026-5018
7.3
HP of the

A weakness has been identified in code-projects Simple Food Order System 1

2026-03-29
CVE-2026-50178
Analyzed
8.7
Google Angular Language Service VS Code Extension

The Angular Language Service VS Code Extension provides a rich editing experience for Angular templates

2026-06-23
CVE-2026-50171
Analyzed
8.2
Google Angular

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages

2026-06-23
CVE-2026-50170
Analyzed
8.2
Google Angular

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages

2026-06-23
CVE-2026-5017
7.3
HP of the

A security flaw has been discovered in code-projects Simple Food Order System 1

2026-03-29