21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 2151-2200 of 21637 CVEs Page 44 of 433
CVE-2026-6382
Analyzed
9.1
WordPress FileOrganizer, Advanced File Manager, File Manager Pro, File Manager

Several WordPress file management plugins are vulnerable to OS Command Injection when processing images, allowing authenticated users with administrat...

2026-07-07
CVE-2026-63819
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on f2fs_get_node_folio_ra() kernel BUG at fs/f2fs/f...

2026-07-25
CVE-2026-63818
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: f2fs: validate orphan inode entry count f2fs_recover_orphan_inodes() trusts the...

2026-07-21
CVE-2026-63817
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: f2fs: validate compress cache inode only when enabled F2FS_COMPRESS_INO() uses N...

2026-07-25
CVE-2026-63816
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: f2fs: atomic: fix UAF issue on f2fs_inode_info.atomic_inode - ioctl(F2FS_IOC_GAR...

2026-07-25
CVE-2026-63815
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: f2fs: bound i_inline_xattr_size for non-inline-xattr inodes When the flexible_in...

2026-07-21
CVE-2026-63814
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: f2fs: validate ACL entry sizes in f2fs_acl_from_disk() f2fs_acl_count() only val...

2026-07-25
CVE-2026-63813
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: Revert "f2fs: remove non-uptodate folio from the page cache in move_data_block"...

2026-07-25
CVE-2026-63812
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix incorrect FI_NO_EXTENT handling in __destroy_extent_node() When __dest...

2026-07-25
CVE-2026-6381
Analyzed
7.5
WordPress plugin before

The WP Maps WordPress plugin before 4

2026-05-19
CVE-2026-63809
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: bpf: use kvfree() for replaced sysctl write buffer proc_sys_call_handler() alloc...

2026-07-25
CVE-2026-63808
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: exfat: fix potential use-after-free in exfat_find_dir_entry() In exfat_find_dir_...

2026-07-25
CVE-2026-63807
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level Wh...

2026-07-21
CVE-2026-63806
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: KVM: Replace guest-triggerable BUG_ON() in ioeventfd datamatch with get_unaligned...

2026-07-25
CVE-2026-63805
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: crypto: nx - fix nx_crypto_ctx_exit argument nx_crypto_ctx_shash_exit calls nx_c...

2026-07-25
CVE-2026-63802
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: fix UAF in __blkcg_rstat_flush() When multiple blkgs in the same blk...

2026-07-25
CVE-2026-63801
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tipc: fix slab-use-after-free Read in tipc_aead_decrypt_done tipc_aead_decrypt()...

2026-07-21
CVE-2026-63800
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: pNFS: Fix use-after-free in pnfs_update_layout() When hitting the NFS_LAYOUT_RET...

2026-07-25
CVE-2026-63797
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: rpmsg: char: Fix use-after-free on probe error path rpmsg_chrdev_probe() stores...

2026-07-21
CVE-2026-63796
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject oversized group bitmap descriptors ocfs2_validate_gd_parent() only...

2026-07-21
CVE-2026-6379
Analyzed
8.6
WordPress plugin before

The WP Photo Album Plus WordPress plugin before 9

2026-05-19
CVE-2026-63767
Analyzed
9.8
Unknown ktransformers

ktransformers contains an unauthenticated pickle deserialization vulnerability in the SchedulerServer ZMQ ROUTER socket, allowing remote attackers to...

2026-07-21
CVE-2026-63766
Analyzed
9.8
RVC-Boss GPT-SoVITS

GPT-SoVITS is vulnerable to OS command injection via the webui.py interface, allowing unauthenticated attackers to execute arbitrary commands on the s...

2026-07-21
CVE-2026-63765
Analyzed
8.2
Chatwoot Chatwoot

Chatwoot before 4

2026-07-24
CVE-2026-63757
Analyzed
8.8
SurrealDB SurrealDB

SurrealDB versions before 3

2026-07-21
CVE-2026-63756
Analyzed
8.1
SurrealDB SurrealDB

SurrealDB versions before 3

2026-07-21
CVE-2026-6374
Analyzed
7.3
Zyxel WAH7601

Use of Hard-coded Credentials vulnerability in Zyxel Networks WAH7601 allows Read Sensitive Constants Within an Executable

2026-08-11
CVE-2026-63735
Analyzed
8.1
SurrealDB SurrealDB

SurrealDB versions before 3

2026-07-21
CVE-2026-63732
Analyzed
9.9
Unknown 9router

9router allows remote code execution via a chain of vulnerabilities involving default credentials, host header spoofing, and insecure command executio...

2026-07-24
CVE-2026-63727
Analyzed
8.8
Anchore Anchore Enterprise

Anchore Enterprise versions from 5

2026-07-29
CVE-2026-63720
Analyzed
7.5
Unknown datamodel-code-generator

datamodel-code-generator prior to version 0

2026-07-26
CVE-2026-6372
7.5
Plisio Accept Multiple Products

Missing Authorization vulnerability in Plisio Accept Cryptocurrencies with Plisio allows Exploiting Incorrectly Configured Access Control Security Lev...

2026-04-17
CVE-2026-63700
Analyzed
7.8
Dell Wyse Management Suite (WMS)

Dell Wyse Management Suite (WMS), versions prior to 2605

2026-08-16
CVE-2026-63684
8.8
Unknown Content Templater extension for Joomla

Administrator actions, editor popups and import/export requests lacked consistent token, item-permission and input-validation checks. Unauthorized bac...

2026-08-14
CVE-2026-63683
Analyzed
7.5
Joomla Advanced Module Manager, Conditional Content, Content Templater Pro, and ReReplacer extensions for Joomla

IP and GeoIP conditions trusted spoofable forwarded headers, allowing remote clients to bypass location-based rules.

2026-08-01
CVE-2026-63639
Analyzed
8.8
Unknown valkey

Valkey is a distributed key-value database

2026-08-19
CVE-2026-63637
Analyzed
8.6
Unknown dgraph

Dgraph is an open source distributed GraphQL database

2026-08-07
CVE-2026-6363
Analyzed
8.8
Google Chrome prior

Type Confusion in V8 in Google Chrome prior to 147

2026-04-16
CVE-2026-63622
Analyzed
7.8
Red Hat libvirt

A flaw was found in libvirt

2026-08-11
CVE-2026-6360
Analyzed
8.8
Google Chrome prior

Use after free in FileSystem in Google Chrome prior to 147

2026-04-16
CVE-2026-6359
8.8
Microsoft Chrome on

Use after free in Video in Google Chrome on Windows prior to 147

2026-04-16
CVE-2026-6358
Analyzed
8.8
Google Chrome on

Use after free in XR in Google Chrome on Android prior to 147

2026-04-16
CVE-2026-6356
Analyzed
9.6
Infor Multiple Products

A privilege escalation vulnerability in Infor web applications allows standard users to gain super administrator access via parameter manipulation.

2026-04-23
CVE-2026-63514
Analyzed
8.8
Microsoft SharePoint

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network

2026-08-12
CVE-2026-6351
7.5
LG Multiple Products

MailGates/MailAudit developed by Openfind has a CRLF Injection vulnerability, allowing unauthenticated remote attackers to exploit this vulnerability...

2026-04-17
CVE-2026-6350
Analyzed
9.8
LG Multiple Products

MailGates/MailAudit developed by Openfind has a Stack-based Buffer Overflow vulnerability, allowing unauthenticated remote attackers to control the pr...

2026-04-16
CVE-2026-6348
8.8
Unknown Multiple Products

WinMatrix agent developed by Simopro Technology has a Missing Authentication vulnerability, allowing authenticated local attackers to execute arbitrar...

2026-04-16
CVE-2026-6347
Analyzed
7.6
Mattermost Multiple Products

Mattermost versions 11

2026-05-19
CVE-2026-6346
Analyzed
8.7
Mattermost Multiple Products

Mattermost versions 11

2026-05-19
CVE-2026-63456
Analyzed
9.8
HP EdgeConnect SD-WAN Orchestrator

Multiple vulnerabilities in the HPE EdgeConnect SD-WAN Orchestrator REST API allow unauthenticated remote attackers to bypass authentication and modif...

2026-08-05