23871 Total CVEs
23776 AI Analyzed
336 CISA KEV
5459 Critical
All Vendors
Showing 22201-22250 of 23871 CVEs Page 445 of 478
CVE-2025-10283
Analyzed
9.6
BLSOPS bbot

BBOT's gitdumper module could be abused to execute commands through a malicious git repository.

2025-10-09
CVE-2025-10280
Analyzed
7.1
SailPoint Technologies IdentityIQ

IdentityIQ 8

2025-11-04
CVE-2025-10279
Analyzed
7
mlflow mlflow/mlflow

In mlflow version 2

2026-02-02
CVE-2025-10269
Analyzed
7.5
Theme-Spirit Spirit Framework

The Spirit Framework plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1

2025-09-12
CVE-2025-10266
Analyzed
9.8
NewType Infortech NUP Portal

NUP Pro developed by NewType Infortech has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands t...

2025-09-12
CVE-2025-10265
Analyzed
9.8
Digiever DS-1200

Certain models of NVR developed by Digiever has an OS Command Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary O...

2025-09-12
CVE-2025-10264
Analyzed
10
Digiever DS-1200

Certain models of NVR developed by Digiever has an Exposure of Sensitive Information vulnerability, allowing unauthenticated remoter attackers to acce...

2025-09-12
CVE-2025-10244
Analyzed
8.7
Autodesk Fusion

A maliciously crafted HTML payload, when rendered by the Autodesk Fusion desktop application, can trigger a Stored Cross-site Scripting (XSS) vulnerab...

2025-09-23
CVE-2025-10240
Analyzed
8.8

A vulnerability exists in the Progress Flowmon web application prior to version 12

2025-10-09
CVE-2025-10239
Analyzed
7.2

In Flowmon versions prior to 12

2025-10-09
CVE-2025-10230
Analyzed
10
Red Hat Red Hat Enterprise Linux 10

A flaw was found in Samba, in the front-end WINS hook handling: NetBIOS names from registration packets are passed to a shell without proper validatio...

2025-11-08
CVE-2025-10228
Analyzed
8.8
Rolantis Information Technologies Agentis

Session Fixation vulnerability in Rolantis Information Technologies Agentis allows Session Hijacking

2025-10-14
CVE-2025-10226
Analyzed
9.8
AxxonSoft AxxonOne C-Werk

Dependency on Vulnerable Third-Party Component (CWE-1395) in the PostgreSQL backend in AxxonSoft Axxon One 2.0.8 and earlier on Windows and Linux allo...

2025-09-10
CVE-2025-10220
Analyzed
9.8
AxxonSoft AxxonOne C-Werk

Use of Unmaintained Third Party Components (CWE-1104) in the NuGet dependency components in AxxonSoft Axxon One VMS 2.0.0 through 2.0.4 on Windows all...

2025-09-10
CVE-2025-10207
Analyzed
7.2
ABB FLXEON

Improper Validation of Specified Type of Input vulnerability in ABB FLXEON

2025-09-18
CVE-2025-10205
Analyzed
8.8
ABB FLXEON

Use of a One-Way Hash with a Predictable Salt vulnerability in ABB FLXEON

2025-09-17
CVE-2025-10203
Analyzed
7.8
Digilent WaveForms

Relative path traversal vulnerability due to improper input validation in Digilent WaveForms that may result in arbitrary code execution

2025-09-15
CVE-2025-10201
Analyzed
8.8
Google Chrome

Inappropriate implementation in Mojo in Google Chrome on Android, Linux, ChromeOS prior to 140

2025-09-10
CVE-2025-10200
Analyzed
8.8
Google Chrome

Use after free in Serviceworker in Google Chrome on Desktop prior to 140

2025-09-10
CVE-2025-10199
Analyzed
7.8
LizardByte Sunshine for Windows

A local privilege escalation vulnerability exists in Sunshine for Windows (version v2025

2025-09-10
CVE-2025-10198
Analyzed
7.8
LizardByte Sunshine for Windows

Sunshine for Windows, version v2025

2025-09-10
CVE-2025-10183
Analyzed
9.1
TecCom TecConnect

A blind XML External Entity (XXE) injection in the OpenMessaging webservice in TecCom TecConnect 4.1 allows an unauthenticated attacker to exfiltrate...

2025-09-09
CVE-2025-10176
Analyzed
7.2
tvcnet The Hack Repair Guy's Plugin Archiver

The The Hack Repair Guy's Plugin Archiver plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in th...

2025-09-12
CVE-2025-10174
Analyzed
8.3
Pan Software & Information Technologies PanCafe Pro

Cleartext Transmission of Sensitive Information vulnerability in Pan Software & Information Technologies Ltd

2026-02-12
CVE-2025-10172
Analyzed
8.8
UTT 750W

A flaw has been found in UTT 750W up to 3

2025-09-09
CVE-2025-10171
Analyzed
8.8
UTT 1250GW

A vulnerability was detected in UTT 1250GW up to 3

2025-09-09
CVE-2025-10170
Analyzed
8.8
UTT 1200GW

A security vulnerability has been detected in UTT 1200GW up to 3

2025-09-09
CVE-2025-10169
Analyzed
8.8
UTT 1200GW

A weakness has been identified in UTT 1200GW up to 3

2025-09-09
CVE-2025-10162
Analyzed
7.5

The Admin and Customer Messages After Order for WooCommerce: OrderConvo WordPress plugin before 14 does not validate the path of files to be downloade...

2025-10-07
CVE-2025-10159
Analyzed
9.8
Sophos AP6 Series Wireless Access Points

An authentication bypass vulnerability allows remote attackers to gain administrative privileges on Sophos AP6 Series Wireless Access Points older tha...

2025-09-09
CVE-2025-10147
Analyzed
9.8
eteubert Podlove Podcast Publisher

The Podlove Podcast Publisher plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'move_as_origina...

2025-09-23
CVE-2025-10145
Analyzed
7.7

The Auto Featured Image (Auto Post Thumbnail) plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including,...

2025-10-28
CVE-2025-10143
Analyzed
7.5
catchthemes Catch Dark Mode

The Catch Dark Mode plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2

2025-09-17
CVE-2025-10134
Analyzed
9.1
Bearsthemes Goza - Nonprofit Charity WordPress Theme

The Goza - Nonprofit Charity WordPress Theme theme for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in...

2025-09-09
CVE-2025-10127
Analyzed
7.3
Daikin Europe N.V Security Gateway

Daikin Security Gateway is vulnerable to an authorization bypass through a user-controlled key vulnerability that could allow an attacker to bypass...

2025-09-12
CVE-2025-10120
Analyzed
8.8
Tenda AC20

A vulnerability was detected in Tenda AC20 up to 16

2025-09-09
CVE-2025-10111
Analyzed
7.3
itsourcecode Student Information Management System

A security flaw has been discovered in itsourcecode Student Information Management System 1

2025-09-08
CVE-2025-10109
Analyzed
7.3
Campcodes Online Loan Management System

A vulnerability was determined in Campcodes Online Loan Management System 1

2025-09-08
CVE-2025-10108
Analyzed
7.3
Campcodes Online Loan Management System

A vulnerability was found in Campcodes Online Loan Management System 1

2025-09-08
CVE-2025-10104
Analyzed
7.3
code-projects Online Event Judging System

A security vulnerability has been detected in code-projects Online Event Judging System 1

2025-09-08
CVE-2025-10103
Analyzed
7.3
code-projects Online Event Judging System

A weakness has been identified in code-projects Online Event Judging System 1

2025-09-08
CVE-2025-10102
Analyzed
7.3
code-projects Online Event Judging System

A security flaw has been discovered in code-projects Online Event Judging System 1

2025-09-08
CVE-2025-10101
Analyzed
8.1
Gen Digital Avast Antivirus

Heap-based Buffer Overflow, Out-of-bounds Write vulnerability in Avast Antivirus on MacOS of a crafted Mach-O file may allow Local Execution of Code o...

2025-12-02
CVE-2025-10100
Analyzed
7.3
SourceCodester Simple Forum Discussion System

A vulnerability was detected in SourceCodester Simple Forum Discussion System 1

2025-09-08
CVE-2025-10092
Analyzed
7.3
Jinher OA

A vulnerability was found in Jinher OA up to 1

2025-09-08
CVE-2025-10091
Analyzed
7.3
Jinher OA

A vulnerability has been found in Jinher OA up to 1

2025-09-08
CVE-2025-10090
Analyzed
7.3
Jinher OA

A flaw has been found in Jinher OA up to 1

2025-09-08
CVE-2025-10089
Analyzed
7
Mitsubishi Electric MILCO.S Setting Application

Uncontrolled Search Path Element Vulnerability in Setting and Operation Application for Lighting Control System MILCO

2025-11-19
CVE-2025-10082
Analyzed
7.3
SourceCodester Online Polling System

A vulnerability has been found in SourceCodester Online Polling System 1

2025-09-08
CVE-2025-10079
Analyzed
7.3
PHPGurukul Small CRM

A flaw has been found in PHPGurukul Small CRM 4

2025-09-08