24021 Total CVEs
23926 AI Analyzed
338 CISA KEV
5516 Critical
All Vendors
Showing 22551-22600 of 24021 CVEs Page 452 of 481
CVE-2024-50640
Analyzed
9.8
Unknown

jeewx-boot 1.3 has an authentication bypass vulnerability in the preHandle function

2025-08-21
CVE-2024-50620
Analyzed
8.8
CIPAce

Unrestricted Upload of File with Dangerous Type vulnerabilities exist in the rich text editor and document manage components in CIPPlanner CIPAce befo...

2026-02-13
CVE-2024-50619
Analyzed
8.8
CIPAce

Vulnerabilities in the My Account and User Management components in CIPPlanner CIPAce before 9

2026-02-13
CVE-2024-49730
Analyzed
7.8
Google Android

In FuseDaemon

2025-09-03
CVE-2024-49720
Analyzed
7.8
Google Android

In multiple functions of Permissions

2025-09-03
CVE-2024-49714
Analyzed
7.8
Google Android

In avrc_vendor_msg of avrc_opt

2025-09-05
CVE-2024-49587
Analyzed
9.1
Palantir com.palantir.gotham:glutton

Glutton V1 service endpoints were exposed without any authentication on Gotham stacks, this could have allowed users that did not have any permission...

2025-12-20
CVE-2024-49572
Analyzed
7.2
Socomec DIRIS Digiware M-70

A denial of service vulnerability exists in the Modbus TCP functionality of Socomec DIRIS Digiware M-70 1

2025-12-02
CVE-2024-49342
Analyzed
7.5
IBM Informix Dynamic Server

IBM Informix Dynamic Server 12

2025-07-28
CVE-2024-48988
Analyzed
7.6
Apache Apache StreamPark

SQL Injection vulnerability in Apache StreamPark

2025-08-23
CVE-2024-48928
Analyzed
7.5
Piwigo Piwigo

Piwigo is an open source photo gallery application for the web

2026-02-26
CVE-2024-48916
Analyzed
8.1
ceph ceph

Ceph is a distributed object, block, and file storage platform

2025-07-30
CVE-2024-48882
Analyzed
8.6
Socomec DIRIS Digiware M-70

A denial of service vulnerability exists in the Modbus TCP functionality of Socomec DIRIS Digiware M-70 1

2025-12-02
CVE-2024-48851
Analyzed
7.2
ABB FLXEON

Improper Validation of Specified Type of Input vulnerability in ABB FLXEON

2025-09-18
CVE-2024-48842
Analyzed
7
ABB FLXEON

Use of Hard-coded Credentials vulnerability in ABB FLXEON

2025-09-18
CVE-2024-48077
Analyzed
7.5
Unknown

An issue in nanomq v0

2026-01-16
CVE-2024-48014
Analyzed
7.5
Dell BSAFE Micro Edition Suite

Dell BSAFE Micro Edition Suite, versions prior to 5

2025-09-25
CVE-2024-47886
Analyzed
7.2
chamilo chamilo-lms

Chamilo is a learning management system

2026-03-04
CVE-2024-47866
Analyzed
7.5
ceph ceph

Ceph is a distributed object, block, and file storage platform

2025-11-14
CVE-2024-46992
Analyzed
7.8
electron electron

Electron is an open source framework for writing cross-platform desktop applications using JavaScript, HTML and CSS

2025-07-06
CVE-2024-46917
Analyzed
8.1
Suite

Diebold Nixdorf Vynamic Security Suite through 4

2025-08-29
CVE-2024-46916
Analyzed
8.1
Suite

Diebold Nixdorf Vynamic Security Suite through 4

2025-08-29
CVE-2024-46508
Analyzed
7.5
Unknown

yeti-platform yeti before 2

2026-05-09
CVE-2024-46484
Analyzed
9.8

TRENDnet TV-IP410 vA1.0R was discovered to contain an OS command injection vulnerability via the /server/cgi-bin/testserv.cgi component.

2025-08-29
CVE-2024-45955
Analyzed
7.3
Rocket

Rocket Software Rocket Zena 4

2025-07-30
CVE-2024-45675
Analyzed
8.4
IBM Informix Dynamic Server

IBM Informix Dynamic Server 14

2025-12-03
CVE-2024-45539
Analyzed
7.5
Synology DiskStation Manager (DSM)

Out-of-bounds write vulnerability in cgi components in Synology DiskStation Manager (DSM) before 7

2025-12-05
CVE-2024-45538
Analyzed
9.6
Synology DiskStation Manager (DSM)

Cross-Site Request Forgery (CSRF) vulnerability in WebAPI Framework in Synology DiskStation Manager (DSM) before 7.2.1-69057-2 and 7.2.2-72806 and Syn...

2025-12-05
CVE-2024-45438
Analyzed
9.1
Unknown

An issue was discovered in TitanHQ SpamTitan Email Security Gateway 8.00.x before 8.00.101 and 8.01.x before 8.01.14. The file quarantine.php within t...

2025-08-21
CVE-2024-45434
Analyzed
9.8
OpenSynergy BlueSDK

OpenSynergy BlueSDK (aka Blue SDK) through 6.x has a Use-After-Free. The specific flaw exists within the BlueSDK Bluetooth stack. The issue results fr...

2025-09-12
CVE-2024-45432
Analyzed
7.5
OpenSynergy

OpenSynergy BlueSDK (aka Blue SDK) through 6

2025-09-12
CVE-2024-45370
Analyzed
7.3
Socomec Easy Config System

An authentication bypass vulnerability exists in the User profile management functionality of Socomec Easy Config System 2

2025-12-02
CVE-2024-45162
Analyzed
9.8
Unknown

A stack-based buffer overflow issue was discovered in the phddns client in Blu-Castle BCUM221E 1.0.0P220507 via the password field.

2025-10-29
CVE-2024-44659
Analyzed
9.8
PHPGurukul Online Shopping Portal

PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the email parameter in forgot-password.php.

2025-11-18
CVE-2024-44599
Analyzed
8.3
FNT

FNT Command 13

2025-12-16
CVE-2024-44598
Analyzed
8.8
FNT

FNT Command 13

2025-12-16
CVE-2024-44373
Analyzed
9.8
Unknown

A Path Traversal vulnerability in AllSky v2023.05.01_04 allows an unauthenticated attacker to create a webshell and remote code execution via the path...

2025-08-19
CVE-2024-44303
Analyzed
7.5
Apple macOS

The issue was addressed with improved checks

2026-04-03
CVE-2024-44286
Analyzed
7.5
Apple macOS

This issue was addressed through improved state management

2026-04-03
CVE-2024-44250
Analyzed
8.2
Apple macOS

A permissions issue was addressed with additional restrictions

2026-04-03
CVE-2024-44238
Analyzed
7.8
Apple iOS and iPadOS

The issue was addressed with improved bounds checks

2026-01-17
CVE-2024-44219
Analyzed
7.5
Apple macOS

A permissions issue was addressed with additional restrictions

2026-04-03
CVE-2024-44065
Analyzed
9.8
Unknown

Time-based blind SQL Injection vulnerability in Cloudlog v2.6.15 at the endpoint /index.php/logbookadvanced/search in the qsoresults parameter.

2025-12-27
CVE-2024-43468
KEV Analyzed
9.5
Microsoft Microsoft Configuration Manager

Microsoft Configuration Manager SQL Injection Vulnerability - Active in CISA KEV catalog.

2026-02-13
CVE-2024-43384
Analyzed
8
Phoenix Contact FL MGUARD 2102

A low privileged remote attacker can gain the root password due to improper removal of sensitive information before storage or transfer

2026-05-08
CVE-2024-43166
Analyzed
9.8
Apache Apache DolphinScheduler

Incorrect Default Permissions vulnerability in Apache DolphinScheduler. This issue affects Apache DolphinScheduler: before 3.2.2. Users are recommen...

2025-09-03
CVE-2024-43115
Analyzed
8.8
Apache Apache DolphinScheduler

Improper Input Validation vulnerability in Apache DolphinScheduler

2025-09-03
CVE-2024-43028
Analyzed
9.8
Unknown

A command injection vulnerability in the component /jmreport/show of jeecg boot v3.0.0 to v3.5.3 allows attackers to execute arbitrary code via a craf...

2026-04-02
CVE-2024-42718
Analyzed
7.5
Unknown

A path traversal vulnerability in Croogo CMS 4

2025-12-27
CVE-2024-42655
Analyzed
8.8
Unknown

An access control issue in NanoMQ v0

2025-07-29