21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 2251-2300 of 21637 CVEs Page 46 of 433
CVE-2026-6308
7.5
Google Chrome prior

Out of bounds read in Media in Google Chrome prior to 147

2026-04-17
CVE-2026-63077
KEV Analyzed
9.8
JetBrains TeamCity

An unauthenticated remote code execution vulnerability exists in the JetBrains TeamCity agent polling protocol.

2026-07-28
CVE-2026-6307
8.8
Google Chrome prior

Type Confusion in Turbofan in Google Chrome prior to 147

2026-04-16
CVE-2026-6306
Analyzed
8.8
Google Chrome prior

Heap buffer overflow in PDFium in Google Chrome prior to 147

2026-04-17
CVE-2026-6305
Analyzed
8.8
Google Chrome prior

Heap buffer overflow in PDFium in Google Chrome prior to 147

2026-04-16
CVE-2026-63047
Analyzed
7.5
Joomla Events Booking extension for Joomla

The Joomla extension Events Booking prior version 5.0-5.8.1 did not properly verify that an actor is allowed to download invoice information.

2026-07-29
CVE-2026-6304
8.3
Google Chrome prior

Use after free in Graphite in Google Chrome prior to 147

2026-04-16
CVE-2026-63035
Analyzed
8.1
Unknown open62541

A heap use-after-free vulnerability in the TransferSubscriptions service in open62541 may allow an authenticated attacker to cause a denial of servi...

2026-08-01
CVE-2026-63030
KEV Analyzed
9.8
WordPress WordPress

WordPress is affected by a REST API batch endpoint route confusion issue which, when combined with other vulnerabilities, can lead to SQL injection an...

2026-07-18
CVE-2026-6303
Analyzed
8.8
Google Chrome prior

Use after free in Codecs in Google Chrome prior to 147

2026-04-17
CVE-2026-6302
Analyzed
8.8
Google Chrome prior

Use after free in Video in Google Chrome prior to 147

2026-04-16
CVE-2026-6301
Analyzed
8.8
Google Chrome prior

Type Confusion in Turbofan in Google Chrome prior to 147

2026-04-16
CVE-2026-6300
Analyzed
8.8
Google Chrome prior

Use after free in CSS in Google Chrome prior to 147

2026-04-16
CVE-2026-62999
Analyzed
7.5
Unknown copier

Copier is a library and CLI app for rendering project templates

2026-08-01
CVE-2026-6299
Analyzed
8.8
Google Chrome prior

Use after free in Prerender in Google Chrome prior to 147

2026-04-16
CVE-2026-62982
Analyzed
8.8
Unknown glances

Glances is an open-source system cross-platform monitoring tool

2026-08-18
CVE-2026-6297
Analyzed
8.3
Google Chrome prior

Use after free in Proxy in Google Chrome prior to 147

2026-04-16
CVE-2026-62963
Analyzed
8.7
Centrifugal Centrifugo

Centrifugo is an open-source scalable real-time messaging server

2026-07-17
CVE-2026-6296
Analyzed
9.6
Google Chrome prior

Heap buffer overflow in ANGLE in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to potentially perform a sandbox escape via a crafted...

2026-04-16
CVE-2026-62959
Analyzed
8.2
STUN coturn

Coturn is a free open source implementation of TURN and STUN Server

2026-08-01
CVE-2026-62948
Analyzed
9.6
Unknown openwrt

A vulnerability in the OpenWrt DHCPv6 client allows for Cross-site Scripting (XSS) via injected lease hostnames displayed in the web administrative in...

2026-07-16
CVE-2026-62927
Analyzed
8.7
Eclipse Foundation Eclipse Milo

In Eclipse Milo versions 1

2026-08-05
CVE-2026-62913
Analyzed
8.8
Microsoft Exchange Server

Heap-based buffer overflow in Microsoft Exchange Server allows an authorized attacker to execute code over a network

2026-08-12
CVE-2026-6290
8
Unknown Multiple Products

Velociraptor versions prior to 0

2026-04-16
CVE-2026-62893
Analyzed
9.8
Microsoft Windows

A use after free vulnerability in Windows Deployment Services allows unauthenticated, remote attackers to execute arbitrary code.

2026-08-12
CVE-2026-62878
Analyzed
9.8
Microsoft Windows 10 and Windows Server

A stack-based buffer overflow in the Windows DNS service enables unauthenticated remote attackers to execute arbitrary code on vulnerable Windows syst...

2026-08-12
CVE-2026-62872
Analyzed
8.8
Microsoft .NET Framework

Incorrect authorization in

2026-08-12
CVE-2026-62870
Analyzed
8.8
Microsoft Microsoft 365 Apps for Enterprise

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code over a network

2026-08-04
CVE-2026-62869
Analyzed
8.8
Microsoft Entra ID

Insufficient verification of data authenticity in Azure Entra ID allows an authorized attacker to perform spoofing over a network

2026-08-13
CVE-2026-62857
Analyzed
8.8
Unknown fedify

Fedify is a TypeScript library for building federated server apps powered by ActivityPub

2026-08-07
CVE-2026-6284
Analyzed
9.1
Unknown Multiple Products

An attacker with network access to the PLC is able to brute force discover passwords to gain unauthorized access to systems and services. The limited...

2026-04-18
CVE-2026-62835
Analyzed
9.3
Microsoft Azure Portal

Improper authorization in the Microsoft Azure Portal allows unauthenticated remote attackers to disclose sensitive information over a network.

2026-07-25
CVE-2026-62827
Analyzed
8.8
Microsoft SharePoint

Improper authentication in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network

2026-08-12
CVE-2026-62825
Analyzed
10
Microsoft Azure Key Vault

An improper authentication vulnerability in Microsoft Azure Key Vault allows an unauthenticated remote attacker to escalate privileges and compromise...

2026-07-25
CVE-2026-62824
Analyzed
8.8
Microsoft Windows

Stack-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network

2026-08-12
CVE-2026-62823
Analyzed
8.8
Microsoft Windows

Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network

2026-08-12
CVE-2026-62822
Analyzed
8.8
Microsoft Windows

Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker to execute code over a network

2026-08-12
CVE-2026-62818
Analyzed
8.8
Microsoft Windows

Use after free in Active Directory Certificate Services (AD CS) allows an authorized attacker to execute code over a network

2026-08-12
CVE-2026-62817
Analyzed
8.8
Microsoft Windows

Out-of-bounds write in Windows DNS allows an unauthorized attacker to execute code over an adjacent network

2026-08-12
CVE-2026-62816
Analyzed
8.8
Microsoft Windows

Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network

2026-08-12
CVE-2026-62815
Analyzed
9.8
Microsoft Windows

A use after free vulnerability in Microsoft QUIC allows unauthenticated, remote attackers to execute arbitrary code.

2026-08-12
CVE-2026-6281
Analyzed
8.8
Lenovo Personal Cloud

A potential vulnerability was reported in some Lenovo Personal Cloud Storage devices that could allow a remote authenticated user on the local network...

2026-05-14
CVE-2026-62800
Analyzed
8.8
Microsoft Windows

Heap-based buffer overflow in Windows SMB Server allows an authorized attacker to execute code over a network

2026-08-12
CVE-2026-62795
Analyzed
8.8
Microsoft Windows

Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network

2026-08-12
CVE-2026-62790
Analyzed
8.8
Microsoft Windows

Heap-based buffer overflow in Windows SMB Server allows an authorized attacker to execute code over a network

2026-08-12
CVE-2026-6279
Analyzed
9.8
HP is vulnerable

The Avada Builder plugin for WordPress is vulnerable to unauthenticated remote code execution via PHP function injection in the `fusion_get_widget_mar...

2026-05-21
CVE-2026-62785
Analyzed
8.8
Microsoft Windows

Heap-based buffer overflow in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network

2026-08-12
CVE-2026-62784
Analyzed
8.8
Microsoft Windows

Heap-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to execute code over a network

2026-08-12
CVE-2026-6274
Analyzed
9.8
DTS Electronics Redline WR3200

A critical authentication bypass vulnerability in DTS Electronics Redline WR3200 allows unauthenticated attackers to access restricted functions due t...

2026-06-06
CVE-2026-6271
Analyzed
9.8
WordPress is vulnerable

The Career Section WordPress plugin is vulnerable to arbitrary file upload due to missing file type validation, enabling remote code execution.

2026-05-14