8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 2501-2550 of 8341 CVEs Page 51 of 167
CVE-2025-62034
8.8
Unknown Multiple Products

Incorrect Privilege Assignment vulnerability in uxper Togo togo

2025-11-08
CVE-2025-62031
7.1
Unknown Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tagDiv tagDiv Composer td-composer

2025-11-06
CVE-2025-6203
7.5
Unknown Multiple Products

A malicious user may submit a specially-crafted complex payload that otherwise meets the default request size limit which results in excessive memory...

2025-08-28
CVE-2025-62029
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in themesion Grevo grevo

2025-10-23
CVE-2025-62025
9.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in eyecix JobSearch wp-jobsearch.This issue affects JobSearch: from n/a through < 3.0.8.

2025-10-23
CVE-2025-62023
9.8
Unknown Multiple Products

Improper Control of Generation of Code ('Code Injection') vulnerability in Cristián Lávaque s2Member s2member.This issue affects s2Member: from n/a th...

2025-10-23
CVE-2025-62022
7.5
BuddyPress BuddyPress Multiple Products

Missing Authorization vulnerability in BuddyPress BuddyPress buddypress

2025-10-23
CVE-2025-62014
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ApusTheme ITok itok

2025-11-08
CVE-2025-62010
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ApusTheme Famita famita allow...

2025-11-08
CVE-2025-62001
8.8
BullWall Multiple Products

BullWall Ransomware Containment contains excluded file paths, such as '$recycle

2025-12-19
CVE-2025-62000
7.1
BullWall Multiple Products

BullWall Ransomware Containment does not entirely inspect a file to determine if it is ransomware

2025-12-20
CVE-2025-61990
7.5
Unknown Multiple Products

When using a multi-bladed platform with more than one blade, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate

2025-10-16
CVE-2025-61977
7
Unknown Multiple Products

A weak password recovery mechanism for forgotten password vulnerability was discovered in Productivity Suite software version v4

2025-10-24
CVE-2025-61976
7.5
CHOCO Multiple Products

CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or exceptional conditions

2025-12-16
CVE-2025-61974
7.5
Unknown Multiple Products

When a client SSL profile is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization

2025-10-16
CVE-2025-61973
Analyzed
8.8
Microsoft Multiple Products

A local privilege escalation vulnerability exists during the installation of Epic Games Store via the Microsoft Store

2026-01-16
CVE-2025-61960
7.5
APM Multiple Products

When a per-request policy is configured on a BIG-IP APM portal access virtual server, undisclosed traffic can cause the Traffic Management Microkernel...

2025-10-16
CVE-2025-61958
8.7
Unknown Multiple Products

A vulnerability exists in the iHealth command that may allow an authenticated attacker with at least a resource administrator role to bypass tmsh rest...

2025-10-15
CVE-2025-61956
Analyzed
10
Unknown Multiple Products

Radiometrics VizAir is vulnerable to a lack of authentication mechanisms for critical functions, such as admin access and API requests. Attackers can...

2025-11-04
CVE-2025-61955
8.8
F5 Multiple Products

A vulnerability exists in F5OS-A and F5OS-C systems that may allow an authenticated attacker with local access to escalate their privileges

2025-10-15
CVE-2025-61951
7.5
Undisclosed Multiple Products

Undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate

2025-10-16
CVE-2025-61945
Analyzed
10
Unknown Multiple Products

Radiometrics VizAir is vulnerable to any remote attacker via access to the admin panel of the VizAir system without authentication. Once inside, the a...

2025-11-04
CVE-2025-61943
8.4
Unknown Multiple Products

The vulnerability, if exploited, could allow an authenticated miscreant (Process Optimization Standard User) to tamper with queries in Captive Histo...

2026-01-16
CVE-2025-61941
7.2
Unknown Multiple Products

A path traversal issue exists in WXR9300BE6P series firmware versions prior to Ver

2025-10-16
CVE-2025-61940
8.3
Unknown Multiple Products

NMIS/BioDose V22

2025-12-03
CVE-2025-61939
8.8
Unknown Multiple Products

An unused function in MicroServer can start a reverse SSH connection to a vendor registered domain, without mutual authentication

2026-01-08
CVE-2025-61938
7.5
Unknown Multiple Products

When a BIG-IP Advanced WAF or ASM security policy is configured with a URL greater than 1024 characters in length for the Data Guard Protection Enforc...

2025-10-16
CVE-2025-61937
Analyzed
10
Unknown Multiple Products

The vulnerability, if exploited, could allow an unauthenticated miscreant to achieve remote code execution under OS system privileges of “taoimr” se...

2026-01-16
CVE-2025-61935
7.5
Unknown Multiple Products

When a BIG IP Advanced WAF or ASM security policy is configured on a virtual server, undisclosed requests can cause the bd process to terminate

2025-10-16
CVE-2025-61934
Analyzed
10
HP Multiple Products

A binding to an unrestricted IP address vulnerability was discovered in Productivity Suite software version v4.4.1.19. The vulnerability allows an una...

2025-10-23
CVE-2025-61932
KEV Analyzed
9.8
Lanscope Endpoint Manager Multiple Products

Lanscope Endpoint Manager (On-Premises) (Client program (MR) and Detection agent (DA)) improperly verifies the origin of incoming requests, allowing a...

2025-10-20
CVE-2025-61930
8.1
Emlog Multiple Products

Emlog is an open source website building system

2025-10-10
CVE-2025-61929
9.6
Unknown Multiple Products

Cherry Studio is a desktop client that supports for multiple LLM providers. Cherry Studio registers a custom protocol called `cherrystudio://`. When h...

2025-10-10
CVE-2025-61922
Analyzed
9.1
Unknown Multiple Products

PrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal. In versions prior to 4.4.1 and 5.0.5, missing validation on...

2025-10-16
CVE-2025-61920
7.5
Connect Multiple Products

Authlib is a Python library which builds OAuth and OpenID Connect servers

2025-10-10
CVE-2025-61919
Analyzed
7.5
Unknown Multiple Products

Rack is a modular Ruby web server interface

2025-10-10
CVE-2025-61916
7.9
Spinnaker Multiple Products

Spinnaker is an open source, multi-cloud continuous delivery platform

2026-01-06
CVE-2025-61914
Analyzed
7.3
Unknown Multiple Products

n8n is an open source workflow automation platform

2025-12-27
CVE-2025-61913
Analyzed
9.9
HP Multiple Products

Flowise is a drag & drop user interface to build a customized large language model flow. In versions prior to 3.0.8, WriteFileTool and ReadFileTool in...

2025-10-09
CVE-2025-61910
7.5
Unknown Multiple Products

The NASA’s Interplanetary Overlay Network (ION) is an implementation of Delay/Disruption Tolerant Networking (DTN)

2025-10-07
CVE-2025-6190
Analyzed
8.8
WordPress Multiple Products

The Realty Portal – Agent plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization within the rp_user_profile() AJAX ha...

2025-07-23
CVE-2025-61884
KEV Analyzed
7.5
Oracle Multiple Products

Vulnerability in the Oracle Configurator product of Oracle E-Business Suite (component: Runtime UI)

2025-10-12
CVE-2025-61882
KEV Analyzed
9.8
Oracle Multiple Products

Vulnerability in the Oracle Concurrent Processing product of Oracle E-Business Suite (component: BI Publisher Integration). Supported versions that a...

2025-10-05
CVE-2025-6188
7.5
Unknown Multiple Products

On affected platforms running Arista EOS, maliciously formed UDP packets with source port 3503 may be accepted by EOS

2025-08-25
CVE-2025-6187
9.8
WordPress Multiple Products

The bSecure plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization within its order_info REST endpoint in versions 1....

2025-07-24
CVE-2025-61864
7.8
Unknown Multiple Products

A use after free vulnerability exists in VS6ComFile!load_link_inf of V-SFT v6

2025-10-10
CVE-2025-61863
7.8
Unknown Multiple Products

An out-of-bounds read vulnerability exists in VS6ComFile!CSaveData::delete_mem of V-SFT v6

2025-10-10
CVE-2025-61862
7.8
Unknown Multiple Products

An out-of-bounds read vulnerability exists in VS6ComFile!get_ovlp_element_size of V-SFT v6

2025-10-10
CVE-2025-61861
7.8
Unknown Multiple Products

An out-of-bounds read vulnerability exists in VS6ComFile!load_link_inf of V-SFT v6

2025-10-10
CVE-2025-61860
7.8
Unknown Multiple Products

An out-of-bounds read vulnerability exists in VS6MemInIF!set_temp_type_default of V-SFT v6

2025-10-10