8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 2601-2650 of 8341 CVEs Page 53 of 167
CVE-2025-61735
Analyzed
7.3
Apache Multiple Products

Server-Side Request Forgery (SSRF) vulnerability in Apache Kylin

2025-10-02
CVE-2025-61734
Analyzed
7.5
Apache Multiple Products

Files or Directories Accessible to External Parties vulnerability in Apache Kylin

2025-10-02
CVE-2025-61733
Analyzed
7.5
Apache Multiple Products

Authentication Bypass Using an Alternate Path or Channel vulnerability in Apache Kylin

2025-10-02
CVE-2025-61731
7.8
Building Multiple Products

Building a malicious file with cmd/go can cause can cause a write to an attacker-controlled file with partial control of the file content

2026-01-30
CVE-2025-61729
7.5
Within Multiple Products

Within HostnameError

2025-12-03
CVE-2025-61726
7.5
Unknown Multiple Products

The net/url package does not set a limit on the number of query parameters in a query

2026-01-30
CVE-2025-61725
7.5
ParseAddress Multiple Products

The ParseAddress function constructeds domain-literal address components through repeated string concatenation

2025-10-30
CVE-2025-61692
7.8
STUDIO Multiple Products

VT STUDIO versions 8

2025-10-02
CVE-2025-61691
7.8
STUDIO Multiple Products

VT STUDIO versions 8

2025-10-02
CVE-2025-61690
7.8
STUDIO Multiple Products

KV STUDIO versions 12

2025-10-02
CVE-2025-61688
Analyzed
8.6
Kubernetes Multiple Products

Omni manages Kubernetes on bare metal, virtual machines, or in a cloud

2025-10-13
CVE-2025-61687
8.3
Flowise Multiple Products

Flowise is a drag & drop user interface to build a customized large language model flow

2025-10-06
CVE-2025-61686
Analyzed
9.1
Unknown Multiple Products

React Router is a router for React. In @react-router/node versions 7.0.0 through 7.9.3, @remix-run/deno prior to version 2.17.2, and @remix-run/node p...

2026-01-11
CVE-2025-61684
Analyzed
7.5
Unknown Multiple Products

Quicly, an IETF QUIC protocol implementation, is susceptible to a denial-of-service attack prior to commit d9d3df6a8530a102b57d840e39b0311ce5c9e14e

2026-01-20
CVE-2025-61679
7.7
Unknown Multiple Products

Anyquery is an SQL query engine built on top of SQLite

2025-10-03
CVE-2025-61673
8.6
Karapace Multiple Products

Karapace is an open-source implementation of Kafka REST and Schema Registry

2025-10-03
CVE-2025-61622
Analyzed
9.8
Unknown Multiple Products

Deserialization of untrusted data in python in pyfory versions 0.12.0 through 0.12.2, or the legacy pyfury versions from 0.1.0 through 0.10.3: allows...

2025-10-01
CVE-2025-61619
7.5
Unknown Multiple Products

In nr modem, there is a possible system crash due to improper input validation

2025-12-02
CVE-2025-61618
7.5
Unknown Multiple Products

In nr modem, there is a possible system crash due to improper input validation

2025-12-02
CVE-2025-61617
7.5
Unknown Multiple Products

In nr modem, there is a possible system crash due to improper input validation

2025-12-02
CVE-2025-61610
7.5
Unknown Multiple Products

In nr modem, there is a possible system crash due to improper input validation

2025-12-02
CVE-2025-61609
7.5
Unknown Multiple Products

In modem, there is a possible system crash due to improper input validation

2025-12-02
CVE-2025-61608
7.5
Unknown Multiple Products

In nr modem, there is a possible system crash due to improper input validation

2025-12-02
CVE-2025-61607
7.5
Unknown Multiple Products

In nr modem, there is a possible system crash due to improper input validation

2025-12-02
CVE-2025-61602
7.5
BigBlueButton Multiple Products

BigBlueButton is an open-source virtual classroom

2025-10-09
CVE-2025-61601
7.5
BigBlueButton Multiple Products

BigBlueButton is an open-source virtual classroom

2025-10-09
CVE-2025-61600
7.5
Unknown Multiple Products

Stalwart is a mail and collaboration server

2025-10-02
CVE-2025-61597
7.6
Emlog Multiple Products

Emlog is an open source website building system

2025-10-03
CVE-2025-61593
7.1
Cursor Multiple Products

Cursor is a code editor built for programming with AI

2025-10-03
CVE-2025-61592
8.8
Cursor Multiple Products

Cursor is a code editor built for programming with AI

2025-10-03
CVE-2025-61591
8.8
Cursor Multiple Products

Cursor is a code editor built for programming with AI

2025-10-03
CVE-2025-61590
7.5
Cursor Multiple Products

Cursor is a code editor built for programming with AI

2025-10-03
CVE-2025-61582
Analyzed
7.5
Microsoft Multiple Products

TS3 Manager is modern web interface for maintaining Teamspeak3 servers

2025-10-02
CVE-2025-61581
Analyzed
7.5
Apache Multiple Products

** UNSUPPORTED WHEN ASSIGNED ** Inefficient Regular Expression Complexity vulnerability in Apache Traffic Control

2025-10-17
CVE-2025-61577
7.5
D-Link Multiple Products

D-Link DIR-816A2_FWv1

2025-10-09
CVE-2025-61553
8.2
Unknown Multiple Products

An out-of-bounds write in VirtIO network device emulation in BitVisor from commit 108df6 (2020-05-20) to commit 480907 (2025-07-06) allows local attac...

2025-10-17
CVE-2025-61548
9.8
Unknown Multiple Products

SQL Injection is present on the hfInventoryDistFormID parameter in the /PSP/appNET/Store/CartV12.aspx/GetUnitPrice endpoint in edu Business Solutions...

2026-01-09
CVE-2025-61543
7.1
Host Multiple Products

A Host Header Injection vulnerability exists in the password reset functionality of CraftMyCMS 4

2025-10-16
CVE-2025-61541
7.1
Webmin Multiple Products

Webmin 2

2025-10-16
CVE-2025-61536
Analyzed
8.2
FelixRiddle Multiple Products

FelixRiddle dev-jobs-handlebars 1

2025-10-16
CVE-2025-61524
7.2
Casdoor Multiple Products

An issue in the permission verification module and organization/application editing interface in Casdoor before 2

2025-10-08
CVE-2025-61498
7.5
Tenda Multiple Products

A buffer overflow in the UPnP service of Tenda AC8 Hardware v03

2025-10-30
CVE-2025-61492
10
Unknown Multiple Products

A command injection vulnerability in the execute_command function of terminal-controller-mcp 0.1.7 allows attackers to execute arbitrary commands via...

2026-01-08
CVE-2025-61488
Analyzed
7.6
Unknown Multiple Products

An issue in Senayan Library Management System (SLiMS) 9 Bulian v

2025-10-20
CVE-2025-61482
7.2
Unknown Multiple Products

Improper handling of OTP/TOTP/HOTP values in NetKnights GmbH privacyIDEA Authenticator v

2025-10-27
CVE-2025-61481
Analyzed
10
HP Multiple Products

An issue in MikroTik RouterOS v.7.14.2 and SwitchOS v.2.18 allows a remote attacker to execute arbitrary code via the HTTP- only WebFig management com...

2025-10-27
CVE-2025-61455
Analyzed
9.8
HP Multiple Products

SQL Injection vulnerability exists in Bhabishya-123 E-commerce 1.0, specifically within the signup.inc.php endpoint. The application directly incorpor...

2025-10-20
CVE-2025-61429
8.8
Terminal Multiple Products

An issue in NCR Atleos Terminal Manager (ConfigApp) v3

2025-10-29
CVE-2025-61417
Analyzed
8.8
Unknown Multiple Products

Cross-Site Scripting (XSS) vulnerability exists in TastyIgniter 3

2025-10-20
CVE-2025-61385
Analyzed
9.6
Intel Multiple Products

SQL injection vulnerability in tlocke pg8000 1.31.4 allows remote attackers to execute arbitrary SQL commands via a specially crafted Python list inpu...

2025-10-28