8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 2701-2750 of 8341 CVEs Page 55 of 167
CVE-2025-60938
7.5
Emoncms Multiple Products

Emoncms 11

2025-10-24
CVE-2025-60915
8.1
Unknown Multiple Products

An issue in the size query parameter (/views/file

2025-11-25
CVE-2025-60880
8.3
Unknown Multiple Products

An authenticated stored XSS vulnerability exists in the Bagisto 2

2025-10-10
CVE-2025-60869
7.3
Publii Multiple Products

Publii CMS v0

2025-10-10
CVE-2025-60858
7.5
Reolink Multiple Products

Reolink Video Doorbell Wi-Fi DB_566128M5MP_W stores and transmits DDNS credentials in plaintext within its configuration and update scripts, allowing...

2025-10-29
CVE-2025-60854
9.8
D-Link Multiple Products

A vulnerability has been found in D-Link R15 (AX1500) 1.20.01 and below. By manipulating the model name parameter during a password change request in...

2025-12-04
CVE-2025-60805
7.5
Unknown Multiple Products

An issue was discovered in BESSystem BES Application Server thru 9

2025-10-29
CVE-2025-60803
Analyzed
9.8
Antabot Multiple Products

Antabot White-Jotter up to commit 9bcadc was discovered to contain an unauthenticated remote code execution (RCE) vulnerability via the component /api...

2025-10-24
CVE-2025-60801
Analyzed
8.2
Unknown Multiple Products

jshERP up to commit fbda24da was discovered to contain an unauthenticated remote code execution (RCE) vulnerability via the jsh_erp function

2025-10-24
CVE-2025-60800
7.5
Unknown Multiple Products

Incorrect access control in the /jshERP-boot/user/info interface of jshERP up to commit 90c411a allows attackers to access sensitive information via a...

2025-10-29
CVE-2025-6080
Analyzed
8.8
WordPress Multiple Products

The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to unauthorized admin account creation in all versions up to, and inclu...

2025-08-17
CVE-2025-6079
Analyzed
8.8
WordPress Multiple Products

The School Management System for Wordpress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the hom...

2025-08-17
CVE-2025-60787
7.2
MotionEye Multiple Products

MotionEye v0

2025-10-03
CVE-2025-60786
Analyzed
8.8
HP Multiple Products

A Zip Slip vulnerability in the import a Project component of iceScrum v7

2025-12-16
CVE-2025-60785
Analyzed
8.8
Intel Multiple Products

A remote code execution (RCE) vulnerability in the Postgres Drivers component of iceScrum v7

2025-11-04
CVE-2025-60772
Analyzed
9.8
Unknown Multiple Products

Improper authentication in the web-based management interface of NETLINK HG322G V1.0.00-231017, allows a remote unauthenticated attacker to escalate p...

2025-10-22
CVE-2025-60751
7.5
GeographicLib Multiple Products

GeographicLib 2

2025-10-21
CVE-2025-60749
7.8
Trimble SketchUp Multiple Products

DLL Hijacking vulnerability in Trimble SketchUp desktop 2025 via crafted libcef

2025-10-31
CVE-2025-60739
Analyzed
9.6
Unknown Multiple Products

Cross Site Request Forgery (CSRF) vulnerability in Ilevia EVE X1 Server Firmware Version v4.7.18.0.eden and before, Logic Version v6.00 - 2025_07_21 a...

2025-11-26
CVE-2025-60738
7.5
Unknown Multiple Products

An issue in Ilevia EVE X1 Server Firmware Version v4

2025-11-20
CVE-2025-60736
9.8
HP Multiple Products

code-projects Online Medicine Guide 1.0 is vulnerable to SQL Injection in /login.php via the upass parameter.

2025-12-04
CVE-2025-60735
7.6
PerfreeBlog Multiple Products

PerfreeBlog v4

2025-10-24
CVE-2025-60731
7.6
PerfreeBlog Multiple Products

PerfreeBlog v4

2025-10-24
CVE-2025-60730
7.6
PerfreeBlog Multiple Products

PerfreeBlog v4

2025-10-24
CVE-2025-6073
7.5
Unknown Multiple Products

Stack-based Buffer Overflow vulnerability in ABB RMC-100, ABB RMC-100 LITE

2025-07-06
CVE-2025-60727
7.8
Microsoft Multiple Products

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-11-13
CVE-2025-60721
7.8
Microsoft Multiple Products

Privilege context switching error in Windows Administrator Protection allows an authorized attacker to elevate privileges locally

2025-11-13
CVE-2025-60720
7.8
Microsoft Multiple Products

Buffer over-read in Windows TDX

2025-11-13
CVE-2025-6072
7.5
Unknown Multiple Products

Stack-based Buffer Overflow vulnerability in ABB RMC-100, ABB RMC-100 LITE

2025-07-06
CVE-2025-60718
7.8
Microsoft Multiple Products

Untrusted search path in Windows Administrator Protection allows an authorized attacker to elevate privileges locally

2025-11-13
CVE-2025-60715
Analyzed
8
Microsoft Multiple Products

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network

2025-11-13
CVE-2025-60714
Analyzed
7.8
Microsoft Multiple Products

Heap-based buffer overflow in Windows OLE allows an unauthorized attacker to execute code locally

2025-11-13
CVE-2025-60713
Analyzed
7.8
Microsoft Multiple Products

Untrusted pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally

2025-11-13
CVE-2025-60710
7.8
Microsoft Multiple Products

Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges l...

2025-11-13
CVE-2025-60709
7.8
Microsoft Multiple Products

Out-of-bounds read in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally

2025-11-13
CVE-2025-60707
7.8
Unknown Multiple Products

Use after free in Multimedia Class Scheduler Service (MMCSS) allows an authorized attacker to elevate privileges locally

2025-11-13
CVE-2025-60705
7.8
Microsoft Multiple Products

Improper access control in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally

2025-11-13
CVE-2025-60703
Analyzed
7.8
Microsoft Multiple Products

Untrusted pointer dereference in Windows Remote Desktop allows an authorized attacker to elevate privileges locally

2025-11-13
CVE-2025-60698
7.3
D-Link Multiple Products

A command injection vulnerability exists in the D-Link DIR-882 Router firmware DIR882A1_FW102B02 within the `prog

2025-11-14
CVE-2025-60697
7.3
D-Link Multiple Products

A command injection vulnerability exists in the D-Link DIR-882 Router firmware DIR882A1_FW102B02 within the `prog

2025-11-14
CVE-2025-60696
8.4
Unknown Multiple Products

A stack-based buffer overflow vulnerability exists in the makeRequest

2025-11-14
CVE-2025-60694
7.5
Linksys Multiple Products

A stack-based buffer overflow exists in the validate_static_route function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2

2025-11-14
CVE-2025-60692
8.4
Unknown Multiple Products

A stack-based buffer overflow vulnerability exists in the libshared

2025-11-14
CVE-2025-60691
8.8
Linksys Multiple Products

A stack-based buffer overflow exists in the httpd binary of Linksys E1200 v2 routers (Firmware E1200_v2

2025-11-14
CVE-2025-60690
Analyzed
8.8
Linksys Multiple Products

A stack-based buffer overflow exists in the get_merge_ipaddr function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2

2025-11-14
CVE-2025-60679
8.8
D-Link Multiple Products

A stack buffer overflow vulnerability exists in the D-Link DIR-816A2 router firmware DIR-816A2_FWv1

2025-11-15
CVE-2025-60663
7.5
Tenda Multiple Products

Tenda AC18 V15

2025-10-02
CVE-2025-60662
7.5
Tenda Multiple Products

Tenda AC18 V15

2025-10-02
CVE-2025-60660
7.5
Tenda Multiple Products

Tenda AC18 V15

2025-10-02
CVE-2025-60638
7.5
Unknown Multiple Products

An issue was discovered in Free5GC v4

2025-11-25