8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 2801-2850 of 8341 CVEs Page 57 of 167
CVE-2025-60335
7.5
TOTOLINK Multiple Products

A NULL pointer dereference in the main function of TOTOLINK N600R v4

2025-10-23
CVE-2025-60334
7.5
TOTOLINK Multiple Products

TOTOLINK N600R v4

2025-10-23
CVE-2025-60333
7.5
TOTOLINK Multiple Products

TOTOLINK N600R v4

2025-10-23
CVE-2025-60332
7.5
D-Link Multiple Products

A NULL pointer dereference in the SetWLanRadioSettings function of D-Link DIR-823G A1 v1

2025-10-23
CVE-2025-60331
7.5
D-Link Multiple Products

D-Link DIR-823G A1 v1

2025-10-23
CVE-2025-6033
7.8
Unknown Multiple Products

There is a memory corruption vulnerability due to an out of bounds write in XML_Serialize() when using SymbolEditor in NI Circuit Design Suite

2025-09-30
CVE-2025-60316
Analyzed
9.4
HP Multiple Products

SourceCodester Pet Grooming Management Software 1.0 is vulnerable to SQL Injection in admin/view_customer.php via the ID parameter.

2025-10-10
CVE-2025-60311
8.8
ProjectWorlds Multiple Products

ProjectWorlds Gym Management System1

2025-10-08
CVE-2025-60306
Analyzed
9.9
Unknown Multiple Products

code-projects Simple Car Rental System 1.0 has a permission bypass issue where low privilege users can forge high privilege sessions and perform sensi...

2025-10-10
CVE-2025-60291
Analyzed
9.1
Unknown Multiple Products

An issue was discovered in eTimeTrackLite Web thru 12.0 (20250704). There is a permission control flaw that allows unauthorized attackers to access sp...

2025-10-27
CVE-2025-60279
Analyzed
9.6
Unknown Multiple Products

A server-side request forgery (SSRF) vulnerability in Illia Cloud illia-Builder before v4.8.5 allows authenticated users to send arbitrary requests to...

2025-10-17
CVE-2025-60269
Analyzed
9.4
JEEWMS Multiple Products

JEEWMS 20250820 is vulnerable to SQL Injection in the exportXls function located in the src/main/java/org/jeecgframework/web/cgreport/controller/excel...

2025-10-10
CVE-2025-60262
Analyzed
9.8
H3C Multiple Products

An issue in H3C M102G HM1A0V200R010 wireless controller and BA1500L SWBA1A0V100R006 wireless access point, there is a misconfiguration vulnerability a...

2026-01-07
CVE-2025-6025
7.5
WordPress Multiple Products

The Order Tip for WooCommerce plugin for WordPress is vulnerable to Unauthenticated Improper Input Validation in all versions up to, and including, 1

2025-08-15
CVE-2025-60248
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in WPClever WPC Product Options...

2025-11-08
CVE-2025-60241
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Premmerce Premmerce premmerce...

2025-11-08
CVE-2025-60240
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Alexander AnyComment anycomme...

2025-11-08
CVE-2025-60239
8.5
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Codexpert, Inc CoSchool LMS coschool allows Blin...

2025-11-08
CVE-2025-60227
8.6
ThimPress WP Pipes Multiple Products

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ThimPress WP Pipes wp-pipes allows Path Traversal

2025-10-23
CVE-2025-60226
9.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in axiomthemes White Rabbit whiterabbit allows Object Injection.This issue affects White Rabbit: from...

2025-10-23
CVE-2025-60225
Analyzed
9.8
HP Multiple Products

Deserialization of Untrusted Data vulnerability in AncoraThemes BugsPatrol bugspatrol allows Object Injection.This issue affects BugsPatrol: from n/a...

2025-10-22
CVE-2025-60224
9.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in wpshuffle Subscribe to Download subscribe-to-download allows Object Injection.This issue affects Su...

2025-10-23
CVE-2025-60222
8.8
FantasticPlugins SUMO Multiple Products

Incorrect Privilege Assignment vulnerability in FantasticPlugins SUMO Memberships for WooCommerce sumomemberships allows Privilege Escalation

2025-10-23
CVE-2025-60221
9.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in captivateaudio Captivate Sync captivatesync-trade allows Object Injection.This issue affects Captiv...

2025-10-23
CVE-2025-60220
8.2
Unknown Multiple Products

Incorrect Privilege Assignment vulnerability in pebas CouponXxL couponxxl allows Privilege Escalation

2025-10-22
CVE-2025-60219
Analyzed
10
HP Multiple Products

Unrestricted Upload of File with Dangerous Type vulnerability in HaruTheme WooCommerce Designer Pro allows Upload a Web Shell to a Web Server. This is...

2025-09-26
CVE-2025-60217
7.7
Unknown Multiple Products

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ypromo PT Luxa Addons pt-luxa-addons allows Path Trave...

2025-10-23
CVE-2025-60216
9.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in BoldThemes Addison addison allows Object Injection.This issue affects Addison: from n/a through <=...

2025-10-23
CVE-2025-60215
8.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in designthemes Kriya kriya allows Object Injection

2025-10-23
CVE-2025-60214
Analyzed
9.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in BoldThemes Goldenblatt goldenblatt allows Object Injection.This issue affects Goldenblatt: from n/a...

2025-10-22
CVE-2025-60213
Analyzed
9.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in Whitebox-Studio Scape scape allows Object Injection.This issue affects Scape: from n/a through <= 1...

2025-10-23
CVE-2025-60212
8.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in designthemes VEDA veda allows Object Injection

2025-10-23
CVE-2025-60211
8.8
Unknown Multiple Products

Incorrect Privilege Assignment vulnerability in extendons WooCommerce Registration Fields Plugin - Custom Signup Fields extendons-registration-fields...

2025-10-23
CVE-2025-60210
Analyzed
9.8
HP Multiple Products

Deserialization of Untrusted Data vulnerability in wpeverest Everest Forms - Frontend Listing everest-forms-frontend-listing allows Object Injection.T...

2025-10-23
CVE-2025-60209
Analyzed
8.2
Google Multiple Products

Deserialization of Untrusted Data vulnerability in CRM Perks Connector for Gravity Forms and Google Sheets wp-gravity-forms-spreadsheets allows Object...

2025-10-22
CVE-2025-60208
8.8
Tusko Trush Advanced Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Tusko Trush Advanced Custom Fields : CPT Options Pages acf-cpt-options-pages allows Object Injectio...

2025-10-23
CVE-2025-60206
8.2
Bearsthemes Alone Multiple Products

Improper Control of Generation of Code ('Code Injection') vulnerability in Bearsthemes Alone alone allows Code Injection

2025-10-22
CVE-2025-60204
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Josh Kohlbach WooCommerce Sto...

2025-11-06
CVE-2025-60203
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Josh Kohlbach Store Exporter...

2025-11-06
CVE-2025-60202
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Kyle Phillips Favorites favor...

2025-11-06
CVE-2025-60201
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in aguilatechnologies WP Custome...

2025-11-06
CVE-2025-60200
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThimPress LearnPress Export I...

2025-11-06
CVE-2025-60199
Analyzed
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in dedalx InHype - Blog & Magazi...

2025-11-06
CVE-2025-60198
Analyzed
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in dedalx Saxon - Viral Content...

2025-11-06
CVE-2025-60197
Analyzed
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in owenr88 Simple Contact Forms...

2025-11-06
CVE-2025-60196
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Clearblue Clearblue® Ovulatio...

2025-11-06
CVE-2025-60195
9.8
Unknown Multiple Products

Incorrect Privilege Assignment vulnerability in Vito Peleg Atarim atarim-visual-collaboration allows Privilege Escalation.This issue affects Atarim: f...

2025-11-06
CVE-2025-60194
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Premmerce Premmerce Product S...

2025-11-06
CVE-2025-60193
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Premmerce Premmerce User Role...

2025-11-06
CVE-2025-60192
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Premmerce Premmerce Wholesale...

2025-11-06