20297 Total CVEs
11590 AI Analyzed
295 CISA KEV
4359 Critical
All Vendors
Showing 2801-2850 of 20297 CVEs Page 57 of 406
CVE-2026-55408
Analyzed
8.4
Unknown koodo-reader

Koodo Reader is an ebook reader

2026-07-08
CVE-2026-55405
Analyzed
7.6
LangChain4j LangChain4j

LangChain4j is a Java library for building LLM-powered applications on the JVM

2026-07-11
CVE-2026-5540
7.3
HP of the

A vulnerability has been found in code-projects Simple Laundry System 1

2026-04-05
CVE-2026-55388
Analyzed
8.1
Piscina piscina

piscina is a node

2026-06-23
CVE-2026-55380
Analyzed
7.5
Python Pillow Pillow

Pillow is a Python imaging library

2026-07-07
CVE-2026-55379
Analyzed
7.5
Python Pillow Pillow

Pillow is a Python imaging library

2026-07-07
CVE-2026-55377
Analyzed
8.1
Unknown logto

Logto is the modern, open-source auth infrastructure for SaaS and AI apps

2026-07-11
CVE-2026-5536
Analyzed
7.3
FedML-AI FedML

A weakness has been identified in FedML-AI FedML up to 0

2026-04-05
CVE-2026-5534
Analyzed
7.3
HP Online Enrollment System

A vulnerability was identified in itsourcecode Online Enrollment System 1

2026-04-05
CVE-2026-5526
7.3
Tenda Multiple Products

A security flaw has been discovered in Tenda 4G03 Pro up to 1

2026-04-05
CVE-2026-55255
KEV Analyzed
9.9
Langflow Langflow

An Insecure Direct Object Reference (IDOR) vulnerability in the Langflow /api/v1/responses endpoint allows authenticated attackers to execute unauthor...

2026-06-24
CVE-2026-55242
Analyzed
8.8
Unknown erpnext

ERPNext is a free and open source Enterprise Resource Planning tool

2026-07-16
CVE-2026-5524
Analyzed
9.8
WordPress Divi Form Builder

The Divi Form Builder plugin for WordPress contains an arbitrary file upload vulnerability allowing unauthenticated remote code execution via insuffic...

2026-07-03
CVE-2026-55237
Analyzed
8.8
Intel Workflow Automation Platform

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents

2026-06-19
CVE-2026-55234
Analyzed
8.5
Wekan Wekan

Wekan is open source kanban built with Meteor

2026-07-17
CVE-2026-55233
Analyzed
7.5
OpenResty OpenResty

OpenResty is a high performance web platform

2026-07-12
CVE-2026-5523
Analyzed
8.8
WordPress Divi Form Builder

The Divi Form Builder plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 5

2026-07-09
CVE-2026-55229
Analyzed
7.5
Docker Gotenberg

Gotenberg is a Docker-powered stateless API for PDF files

2026-07-12
CVE-2026-55213
Analyzed
7.5
HTTP h2o

h2o is an HTTP server with support for HTTP/1

2026-07-12
CVE-2026-55208
Analyzed
7.7
Pimcore Pimcore Studio Backend Bundle

Pimcore Studio Backend Bundle is the backend bundle for Pimcore Studio

2026-07-10
CVE-2026-55207
Analyzed
8.8
Unknown pimcore

Pimcore is an Open Source Data & Experience Management Platform

2026-07-10
CVE-2026-55206
Analyzed
8.7
Unknown py7zr

py7zr is a Python-based library and utility to support 7zip archive compression, decompression, encryption and decryption

2026-07-09
CVE-2026-55195
Analyzed
8.7
Unknown py7zr

py7zr is a Python-based library and utility to support 7zip archive compression, decompression, encryption and decryption

2026-07-09
CVE-2026-55189
Analyzed
7.7
RustFS RustFS

RustFS is a distributed object storage system built in Rust

2026-06-28
CVE-2026-55188
Analyzed
8.2
RustFS RustFS

RustFS is a distributed object storage system built in Rust

2026-06-27
CVE-2026-55175
Analyzed
7.5
Spinnaker Spinnaker

Spinnaker is an open source, multi-cloud continuous delivery platform

2026-07-12
CVE-2026-55173
Analyzed
8.1
WWBN AVideo

WWBN AVideo is an open source video platform

2026-07-17
CVE-2026-5513
Analyzed
7.2
WordPress Online Scheduling and Appointment Booking System

The Online Scheduling and Appointment Booking System – Bookly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'bookly-custom...

2026-06-15
CVE-2026-55119
Analyzed
8.1
Ubiquiti UniFi Talk Application

A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Talk Application...

2026-07-03
CVE-2026-55118
Analyzed
8.3
Ubiquiti UniFi Network Application

A malicious actor with access to the network,low privileges and under certain conditions could exploit an Improper Access Control vulnerability found...

2026-07-03
CVE-2026-55117
Analyzed
8.6
Ubiquiti UniFi Access Application

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Access Application to access files on the hos...

2026-07-03
CVE-2026-55116
Analyzed
9
Ubiquiti Dream Machines

An improper access control flaw in Ubiquiti Dream Machines running UniFi OS allows network-adjacent attackers to make unauthorized configuration chang...

2026-07-03
CVE-2026-55115
Analyzed
9.9
Ubiquiti UniFi Protect Application

A Server-Side Request Forgery (SSRF) vulnerability in the Ubiquiti UniFi Protect Application allows authenticated low-privilege network users to escal...

2026-07-03
CVE-2026-55114
Analyzed
8.8
Ubiquiti UniFi Network Application

A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Network Applicat...

2026-07-03
CVE-2026-55100
Analyzed
8.7
Kyndryl hashi-vault-js

hashi-vault-js is a Node

2026-08-01
CVE-2026-55069
Analyzed
8.7
Unknown kestra

Kestra is an open-source, event-driven orchestration platform

2026-06-27
CVE-2026-55052
Analyzed
8.8
Microsoft SharePoint

Missing authorization in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network

2026-07-15
CVE-2026-55010
Analyzed
9.8
Microsoft Minecraft Bedrock Dedicated Server

A heap-based buffer overflow in the Microsoft Minecraft Bedrock Dedicated Server allows unauthenticated, remote attackers to execute arbitrary code vi...

2026-07-15
CVE-2026-55008
Analyzed
9.6
Microsoft Exchange Server

Microsoft Exchange Server is vulnerable to cross-site scripting (XSS), allowing an unauthenticated attacker to perform spoofing over a network.

2026-07-15
CVE-2026-55005
Analyzed
8.8
Microsoft Exchange Server

Heap-based buffer overflow in Microsoft Exchange Server allows an authorized attacker to execute code over a network

2026-07-15
CVE-2026-54999
Analyzed
8.8
Microsoft Windows

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthorized attacker to execu...

2026-07-15
CVE-2026-54998
Analyzed
8.8
Microsoft Exchange Online

Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate privileges over a network

2026-07-03
CVE-2026-54990
Analyzed
9.8
Microsoft Windows 11 / Windows Server 2025

A heap-based buffer overflow in the Microsoft Windows Remote Desktop Client allows an unauthenticated remote attacker to execute arbitrary code over t...

2026-07-15
CVE-2026-54982
Analyzed
8.8
Microsoft Windows

Integer underflow (wrap or wraparound) in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacen...

2026-07-15
CVE-2026-5496
7.8
Unknown Multiple Products

Labcenter Electronics Proteus PDSPRJ File Parsing Type Confusion Remote Code Execution Vulnerability

2026-04-11
CVE-2026-5495
7.8
Unknown Multiple Products

Labcenter Electronics Proteus PDSPRJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

2026-04-11
CVE-2026-5494
7.8
Unknown Multiple Products

Labcenter Electronics Proteus PDSPRJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

2026-04-11
CVE-2026-5493
7.8
Unknown Multiple Products

Labcenter Electronics Proteus PDSPRJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

2026-04-11
CVE-2026-54919
Analyzed
7.4
Unknown cpp-httplib

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library

2026-07-12
CVE-2026-54917
Analyzed
7.8
SeaweedFS SeaweedFS

SeaweedFS is a distributed storage system for object storage (S3), file systems, and Iceberg tables

2026-06-27