8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 2851-2900 of 8341 CVEs Page 58 of 167
CVE-2025-60191
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Premmerce Premmerce Wishlist...

2025-11-06
CVE-2025-60190
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Hinnerk Altenburg Immocaster...

2025-11-06
CVE-2025-60180
9.8
Salesforce Multiple Products

Deserialization of Untrusted Data vulnerability in CRM Perks WP Gravity Forms Salesforce gf-salesforce-crmperks allows Object Injection.This issue aff...

2025-12-19
CVE-2025-6018
7.8
Linux Multiple Products

A Local Privilege Escalation (LPE) vulnerability has been discovered in pam-config within Linux Pluggable Authentication Modules (PAM)

2025-07-23
CVE-2025-60178
9.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in CRM Perks WP Gravity Forms HubSpot gf-hubspot allows Object Injection.This issue affects WP Gravity...

2025-12-19
CVE-2025-60174
Analyzed
9.8
HP Multiple Products

Deserialization of Untrusted Data vulnerability in CRM Perks WP Gravity Forms Constant Contact Plugin gf-constant-contact allows Object Injection.This...

2025-12-19
CVE-2025-60173
7.1
Ashwani kumar GST Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Ashwani kumar GST for WooCommerce allows Stored XSS

2025-09-26
CVE-2025-60172
7.1
Unknown Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in flytedesk Flytedesk Digital allows Stored XSS

2025-09-26
CVE-2025-60171
7.1
Unknown Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in yourplugins Conditional Cart Messages for WooCommerce – YourPlugins

2025-09-26
CVE-2025-60170
7.1
Taraprasad Swain Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Taraprasad Swain HTACCESS IP Blocker allows Stored XSS

2025-09-26
CVE-2025-60169
7.1
Contact Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in W3S Cloud Technology W3SCloud Contact Form 7 to Zoho CRM allows Stored XSS

2025-09-26
CVE-2025-60164
7.1
NewsMAN NewsmanApp Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in NewsMAN NewsmanApp allows Stored XSS

2025-09-26
CVE-2025-60156
Analyzed
9.6
WordPress Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in webandprint AR For WordPress allows Upload a Web Shell to a Web Server. This issue affects AR For W...

2025-09-26
CVE-2025-60153
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in wpshuffle Subscribe To Unlock...

2025-09-26
CVE-2025-60151
7.5
CRM Perks WP Gravity Multiple Products

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks WP Gravity Forms HubSpot gf-hubspot allows Phishing

2025-10-22
CVE-2025-60150
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in wpshuffle Subscribe to Downlo...

2025-09-26
CVE-2025-60126
Analyzed
8.8
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in PluginOps Testimonial Slider...

2025-09-26
CVE-2025-60118
Analyzed
8.5
Intel Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Potenzaglobalsolutions PGS Core allows SQL Injec...

2025-09-26
CVE-2025-60111
Analyzed
8.8
Unknown Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in javothemes Javo Core allows Authentication Bypass

2025-09-26
CVE-2025-60110
8.5
LambertGroup AllInOne Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup AllInOne - Banner Rotator allows SQ...

2025-09-26
CVE-2025-60109
8.5
LambertGroup Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup LambertGroup - AllInOne - Content S...

2025-09-26
CVE-2025-60108
8.5
LambertGroup Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup LambertGroup - AllInOne - Banner wi...

2025-09-26
CVE-2025-60107
8.5
LambertGroup Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup LambertGroup - AllInOne - Banner wi...

2025-09-26
CVE-2025-60091
Analyzed
9.8
HP Multiple Products

Deserialization of Untrusted Data vulnerability in CRM Perks WP Gravity Forms Zoho CRM and Bigin gf-zoho allows Object Injection.This issue affects WP...

2025-12-19
CVE-2025-60090
Analyzed
9.8
HP Multiple Products

Deserialization of Untrusted Data vulnerability in CRM Perks WP Gravity Forms Insightly gf-insightly allows Object Injection.This issue affects WP Gra...

2025-12-19
CVE-2025-60089
Analyzed
9.8
HP Multiple Products

Deserialization of Untrusted Data vulnerability in CRM Perks WP Gravity Forms FreshDesk Plugin gf-freshdesk allows Object Injection.This issue affects...

2025-12-19
CVE-2025-60084
8.6
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in add-ons

2025-12-19
CVE-2025-60083
8.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in add-ons

2025-12-19
CVE-2025-60082
8.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in add-ons

2025-12-19
CVE-2025-60081
8.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in add-ons

2025-12-19
CVE-2025-60075
Analyzed
7.1
HP Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Allegro Marketing hpb seo plugin for WordPress hpbseo allows Reflected XSS

2025-10-29
CVE-2025-60074
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Processby Lazy Load Optimizer...

2025-11-06
CVE-2025-60072
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Processby Anchor smooth scrol...

2025-12-19
CVE-2025-60063
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Rosalinda rosalin...

2025-12-19
CVE-2025-60062
9.4
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mmetrodw tPlayer tplayer-html5-audio-player-with...

2025-12-19
CVE-2025-60055
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Fabrica fabrica...

2025-12-19
CVE-2025-60054
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes OnLeash onleash...

2025-12-19
CVE-2025-60053
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes MaxCube maxcube...

2025-12-19
CVE-2025-60052
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes W&D wd allows PH...

2025-12-19
CVE-2025-60051
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Rare Radio rarer...

2025-12-19
CVE-2025-60050
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Panda panda allow...

2025-12-19
CVE-2025-60049
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Soleil soleil all...

2025-12-19
CVE-2025-60041
8.8
Iulia Cazan Emails Multiple Products

Authentication Bypass Using an Alternate Path or Channel vulnerability in Iulia Cazan Emails Catch All emails-catch-all allows Password Recovery Explo...

2025-10-23
CVE-2025-60039
Analyzed
9.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in rascals Noisa noisa allows Object Injection.This issue affects Noisa: from n/a through <= 2.6.0.

2025-10-23
CVE-2025-60024
8.8
Fortinet Multiple Products

Multiple Improper Limitations of a Pathname to a Restricted Directory ('Path Traversal') vulnerabilities [CWE-22] vulnerability in Fortinet FortiVoice...

2025-12-10
CVE-2025-60021
Analyzed
9.8
GitHub Multiple Products

Remote command injection vulnerability in heap profiler builtin service in Apache bRPC ((all versions < 1.15.0)) on all platforms allows attacker to i...

2026-01-17
CVE-2025-60017
8.2
Unknown Multiple Products

Unitree Go2, G1, H1, and B2 devices through 2025-09-20 allow root OS command injection via the hostapd_restart

2025-09-26
CVE-2025-60016
7.5
Unknown Multiple Products

When Diffie-Hellman (DH) group Elliptic Curve Cryptography (ECC) Brainpool curves are configured in an SSL profile's Cipher Rule or Cipher Group, and...

2025-10-16
CVE-2025-60004
Analyzed
7.5
Juniper Multiple Products

An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS E...

2025-10-09
CVE-2025-60003
7.5
Juniper Multiple Products

A Buffer Over-read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, net...

2026-01-16