8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 3101-3150 of 8341 CVEs Page 63 of 167
CVE-2025-59146
8.5
Intel Multiple Products

New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system

2025-10-09
CVE-2025-59137
7.1
Portfolio Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in eLEOPARD Behance Portfolio Manager allows Stored XSS

2026-01-01
CVE-2025-59134
8.8
Unknown Multiple Products

Incorrect Privilege Assignment vulnerability in Jthemes Sale! Immigration law, Visa services support, Migration Agent Consulting immiex allows Privile...

2025-12-19
CVE-2025-59131
7.1
Hoernerfranz Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Hoernerfranz WP-CalDav2ICS allows Stored XSS

2026-01-01
CVE-2025-59129
7.6
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Appointify allows Blind SQL Injection

2025-12-31
CVE-2025-59118
7.3
Apache Multiple Products

Unrestricted Upload of File with Dangerous Type vulnerability in Apache OFBiz

2025-11-14
CVE-2025-59106
8.8
Unknown Multiple Products

The binary serving the web server and executing basically all actions launched from the Web UI is running with root privileges

2026-01-28
CVE-2025-59088
8.6
Unknown Multiple Products

If kdcproxy receives a request for a realm which does not have server addresses defined in its configuration, by default, it will query SRV records in...

2025-11-13
CVE-2025-59057
Analyzed
7.6
React Multiple Products

React Router is a router for React

2026-01-10
CVE-2025-59053
Analyzed
9.6
Intel Multiple Products

AIRI is a self-hosted, artificial intelligence based Grok Companion. In v0.7.2-beta.2 in the `packages/stage-ui/src/components/MarkdownRenderer.vue` p...

2025-09-12
CVE-2025-59050
Analyzed
8.4
Microsoft Multiple Products

Greenshot is an open source Windows screenshot utility

2025-09-16
CVE-2025-59048
8.1
Unknown Multiple Products

OpenBao's AWS Plugin generates AWS access credentials based on IAM policies

2025-10-23
CVE-2025-59046
9.8
Unknown Multiple Products

The npm package `interactive-git-checkout` is an interactive command-line tool that allows users to checkout a git branch while it prompts for the bra...

2025-09-09
CVE-2025-59043
7.5
OpenBao Multiple Products

OpenBao is an open source identity-based secrets management system

2025-10-17
CVE-2025-59033
Analyzed
9.8
Microsoft Multiple Products

The Microsoft vulnerable driver block list is implemented as Windows Defender Application Control (WDAC) policy. On systems that do not have hyperviso...

2025-09-08
CVE-2025-59030
7.5
Unknown Multiple Products

An attacker can trigger the removal of cached records by sending a NOTIFY query over TCP

2025-12-11
CVE-2025-59022
8.1
Backend Multiple Products

Backend users who had access to the recycler module could delete arbitrary data from any database table defined in the TCA - regardless of whether the...

2026-01-15
CVE-2025-59017
8.8
CMS Multiple Products

Missing authorization checks in the Backend Routing of TYPO3 CMS versions 9

2025-09-10
CVE-2025-59012
7.1
Unknown Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in shinetheme Traveler allows Reflected XSS

2025-09-26
CVE-2025-59011
7.5
Unknown Multiple Products

Missing Authorization vulnerability in shinetheme Traveler allows Exploiting Incorrectly Configured Access Control Security Levels

2025-09-26
CVE-2025-59010
7.5
Permalink Multiple Products

Insertion of Sensitive Information Into Sent Data vulnerability in Maciej Bis Permalink Manager Lite allows Retrieve Embedded Sensitive Data

2025-09-26
CVE-2025-59008
7.6
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PressTigers ZIP Code Based Content Protection al...

2025-09-09
CVE-2025-59007
8.1
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in themesflat TF Woo Product Grid Addon For Elementor tf-woo-product-grid allows Object Injection

2025-10-22
CVE-2025-59002
7.7
SeaTheme BM Content Multiple Products

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in SeaTheme BM Content Builder allows Path Traversal

2025-09-26
CVE-2025-58997
9.6
Unknown Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Frenify Mow allows Code Injection. This issue affects Mow: from n/a through 4.10.

2025-09-09
CVE-2025-58993
7.6
Themeum Tutor LMS Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeum Tutor LMS allows SQL Injection

2025-09-09
CVE-2025-58973
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in hashthemes Easy Elementor Add...

2025-09-22
CVE-2025-58967
Analyzed
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Businext businext a...

2025-10-23
CVE-2025-58963
Analyzed
9.8
HP Multiple Products

Unrestricted Upload of File with Dangerous Type vulnerability in 7oroof Medcity medcity allows Upload a Web Shell to a Web Server.This issue affects M...

2025-10-23
CVE-2025-58959
7.6
AmentoTech Taskbot Multiple Products

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in AmentoTech Taskbot taskbot allows Path Traversal

2025-10-23
CVE-2025-58958
Analyzed
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove SmilePure smilepure...

2025-10-23
CVE-2025-58956
7.1
Unknown Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in loopus WP Attractive Donations System allows Stored XSS

2025-09-22
CVE-2025-58955
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in designervily Karzo karzo allo...

2025-10-22
CVE-2025-58951
Analyzed
9.3
Intel Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in smartcms Advance Seat Reservation Management for...

2025-12-19
CVE-2025-58947
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Athos athos allow...

2025-12-19
CVE-2025-58946
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Vocal vocal allow...

2025-12-19
CVE-2025-58945
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes EcoGrow ecogrow a...

2025-12-19
CVE-2025-58944
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Manufactory manuf...

2025-12-19
CVE-2025-58943
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Agricola agricola...

2025-12-19
CVE-2025-58942
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Dwell dwell allow...

2025-12-19
CVE-2025-58941
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Fabric fabric all...

2025-12-19
CVE-2025-58940
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Basil basil allow...

2025-12-19
CVE-2025-58932
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Prisma prisma all...

2025-12-19
CVE-2025-58931
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Palatio palatio a...

2025-12-19
CVE-2025-58930
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes FitFlex fitflex a...

2025-12-19
CVE-2025-58929
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Pantry pantry all...

2025-12-19
CVE-2025-58921
7.1
Arevico WP Tactical Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Arevico WP Tactical Popup wp-tactical-popup allo...

2025-10-22
CVE-2025-58898
Analyzed
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes HealthHub health...

2025-12-19
CVE-2025-58896
Analyzed
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Otaku otaku allo...

2025-12-19
CVE-2025-58895
Analyzed
8.2
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Integro integro...

2025-12-19