8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 3201-3250 of 8341 CVEs Page 65 of 167
CVE-2025-58670
7.1
Unknown Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in Shankaranand Maurya WP Content Protection allows Stored XSS

2025-09-22
CVE-2025-58662
7.2
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in awesomesupport Awesome Support allows Object Injection

2025-09-22
CVE-2025-58657
7.1
Unknown Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in EdwardBock Grid allows Stored XSS

2025-09-22
CVE-2025-58642
7.2
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in enituretechnology LTL Freight Quotes – Day & Ross Edition allows Object Injection

2025-09-04
CVE-2025-58637
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in immonex immonex Kickstart all...

2025-09-03
CVE-2025-58628
Analyzed
9.3
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in kamleshyadav Miraculous allows Blind SQL Injecti...

2025-09-05
CVE-2025-58619
8.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in sbouey Falang multilanguage falang allows Object Injection

2025-11-08
CVE-2025-58608
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in BuddyDev MediaPress allows PH...

2025-09-03
CVE-2025-58604
7.6
WPFunnels Mail Mint Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPFunnels Mail Mint allows SQL Injection

2025-09-03
CVE-2025-58592
8.1
Cozmoslabs Multiple Products

Deserialization of Untrusted Data vulnerability in Cozmoslabs TranslatePress translatepress-multilingual allows Object Injection

2025-11-08
CVE-2025-58482
7.3
Unknown Multiple Products

Improper access control in MPLocalService of MotionPhoto prior to version 4

2025-12-03
CVE-2025-58481
7.3
Unknown Multiple Products

Improper access control in MPRemoteService of MotionPhoto prior to version 4

2025-12-03
CVE-2025-58462
Analyzed
9.8
HP Multiple Products

OPEXUS FOIAXpress Public Access Link (PAL) before version 11.13.1.0 allows SQL injection via SearchPopularDocs.aspx. A remote, unauthenticated attacke...

2025-09-09
CVE-2025-58448
9.1
Unknown Multiple Products

rAthena is an open-source cross-platform massively multiplayer online role playing game (MMORPG) server. Versions prior to commit 0d89ae0 have a SQL I...

2025-09-09
CVE-2025-58447
Analyzed
9.8
F5 Multiple Products

rAthena is an open-source cross-platform massively multiplayer online role playing game (MMORPG) server. Versions prior to commit 2f5248b have a heap-...

2025-09-09
CVE-2025-58439
Analyzed
8.1
Intel Multiple Products

ERP is a free and open source Enterprise Resource Planning tool

2025-09-07
CVE-2025-58437
Analyzed
8.1
Intel Multiple Products

Coder allows organizations to provision remote development environments via Terraform

2025-09-07
CVE-2025-58434
9.8
Unknown Multiple Products

Flowise is a drag & drop user interface to build a customized large language model flow. In version 3.0.5 and earlier, the `forgot-password` endpoint...

2025-09-12
CVE-2025-58429
7.5
Unknown Multiple Products

A relative path traversal vulnerability was discovered in Productivity Suite software version 4

2025-10-24
CVE-2025-58428
Analyzed
9.9
Unknown Multiple Products

The TLS4B ATG system's SOAP-based interface is vulnerable due to its accessibility through the web services handler. This vulnerability enables remote...

2025-10-23
CVE-2025-58423
8.8
Unknown Multiple Products

Due to insufficient sanitization, an attacker can upload a specially crafted configuration file to cause a denial-of-service condition, traverse dir...

2025-11-06
CVE-2025-58413
Analyzed
7.5
Apple Multiple Products

A stack-based buffer overflow in Fortinet FortiOS 7

2025-11-19
CVE-2025-58411
8.8
Software Multiple Products

Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of resources reference counting creat...

2026-01-15
CVE-2025-58410
7.5
Software Multiple Products

Software installed and run as a non-privileged user may conduct improper GPU system calls to gain write permissions to memory buffers exported as read...

2025-11-18
CVE-2025-58407
Analyzed
7.4
Intel Multiple Products

Kernel or driver software installed on a Guest VM may post improper commands to the GPU Firmware to exploit a TOCTOU race condition and trigger a read...

2025-11-18
CVE-2025-58386
9.8
Unknown Multiple Products

In Terminalfour 8 through 8.4.1.1, the userLevel parameter in the user management function is not subject to proper server-side authorization checks....

2025-12-04
CVE-2025-58385
7.1
WATCHDOC Multiple Products

In DOXENSE WATCHDOC before 6

2025-09-26
CVE-2025-58384
Analyzed
10
Unknown Multiple Products

In DOXENSE WATCHDOC before 6.1.1.5332, Deserialization of Untrusted Data can lead to remote code execution through the .NET Remoting library in the Wa...

2025-09-26
CVE-2025-58374
Analyzed
7.8
Intel Multiple Products

Roo Code is an AI-powered autonomous coding agent that lives in users' editors

2025-09-07
CVE-2025-58372
Analyzed
8.1
Roo Multiple Products

Roo Code is an AI-powered autonomous coding agent that lives in users' editors

2025-09-05
CVE-2025-58370
Analyzed
8.1
Roo Multiple Products

Roo Code is an AI-powered autonomous coding agent that lives in users' editors

2025-09-05
CVE-2025-58362
Analyzed
7.5
Intel Multiple Products

Hono is a Web application framework that provides support for any JavaScript runtime

2025-09-05
CVE-2025-58361
Analyzed
9.3
Unknown Multiple Products

Promptcraft Forge Studio is a toolkit for evaluating, optimizing, and maintaining LLM-powered applications. All versions contain an non-exhaustive UR...

2025-09-04
CVE-2025-58360
KEV
8.2
Unknown Multiple Products

GeoServer is an open source server that allows users to share and edit geospatial data

2025-11-26
CVE-2025-58358
Analyzed
7.5
Protocol Multiple Products

Markdownify is a Model Context Protocol server for converting almost anything to Markdown

2025-09-04
CVE-2025-58357
Analyzed
9.6
Intel Multiple Products

5ire is a cross-platform desktop artificial intelligence assistant and model context protocol client. Version 0.13.2 contains a vulnerability in the c...

2025-09-04
CVE-2025-58355
Analyzed
7.7
Git Multiple Products

Soft Serve is a self-hostable Git server for the command line

2025-09-04
CVE-2025-58353
Analyzed
8.2
Promptcraft Multiple Products

Promptcraft Forge Studio is a toolkit for evaluating, optimizing, and maintaining LLM-powered applications

2025-09-04
CVE-2025-58334
8.1
Services Multiple Products

In JetBrains IDE Services before 2025

2025-08-28
CVE-2025-58325
8.2
Apple Multiple Products

An Incorrect Provision of Specified Functionality vulnerability [CWE-684] in FortiOS 7

2025-10-14
CVE-2025-58323
7.7
Microsoft Multiple Products

NAVER MYBOX Explorer for Windows before 3

2025-08-29
CVE-2025-58322
7.8
Microsoft Multiple Products

NAVER MYBOX Explorer for Windows before 3

2025-08-28
CVE-2025-58321
Analyzed
10
Unknown Multiple Products

Delta Electronics DIALink has an Directory Traversal Authentication Bypass Vulnerability.

2025-09-12
CVE-2025-58320
7.3
Delta Multiple Products

Delta Electronics DIALink has an Directory Traversal Authentication Bypass Vulnerability

2025-09-12
CVE-2025-58319
7.8
Delta Multiple Products

Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file

2025-09-24
CVE-2025-58317
7.8
Delta Multiple Products

Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file

2025-09-24
CVE-2025-58316
Analyzed
7.3
DoS Multiple Products

DoS vulnerability in the video-related system service module

2025-11-29
CVE-2025-58310
Analyzed
8
Unknown Multiple Products

Permission control vulnerability in the distributed component

2025-11-29
CVE-2025-58308
Analyzed
7.3
Unknown Multiple Products

Vulnerability of improper criterion security check in the call module

2025-11-29
CVE-2025-58303
Analyzed
8.4
Unknown Multiple Products

UAF vulnerability in the screen recording framework module

2025-11-29