23391 Total CVEs
23296 AI Analyzed
328 CISA KEV
5310 Critical
All Vendors
Showing 3301-3350 of 23391 CVEs Page 67 of 468
CVE-2026-63797
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: rpmsg: char: Fix use-after-free on probe error path rpmsg_chrdev_probe() stores...

2026-07-21
CVE-2026-63796
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject oversized group bitmap descriptors ocfs2_validate_gd_parent() only...

2026-07-21
CVE-2026-6379
Analyzed
8.6
WordPress plugin before

The WP Photo Album Plus WordPress plugin before 9

2026-05-19
CVE-2026-63767
Analyzed
9.8
Unknown ktransformers

ktransformers contains an unauthenticated pickle deserialization vulnerability in the SchedulerServer ZMQ ROUTER socket, allowing remote attackers to...

2026-07-21
CVE-2026-63766
Analyzed
9.8
RVC-Boss GPT-SoVITS

GPT-SoVITS is vulnerable to OS command injection via the webui.py interface, allowing unauthenticated attackers to execute arbitrary commands on the s...

2026-07-21
CVE-2026-63765
Analyzed
8.2
Chatwoot Chatwoot

Chatwoot before 4

2026-07-24
CVE-2026-63757
Analyzed
8.8
SurrealDB SurrealDB

SurrealDB versions before 3

2026-07-21
CVE-2026-63756
Analyzed
8.1
SurrealDB SurrealDB

SurrealDB versions before 3

2026-07-21
CVE-2026-6374
Analyzed
7.3
Zyxel WAH7601

Use of Hard-coded Credentials vulnerability in Zyxel Networks WAH7601 allows Read Sensitive Constants Within an Executable

2026-08-11
CVE-2026-63735
Analyzed
8.1
SurrealDB SurrealDB

SurrealDB versions before 3

2026-07-21
CVE-2026-63732
Analyzed
9.9
Unknown 9router

9router allows remote code execution via a chain of vulnerabilities involving default credentials, host header spoofing, and insecure command executio...

2026-07-24
CVE-2026-63727
Analyzed
8.8
Anchore Anchore Enterprise

Anchore Enterprise versions from 5

2026-07-29
CVE-2026-63720
Analyzed
7.5
Unknown datamodel-code-generator

datamodel-code-generator prior to version 0

2026-07-26
CVE-2026-6372
Analyzed
7.5
Plisio Accept Multiple Products

Missing Authorization vulnerability in Plisio Accept Cryptocurrencies with Plisio allows Exploiting Incorrectly Configured Access Control Security Lev...

2026-04-17
CVE-2026-63700
Analyzed
7.8
Dell Wyse Management Suite (WMS)

Dell Wyse Management Suite (WMS), versions prior to 2605

2026-08-16
CVE-2026-63684
Analyzed
8.8
Unknown Content Templater extension for Joomla

Administrator actions, editor popups and import/export requests lacked consistent token, item-permission and input-validation checks. Unauthorized bac...

2026-08-14
CVE-2026-63683
Analyzed
7.5
Joomla Advanced Module Manager, Conditional Content, Content Templater Pro, and ReReplacer extensions for Joomla

IP and GeoIP conditions trusted spoofable forwarded headers, allowing remote clients to bypass location-based rules.

2026-08-01
CVE-2026-63639
Analyzed
8.8
Unknown valkey

Valkey is a distributed key-value database

2026-08-19
CVE-2026-63637
Analyzed
8.6
Unknown dgraph

Dgraph is an open source distributed GraphQL database

2026-08-07
CVE-2026-6363
Analyzed
8.8
Google Chrome prior

Type Confusion in V8 in Google Chrome prior to 147

2026-04-16
CVE-2026-63622
Analyzed
7.8
Red Hat libvirt

A flaw was found in libvirt

2026-08-11
CVE-2026-6360
Analyzed
8.8
Google Chrome prior

Use after free in FileSystem in Google Chrome prior to 147

2026-04-16
CVE-2026-6359
Analyzed
8.8
Microsoft Chrome on

Use after free in Video in Google Chrome on Windows prior to 147

2026-04-16
CVE-2026-63587
Analyzed
8.6
Weidmueller IE-SR-2TX-WL-4G

The SMS control function of IE-SR-2TX-WL-4G devices can require a password for SMS commands via the 'Enable Password Authorization' setting

2026-08-26
CVE-2026-63586
Analyzed
9.8
Weidmueller Interface IE-SR-2TX-WL

An OS command injection vulnerability in the web management interface of Weidmueller IE-SR-2TX-WL devices allows unauthenticated attackers to execute...

2026-08-26
CVE-2026-6358
Analyzed
8.8
Google Chrome on

Use after free in XR in Google Chrome on Android prior to 147

2026-04-16
CVE-2026-6356
Analyzed
9.6
Infor Multiple Products

A privilege escalation vulnerability in Infor web applications allows standard users to gain super administrator access via parameter manipulation.

2026-04-23
CVE-2026-63514
Analyzed
8.8
Microsoft SharePoint

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network

2026-08-12
CVE-2026-6351
Analyzed
7.5
LG Multiple Products

MailGates/MailAudit developed by Openfind has a CRLF Injection vulnerability, allowing unauthenticated remote attackers to exploit this vulnerability...

2026-04-17
CVE-2026-63508
Analyzed
10
Microsoft Planetary Computer Pro (GeoCatalog)

Missing authentication for a critical function in Microsoft Planetary Computer Pro (GeoCatalog) allows an unauthorized attacker to elevate privileges...

2026-08-27
CVE-2026-6350
Analyzed
9.8
LG Multiple Products

MailGates/MailAudit developed by Openfind has a Stack-based Buffer Overflow vulnerability, allowing unauthenticated remote attackers to control the pr...

2026-04-16
CVE-2026-6348
Analyzed
8.8
Unknown Multiple Products

WinMatrix agent developed by Simopro Technology has a Missing Authentication vulnerability, allowing authenticated local attackers to execute arbitrar...

2026-04-16
CVE-2026-6347
Analyzed
7.6
Mattermost Multiple Products

Mattermost versions 11

2026-05-19
CVE-2026-63462
Analyzed
7.5
Unleash unleash-server

Unleash is an open-source feature management platform

2026-08-23
CVE-2026-6346
Analyzed
8.7
Mattermost Multiple Products

Mattermost versions 11

2026-05-19
CVE-2026-63456
Analyzed
9.8
HP EdgeConnect SD-WAN Orchestrator

Multiple vulnerabilities in the HPE EdgeConnect SD-WAN Orchestrator REST API allow unauthenticated remote attackers to bypass authentication and modif...

2026-08-05
CVE-2026-63455
Analyzed
9.8
HP EdgeConnect SD-WAN Orchestrator

HPE EdgeConnect SD-WAN Orchestrator contains multiple REST API vulnerabilities that allow unauthenticated remote attackers to bypass authentication an...

2026-08-05
CVE-2026-63429
Analyzed
8.6
Intel HeyForm

HeyForm is an open-source form builder

2026-07-21
CVE-2026-63421
Analyzed
7.5
Unknown keystone

Keystone is a content management system for Node

2026-08-23
CVE-2026-63409
Analyzed
8.2
Unknown deskflow

Deskflow is a keyboard and mouse sharing app

2026-08-18
CVE-2026-63403
Analyzed
8.7
Contribsys Faktory

Faktory is a language-agnostic background job server

2026-08-26
CVE-2026-63388
Analyzed
8.4
Unknown libevent

Libevent is an event notification library

2026-08-22
CVE-2026-63384
Analyzed
8.7
Unknown libevent

Libevent is an event notification library

2026-08-21
CVE-2026-63383
Analyzed
8.7
Unknown libevent

Libevent is an event notification library

2026-08-21
CVE-2026-63376
Analyzed
8.2
BinaryMuse toml-node

toml-node is a TOML parser for Node.js and the browser. Prior to 4.1.2, toml.parse() in lib/compiler.js can be tricked by a table path such as a.b.y._...

2026-09-04
CVE-2026-63361
Analyzed
8.5
GitHub LimeSurvey

LimeSurvey Community Edition 7

2026-08-15
CVE-2026-63359
Analyzed
9.8
Appriss Insights Victim Information Notification Exchange (VINE)

The Appriss Insights VINE application is vulnerable to SQL injection, allowing unauthenticated attackers to bypass authentication and access sensitive...

2026-07-24
CVE-2026-63343
Analyzed
9.9
LXC Incus

An authenticated Incus user can read or overwrite arbitrary files on the host as root by using a crafted image with a symlink in the `metadata.yaml` f...

2026-08-22
CVE-2026-63313
Analyzed
7.7
Unknown 9router

9Router before 0

2026-07-24
CVE-2026-63312
Analyzed
7.5
NLTK nltk

NLTK before 3

2026-08-23