21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 3601-3650 of 21637 CVEs Page 73 of 433
CVE-2026-55412
Analyzed
8.3
ToolJet ToolJet

ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agents

2026-06-26
CVE-2026-55409
Analyzed
7.6
Filament Filament

Filament is a collection of full-stack components for accelerated Laravel development

2026-06-23
CVE-2026-55408
Analyzed
8.4
Unknown koodo-reader

Koodo Reader is an ebook reader

2026-07-08
CVE-2026-55405
Analyzed
7.6
LangChain4j LangChain4j

LangChain4j is a Java library for building LLM-powered applications on the JVM

2026-07-11
CVE-2026-55402
Analyzed
8.7
Unknown Secure Access

CVE-2026-55402 is an out of bounds read vulnerability in Secure Access servers prior to version 14

2026-08-14
CVE-2026-5540
7.3
HP of the

A vulnerability has been found in code-projects Simple Laundry System 1

2026-04-05
CVE-2026-55388
Analyzed
8.1
Piscina piscina

piscina is a node

2026-06-23
CVE-2026-55380
Analyzed
7.5
Python Pillow Pillow

Pillow is a Python imaging library

2026-07-07
CVE-2026-55379
Analyzed
7.5
Python Pillow Pillow

Pillow is a Python imaging library

2026-07-07
CVE-2026-55377
Analyzed
8.1
Unknown logto

Logto is the modern, open-source auth infrastructure for SaaS and AI apps

2026-07-11
CVE-2026-5536
Analyzed
7.3
FedML-AI FedML

A weakness has been identified in FedML-AI FedML up to 0

2026-04-05
CVE-2026-5534
Analyzed
7.3
HP Online Enrollment System

A vulnerability was identified in itsourcecode Online Enrollment System 1

2026-04-05
CVE-2026-5526
7.3
Tenda Multiple Products

A security flaw has been discovered in Tenda 4G03 Pro up to 1

2026-04-05
CVE-2026-55255
KEV Analyzed
9.9
Langflow Langflow

An Insecure Direct Object Reference (IDOR) vulnerability in the Langflow /api/v1/responses endpoint allows authenticated attackers to execute unauthor...

2026-06-24
CVE-2026-55242
Analyzed
8.8
Unknown erpnext

ERPNext is a free and open source Enterprise Resource Planning tool

2026-07-16
CVE-2026-5524
Analyzed
9.8
WordPress Divi Form Builder

The Divi Form Builder plugin for WordPress contains an arbitrary file upload vulnerability allowing unauthenticated remote code execution via insuffic...

2026-07-03
CVE-2026-55237
Analyzed
8.8
Intel Workflow Automation Platform

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents

2026-06-19
CVE-2026-55234
Analyzed
8.5
Wekan Wekan

Wekan is open source kanban built with Meteor

2026-07-17
CVE-2026-55233
Analyzed
7.5
OpenResty OpenResty

OpenResty is a high performance web platform

2026-07-12
CVE-2026-5523
Analyzed
8.8
WordPress Divi Form Builder

The Divi Form Builder plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 5

2026-07-09
CVE-2026-55229
Analyzed
7.5
Docker Gotenberg

Gotenberg is a Docker-powered stateless API for PDF files

2026-07-12
CVE-2026-55213
Analyzed
7.5
HTTP h2o

h2o is an HTTP server with support for HTTP/1

2026-07-12
CVE-2026-55208
Analyzed
7.7
Pimcore Pimcore Studio Backend Bundle

Pimcore Studio Backend Bundle is the backend bundle for Pimcore Studio

2026-07-10
CVE-2026-55207
Analyzed
8.8
Unknown pimcore

Pimcore is an Open Source Data & Experience Management Platform

2026-07-10
CVE-2026-55206
Analyzed
8.7
Unknown py7zr

py7zr is a Python-based library and utility to support 7zip archive compression, decompression, encryption and decryption

2026-07-09
CVE-2026-55195
Analyzed
8.7
Unknown py7zr

py7zr is a Python-based library and utility to support 7zip archive compression, decompression, encryption and decryption

2026-07-09
CVE-2026-55194
Analyzed
8.7
FreeRDP FreeRDP

FreeRDP is a free implementation of the Remote Desktop Protocol

2026-08-21
CVE-2026-55193
Analyzed
8.7
FreeRDP FreeRDP

FreeRDP is a free implementation of the Remote Desktop Protocol

2026-08-21
CVE-2026-55191
Analyzed
8.7
FreeRDP FreeRDP

FreeRDP is a free implementation of the Remote Desktop Protocol

2026-08-21
CVE-2026-55189
Analyzed
7.7
RustFS RustFS

RustFS is a distributed object storage system built in Rust

2026-06-28
CVE-2026-55188
Analyzed
8.2
RustFS RustFS

RustFS is a distributed object storage system built in Rust

2026-06-27
CVE-2026-55175
Analyzed
7.5
Spinnaker Spinnaker

Spinnaker is an open source, multi-cloud continuous delivery platform

2026-07-12
CVE-2026-55173
Analyzed
8.1
WWBN AVideo

WWBN AVideo is an open source video platform

2026-07-17
CVE-2026-55166
Analyzed
9.9
Netflix lemur

Netflix Lemur contains a server-side request forgery (SSRF) and authorization bypass vulnerability that can lead to unauthorized access to cloud insta...

2026-08-19
CVE-2026-5513
Analyzed
7.2
WordPress Online Scheduling and Appointment Booking System

The Online Scheduling and Appointment Booking System – Bookly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'bookly-custom...

2026-06-15
CVE-2026-55119
Analyzed
8.1
Ubiquiti UniFi Talk Application

A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Talk Application...

2026-07-03
CVE-2026-55118
Analyzed
8.3
Ubiquiti UniFi Network Application

A malicious actor with access to the network,low privileges and under certain conditions could exploit an Improper Access Control vulnerability found...

2026-07-03
CVE-2026-55117
Analyzed
8.6
Ubiquiti UniFi Access Application

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Access Application to access files on the hos...

2026-07-03
CVE-2026-55116
Analyzed
9
Ubiquiti Dream Machines

An improper access control flaw in Ubiquiti Dream Machines running UniFi OS allows network-adjacent attackers to make unauthorized configuration chang...

2026-07-03
CVE-2026-55115
Analyzed
9.9
Ubiquiti UniFi Protect Application

A Server-Side Request Forgery (SSRF) vulnerability in the Ubiquiti UniFi Protect Application allows authenticated low-privilege network users to escal...

2026-07-03
CVE-2026-55114
Analyzed
8.8
Ubiquiti UniFi Network Application

A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Network Applicat...

2026-07-03
CVE-2026-55100
Analyzed
8.7
Kyndryl hashi-vault-js

hashi-vault-js is a Node

2026-08-01
CVE-2026-55089
Analyzed
9.9
Intel etherpad

Etherpad 2.1.0 through 3.0.x incorrectly authorizes OAuth requests to /api/2/*, allowing non-admin users with valid tokens to perform administrative a...

2026-08-20
CVE-2026-55069
Analyzed
8.7
Unknown kestra

Kestra is an open-source, event-driven orchestration platform

2026-06-27
CVE-2026-55052
Analyzed
8.8
Microsoft SharePoint

Missing authorization in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network

2026-07-15
CVE-2026-55040
KEV Analyzed
9.5
Microsoft SharePoint

A weak authentication vulnerability in Microsoft SharePoint allows unauthenticated remote attackers to bypass security controls and access sensitive i...

2026-08-19
CVE-2026-55010
Analyzed
9.8
Microsoft Minecraft Bedrock Dedicated Server

A heap-based buffer overflow in the Microsoft Minecraft Bedrock Dedicated Server allows unauthenticated, remote attackers to execute arbitrary code vi...

2026-07-15
CVE-2026-55008
Analyzed
9.6
Microsoft Exchange Server

Microsoft Exchange Server is vulnerable to cross-site scripting (XSS), allowing an unauthenticated attacker to perform spoofing over a network.

2026-07-15
CVE-2026-55005
Analyzed
8.8
Microsoft Exchange Server

Heap-based buffer overflow in Microsoft Exchange Server allows an authorized attacker to execute code over a network

2026-07-15
CVE-2026-54999
Analyzed
8.8
Microsoft Windows

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthorized attacker to execu...

2026-07-15