8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 3651-3700 of 8341 CVEs Page 74 of 167
CVE-2025-55050
9.8
Unknown Multiple Products

CWE-1242: Inclusion of Undocumented Features

2025-09-09
CVE-2025-55049
9.1
Unknown Multiple Products

Use of Default Cryptographic Key (CWE-1394)

2025-09-09
CVE-2025-55048
9.8
Unknown Multiple Products

Multiple CWE-78

2025-09-09
CVE-2025-55047
8.4
Unknown Multiple Products

CWE-798 Use of Hard-coded Credentials

2025-09-09
CVE-2025-55037
9.8
Unknown Multiple Products

Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in TkEasyGUI versions prior to v1.0.22. If thi...

2025-09-05
CVE-2025-55036
7.5
Unknown Multiple Products

When BIG-IP SSL Orchestrator explicit forward proxy is configured on a virtual server and the proxy connect feature is enabled, undisclosed traffic ma...

2025-10-16
CVE-2025-55034
Analyzed
8.2
General Multiple Products

General Industrial Controls Lynx+ Gateway is vulnerable to a weak password requirement vulnerability, which may allow an attacker to execute a brute-...

2025-11-15
CVE-2025-55031
Analyzed
9.8
Apple Multiple Products

Malicious pages could use Firefox for iOS to pass FIDO: links to the OS and trigger the hybrid passkey transport. An attacker within Bluetooth range c...

2025-08-20
CVE-2025-55029
7.5
Apple Multiple Products

Malicious scripts could bypass the popup blocker to spam new tabs, potentially resulting in denial of service attacks This vulnerability affects Firef...

2025-08-20
CVE-2025-55013
Analyzed
10
Unknown Multiple Products

The Assemblyline 4 Service Client interfaces with the API to fetch tasks and publish the result for a service in Assemblyline 4. In versions below 4.6...

2025-08-10
CVE-2025-55010
Analyzed
9.1
Intel Multiple Products

Kanboard is project management software that focuses on the Kanban methodology. Prior to version 1.2.47, an unsafe deserialization vulnerability in th...

2025-08-12
CVE-2025-55009
Analyzed
7.1
Unknown Multiple Products

The AuthKit library for Remix provides convenient helpers for authentication and session management using WorkOS & AuthKit with Remix

2025-08-10
CVE-2025-55008
Analyzed
7.1
Unknown Multiple Products

The AuthKit library for React Router 7+ provides helpers for authentication and session management using WorkOS & AuthKit with React Router

2025-08-10
CVE-2025-55004
7.6
ImageMagick Multiple Products

ImageMagick is free and open-source software used for editing and manipulating digital images

2025-08-14
CVE-2025-54997
Analyzed
9.1
Unknown Multiple Products

OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certificates, and keys. In versions 2...

2025-08-10
CVE-2025-54996
Analyzed
7.2
Unknown Multiple Products

OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certificates, and keys

2025-08-10
CVE-2025-54988
Analyzed
9.8
Apache Multiple Products

Critical XXE in Apache Tika (tika-parser-pdf-module) in Apache Tika 1.13 through and including 3.2.1 on all platforms allows an attacker to carry out...

2025-08-21
CVE-2025-54987
Analyzed
9.4
HP Multiple Products

A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and e...

2025-08-05
CVE-2025-54982
9.6
Unknown Multiple Products

An improper verification of cryptographic signature in Zscaler's SAML authentication mechanism on the server-side allowed an authentication abuse.

2025-08-05
CVE-2025-54981
Analyzed
7.5
Apache Multiple Products

Weak Encryption Algorithm in StreamPark, The use of an AES cipher in ECB mode and a weak random number generator for encrypting sensitive data, includ...

2025-12-13
CVE-2025-54968
8.8
GXP Multiple Products

An issue was discovered in BAE SOCET GXP before 4

2025-10-28
CVE-2025-54964
8.4
GXP Multiple Products

An issue was discovered in BAE SOCET GXP before 4

2025-10-24
CVE-2025-54963
7.5
GXP Multiple Products

An issue was discovered in BAE SOCET GXP before 4

2025-10-23
CVE-2025-54955
Analyzed
8.1
Unknown Multiple Products

OpenNebula Community Edition (CE) before 7

2025-08-04
CVE-2025-54952
Analyzed
9.8
Unknown Multiple Products

An integer overflow vulnerability in the loading of ExecuTorch models can cause smaller-than-expected memory regions to be allocated, potentially resu...

2025-08-08
CVE-2025-54948
KEV Analyzed
9.4
HP Multiple Products

A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and e...

2025-08-05
CVE-2025-54926
7.2
Unknown Multiple Products

CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause remote code execution whe...

2025-08-20
CVE-2025-54925
7.5
Unknown Multiple Products

CWE-918: Server-Side Request Forgery (SSRF) vulnerability exists that could cause unauthorized access to sensitive data when an attacker configures th...

2025-08-20
CVE-2025-54924
7.5
Unknown Multiple Products

CWE-918: Server-Side Request Forgery (SSRF) vulnerability exists that could cause unauthorized access to sensitive data when an attacker sends a speci...

2025-08-20
CVE-2025-54918
8.8
Microsoft Multiple Products

Improper authentication in Windows NTLM allows an authorized attacker to elevate privileges over a network

2025-09-09
CVE-2025-54916
7.8
Microsoft Multiple Products

Stack-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally

2025-09-09
CVE-2025-54914
Analyzed
10
Microsoft Multiple Products

Azure Networking Elevation of Privilege Vulnerability

2025-09-05
CVE-2025-54913
7.8
Microsoft Multiple Products

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows UI XAML Maps MapControlSettings allows an autho...

2025-09-09
CVE-2025-54912
7.8
Microsoft Multiple Products

Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally

2025-09-09
CVE-2025-54910
Analyzed
8.4
Microsoft Multiple Products

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally

2025-09-09
CVE-2025-54908
7.8
Microsoft Multiple Products

Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally

2025-09-09
CVE-2025-54907
7.8
Microsoft Multiple Products

Heap-based buffer overflow in Microsoft Office Visio allows an unauthorized attacker to execute code locally

2025-09-09
CVE-2025-54906
7.8
Microsoft Multiple Products

Free of memory not on the heap in Microsoft Office allows an unauthorized attacker to execute code locally

2025-09-09
CVE-2025-54904
Analyzed
7.8
Microsoft Multiple Products

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-09-09
CVE-2025-54903
Analyzed
7.8
Microsoft Multiple Products

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-09-09
CVE-2025-54902
7.8
Microsoft Multiple Products

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-09-09
CVE-2025-54900
Analyzed
7.8
Microsoft Multiple Products

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-09-09
CVE-2025-54899
7.8
Microsoft Multiple Products

Free of memory not on the heap in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-09-09
CVE-2025-54898
7.8
Microsoft Multiple Products

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-09-09
CVE-2025-54897
Analyzed
8.8
Microsoft Multiple Products

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network

2025-09-09
CVE-2025-54896
Analyzed
7.8
Microsoft Multiple Products

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally

2025-09-09
CVE-2025-54895
7.8
Microsoft Multiple Products

Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker to elevate privileges locally

2025-09-09
CVE-2025-54894
7.8
Unknown Multiple Products

Local Security Authority Subsystem Service Elevation of Privilege Vulnerability

2025-09-09
CVE-2025-54887
Analyzed
9.1
Unknown Multiple Products

jwe is a Ruby implementation of the RFC 7516 JSON Web Encryption (JWE) standard. In versions 1.1.0 and below, authentication tags of encrypted JWEs ca...

2025-08-08
CVE-2025-54886
Analyzed
8.4
Intel Multiple Products

skops is a Python library which helps users share and ship their scikit-learn based models

2025-08-08