21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 3751-3800 of 21637 CVEs Page 76 of 433
CVE-2026-54414
Analyzed
9.8
HP FileRise

FileRise is vulnerable to path traversal via the shared-folder upload endpoint, allowing an attacker with a valid upload link to overwrite system file...

2026-06-20
CVE-2026-54413
Analyzed
8.2
Unknown iso14229

driftregion iso14229 through 0

2026-06-15
CVE-2026-54412
Analyzed
8.2
LiamBindle MQTT-C

LiamBindle MQTT-C through version 1

2026-06-15
CVE-2026-54410
Analyzed
8.6
Unknown nanoMODBUS

nanoMODBUS through v1

2026-06-15
CVE-2026-54408
Analyzed
8.6
Ubiquiti UniFi Protect Application

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Protect Application to bypass authe...

2026-07-03
CVE-2026-54407
Analyzed
8.6
Ubiquiti UniFi Protect Application

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Protect Application to bypass authe...

2026-07-03
CVE-2026-54406
Analyzed
8.7
Ubiquiti UniFi Network Application

A malicious actor with access to the network and high privileges could exploit a Path Traversal vulnerability found in self-hosted instances of UniFi...

2026-07-03
CVE-2026-54404
Analyzed
8.8
Ubiquiti UniFi OS Server

A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vulnerabilities found in UniFi O...

2026-07-03
CVE-2026-54403
Analyzed
8.6
Ubiquiti UniFi OS Server

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in certain devices running UniFi OS to bypass authenti...

2026-07-03
CVE-2026-54402
Analyzed
9.9
Ubiquiti UniFi OS Server

An improper input validation vulnerability in the Ubiquiti UniFi OS Server allows authenticated low-privilege network users to execute arbitrary comma...

2026-07-03
CVE-2026-54400
Analyzed
9.1
Ubiquiti UniFi Access Application

An Improper Access Control vulnerability in the Ubiquiti UniFi Access Application allows an authenticated attacker with high privileges to escalate th...

2026-07-03
CVE-2026-54371
Analyzed
7.1
N/A (Project: attr) attr

attr before version 2

2026-06-30
CVE-2026-54369
Analyzed
7.1
ACL ACL

acl before version 2

2026-06-30
CVE-2026-54368
Analyzed
8.8
Gladinet CentreStack

CentreStack before 17

2026-07-31
CVE-2026-54367
Analyzed
8.6
Gladinet CentreStack

CentreStack before 17

2026-07-31
CVE-2026-5436
8.1
WordPress is vulnerable

The MW WP Form plugin for WordPress is vulnerable to Arbitrary File Move/Read in all versions up to and including 5

2026-04-09
CVE-2026-54353
Analyzed
8.5
Budibase Budibase

Budibase is an open-source low-code platform

2026-06-27
CVE-2026-54352
Analyzed
9.6
Budibase Budibase

An improper path validation vulnerability in the Budibase PWA upload process allows authenticated builders to perform arbitrary file reads on the serv...

2026-06-27
CVE-2026-54351
Analyzed
8.2
Budibase Budibase

Budibase is an open-source low-code platform

2026-06-27
CVE-2026-54350
Analyzed
10
Budibase Budibase

An unauthenticated injection vulnerability in Budibase allows remote attackers to read or modify arbitrary documents in connected databases via malici...

2026-06-27
CVE-2026-5435
7.3
Library Multiple Products

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2

2026-04-30
CVE-2026-54342
Analyzed
8.1
Unknown epa4all

In epa4all, prior to version 2026-05-20, an attacker on the network path between epa4all and any backend (ePA Aktensystem, Konnektor, IDP, TSS) can pr...

2026-07-25
CVE-2026-54341
Analyzed
7.5
DragonflyDB Dragonfly

Dragonfly is an in-memory data store built for modern application workloads

2026-06-28
CVE-2026-5433
Analyzed
9.1
Honeywell Control Network Module

A command injection vulnerability in the Honeywell Control Network Module web interface allows unauthenticated remote code execution via command delim...

2026-05-22
CVE-2026-54329
Analyzed
8.5
Grokability Snipe-IT

Snipe-IT is an IT asset/license management system

2026-07-11
CVE-2026-54322
Analyzed
7.7
Daytona Daytona

Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows

2026-06-24
CVE-2026-54320
Analyzed
8.4
Daytona Daytona

Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows

2026-06-24
CVE-2026-54309
Analyzed
8.8
Unknown n8n

n8n is an open source workflow automation platform

2026-06-24
CVE-2026-54307
Analyzed
8.5
Unknown n8n

n8n is an open source workflow automation platform

2026-06-24
CVE-2026-54305
Analyzed
8.9
Unknown n8n

n8n is an open source workflow automation platform

2026-06-24
CVE-2026-5430
Analyzed
10
WSO2 WSO2 Universal Gateway

The WSO2 JWT authentication mechanism incorrectly validates tokens using unsupported algorithms, potentially allowing unauthenticated attackers to byp...

2026-08-06
CVE-2026-54299
Analyzed
7.5
Unknown astro

Astro is a web framework

2026-06-23
CVE-2026-54293
Analyzed
7.5
NLTK Project NLTK (Natural Language Toolkit)

NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting research and development in Natural Lang...

2026-06-23
CVE-2026-54291
Analyzed
8.2
Unknown pgjdbc

pgjdbc is an open source postgresql JDBC Driver

2026-07-07
CVE-2026-54290
Analyzed
7.1
Hono Hono

Hono is a Web application framework that provides support for any JavaScript runtime

2026-06-23
CVE-2026-5429
Analyzed
7.8
Unknown Multiple Products

Unsanitized input during web page generation in the Kiro Agent webview in Kiro IDE before version 0

2026-04-03
CVE-2026-54284
Analyzed
8.7
Unknown sqlparse

sqlparse is a non-validating SQL parser module for Python

2026-08-18
CVE-2026-54283
Analyzed
7.5
Kludex Starlette

Starlette is a lightweight ASGI framework/toolkit

2026-06-23
CVE-2026-54281
Analyzed
8.7
NestJS Nest Framework

Nest is a framework for building scalable Node

2026-06-23
CVE-2026-54271
Analyzed
8.2
Unknown protobufjs-cli

protobufjs-cli is the command line add-on for protobuf

2026-06-23
CVE-2026-54268
Analyzed
8.2
Google Angular

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages

2026-06-23
CVE-2026-54267
Analyzed
8.6
Google Angular

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages

2026-06-23
CVE-2026-54266
Analyzed
8.8
Google Angular

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages

2026-06-23
CVE-2026-54264
Analyzed
8.3
Google Angular

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages

2026-06-23
CVE-2026-5426
7.5
Unknown Multiple Products

Hard-coded ASP

2026-04-18
CVE-2026-54257
Analyzed
9.3
Electron Electron Framework

Electron versions 42.3.1 through 42.3.3 are vulnerable to heap buffer underflow and overflow due to incorrect byte length calculations in the Node.js...

2026-06-24
CVE-2026-5425
Analyzed
7.2
WordPress is vulnerable

The Widgets for Social Photo Feed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'feed_data' parameter keys in all versions...

2026-04-05
CVE-2026-54234
Analyzed
7.5
HP vLLM

vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs

2026-07-07
CVE-2026-54232
Analyzed
8.8
Unknown vLLM Inference Engine

vLLM is an inference and serving engine for large language models (LLMs)

2026-06-23
CVE-2026-5423
Analyzed
8.2
Unknown graphql

@neo4j/graphql library versions prior to 7

2026-08-06