20297 Total CVEs
11590 AI Analyzed
295 CISA KEV
4359 Critical
All Vendors
Showing 3751-3800 of 20297 CVEs Page 76 of 406
CVE-2026-47867
Analyzed
8.7
VMware Avi Load Balancer

VMware Avi Load Balancer contains a remote code execution vulnerability

2026-07-19
CVE-2026-47866
Analyzed
8.3
VMware Avi Load Balancer

VMware Avi Load Balancer contains an authorization bypass vulnerability

2026-07-19
CVE-2026-47865
Analyzed
9.8
VMware Avi Load Balancer

VMware Avi Load Balancer is vulnerable to an authentication bypass, allowing unauthenticated attackers with network access to compromise the Avi Contr...

2026-07-19
CVE-2026-47835
Analyzed
8.6
Spring Spring AI Vector Stores

In Spring AI Vector Stores, special characters could be used to force the execution of arbitrary queries in Elasticsearch, OpenSearch, and GemFire Vec...

2026-06-16
CVE-2026-47830
Analyzed
8.5
Cloud Foundry Foundation bosh-windows-stemcell-builder

Incorrect Permission Assignment in BOSH

2026-07-09
CVE-2026-47828
Analyzed
8.9
BOSH bosh-cli

During bosh create-env and bosh delete-env, the CLI uploads compiled CPI packages and rendered job templates to the new VM's DAV blobstore over HTTPS...

2026-07-09
CVE-2026-47826
Analyzed
8.5
CloudFoundry BOSH CLI tool

The blobs

2026-07-09
CVE-2026-47825
Analyzed
8.6
Spring Cloud Gateway Server

Spring Cloud Gateway Server forwards the X-Forwarded-For and Forwarded headers from untrusted proxies in certain configuration scenarios

2026-06-16
CVE-2026-47784
Analyzed
8.1
Unknown Multiple Products

In memcached before 1

2026-05-20
CVE-2026-47783
Analyzed
8.1
Unknown Multiple Products

In memcached before 1

2026-05-20
CVE-2026-47781
Analyzed
8.4
PDM Project PDM

PDM is a Python package and dependency manager

2026-08-05
CVE-2026-47764
Analyzed
8.4
PDM Project PDM

pdm is a Python package and dependency manager supporting the latest PEP standards

2026-08-05
CVE-2026-47762
Analyzed
8.7
Unknown Multiple Products

TinyMCE is an open source rich text editor

2026-05-29
CVE-2026-47761
Analyzed
8.7
Unknown Multiple Products

TinyMCE is an open source rich text editor

2026-05-29
CVE-2026-47760
Analyzed
8.7
Unknown Multiple Products

TinyMCE is an open source rich text editor

2026-05-29
CVE-2026-47759
Analyzed
8.7
Unknown Multiple Products

TinyMCE is an open source rich text editor

2026-05-29
CVE-2026-47752
Analyzed
9.9
Quenary tugtainer

Quenary tugtainer contains a server-side template injection vulnerability in its notification template feature, allowing authenticated users to execut...

2026-07-24
CVE-2026-4775
Analyzed
7.8
Unknown Multiple Products

A flaw was found in the libtiff library

2026-03-25
CVE-2026-47746
Analyzed
8.9
Unknown misskey

Misskey is an open source, federated social media platform

2026-08-04
CVE-2026-47744
Analyzed
9.9
Shopper Headless e-commerce Admin Panel

Shopper's admin panel contains authorization defects that allow low-privilege users to escalate their privileges to full administrator.

2026-05-30
CVE-2026-47743
Analyzed
8.7
ShopperLabs Shopper

Shopper is a Headless e-commerce Admin Panel

2026-07-24
CVE-2026-4773
Analyzed
8.1
Magarsus Consulting IDM-MFA

Improper validation of specified type of input vulnerability in Magarsus Consulting Ltd

2026-07-24
CVE-2026-47724
Analyzed
9.9
Unknown nebula-mesh

nebula-mesh fails to enforce proper authorization on multiple API endpoints, allowing low-privileged operators to perform unauthorized actions across...

2026-07-24
CVE-2026-47722
Analyzed
8.7
Slack nebula-mesh

nebula-mesh is a self-hosted control plane for Slack Nebula mesh virtual private network

2026-07-24
CVE-2026-47691
Analyzed
8.7
Netty Netty

Netty is a network application framework for development of protocol servers and clients

2026-06-13
CVE-2026-4769
Analyzed
9.8
WAGO 0765-110x/0100-0000

WAGO System I/O Field series devices contain undocumented diagnostic functionality accessible without authentication during the boot sequence, leading...

2026-07-13
CVE-2026-47670
Analyzed
9.4
GitHub dbgate

DbGate contains an authenticated remote code execution vulnerability in the /runners/load-reader endpoint, allowing attackers with valid credentials t...

2026-07-24
CVE-2026-4767
Analyzed
9.8
TR7 Cyber Defense WAF-ASP

A critical authentication bypass in TR7 Cyber Defense WAF-ASP enables unauthenticated attackers to perform unauthorized administrative actions.

2026-07-03
CVE-2026-47669
Analyzed
9.3
Unknown dbgate

A path traversal vulnerability in the DbGate database manager allows unauthenticated attackers to write arbitrary files to the filesystem.

2026-07-24
CVE-2026-47668
Analyzed
10
GitHub dbgate

DbGate is vulnerable to unauthenticated remote code execution via the JSON script runner endpoint, allowing attackers to inject and execute arbitrary...

2026-07-24
CVE-2026-47664
Analyzed
8.6
Unknown pathling

Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics

2026-08-08
CVE-2026-47663
Analyzed
8.7
Unknown pathling

Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics

2026-08-08
CVE-2026-47662
Analyzed
8.7
Unknown pathling

Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics

2026-08-08
CVE-2026-47661
Analyzed
8.7
AEHRC Pathling

Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics

2026-08-08
CVE-2026-47660
Analyzed
8.7
AEHRC Pathling

Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics

2026-08-08
CVE-2026-47659
Analyzed
8.7
AEHRC Pathling

Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics

2026-08-08
CVE-2026-47653
Analyzed
8.8
Microsoft Remote Desktop Client

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network

2026-06-10
CVE-2026-47646
Analyzed
9.3
Microsoft Dynamics 365 Customer Voice

A cross-site scripting (XSS) vulnerability in Microsoft Dynamics 365 Customer Voice allows unauthorized attackers to perform spoofing over a network.

2026-07-09
CVE-2026-47645
Analyzed
8.8
Microsoft 365 Copilot Business Chat

Url redirection to untrusted site ('open redirect') in Microsoft 365 Copilot's Business Chat allows an unauthorized attacker to elevate privileges ove...

2026-06-20
CVE-2026-47643
Analyzed
9.8
Microsoft Azure Stack Edge

Azure Stack Edge contains a path traversal vulnerability that allows unauthenticated remote attackers to execute arbitrary code over the network.

2026-06-10
CVE-2026-47635
Analyzed
8.4
Microsoft Office

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-12
CVE-2026-47632
Analyzed
8.8
Microsoft Azure Monitor Agent Metrics Extension

Improper certificate validation in Azure Monitor Agent allows an unauthorized attacker to elevate privileges over an adjacent network

2026-07-15
CVE-2026-47631
Analyzed
8.1
Microsoft Exchange Server

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to p...

2026-06-16
CVE-2026-47623
Analyzed
8.2
NVIDIA Dynamo

NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data

2026-08-05
CVE-2026-4758
8.8
WordPress is vulnerable

The WP Job Portal plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the 'WPJOBPORTALcustomfiel...

2026-03-26
CVE-2026-4756
7.8
Google Multiple Products

Out-of-bounds Write vulnerability in MolotovCherry Android-ImageMagick7

2026-03-24
CVE-2026-4755
Analyzed
9.8
Google Android-ImageMagick7

A critical improper input validation vulnerability (CWE-20) in MolotovCherry Android-ImageMagick7 can lead to severe system instability or unauthorize...

2026-03-24
CVE-2026-4753
Analyzed
9.1
Unknown Multiple Products

Out-of-bounds Read vulnerability in slajerek RetroDebugger.This issue affects RetroDebugger: before v0.64.72.

2026-03-24
CVE-2026-4750
Analyzed
9.1
Unknown Multiple Products

Out-of-bounds Read vulnerability in fabiangreffrath woof.This issue affects woof: before woof_15.3.0.

2026-03-24
CVE-2026-47483
Analyzed
8.2
NVIDIA DCGM Exporter

NVIDIA DCGM Exporter for all platforms contains a vulnerability in the /debug/pprof endpoints, where an attacker could cause uncontrolled resource con...

2026-07-29