21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 3901-3950 of 21637 CVEs Page 79 of 433
CVE-2026-5364
8.1
WordPress is vulnerable

The Drag and Drop File Upload for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file upload in versions up to, and including, 1

2026-04-24
CVE-2026-53633
Analyzed
9.8
Google vitest

Vitest Browser Mode fails to restrict Chrome DevTools Protocol methods, allowing remote attackers to execute arbitrary Node.js code by overwriting con...

2026-07-15
CVE-2026-53622
Analyzed
7.8
Traefik Labs Traefik

Traefik is an HTTP reverse proxy and load balancer

2026-06-24
CVE-2026-53608
Analyzed
8.7
Google @apostrophecms/seo package

ApostropheCMS is an open-source Node

2026-06-13
CVE-2026-53599
Analyzed
7.5
HP core

REDAXO is a PHP-based content management system

2026-08-01
CVE-2026-53597
Analyzed
8.7
Microsoft Prompty

Prompty is a markdown file format (

2026-07-17
CVE-2026-53593
Analyzed
8.8
HP freescout

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework

2026-07-21
CVE-2026-53591
Analyzed
8.6
HP freescout

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework

2026-07-21
CVE-2026-53576
Analyzed
10
Docker Kestra

An authentication bypass vulnerability in Kestra allows unauthenticated attackers to execute arbitrary code as root by manipulating API requests.

2026-06-27
CVE-2026-53571
Analyzed
8.2
Vite Vite

Vite is a frontend tooling framework for JavaScript

2026-06-23
CVE-2026-53547
Analyzed
8.8
Termix-SSH Termix

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities

2026-08-20
CVE-2026-53542
Analyzed
8.8
Termix-SSH Termix

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities

2026-08-20
CVE-2026-53539
Analyzed
7.5
Kludex python-multipart

Python-Multipart is a streaming multipart parser for Python

2026-06-23
CVE-2026-53517
Analyzed
8.1
Unknown better-auth

Better Auth is an authentication and authorization library for TypeScript

2026-07-17
CVE-2026-53516
Analyzed
8.3
Unknown better-auth

Better Auth is an authentication and authorization library for TypeScript

2026-07-17
CVE-2026-53513
Analyzed
9.6
GitHub better-auth

The better-auth SSO plugin fails to validate OIDC configuration URLs, allowing authenticated users to perform server-side request forgery and potentia...

2026-07-16
CVE-2026-53511
Analyzed
8.5
Kovid Goyal Calibre

calibre is an e-book manager

2026-07-08
CVE-2026-53510
Analyzed
8.1
Savon Savon

Savon is a Ruby SOAP client

2026-08-01
CVE-2026-53505
Analyzed
7.5
Unknown thumbor

Thumbor is an open-source photo thumbnail service by globo

2026-08-01
CVE-2026-53504
Analyzed
7.5
Unknown thumbor

Thumbor is an open-source photo thumbnail service by globo

2026-08-01
CVE-2026-53503
Analyzed
7.5
Unknown thumbor

Thumbor is an open-source photo thumbnail service by globo

2026-08-01
CVE-2026-53502
Analyzed
8.7
Unknown thumbor

Thumbor is an open-source photo thumbnail service by globo

2026-08-01
CVE-2026-53501
Analyzed
8.2
Thumbor Thumbor

Thumbor is an open-source photo thumbnail service by globo

2026-08-01
CVE-2026-53500
Analyzed
8.2
Thumbor Thumbor

Thumbor is an open-source photo thumbnail service by globo

2026-08-01
CVE-2026-5350
Analyzed
8.8
Unknown Multiple Products

A security flaw has been discovered in Trendnet TEW-657BRM 1

2026-04-03
CVE-2026-53492
Analyzed
8.4
Kubernetes containerd

containerd is an open-source container runtime

2026-07-02
CVE-2026-5349
Analyzed
8.8
Unknown Multiple Products

A vulnerability was identified in Trendnet TEW-657BRM 1

2026-04-03
CVE-2026-53488
Analyzed
9.4
Docker containerd

Containerd fails to validate image configuration labels, potentially allowing attackers to execute arbitrary commands on the host system.

2026-07-01
CVE-2026-53483
Analyzed
9.8
Dell PowerProtect Data Domain

Dell PowerProtect Data Domain contains an improper authentication vulnerability that allows unauthenticated remote attackers to gain unauthorized acce...

2026-07-08
CVE-2026-53481
Analyzed
9.8
Dell PowerProtect Data Domain

Dell PowerProtect Data Domain is affected by an unauthenticated path traversal vulnerability that could allow attackers to gain unauthorized access an...

2026-07-08
CVE-2026-53478
Analyzed
7.2
Dell PowerProtect Data Domain

Dell PowerProtect Data Domain, versions 7

2026-07-05
CVE-2026-5346
Analyzed
7.3
Unknown hm_editor

A vulnerability was determined in huimeicloud hm_editor up to 2

2026-04-04
CVE-2026-53450
Analyzed
7.4
STUN coturn

Coturn is a free open source implementation of TURN and STUN Server

2026-07-12
CVE-2026-53448
Analyzed
7.2
STUN coturn

Coturn is a free open source implementation of TURN and STUN Server

2026-07-12
CVE-2026-53435
Analyzed
8.8
Jenkins Jenkins

In Jenkins 2

2026-06-11
CVE-2026-53426
Analyzed
8.2
Unknown MDEx

Allocation of Resources Without Limits or Throttling vulnerability in leandrocp MDEx allows Excessive Allocation

2026-06-30
CVE-2026-53412
Analyzed
9.8
Microsoft Zoom Workplace for Windows

Zoom Workplace for Windows is vulnerable to an improper input validation flaw that may enable account takeover by an unauthenticated attacker.

2026-07-17
CVE-2026-53411
Analyzed
7.8
Microsoft Zoom Workplace VDI Plugin

A time-of-check to time-of-use (TOCTOU) race condition in the installation and uninstallation process of certain Zoom Clients for Windows could allow...

2026-07-18
CVE-2026-53409
Analyzed
7.8
Microsoft Zoom Rooms

Improper Privilege Management in Zoom Rooms for Windows before version 7

2026-07-18
CVE-2026-53408
Analyzed
8.1
Zoom Workplace

Improper Authorization in Handler for Custom URL Scheme in Zoom Workplace before version 7

2026-06-14
CVE-2026-53407
Analyzed
8.1
Zoom Workplace

Improper Authorization in Handler for Custom URL Scheme in Zoom Workplace before version 7

2026-06-14
CVE-2026-53406
Analyzed
7.8
Microsoft Contact Center

Insufficient Verification of Data Authenticity in Remote Control for Zoom Contact Center for Windows before version 7

2026-06-14
CVE-2026-53396
7.1
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix posix_acl leak and ignored error in nfsd4_create_file nfsd4_create_fil...

2026-07-25
CVE-2026-53395
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix dead ACL conflict guard in nfsd4_create nfsd4_create() steals create->...

2026-07-25
CVE-2026-53394
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: nfsd: avoid leaking pre-allocated openowner on unconfirmed retry race When find_...

2026-07-25
CVE-2026-53390
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bounds read in smb_check_perm_dacl() The permission-check ACE...

2026-07-21
CVE-2026-53386
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: iio: adc: ti-ads1298: add bounds check to pga_settings index ads1298_pga_setting...

2026-07-25
CVE-2026-53384
9.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: serial: 8250_dw: unregister 8250 port if clk_notifier_register() fails dw8250_pr...

2026-07-25
CVE-2026-53383
7.5
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: ksmbd: reject non-VALID session in compound request branch smb2_check_user_sessi...

2026-07-25
CVE-2026-53381
7.8
Linux Linux

In the Linux kernel, the following vulnerability has been resolved: virtiofs: fix UAF on submount umount iput() called from fuse_release_end() can O...

2026-07-25