8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 3951-4000 of 8341 CVEs Page 80 of 167
CVE-2025-53969
8.8
Unknown Multiple Products

Cognex In-Sight Explorer and In-Sight Camera Firmware expose a service implementing a proprietary protocol on TCP port 1069 to allow the client-side...

2025-09-18
CVE-2025-53968
7.5
Unknown Multiple Products

This vulnerability arises because there are no limitations on the number of authentication attempts a user can make

2026-01-23
CVE-2025-53967
8
MCP Multiple Products

Framelink Figma MCP Server before 0

2025-10-08
CVE-2025-53966
8.4
Samsung Multiple Products

An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, and 1580

2026-01-06
CVE-2025-53964
9.6
GoldenDict Multiple Products

GoldenDict 1.5.0 and 1.5.1 has an exposed dangerous method that allows reading and modifying files when a user adds a crafted dictionary and then sear...

2025-07-17
CVE-2025-53963
9.8
Unknown Multiple Products

An issue was discovered on Thermo Fisher Ion Torrent OneTouch 2 INS1005527 devices. They run an SSH server accessible over the default port 22. The ro...

2025-12-06
CVE-2025-5396
Analyzed
9.8
WordPress Multiple Products

The Bears Backup plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.0.0. This is due to the bbackup_a...

2025-07-17
CVE-2025-53959
7.6
YouTrack Multiple Products

In JetBrains YouTrack before 2025

2025-07-15
CVE-2025-53948
Analyzed
7.5
PACS Multiple Products

The Sante PACS Server allows a remote attacker to crash the main thread by sending a crafted HL7 message, causing a denial-of-service condition

2025-08-19
CVE-2025-53947
Analyzed
7.7
Microsoft Multiple Products

A local attacker with low privileges on the Windows system where the software is installed can exploit this vulnerability to corrupt sensitive data

2025-09-18
CVE-2025-53944
7.7
Intel Multiple Products

AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents

2025-07-30
CVE-2025-5394
Analyzed
9.8
WordPress Multiple Products

The Alone – Charity Multipurpose Non-profit WordPress Theme theme for WordPress is vulnerable to arbitrary file uploads due to a missing capability ch...

2025-07-15
CVE-2025-5393
Analyzed
9.1
WordPress Multiple Products

The Alone – Charity Multipurpose Non-profit WordPress Theme theme for WordPress is vulnerable to arbitrary file deletion due to insufficient file path...

2025-07-15
CVE-2025-53923
8.2
Emlog Multiple Products

Emlog is an open source website building system

2025-07-16
CVE-2025-53919
Analyzed
7.8
Dell Multiple Products

An issue was discovered in the Portrait Dell Color Management application through 3

2025-12-18
CVE-2025-53912
Analyzed
9.6
Unknown Multiple Products

An arbitrary file read vulnerability exists in the encapsulatedDoc functionality of MedDream PACS Premium 7.3.6.870. A specially crafted HTTP request...

2026-01-21
CVE-2025-5391
Analyzed
8.1
WordPress Multiple Products

The WooCommerce Purchase Orders plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the delete_f...

2025-08-12
CVE-2025-53909
Analyzed
9.1
Docker Multiple Products

mailcow: dockerized is an open source groupware/email suite based on docker. A Server-Side Template Injection (SSTI) vulnerability exists in versions...

2025-07-17
CVE-2025-53899
Analyzed
7.2
Intel Multiple Products

Kiteworks MFT orchestrates end-to-end file transfer workflows

2025-11-30
CVE-2025-53896
Analyzed
7.1
Kiteworks Multiple Products

Kiteworks MFT orchestrates end-to-end file transfer workflows

2025-11-30
CVE-2025-53890
Analyzed
9.8
Unknown Multiple Products

pyload is an open-source Download Manager written in pure Python. An unsafe JavaScript evaluation vulnerability in pyLoad’s CAPTCHA processing code al...

2025-07-15
CVE-2025-53882
9.1
Unknown Multiple Products

A Reliance on Untrusted Inputs in a Security Decision vulnerability in the logrotate configuration for openSUSEs mailman3 package allows potential esc...

2025-07-23
CVE-2025-53868
8.7
Unknown Multiple Products

When running in Appliance mode, a highly privileged authenticated attacker with access to SCP and SFTP may be able to bypass Appliance mode restrictio...

2025-10-15
CVE-2025-53856
7.5
Unknown Multiple Products

When a virtual server, network address translation (NAT) object, or secure network address translation (SNAT) object uses the embedded Packet Velocity...

2025-10-16
CVE-2025-53855
7.8
Unknown Multiple Products

An out-of-bounds write vulnerability exists in the XML parser functionality of GCC Productions Inc

2025-10-28
CVE-2025-53853
Analyzed
9.8
Unknown Multiple Products

A heap-based buffer overflow vulnerability exists in the ISHNE parsing functionality of The Biosig Project libbiosig 3.9.0 and Master Branch (35a819fa...

2025-08-25
CVE-2025-53843
Analyzed
7.5
Apple Multiple Products

A stack-based buffer overflow in Fortinet FortiOS 7

2025-11-19
CVE-2025-53841
Analyzed
7.8
Linux Multiple Products

Akamai Guardicore Platform Agent before 52

2025-12-03
CVE-2025-53836
Analyzed
9.9
Unknown Multiple Products

XWiki Rendering is a generic rendering system that converts textual input in a given syntax (wiki syntax, HTML, etc) into another syntax (XHTML, etc)....

2025-07-15
CVE-2025-53835
Analyzed
9
Unknown Multiple Products

XWiki Rendering is a generic rendering system that converts textual input in a given syntax (wiki syntax, HTML, etc) into another syntax (XHTML, etc)....

2025-07-14
CVE-2025-53833
Analyzed
10
Apache Multiple Products

LaRecipe is an application that allows users to create documentation with Markdown inside a Laravel app. Versions prior to 2.8.1 are vulnerable to Ser...

2025-07-14
CVE-2025-53825
Analyzed
9.4
Unknown Multiple Products

Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to version 0.24.3, an unauthenticated preview deployment vulnerability in Dokploy...

2025-07-14
CVE-2025-53823
8.8
Unknown Multiple Products

WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions

2025-07-15
CVE-2025-53819
7.9
Linux Multiple Products

Nix is a package manager for Linux and other Unix systems

2025-07-14
CVE-2025-53814
7.8
Unknown Multiple Products

A use-after-free vulnerability exists in the XML parser functionality of GCC Productions Inc

2025-10-28
CVE-2025-53801
7.8
Microsoft Multiple Products

Untrusted pointer dereference in Windows DWM allows an authorized attacker to elevate privileges locally

2025-09-09
CVE-2025-53800
7.8
Microsoft Multiple Products

No cwe for this issue in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally

2025-09-09
CVE-2025-53795
Analyzed
9.1
Microsoft Multiple Products

Improper authorization in Microsoft PC Manager allows an unauthorized attacker to elevate privileges over a network.

2025-08-21
CVE-2025-53792
Analyzed
9.1
Microsoft Multiple Products

Azure Portal Elevation of Privilege Vulnerability

2025-08-07
CVE-2025-53789
7.8
Microsoft Multiple Products

Missing authentication for critical function in Windows StateRepository API allows an authorized attacker to elevate privileges locally

2025-08-13
CVE-2025-53787
Analyzed
8.2
Microsoft Multiple Products

Microsoft 365 Copilot BizChat Information Disclosure Vulnerability

2025-08-07
CVE-2025-53786
Analyzed
8
Microsoft Multiple Products

On April 18th 2025, Microsoft announced Exchange Server Security Changes for Hybrid Deployments and accompanying non-security Hot Fix

2025-08-07
CVE-2025-53784
Analyzed
8.4
Microsoft Multiple Products

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally

2025-08-12
CVE-2025-53782
8.4
Microsoft Multiple Products

Incorrect implementation of authentication algorithm in Microsoft Exchange Server allows an unauthorized attacker to elevate privileges locally

2025-10-14
CVE-2025-53778
8.8
Microsoft Multiple Products

Improper authentication in Windows NTLM allows an authorized attacker to elevate privileges over a network

2025-08-12
CVE-2025-53773
7.8
GitHub Multiple Products

Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio allows an unauthorized attacke...

2025-08-13
CVE-2025-53772
8.8
Deserialization Multiple Products

Deserialization of untrusted data in Web Deploy allows an authorized attacker to execute code over a network

2025-08-12
CVE-2025-53770
KEV
9.8
Microsoft SharePoint Server

Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft...

2025-07-21
CVE-2025-53768
7.8
Unknown Multiple Products

Use after free in Xbox allows an authorized attacker to elevate privileges locally

2025-10-14
CVE-2025-53767
Analyzed
10
Microsoft Multiple Products

Azure OpenAI Elevation of Privilege Vulnerability

2025-08-07