8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 4101-4150 of 8341 CVEs Page 83 of 167
CVE-2025-53378
Analyzed
7.6
Trend Micro Multiple Products

A missing authentication vulnerability in Trend Micro Worry-Free Business Security Services (WFBSS) agent could have allowed an unauthenticated attack...

2025-07-11
CVE-2025-53371
Analyzed
9.1
Discord Multiple Products

DiscordNotifications is an extension for MediaWiki that sends notifications of actions in your Wiki to a Discord channel. DiscordNotifications allows...

2025-07-11
CVE-2025-53370
8.6
Unknown Multiple Products

Citizen is a MediaWiki skin that makes extensions part of the cohesive experience

2025-07-06
CVE-2025-53369
8.6
Unknown Multiple Products

Short Description is a MediaWiki extension that provides local short description support

2025-07-06
CVE-2025-53368
8.6
Unknown Multiple Products

Citizen is a MediaWiki skin that makes extensions part of the cohesive experience

2025-07-06
CVE-2025-53334
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in TieLabs Jannah allows PHP Loc...

2025-08-28
CVE-2025-53328
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Assaf Parag Poll, Survey & Qu...

2025-08-28
CVE-2025-53326
Analyzed
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in CodeYatri Gutenify allows PHP...

2025-08-28
CVE-2025-53319
7.1
Raptive Raptive Ads Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Raptive Raptive Ads allows Reflected XSS

2025-08-20
CVE-2025-53303
Analyzed
8.8
HP Multiple Products

Deserialization of Untrusted Data vulnerability in ThemeMove ThemeMove Core allows Object Injection

2025-09-09
CVE-2025-53299
9.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in ThemeMakers ThemeMakers Visual Content Composer allows Object Injection. This issue affects ThemeMa...

2025-08-20
CVE-2025-53289
7.1
Jason Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jason Theme Blvd Widget Areas allows Reflected X...

2025-08-28
CVE-2025-53251
9.9
Unknown Multiple Products

Unrestricted Upload of File with Dangerous Type vulnerability in An-Themes Pin WP allows Upload a Web Shell to a Web Server.This issue affects Pin WP:...

2025-08-21
CVE-2025-53248
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Unfoldwp Magazine allows PHP...

2025-08-28
CVE-2025-53247
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in WPInterface BlogMarks allows...

2025-08-28
CVE-2025-53244
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Unfoldwp Magazine Elite allow...

2025-08-28
CVE-2025-53243
Analyzed
8.1
WordPress Multiple Products

Deserialization of Untrusted Data vulnerability in emarket-design Employee Directory – Staff Listing & Team Directory Plugin for WordPress allows...

2025-08-28
CVE-2025-53235
7.1
Unknown Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in osuthorpe Easy Social allows Reflected XSS

2026-01-01
CVE-2025-53230
7.6
Page Multiple Products

Missing Authorization vulnerability in honzat Page Manager for Elementor allows Exploiting Incorrectly Configured Access Control Security Levels

2025-08-28
CVE-2025-53227
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Unfoldwp Magazine Saga allows...

2025-08-28
CVE-2025-53226
7.1
Zoom Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in digitalzoomstudio Comments Capcha Box allows Ref...

2025-08-20
CVE-2025-53225
7.1
Unknown Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in eboekhouden e-Boekhouden

2025-08-28
CVE-2025-53224
7.1
Koen Schuit NextGEN Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Koen Schuit NextGEN Gallery Search allows Reflec...

2025-08-28
CVE-2025-53223
7.1
Unknown Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in undoIT Theme Switcher Reloaded allows Reflected...

2025-08-28
CVE-2025-53220
7.1
XmasB XmasB Quotes Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in XmasB XmasB Quotes allows Reflected XSS

2025-08-28
CVE-2025-53216
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeUniver Glamer allows PHP...

2025-08-28
CVE-2025-53215
7.1
Unknown Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 8bitkid Yahoo! WebPlayer allows Reflected XSS

2025-08-28
CVE-2025-53213
9.9
Unknown Multiple Products

Unrestricted Upload of File with Dangerous Type vulnerability in ELEXtensions ReachShip WooCommerce Multi-Carrier & Conditional Shipping allows Using...

2025-08-20
CVE-2025-53212
7.1
LambertGroup Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LambertGroup Revolution Video Player With Bottom...

2025-08-20
CVE-2025-53210
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in bdthemes ZoloBlocks allows PH...

2025-08-20
CVE-2025-53208
7.5
Unknown Multiple Products

Authorization Bypass Through User-Controlled Key vulnerability in paymayapg Maya Business allows Accessing Functionality Not Properly Constrained by A...

2025-08-20
CVE-2025-53207
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in WP Travel WP Travel Gutenberg...

2025-08-20
CVE-2025-53205
7.1
LambertGroup Radio Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LambertGroup Radio Player Shoutcast & Icecast al...

2025-08-20
CVE-2025-53204
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ovatheme eventlist allows PHP...

2025-08-20
CVE-2025-53201
7.1
NooTheme Jobmonster Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NooTheme Jobmonster allows Reflected XSS

2025-08-20
CVE-2025-53198
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in favethemes Houzez allows PHP...

2025-08-20
CVE-2025-53194
8.5
Template Multiple Products

Improper Neutralization of Special Elements Used in a Template Engine vulnerability in Crocoblock JetEngine allows Code Injection

2025-08-20
CVE-2025-53192
Analyzed
8.8
Apache Multiple Products

** UNSUPPORTED WHEN ASSIGNED ** Improper Neutralization of Expression/Command Delimiters vulnerability in Apache Commons OGNL

2025-08-19
CVE-2025-53191
7.7
Unknown Multiple Products

Missing Authentication for Critical Function vulnerability in ABB Aspect

2025-08-11
CVE-2025-53190
7
ABB Multiple Products

A vulnerability in ABB Aspect

2025-08-11
CVE-2025-5319
Analyzed
9.8
Infor DIGITA Efficiency Management System

The DIGITA Efficiency Management System is vulnerable to a critical SQL Injection flaw. An unauthenticated attacker can execute arbitrary SQL commands...

2026-02-04
CVE-2025-53189
7
Authorization Multiple Products

Authorization Bypass Through User-Controlled Key vulnerability in ABB Aspect

2025-08-11
CVE-2025-53188
7
ABB Insufficiently Multiple Products

Insufficiently Protected Credentials vulnerability in ABB Aspect

2025-08-11
CVE-2025-53187
7
Unknown Multiple Products

Improper Control of Generation of Code ('Code Injection') vulnerability in ABB ASPECT

2025-08-11
CVE-2025-53155
7.8
Microsoft Multiple Products

Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally

2025-08-12
CVE-2025-53154
7.8
Microsoft Multiple Products

Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally

2025-08-12
CVE-2025-53152
7.8
Microsoft Multiple Products

Use after free in Desktop Windows Manager allows an authorized attacker to execute code locally

2025-08-12
CVE-2025-53151
7.8
Microsoft Multiple Products

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally

2025-08-12
CVE-2025-53150
Analyzed
7.8
Microsoft Multiple Products

Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally

2025-10-14
CVE-2025-53149
7.8
Unknown Multiple Products

Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locally

2025-08-12