20297 Total CVEs
11590 AI Analyzed
295 CISA KEV
4359 Critical
All Vendors
Showing 4201-4250 of 20297 CVEs Page 85 of 406
CVE-2026-45584
Analyzed
8.1
Microsoft Defender allows

Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network

2026-05-21
CVE-2026-4558
8.8
Linksys MR9600

A flaw has been found in Linksys MR9600 2

2026-03-23
CVE-2026-45578
Analyzed
8.8
HP builds an

WWBN AVideo is an open source video platform

2026-05-30
CVE-2026-45576
Analyzed
8.3
Unknown zrok

zrok is software for sharing web services, files, and network resources

2026-07-17
CVE-2026-45568
Analyzed
9.9
Unknown zrok

The zrok Python SDK proxy route is vulnerable to a server-side request forgery flaw, allowing attackers to force the proxy to return responses from ar...

2026-07-17
CVE-2026-45567
Analyzed
8.3
Apache Roxy-WI

Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers

2026-06-12
CVE-2026-45564
Analyzed
8.8
Apache Roxy-WI

Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers

2026-06-11
CVE-2026-45558
Analyzed
9.9
Roxy-WI Roxy-WI (Management Interface for Haproxy, Nginx, Apache, Keepalived)

Roxy-WI 8.2.6.4 and prior allows authenticated users to inject arbitrary HAProxy directives, leading to remote code execution on load balancers.

2026-06-11
CVE-2026-45556
Analyzed
9.9
GitHub Roxy-WI

Roxy-WI contains an authenticated arbitrary file write vulnerability in its WAF rule saving functionality, allowing for Remote Code Execution on manag...

2026-06-11
CVE-2026-45552
Analyzed
9.9
Roxy-WI Roxy-WI (Management Interface for Haproxy, Nginx, Apache, Keepalived)

Roxy-WI 8.2.6.4 and prior contains an authentication bypass vulnerability where multiple administrative endpoints lack proper role and group checks.

2026-06-11
CVE-2026-4555
8.8
D-Link DIR

A weakness has been identified in D-Link DIR-513 1

2026-03-23
CVE-2026-45549
Analyzed
8.5
Apache Roxy-WI

Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers

2026-06-11
CVE-2026-45539
Analyzed
7.4
Microsoft APM is

Microsoft APM is an open-source, community-driven dependency manager for AI agents

2026-05-17
CVE-2026-45538
Analyzed
9.8
OpenSIPS opensips

OpenSIPS contains a stack-based buffer overflow vulnerability in the sip_to_json() function, allowing unauthenticated remote attackers to cause a cras...

2026-08-05
CVE-2026-45535
Analyzed
8.7
DataEase DataEase

DataEase is an open source data visualization and analysis tool

2026-07-16
CVE-2026-45533
Analyzed
8.3
Unknown dataease

DataEase is an open source data visualization and analysis tool

2026-07-17
CVE-2026-4553
8.8
Tenda F453

A vulnerability was identified in Tenda F453 1

2026-03-23
CVE-2026-4552
8.8
Tenda F453

A vulnerability was determined in Tenda F453 1

2026-03-23
CVE-2026-4551
8.8
Tenda F453

A vulnerability was found in Tenda F453 1

2026-03-23
CVE-2026-45505
Analyzed
8.8
Apache ActiveMQ

Improper Input Validation, Improper Control of Generation of Code ('Code Injection') vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apa...

2026-06-02
CVE-2026-45504
Analyzed
8.8
Microsoft Exchange Server

Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network

2026-06-10
CVE-2026-45503
Analyzed
8.1
Microsoft Exchange Server

Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to disclose information over a network

2026-06-16
CVE-2026-45499
Analyzed
9.9
Microsoft Azure OpenAI

A Server-Side Request Forgery (SSRF) vulnerability in Azure OpenAI allows an authorized attacker to escalate privileges over a network.

2026-07-03
CVE-2026-45498
KEV Analyzed
9.5
Microsoft Defender

Microsoft Defender Denial of Service Vulnerability - Active in CISA KEV catalog.

2026-05-21
CVE-2026-45495
Analyzed
8.8
Microsoft Edge

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

2026-05-19
CVE-2026-45484
Analyzed
8.8
Microsoft Office SharePoint

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network

2026-06-10
CVE-2026-45482
Analyzed
8.4
GitHub Copilot / Visual Studio Code

Initialization of a resource with an insecure default in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information...

2026-06-20
CVE-2026-45480
Analyzed
10
Microsoft Azure Active Directory

An improper authentication vulnerability in Microsoft Azure Active Directory enables unauthenticated attackers to escalate privileges over a network.

2026-06-20
CVE-2026-45474
Analyzed
8.4
Microsoft Office

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-20
CVE-2026-45472
Analyzed
8.4
Microsoft Office

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-20
CVE-2026-45463
Analyzed
8.4
Microsoft Office

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-20
CVE-2026-45461
Analyzed
8.4
Microsoft Office

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-20
CVE-2026-4546
7
Arch path

A weakness has been identified in Flos Freeware Notepad2 4

2026-03-23
CVE-2026-45458
Analyzed
8.4
Microsoft Office

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-12
CVE-2026-45456
Analyzed
8.4
Microsoft Office

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally

2026-06-12
CVE-2026-4545
7
Arch path

A security flaw has been discovered in Flos Freeware Notepad2 4

2026-03-23
CVE-2026-45447
Analyzed
9.8
OpenSSL OpenSSL (via PKCS#7/S/MIME processing)

A use-after-free vulnerability during PKCS#7 signature verification in OpenSSL can lead to heap corruption or potential remote code execution.

2026-06-10
CVE-2026-45444
Analyzed
10
HP Gift Cards For WooCommerce Pro

The WP Swings Gift Cards For WooCommerce Pro plugin allows unauthenticated users to upload malicious files, leading to potential site compromise.

2026-05-21
CVE-2026-45434
Analyzed
8.8
Apache OFBiz via

Improper Authentication vulnerability in Apache OFBiz via Password-Change Logic Flaw Leading to Remote Code Execution This issue affects Apache OFBiz...

2026-05-20
CVE-2026-45430
Analyzed
7.1
Salesforce module before

The Salesforce module before 1

2026-05-12
CVE-2026-45419
Analyzed
8.5
DataEase DataEase

DataEase is an open source data visualization and analysis tool

2026-07-17
CVE-2026-45418
Analyzed
8.8
ClipBucket ClipBucket

ClipBucket v5 is an open source video sharing platform

2026-06-12
CVE-2026-45417
Analyzed
8.7
DataEase DataEase

DataEase is an open source data visualization and analysis tool

2026-07-16
CVE-2026-45416
Analyzed
7.5
Netty Project Netty

Netty is a network application framework for development of protocol servers and clients

2026-06-15
CVE-2026-45414
Analyzed
8.5
Decidim Decidim

Decidim is a participatory democracy framework

2026-08-07
CVE-2026-45411
Analyzed
9.8
Unknown vm2

The vm2 sandbox library for Node.js is vulnerable to sandbox escape via async generator manipulation, allowing arbitrary command execution.

2026-05-14
CVE-2026-45402
Analyzed
8.1
Intel Multiple Products

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-16
CVE-2026-45401
Analyzed
8.5
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-16
CVE-2026-45400
Analyzed
8.5
Intel Open WebUI

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline

2026-05-16
CVE-2026-4540
7.3
HP of the

A vulnerability was detected in projectworlds Online Notes Sharing System 1

2026-03-22