20297 Total CVEs
11590 AI Analyzed
295 CISA KEV
4359 Critical
All Vendors
Showing 4351-4400 of 20297 CVEs Page 88 of 406
CVE-2026-44946
Analyzed
9.5
SUSE Rancher

Rancher's SAML Assertion Consumer Service handler is vulnerable to authentication replay attacks due to a failure to enforce one-time use of SAML asse...

2026-07-01
CVE-2026-44944
Analyzed
8.5
Linux open-iscsi

An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket

2026-07-30
CVE-2026-44941
Analyzed
8.4
SUSE libzypp

A relative path traversal in the "keyhint" option in repomd

2026-07-03
CVE-2026-44938
Analyzed
8.8
Kubernetes Rancher

A vulnerability has been identified in Fleet's agent-side deployer, which did not filter security-sensitive keys from namespaceLabels in fleet

2026-07-08
CVE-2026-44937
Analyzed
8.3
SUSE Rancher Fleet

Potential forgery of webhook requests when using a unauthenticated webhook in SUSE Rancher Fleet 0

2026-07-07
CVE-2026-44935
Analyzed
9.9
Kubernetes Rancher

A missing validation vulnerability in the SUSE Rancher Fleet Helm Deployer allows authenticated tenants to access the fleet credentials of other tenan...

2026-07-03
CVE-2026-44934
Analyzed
7
SUSE Rancher AI Agent

A information disclosure when DEBUG loglevel is set in SUSE Rancher AI Agent 1

2026-07-06
CVE-2026-44933
Analyzed
7.8
Unknown Multiple Products

`PluginScript` attempts to `chroot` the plugin to the `repoManagerRoot`, this root is frequently `/` (the system root) in standard configurations or w...

2026-05-21
CVE-2026-44932
Analyzed
8.8
Linux wicked dhcp client

Passing of unsanitized strings from DHCP replies into the wicked dhcp client before wicked 0

2026-06-17
CVE-2026-4493
8.8
Tenda A18 Pro

A vulnerability was determined in Tenda A18 Pro 02

2026-03-21
CVE-2026-44926
Analyzed
8.8
CmdServer Multiple Products

InfoScale CmdServer before 7

2026-05-21
CVE-2026-44925
Analyzed
8.8
InfoScale Multiple Products

Cross-Site Request Forgery (CSRF) vulnerability in InfoScale v

2026-05-21
CVE-2026-4492
8.8
Tenda A18 Pro

A vulnerability was found in Tenda A18 Pro 02

2026-03-21
CVE-2026-44914
Analyzed
7.5
Apache NiFi

Apache NiFi 1

2026-06-22
CVE-2026-4491
8.8
Tenda A18 Pro

A vulnerability has been found in Tenda A18 Pro 02

2026-03-21
CVE-2026-4490
8.8
Tenda A18 Pro

A flaw has been found in Tenda A18 Pro 02

2026-03-21
CVE-2026-44894
Analyzed
7.5
Netty Project Netty

Netty is a network application framework for development of protocol servers and clients

2026-06-15
CVE-2026-44893
Analyzed
7.5
Netty Project Netty

Netty is a network application framework for development of protocol servers and clients

2026-06-15
CVE-2026-44892
Analyzed
7.5
Netty Project Netty

Netty is a network application framework for development of protocol servers and clients

2026-06-15
CVE-2026-44891
Analyzed
7.5
Netty Netty

Netty is a network application framework for development of protocol servers and clients

2026-07-18
CVE-2026-44890
Analyzed
7.5
Netty Netty

Netty is a network application framework for development of protocol servers and clients

2026-06-15
CVE-2026-4489
8.8
Tenda A18 Pro

A vulnerability was detected in Tenda A18 Pro 02

2026-03-21
CVE-2026-44888
Analyzed
9.8
Pi.Alert Pi.Alert

Pi.Alert is vulnerable to unauthenticated remote code execution through the configuration save endpoint, allowing arbitrary Python code injection.

2026-05-28
CVE-2026-44887
Analyzed
9.8
Pi.Alert Pi.Alert

Pi.Alert is vulnerable to unauthenticated remote code execution due to improper validation of configuration files, allowing arbitrary Python code exec...

2026-05-28
CVE-2026-4488
8.8
UTT Multiple Products

A vulnerability was identified in UTT HiPER 1250GW up to 3

2026-03-21
CVE-2026-4487
8.8
UTT Multiple Products

A vulnerability was determined in UTT HiPER 1200GW up to 2

2026-03-21
CVE-2026-4486
8.8
D-Link DIR

A vulnerability was found in D-Link DIR-513 1

2026-03-21
CVE-2026-44850
Analyzed
8.5
Docker API

Portainer Community Edition is a lightweight service delivery platform for containerized applications that can be used to manage Docker, Swarm, Kubern...

2026-05-29
CVE-2026-44849
Analyzed
8.8
Docker Portainer Community Edition / Swarm

Portainer Community Edition is a lightweight service delivery platform for containerized applications that can be used to manage Docker, Swarm, Kubern...

2026-06-02
CVE-2026-44848
Analyzed
8.8
Docker Portainer Community Edition

Portainer Community Edition is a lightweight service delivery platform for containerized applications that can be used to manage Docker, Swarm, Kubern...

2026-06-02
CVE-2026-4484
Analyzed
9.8
WordPress is vulnerable

The Masteriyo LMS plugin for WordPress allows authenticated Student-level users to escalate their privileges to Administrator via the InstructorsContr...

2026-03-26
CVE-2026-44832
Analyzed
8.8
Snipe-IT IT Asset/License Management System

Snipe-IT is an IT asset/license management system

2026-05-27
CVE-2026-44827
Analyzed
8.8
Unknown Multiple Products

Diffusers is the a library for pretrained diffusion models

2026-05-15
CVE-2026-44826
Analyzed
7.5
Unknown Multiple Products

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores

2026-05-17
CVE-2026-44822
Analyzed
8.2
Microsoft Office Excel

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network

2026-06-12
CVE-2026-44815
Analyzed
9.8
Microsoft Windows DHCP Client

A stack-based buffer overflow in the Windows DHCP Client allows unauthenticated remote attackers to execute code via crafted network packets.

2026-06-10
CVE-2026-44810
Analyzed
8.4
Microsoft Windows

Improper authentication in Windows Cryptographic Services allows an unauthorized attacker to elevate privileges locally

2026-06-12
CVE-2026-44797
Analyzed
8.5
Unknown Multiple Products

Nautobot is a Network Source of Truth and Network Automation Platform

2026-05-29
CVE-2026-44795
Analyzed
8.8
Spinnaker Spinnaker

Spinnaker is an open source, multi-cloud continuous delivery platform

2026-07-11
CVE-2026-44792
Analyzed
8.9
Unknown n8n

n8n is an open source workflow automation platform

2026-06-24
CVE-2026-44791
Analyzed
9.4
Unknown n8n

An authenticated workflow bypass vulnerability in the n8n XML node allows for Remote Code Execution (RCE) when chained with other nodes.

2026-06-24
CVE-2026-44790
Analyzed
9.4
Unknown n8n

An authenticated user can inject CLI flags via the Git node's Push operation in n8n, enabling arbitrary file read access on the host server.

2026-06-24
CVE-2026-44789
Analyzed
9.4
Unknown n8n

A prototype pollution vulnerability in n8n, exploitable via an unvalidated pagination parameter, can lead to remote code execution for authenticated u...

2026-06-24
CVE-2026-44787
Analyzed
8.2
Discourse Discourse

Discourse is an open-source discussion platform

2026-07-10
CVE-2026-4478
8.1
Home Multiple Products

A vulnerability was identified in Yi Technology YI Home Camera 2 2

2026-03-20
CVE-2026-44761
Analyzed
9.1
SAP Commerce Cloud

SAP Commerce Cloud retains default, publicly documented OAuth2 client credentials, allowing unauthenticated attackers to gain unauthorized API access...

2026-07-14
CVE-2026-44752
Analyzed
8.2
SAP SAP NetWeaver Application Server Java

SAP NetWeaver Application Server Java allows an unauthenticated attacker to inject malicious JavaScript through crafted URLs

2026-07-14
CVE-2026-4475
8.8
Home Multiple Products

A vulnerability has been found in Yi Technology YI Home Camera 2 2

2026-03-20
CVE-2026-44748
Analyzed
9.9
SAP NetWeaver Application Server ABAP

An authenticated attacker can tamper with signed XML documents in SAP NetWeaver, leading to unauthorized access and potential system disruption.

2026-06-09
CVE-2026-44747
Analyzed
9.9
SAP NetWeaver Application Server ABAP

SAP NetWeaver Application Server ABAP contains a memory corruption vulnerability that allows authenticated attackers to gain unauthorized access or ca...

2026-07-14