8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 4401-4450 of 8341 CVEs Page 89 of 167
CVE-2025-50491
7.1
Unknown Multiple Products

Improper session invalidation in the component /banker/change-password

2025-07-28
CVE-2025-50490
7.5
Unknown Multiple Products

Improper session invalidation in the component /elms/emp-changepassword

2025-07-28
CVE-2025-50489
7.5
Unknown Multiple Products

Improper session invalidation in the component /srms/change-password

2025-07-28
CVE-2025-50488
7.1
Unknown Multiple Products

Improper session invalidation in the component /library/change-password

2025-07-28
CVE-2025-50487
7.1
Unknown Multiple Products

Improper session invalidation in the component /bbdms/change-password

2025-07-28
CVE-2025-50486
7.1
Unknown Multiple Products

Improper session invalidation in the component /carrental/update-password

2025-07-28
CVE-2025-50485
7.1
Unknown Multiple Products

Improper session invalidation in the component /crm/change-password

2025-07-28
CVE-2025-50484
7.1
Unknown Multiple Products

Improper session invalidation in the component /crm/change-password

2025-07-28
CVE-2025-5048
7.8
Unknown Multiple Products

A maliciously crafted DGN file, when linked or imported into Autodesk AutoCAD, can force a Memory Corruption vulnerability

2025-08-15
CVE-2025-50475
Analyzed
9.8
Unknown Multiple Products

An OS command injection vulnerability exists in Russound MBX-PRE-D67F firmware version 3.1.6, allowing unauthenticated attackers to execute arbitrary...

2025-07-31
CVE-2025-50472
Analyzed
9.8
Unknown Multiple Products

The modelscope/ms-swift library thru 2.6.1 is vulnerable to arbitrary code execution through deserialization of untrusted data within the `load_model_...

2025-08-01
CVE-2025-5047
7.8
Unknown Multiple Products

A maliciously crafted DGN file, when parsed through Autodesk AutoCAD, can force an Uninitialized Variable vulnerability

2025-08-15
CVE-2025-50466
7.1
OpenMetadata Multiple Products

OpenMetadata <=1

2025-08-08
CVE-2025-50465
7.1
OpenMetadata Multiple Products

OpenMetadata <=1

2025-08-08
CVE-2025-50460
Analyzed
9.8
Unknown Multiple Products

A remote code execution (RCE) vulnerability exists in the ms-swift project version 3.3.0 due to unsafe deserialization in tests/run.py using yaml.load...

2025-08-01
CVE-2025-5046
7.8
Unknown Multiple Products

A maliciously crafted DGN file, when linked or imported into Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability

2025-08-15
CVE-2025-5043
7.8
Unknown Multiple Products

A maliciously crafted 3DM file, when linked or imported into certain Autodesk products, can force a Heap-Based Overflow vulnerability

2025-07-29
CVE-2025-5042
7.8
Unknown Multiple Products

A maliciously crafted RFA file, when parsed through Autodesk Revit, can force an Out-of-Bounds Read vulnerability

2025-07-23
CVE-2025-5040
7.8
Unknown Multiple Products

A maliciously crafted RTE file, when parsed through Autodesk Revit, can force a Heap-Based Overflow vulnerability

2025-07-11
CVE-2025-5039
7.8
Unknown Multiple Products

A maliciously crafted binary file, when present while loading files in certain Autodesk applications, could lead to execution of arbitrary code in the...

2025-07-25
CVE-2025-5038
7.8
Unknown Multiple Products

A maliciously crafted X_T file, when parsed through certain Autodesk products, can force a Memory Corruption vulnerability

2025-07-29
CVE-2025-5037
7.8
Unknown Multiple Products

A maliciously crafted RFA file, when parsed through Autodesk Revit, can force a Memory Corruption vulnerability

2025-07-11
CVE-2025-50360
8.4
Unknown Multiple Products

A heap buffer overflow in compiler

2025-12-03
CVE-2025-50341
Analyzed
9.8
Unknown Multiple Products

A Boolean-based SQL injection vulnerability was discovered in Axelor 5.2.4 via the _domain parameter. An attacker can manipulate the SQL query logic a...

2025-08-05
CVE-2025-50334
7.5
DNS Multiple Products

An issue in Technitium DNS Server v

2026-01-09
CVE-2025-50286
8.1
Grav CMS Multiple Products

A Remote Code Execution (RCE) vulnerability in Grav CMS v1

2025-08-07
CVE-2025-50263
8.1
Tenda Multiple Products

Tenda AC6 v15

2025-07-06
CVE-2025-50262
7.5
Tenda Multiple Products

Tenda AC6 v15

2025-07-06
CVE-2025-50260
7.5
Tenda Multiple Products

Tenda AC6 v15

2025-07-06
CVE-2025-50258
8.1
Tenda Multiple Products

Tenda AC6 v15

2025-07-06
CVE-2025-50255
Analyzed
7.8
Microsoft Multiple Products

Cross Site Request Forgery (CSRF) vulnerability in Smartvista BackOffice SmartVista Suite 2

2025-09-18
CVE-2025-50251
9.1
Unknown Multiple Products

Server side request forgery (SSRF) vulnerability in makeplane plane 0.23.1 via the password recovery.

2025-08-13
CVE-2025-5023
7.1
Mitsubishi Electric Multiple Products

Use of Hard-coded Credentials vulnerability in Mitsubishi Electric Corporation photovoltaic system monitor “EcoGuideTAB” PV-DR004J all versions and PV...

2025-07-11
CVE-2025-50177
Analyzed
8.1
Microsoft Multiple Products

Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network

2025-08-12
CVE-2025-50176
7.8
Access Multiple Products

Access of resource using incompatible type ('type confusion') in Graphics Kernel allows an authorized attacker to execute code locally

2025-08-12
CVE-2025-50175
Analyzed
7.8
Microsoft Multiple Products

Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally

2025-10-14
CVE-2025-50173
7.8
Microsoft Multiple Products

Weak authentication in Windows Installer allows an authorized attacker to elevate privileges locally

2025-08-12
CVE-2025-50171
Analyzed
9.1
Unknown Multiple Products

Missing authorization in Remote Desktop Server allows an unauthorized attacker to perform spoofing over a network.

2025-08-12
CVE-2025-50170
7.8
Microsoft Multiple Products

Improper handling of insufficient permissions or privileges in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privile...

2025-08-12
CVE-2025-50168
7.8
Microsoft Multiple Products

Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally

2025-08-12
CVE-2025-50165
Analyzed
9.8
Microsoft Multiple Products

Untrusted pointer dereference in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.

2025-08-12
CVE-2025-50164
Analyzed
8
Microsoft Multiple Products

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network

2025-08-12
CVE-2025-50163
Analyzed
8.8
Microsoft Multiple Products

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network

2025-08-12
CVE-2025-50162
Analyzed
8
Microsoft Multiple Products

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network

2025-08-12
CVE-2025-50160
Analyzed
8
Microsoft Multiple Products

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network

2025-08-12
CVE-2025-50155
7.8
Microsoft Multiple Products

Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges locall...

2025-08-12
CVE-2025-50153
7.8
Microsoft Multiple Products

Use after free in Desktop Windows Manager allows an authorized attacker to elevate privileges locally

2025-08-12
CVE-2025-50152
7.8
Microsoft Multiple Products

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally

2025-10-14
CVE-2025-50151
8.8
File Multiple Products

File access paths in configuration files uploaded by users with administrator access are not validated

2025-07-22
CVE-2025-5014
Analyzed
8.8
WordPress Multiple Products

The Home Villas | Real Estate WordPress Theme theme for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in...

2025-07-05