23295 Total CVEs
23200 AI Analyzed
327 CISA KEV
5281 Critical
All Vendors
Showing 4751-4800 of 23295 CVEs Page 96 of 466
CVE-2026-55621
Analyzed
7.7
LXC Incus

Incus is a system container and virtual machine manager

2026-08-23
CVE-2026-5562
Analyzed
7.3
Provectus kafka-ui

A vulnerability was identified in provectus kafka-ui up to 0

2026-04-06
CVE-2026-55615
Analyzed
9.2
Intel langroid

Langroid's Neo4jChatAgent is vulnerable to prompt injection, allowing attackers to execute arbitrary Cypher queries and potentially gain OS-level acce...

2026-07-10
CVE-2026-55607
Analyzed
7.7
Intel Claude Code

Claude Code is an agentic coding tool

2026-06-30
CVE-2026-55604
Analyzed
8.6
Arikusi DeepSeek MCP Server

DeepSeek MCP Server is an MCP server for DeepSeek V4

2026-07-10
CVE-2026-55603
Analyzed
7.5
Unknown http-proxy-middleware

http-proxy-middleware is node

2026-06-23
CVE-2026-55596
Analyzed
8.7
Unknown plate

Plate is a rich-text editor with AI and shadcn/ui

2026-07-09
CVE-2026-55585
Analyzed
8.8
QWED-AI qwed-verification

QWED is open-source AI verification infrastructure for deterministic verification of LLM outputs, tool calls, code, schemas, and agent state before pr...

2026-08-26
CVE-2026-55584
Analyzed
7.5
HP phpsysinfo

phpSysInfo is a customizable PHP script that displays system information. Prior to 3.4.6, the PSI_ALLOWED access-control check in read_config.php trus...

2026-08-30
CVE-2026-55582
Analyzed
8.4
Unknown mcp-shell

mcp-shell is an MCP server for running shell commands securely, auditably, and on demand

2026-08-26
CVE-2026-55581
Analyzed
8.4
Unknown mcp-shell

mcp-shell is an MCP server for running shell commands securely, auditably, and on demand

2026-08-26
CVE-2026-55580
Analyzed
8.6
Unknown mcp-shell

mcp-shell is an MCP server for running shell commands securely, auditably, and on demand

2026-08-26
CVE-2026-55579
Analyzed
9.8
GitHub pheditor

Pheditor versions 2.0.1 through 2.0.5 contain hardcoded credentials that allow unauthenticated attackers to gain full administrative access and execut...

2026-07-28
CVE-2026-55578
Analyzed
8.8
HP Pheditor

Pheditor is a single-file editor and file manager written in PHP

2026-07-28
CVE-2026-55576
Analyzed
8.8
MaaAssistantArknights MaaAssistantArknights

MaaAssistantArknights is a one-click tool for daily Arknights tasks

2026-07-16
CVE-2026-55575
Analyzed
8.2
GitHub LiquidJS

LiquidJS is a Shopify / GitHub Pages compatible template engine in pure JavaScript

2026-07-09
CVE-2026-55574
Analyzed
8.7
HP vLLM

vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs

2026-07-07
CVE-2026-55565
Analyzed
9.9
Yamcs Yamcs

Yamcs is vulnerable to code injection via unescaped LIKE patterns in SQL queries, allowing authenticated users to execute arbitrary Java code on the s...

2026-08-29
CVE-2026-55559
Analyzed
9.8
Yamcs Yamcs

Yamcs is vulnerable to code injection via improper YAML context escaping in template arguments, allowing unauthenticated or privileged attackers to ex...

2026-08-29
CVE-2026-55557
Analyzed
8.6
That1Drifter browse-mcp

browse-mcp is a Playwright-based headless-browser MCP server for MCP-capable agents

2026-08-26
CVE-2026-55552
Analyzed
7.5
Prior Yamcs

Yamcs is a mission control framework. Prior to 5.11.13, Yamcs StaticFileHandler.locateFile resolves an unauthenticated request path without using Path...

2026-08-30
CVE-2026-5555
Analyzed
7.3
HP of the

A weakness has been identified in code-projects Concert Ticket Reservation System 1

2026-04-06
CVE-2026-55546
Analyzed
9.8
QWED-AI qwed-mcp

QWED-MCP versions prior to 0.2.1 contain a code injection vulnerability in the math engine that allows arbitrary command execution via unsanitized inp...

2026-08-26
CVE-2026-55541
Analyzed
8.8
MervinPraison PraisonAI

PraisonAI is a multi-agent teams system

2026-08-26
CVE-2026-5554
Analyzed
7.3
Unknown Multiple Products

A security flaw has been discovered in code-projects Concert Ticket Reservation System 1

2026-04-06
CVE-2026-55539
Analyzed
8.6
MervinPraison PraisonAI

PraisonAI is a multi-agent teams system

2026-08-26
CVE-2026-55534
Analyzed
8.6
MervinPraison PraisonAI

PraisonAI is a multi-agent teams system

2026-08-26
CVE-2026-55526
Analyzed
8.5
MervinPraison PraisonAI

PraisonAI is a multi-agent teams system

2026-08-26
CVE-2026-55521
Analyzed
8.8
SAP Yamcs

Yamcs is a mission control framework. Prior to 5.12.8 and 5.13.2, Yamcs omits authorization checks in IndexesApi.listPacketIndex, IndexesApi.listEvent...

2026-08-29
CVE-2026-55518
Analyzed
9.6
Unknown avo

An authorization bypass vulnerability in the Avo framework allows authenticated low-privileged users to perform unauthorized association modifications...

2026-07-18
CVE-2026-55516
Analyzed
7.7
Unknown Snipe-IT

Snipe-IT is an IT asset/license management system

2026-07-11
CVE-2026-5551
Analyzed
7.3
HP of the

A security flaw has been discovered in itsourcecode Free Hotel Reservation System 1

2026-04-06
CVE-2026-55509
Analyzed
8.8
Oracle wsgidav

WsgiDAV is a generic and extendable WebDAV server based on WSGI. Prior to 4.3.5, the sample MySQLBrowserProvider in wsgidav/samples/mysql_dav_provider...

2026-08-29
CVE-2026-55501
Analyzed
7.3
Unknown 9router

9Router is an AI router & token saver

2026-07-12
CVE-2026-55500
Analyzed
9.9
Unknown 9router

The 9Router /api/settings/database endpoint allows unauthorized database export and import due to insufficient authentication checks.

2026-07-11
CVE-2026-5550
Analyzed
8.8
Tenda AC10

A vulnerability was identified in Tenda AC10 16

2026-04-05
CVE-2026-55485
Analyzed
8.8
Unknown piccolo_admin

Piccolo Admin is an admin interface and content management system for Python, built on top of Piccolo. Prior to 1.14.0, piccolo_admin/endpoints.py use...

2026-08-29
CVE-2026-55484
Analyzed
7.5
HP alos-http

ALOS HTTP is a Linux-first Go web framework and application server built around a custom networking stack. Prior to 0.0.0-20260617230736-314b6783e196,...

2026-08-30
CVE-2026-5548
Analyzed
8.8
Tenda AC10

A vulnerability was found in Tenda AC10 16

2026-04-05
CVE-2026-55471
Analyzed
8.7
HAPI FHIR org.hl7.fhir.core

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java

2026-07-09
CVE-2026-55454
Analyzed
9.9
Appsmith Appsmith

The Appsmith platform contains a configuration flaw in the bundled Caddy reverse-proxy, allowing authenticated users to perform SSRF and achieve full...

2026-06-25
CVE-2026-55450
Analyzed
9.3
Unknown langflow

Unauthenticated users can exploit Langflow to cause server-side space exhaustion via excessive file uploads and gain information leaks regarding file...

2026-06-24
CVE-2026-55447
Analyzed
9.6
Langflow Langflow

A path traversal vulnerability in Langflow components based on BaseFileComponent allows attackers to read arbitrary files from the server's filesystem...

2026-06-24
CVE-2026-55441
Analyzed
8.6
Unknown mise

mise manages dev tools like node, python, cmake, and terraform

2026-06-27
CVE-2026-5544
Analyzed
8.8
UTT HiPER 1250GW

A security flaw has been discovered in UTT HiPER 1250GW up to 3

2026-04-05
CVE-2026-55429
Analyzed
8.7
Coder Coder

Coder allows organizations to provision remote development environments via Terraform

2026-07-08
CVE-2026-55428
Analyzed
8.2
Coder Coder

Coder allows organizations to provision remote development environments via Terraform

2026-07-08
CVE-2026-55427
Analyzed
8.3
Coder Coder

Coder allows organizations to provision remote development environments via Terraform

2026-07-08
CVE-2026-55418
Analyzed
8.6
Intel FastGPT

FastGPT is an open source AI knowledge base platform

2026-07-08
CVE-2026-55413
Analyzed
9.4
ToolJet ToolJet

An authenticated builder can overwrite marketplace plugins with arbitrary server-side JavaScript, leading to RCE and supply-chain compromise within To...

2026-06-26