31,594 indexed

CVECVE vulnerabilities

31,594 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.

Showing 2,551–2,600 of 8,314 in Critical · page 52 of 167

IDTitleSummary
CVE-2025-9701CVE-2025-9701
CVSS 9.8
A vulnerability was determined in SourceCodester Simple Cafe Billing System 1.0. The impacted element is an unknown function of the file /receipt.php. Executin…
CVE-2025-9700CVE-2025-9700
CVSS 9.8
A flaw has been found in SourceCodester Online Book Store 1.0. This issue affects some unknown processing of the file /publisher_list.php. This manipulation of…
CVE-2025-9699CVE-2025-9699
CVSS 9.8
A vulnerability was detected in SourceCodester Online Polling System Code 1.0. This vulnerability affects unknown code of the file /admin/checklogin.php. The m…
CVE-2025-9697CVE-2025-9697
CVSS 9.8
The Ajax WooSearch WordPress plugin through 1.0.0 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action avail…
CVE-2025-9694CVE-2025-9694
CVSS 9.8
A vulnerability was determined in Campcodes Advanced Online Voting System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/lo…
CVE-2025-9692CVE-2025-9692
CVSS 9.8
A vulnerability was found in Campcodes Online Shopping System 1.0. Affected is an unknown function of the file /product.php. Performing manipulation of the arg…
CVE-2025-9691CVE-2025-9691
CVSS 9.8
A vulnerability has been found in Campcodes Online Shopping System 1.0. This impacts an unknown function of the file /login.php. Such manipulation of the argum…
CVE-2025-9679CVE-2025-9679
CVSS 9.8
A security vulnerability has been detected in itsourcecode Student Information System 1.0. This affects an unknown function of the file /course_edit1.php. Such…
CVE-2025-9678CVE-2025-9678
CVSS 9.8
A weakness has been identified in Campcodes Online Loan Management System 1.0. The impacted element is an unknown function of the file /ajax.php?action=delete_…
CVE-2025-9669CVE-2025-9669
CVSS 9.8
A vulnerability has been found in Jinher OA 1.0. This issue affects some unknown processing of the file GetTreeDate.aspx. The manipulation of the argument ID l…
CVE-2025-9662CVE-2025-9662
CVSS 9.8
A vulnerability was determined in code-projects Simple Grading System 1.0. This affects an unknown function of the file /login.php of the component Admin Panel…
CVE-2025-9661CVE-2025-9661
CVSS 9.8
OS command injection vulneravility in the management gui (maintenance utility) of Hitachi Virtual Storage Platform One Block 23, 24, 26 and 28. This issue aff…
CVE-2025-9660CVE-2025-9660
CVSS 9.8
A vulnerability was found in SourceCodester Bakeshop Online Ordering System 1.0. The impacted element is an unknown function of the file /passwordrecover.php. …
CVE-2025-9645CVE-2025-9645
CVSS 9.8
A vulnerability was identified in itsourcecode Apartment Management System 1.0. This affects an unknown part of the file /t_dashboard/r_all_info.php. The manip…
CVE-2025-9644CVE-2025-9644
CVSS 9.8
A vulnerability was determined in itsourcecode Apartment Management System 1.0. Affected by this issue is some unknown functionality of the file /setting/bill_…
CVE-2025-9643CVE-2025-9643
CVSS 9.8
A vulnerability was found in itsourcecode Apartment Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /setting/util…
CVE-2025-9642CVE-2025-9642
CVSS 9.6
An issue has been discovered in GitLab CE/EE affecting all versions from 14.10 before 18.2.7, 18.3 before 18.3.3, and 18.4 before 18.4.1 that could allow an at…
CVE-2025-9610CVE-2025-9610
CVSS 9.8
A vulnerability was determined in code-projects Online Event Judging System 1.0. This issue affects some unknown processing of the file /create_account.php. Th…
CVE-2025-9605CVE-2025-9605
CVSS 9.8
A security vulnerability has been detected in Tenda AC21 and AC23 16.03.08.16. Affected is the function GetParentControlInfo of the file /goform/GetParentContr…
CVE-2025-9603CVE-2025-9603
CVSS 9.8
A vulnerability was determined in Telesquare TLR-2005KSH 1.2.4. The affected element is an unknown function of the file /cgi-bin/internet.cgi?Command=lanCfg. E…
CVE-2025-9601CVE-2025-9601
CVSS 9.8
A vulnerability was detected in itsourcecode Apartment Management System 1.0. This affects an unknown part of the file /setting/employee_salary_setup.php. The …
CVE-2025-9600CVE-2025-9600
CVSS 9.8
A security vulnerability has been detected in itsourcecode Apartment Management System 1.0. Affected by this issue is some unknown functionality of the file /s…
CVE-2025-9599CVE-2025-9599
CVSS 9.8
A weakness has been identified in itsourcecode Apartment Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /setting…
CVE-2025-9598CVE-2025-9598
CVSS 9.8
A security flaw has been discovered in itsourcecode Apartment Management System 1.0. Affected is an unknown function of the file /setting/year_setup.php. Perfo…
CVE-2025-9597CVE-2025-9597
CVSS 9.8
A vulnerability was identified in itsourcecode Apartment Management System 1.0. This impacts an unknown function of the file /o_dashboard/rented_all_info.php. …
CVE-2025-9596CVE-2025-9596
CVSS 9.8
A vulnerability was determined in itsourcecode Sports Management System 1.0. This affects an unknown function of the file /login.php. This manipulation of the …
CVE-2025-9594CVE-2025-9594
CVSS 9.8
A vulnerability has been found in itsourcecode Apartment Management System 1.0. The affected element is an unknown function of the file /report/complain_info.p…
CVE-2025-9593CVE-2025-9593
CVSS 9.8
A flaw has been found in itsourcecode Apartment Management System 1.0. Impacted is an unknown function of the file /report/unit_status_info.php. Executing mani…
CVE-2025-9592CVE-2025-9592
CVSS 9.8
A vulnerability was detected in itsourcecode Apartment Management System 1.0. This issue affects some unknown processing of the file /report/bill_info.php. Per…
CVE-2025-9588CVE-2025-9588
CVSS 10.0ironmountain
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Iron Mountain Archiving Services Inc. EnVision allo…
CVE-2025-9582CVE-2025-9582
CVSS 9.8
A flaw has been found in Comfast CF-N1 2.6.0. Affected is the function ntp_timezone of the file /usr/bin/webmgnt. Executing manipulation of the argument timest…
CVE-2025-9581CVE-2025-9581
CVSS 9.8
A vulnerability was detected in Comfast CF-N1 2.6.0. This impacts the function multi_pppoe of the file /usr/bin/webmgnt. Performing manipulation of the argumen…
CVE-2025-9574CVE-2025-9574
CVSS 10.0
Missing Authentication for Critical Function vulnerability in ABB ALS-mini-s4 IP, ABB ALS-mini-s8 IP.This issue affects .  All firmware versions with the Seri…
CVE-2025-9556CVE-2025-9556
CVSS 9.8
Langchaingo supports the use of jinja2 syntax when parsing prompts, which is in turn parsed using the gonja library v1.5.3. Gonja supports include and extends…
CVE-2025-9533CVE-2025-9533
CVSS 9.8
A vulnerability has been found in TOTOLINK T10 4.1.8cu.5241_B20210927. Affected is an unknown function of the file /formLoginAuth.htm. The manipulation of the …
CVE-2025-9523CVE-2025-9523
CVSS 9.8
A vulnerability was detected in Tenda AC1206 15.03.06.23. Affected is the function GetParentControlInfo of the file /goform/GetParentControlInfo. The manipulat…
CVE-2025-9511CVE-2025-9511
CVSS 9.8
A vulnerability was identified in itsourcecode Apartment Management System 1.0. This vulnerability affects unknown code of the file /visitor/addvisitor.php. Su…
CVE-2025-9510CVE-2025-9510
CVSS 9.8
A security vulnerability has been detected in itsourcecode Apartment Management System 1.0. The affected element is an unknown function of the file /branch/add…
CVE-2025-9509CVE-2025-9509
CVSS 9.8
A security flaw has been discovered in itsourcecode Apartment Management System 1.0. This issue affects some unknown processing of the file /report/fair_info_a…
CVE-2025-9508CVE-2025-9508
CVSS 9.8
A vulnerability was detected in itsourcecode Apartment Management System 1.0. The impacted element is an unknown function of the file /report/rented_info.php. …
CVE-2025-9507CVE-2025-9507
CVSS 9.8
A weakness has been identified in itsourcecode Apartment Management System 1.0. Impacted is an unknown function of the file /report/visitor_info.php. Executing…
CVE-2025-9506CVE-2025-9506
CVSS 9.8
A vulnerability has been found in Campcodes Online Loan Management System 1.0. This affects an unknown part of the file /ajax.php?action=delete_plan. Such mani…
CVE-2025-9505CVE-2025-9505
CVSS 9.8
A flaw has been found in Campcodes Online Loan Management System 1.0. Affected by this issue is some unknown functionality of the file /ajax.php?action=save_lo…
CVE-2025-9504CVE-2025-9504
CVSS 9.8
A vulnerability was detected in Campcodes Online Loan Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /ajax.php?a…
CVE-2025-9503CVE-2025-9503
CVSS 9.8
A security vulnerability has been detected in Campcodes Online Loan Management System 1.0. Affected is an unknown function of the file /ajax.php?action=save_bo…
CVE-2025-9502CVE-2025-9502
CVSS 9.8
A weakness has been identified in Campcodes Online Loan Management System 1.0. This impacts an unknown function of the file /ajax.php?action=save_payment. Exec…
CVE-2025-9501CVE-2025-9501
CVSS 9.0
The W3 Total Cache WordPress plugin before 2.8.13 is vulnerable to command injection via the _parse_dynamic_mfunc function, allowing unauthenticated users to e…
CVE-2025-9497CVE-2025-9497
CVSS 9.8
Use of Hard-coded Credentials vulnerability in Microchip Time Provider 4100 allows Malicious Manual Software Update.This issue affects Time Provider 4100: befo…
CVE-2025-9492CVE-2025-9492
CVSS 9.8
A vulnerability was determined in Campcodes Online Water Billing System 1.0. This affects an unknown function of the file /addclient1.php. Executing manipulati…
CVE-2025-9485CVE-2025-9485
CVSS 9.8
The OAuth Single Sign On – SSO (OAuth Client) plugin for WordPress is vulnerable to Improper Verification of Cryptographic Signature in versions up to, and inc…
Sourced from NVD + CISA KEV + FIRST EPSS. Curated by Adam Lundqvist, Founder at SQUR.