Export limit exceeded: 91077 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (91077 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-1549 2 Microsoft, Watchguard 3 Windows, Mobile Vpn With Ssl, Mobile Vpn With Ssl Client 2026-08-10 N/A
A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client on Windows enables a local user to execute arbitrary commands with elevated privileges on the Windows system. This vulnerability is an additional unmitigated attack path for CVE-2024-4944. This vulnerability is resolved in the Mobile VPN with SSL client for Windows version 12.11.5
CVE-2025-9242 1 Watchguard 40 Firebox M270, Firebox M290, Firebox M295 and 37 more 2026-08-10 9.8 Critical
An Out-of-bounds Write vulnerability in the WatchGuard Fireware OS iked process may allow a remote unauthenticated attacker to execute arbitrary code. This vulnerability affects both the mobile user VPN with IKEv2 and the branch office VPN using IKEv2 when configured with a dynamic gateway peer. If the Firebox was previously configured with the mobile user VPN with IKEv2 or a branch office VPN using IKEv2 to a dynamic gateway peer, and both of those configurations have since been deleted, that Firebox may still be vulnerable if a branch office VPN to a static gateway peer is still configured.
CVE-2026-19346 1 Tenda 2 Ch22, Ch22 Firmware 2026-08-10 8.8 High
A vulnerability was determined in Tenda CH22 1.0.0.1. This vulnerability affects the function formCertListInfo of the file /goform/CertListInfo. This manipulation of the argument Name causes command injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
CVE-2024-20667 1 Microsoft 1 Azure Devops Server 2026-08-10 7.5 High
Azure DevOps Server Remote Code Execution Vulnerability
CVE-2023-35390 2 Microsoft, Redhat 5 .net, Visual Studio 2022, Enterprise Linux and 2 more 2026-08-10 7.8 High
.NET and Visual Studio Remote Code Execution Vulnerability
CVE-2023-36892 1 Microsoft 2 Sharepoint Server, Sharepoint Server 2019 2026-08-10 8 High
Microsoft SharePoint Server Spoofing Vulnerability
CVE-2023-36891 1 Microsoft 2 Sharepoint Server, Sharepoint Server 2019 2026-08-10 8 High
Microsoft SharePoint Server Spoofing Vulnerability
CVE-2023-36869 1 Microsoft 4 Azure Devops Server, Azure Devops Server 2019, Azure Devops Server 2020 and 1 more 2026-08-10 6.3 Medium
Azure DevOps Server Spoofing Vulnerability
CVE-2023-35384 1 Microsoft 17 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 14 more 2026-08-10 5.4 Medium
Windows HTML Platforms Security Feature Bypass Vulnerability
CVE-2021-34448 1 Microsoft 18 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 15 more 2026-08-10 6.8 Medium
Scripting Engine Memory Corruption Vulnerability
CVE-2021-40440 1 Microsoft 3 Dynamics 365 Business Central, Dynamics 365 Business Central 2020, Dynamics 365 Business Central 2021 2026-08-10 5.4 Medium
Microsoft Dynamics Business Central Cross-site Scripting Vulnerability
CVE-2021-38653 1 Microsoft 3 365 Apps, Office, Office 2019 2026-08-10 7.8 High
Microsoft Office Visio Remote Code Execution Vulnerability
CVE-2021-26434 1 Microsoft 2 Visual Studio 2017, Visual Studio 2019 2026-08-10 7.8 High
Visual Studio Elevation of Privilege Vulnerability
CVE-2021-26435 1 Microsoft 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more 2026-08-10 8.1 High
Windows Scripting Engine Memory Corruption Vulnerability
CVE-2021-36952 1 Microsoft 2 Visual Studio 2017, Visual Studio 2019 2026-08-10 7.8 High
Visual Studio Remote Code Execution Vulnerability
CVE-2021-36950 1 Microsoft 1 Dynamics 365 2026-08-10 5.4 Medium
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2021-36946 1 Microsoft 6 Dynamics 365 Business Central, Dynamics 365 Business Central 2019, Dynamics 365 Business Central 2020 and 3 more 2026-08-10 5.4 Medium
Microsoft Dynamics Business Central Cross-site Scripting Vulnerability
CVE-2021-34480 1 Microsoft 16 Windows 10, Windows 10 1507, Windows 10 1607 and 13 more 2026-08-10 6.8 Medium
Scripting Engine Memory Corruption Vulnerability
CVE-2026-19279 1 Mimiclab 1 Mcp-pdf-vision 2026-08-10 5.3 Medium
A vulnerability was identified in MIMICLab mcp-pdf-vision 1.1.0. The impacted element is the function load_pdf of the file src/index.ts. Such manipulation of the argument pdfPath/sessionId leads to command injection. The attack can only be performed from a local environment. The project was informed of the problem early through an issue report but has not responded yet.
CVE-2026-72594 1 Lobehub 1 Lobe Chat 2026-08-10 7.6 High
A stored cross-site scripting (XSS) vulnerability in lobehub/lobe-chat through v2.2.13 allows a low-privileged authenticated user to inject arbitrary JavaScript into the application by uploading a crafted SVG file as a user avatar.