Total CVEs

140,284

Critical Severity

3,711

High Severity

13,344

Last 7 Days

1,818
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 8,261 - 8,280 of 13,041 CVEs
CVE-2019-25637 HIGH - 8.4

X-NetStat Pro 5.63 contains a local buffer overflow vulnerability that allows local attackers to execute arbitrary code by overwriting the EIP register through a 264-byte buffer overflow. Attackers can inject shellcode into memory and use an egg hunter technique to locate and execute the payload whe...

Vendor: Freshsoftware
Product: NetStat Pro
Published: Mar 24, 2026
Source: NVD
CVE-2019-25636 HIGH - 8.2

Zeeways Jobsite CMS contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'id' GET parameter. Attackers can send crafted requests to news_details.php, jobs_details.php, or job_cmp_details.php with mali...

Vendor: Zeeways
Product: Zeeways Jobsite CMS
Published: Mar 24, 2026
Source: NVD
CVE-2019-25635 HIGH - 8.2

Zeeways Matrimony CMS contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to manipulate database queries through the profile_list endpoint. Attackers can inject SQL code via the up_cast, s_mother, and s_religion parameters to extract sensitive database information us...

Vendor: Zeeways
Product: Zeeways Matrimony CMS
Published: Mar 24, 2026
Source: NVD
CVE-2019-25634 HIGH - 8.4

Base64 Decoder 1.1.2 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by triggering a structured exception handler (SEH) overwrite. Attackers can craft a malicious input file that overflows a buffer, overwrites the SEH chain with a POP-POP-RE...

Vendor: 4Mhz
Product: Base64 Decoder
Published: Mar 24, 2026
Source: NVD
CVE-2019-25633 HIGH - 8.4

AIDA64 Extreme 5.99.4900 contains a structured exception handling buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying malicious input through the email preferences and report wizard interfaces. Attackers can inject crafted payloads into the Display name f...

Vendor: Aida64
Product: AIDA64 Extreme
Published: Mar 24, 2026
Source: NVD
CVE-2019-25631 HIGH - 8.4

AIDA64 Business 5.99.4900 contains a structured exception handling buffer overflow vulnerability that allows local attackers to execute arbitrary code by overwriting SEH pointers with malicious shellcode. Attackers can inject egg hunter shellcode through the SMTP display name field in preferences or...

Vendor: Aida64
Product: AIDA64 Business
Published: Mar 24, 2026
Source: NVD
CVE-2019-25630 HIGH - 8.8

PhreeBooks ERP 5.2.3 contains an arbitrary file upload vulnerability in the Image Manager component that allows authenticated attackers to upload malicious files by submitting requests to the image upload endpoint. Attackers can upload PHP files through the imgFile parameter to the bizuno/image/mana...

Vendor: Phreesoft
Product: PhreeBooks ERP
Published: Mar 24, 2026
Source: NVD
CVE-2019-25629 HIGH - 8.4

AIDA64 Extreme 5.99.4900 contains a structured exception handler buffer overflow vulnerability in the logging functionality that allows local attackers to execute arbitrary code by supplying a malicious CSV log file path. Attackers can inject shellcode through the Hardware Monitoring logging prefere...

Vendor: Aida64
Product: AIDA64 Extreme
Published: Mar 24, 2026
Source: NVD
CVE-2019-25627 HIGH - 8.4

FlexHEX 2.71 contains a local buffer overflow vulnerability in the Stream Name field that allows local attackers to execute arbitrary code by triggering a structured exception handler (SEH) overflow. Attackers can craft a malicious text file with carefully aligned shellcode and SEH chain pointers, p...

Vendor: Flexhex
Product: FlexHEX
Published: Mar 24, 2026
Source: NVD
CVE-2019-25626 HIGH - 8.4

River Past Cam Do 3.7.6 contains a local buffer overflow vulnerability in the activation code input field that allows local attackers to execute arbitrary code by supplying a malicious activation code string. Attackers can craft a buffer containing 608 bytes of junk data followed by shellcode and SE...

Vendor: Flexhex
Product: River Past Cam Do
Published: Mar 24, 2026
Source: NVD
CVE-2026-3509 HIGH - 7.5

An unauthenticated remote attacker may be able to control the format string of messages processed by the Audit Log of the CODESYS Control runtime system, potentially resulting in a denial‑of‑service (DoS) condition.

Published: Mar 24, 2026
Source: NVD
CVE-2025-41660 HIGH - 8.8

A low-privileged remote attacker may be able to replace the boot application of the CODESYS Control runtime system, enabling unauthorized code execution.

Published: Mar 24, 2026
Source: NVD
CVE-2026-4756 HIGH - 7.8

Out-of-bounds Write vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11.

Vendor: molotovcherry
Product: android-imagemagick7
Published: Mar 24, 2026
Source: NVD
CVE-2026-33852 HIGH - 7.5

Missing Release of Memory after Effective Lifetime vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11.

Vendor: MolotovCherry
Product: Android-ImageMagick7
Published: Mar 24, 2026
Source: NVD
CVE-2026-33856 HIGH - 7.5

Missing Release of Memory after Effective Lifetime vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11.

Vendor: MolotovCherry
Product: Android-ImageMagick7
Published: Mar 24, 2026
Source: NVD
CVE-2026-33854 HIGH - 8.8

Out-of-bounds Write vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-10.

Vendor: MolotovCherry
Product: Android-ImageMagick7
Published: Mar 24, 2026
Source: NVD
CVE-2026-33851 HIGH - 7.8

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in joncampbell123 doslib.This issue affects doslib: before doslib-20250729.

Vendor: joncampbell123
Product: doslib
Published: Mar 24, 2026
Source: NVD
CVE-2026-33850 HIGH - 7.8

Out-of-bounds Write vulnerability in WujekFoliarz DualSenseY-v2.This issue affects DualSenseY-v2: before 54.

Vendor: WujekFoliarz
Product: DualSenseY-v2
Published: Mar 24, 2026
Source: NVD
CVE-2026-33849 HIGH - 8.8

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in linkingvision rapidvms.This issue affects rapidvms: before PR#96.

Vendor: linkingvision
Product: rapidvms
Published: Mar 24, 2026
Source: NVD
CVE-2026-33848 HIGH - 8.8

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in linkingvision rapidvms.This issue affects rapidvms: before PR#96.

Vendor: linkingvision
Product: rapidvms
Published: Mar 24, 2026
Source: NVD