Search

Found 58,080 results in 2599ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-48710 medium 6.5 6.5 FIX slesdebian debian encode 9d ago Starlette has missing Host header validation that poisons request.url.path, bypassing path-based security checks
CVE-2026-44213 medium 6.5 6.5 9d ago The OpenTelemetry.Exporter.Instana exports telemetry to Instana backend. Prior to 1.1.0, the OpenTelemetry.Exporter.Instana NuGet package does not validate HTTPS/TLS certificates are valid when sendi…
CVE-2025-43451 medium 5.5 5.5 FIX macos macos 9d ago A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS Tahoe 26. An app may be able to access sensitive user data.
CVE-2025-46307 medium 5.5 5.5 FIX macos macos 9d ago A logic issue was addressed with improved restrictions. This issue is fixed in macOS Tahoe 26. An app may be able to access sensitive user data.
CVE-2025-46280 medium 5.5 5.5 FIX macos macos 9d ago An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Tahoe 26. An app may be able to cause unexpected system termination.
CVE-2025-43289 medium 5.5 5.5 FIX macos macos 9d ago A logic issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. A malicious app may be able to access sensitive user data.
CVE-2025-43290 medium 5.5 5.5 FIX macos macos 9d ago A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. An app may be able to modify protected parts of the file …
CVE-2026-44788 medium 6.5 6.5 sharpcompress_project 9d ago SharpCompress is a fully managed C# library to deal with many compression types and formats. In 0.47.4 and earlier, a path traversal vulnerability in IArchive.WriteToDirectory() allows a malicious ar…
CVE-2026-42015 medium 5.3 5.3 FIX debian debian sles rhel 9d ago RHSA-2026:20612: gnutls security update (Important)
CVE-2026-44903 medium 5.5 FIX slesdebian debian 9d ago Prometheus is an open-source monitoring system and time series database. From 2.49.0 to before 3.5.3 and 3.11.3, in the Prometheus server's legacy web UI (enabled via the command-line flag --enable-f…
CVE-2026-9642 critical 9.8 9.8 deltaww 9d ago Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-9583 medium 4.3 4.3 9d ago A weakness has been identified in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This impacts an unknown function of the file /index.php of the component SQL Handler. E…
CVE-2026-9581 medium 6.3 6.3 9d ago A vulnerability was identified in JeecgBoot up to 3.9.1. The impacted element is an unknown function of the file /sys/comment/add. Such manipulation leads to improper access controls. The attack can …
CVE-2026-44897 medium 6.1 6.1 slesdebian debianwindows windows mistune_project 9d ago Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.2.1, HTMLRenderer.heading() builds the opening <hN> tag by string-concatenating the id attribute value directly into the HTM…
CVE-2026-44450 critical 9.9 9.9 9d ago Lumiverse is a full-featured AI chat application. Prior to 0.9.7, the MCP server creation endpoint validates the command field against an allowlist of binary names but forwards the args array to the …
CVE-2026-44443 medium 4.8 4.8 9d ago Lumiverse is a full-featured AI chat application. Prior to 0.9.7, consumeNonce() only checks that the module-level variable is set and unexpired. It does not validate any value from the incoming HTTP…
CVE-2025-68711 low 2.4 2.4 9d ago AppLockZ App Lock and Fingerprint Lock (applock.passwordfingerprint.applockz) 4.2.11 for Android allows a local attacker with physical access to bypass the PIN lock. The lock is implemented as an ove…
CVE-2025-68708 low 2.4 2.4 9d ago SailingLab AppLock (aka com.alpha.applock) 4.3.8 for Android allows a local attacker with physical access to bypass the PIN lock. The lock is implemented as an overlay rather than by using Android's …
CVE-2026-47672 medium 6.5 6.5 9d ago epa4all-client: Unauthenticated REST API for Patient Record Writes
CVE-2026-9582 medium 4.3 4.3 9d ago A security flaw has been discovered in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This affects an unknown function. Performing a manipulation results in cross-site …
CVE-2026-44708 medium 6.1 6.1 slesdebian debianwindows windows mistune_project 9d ago Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.2.1, the mistune math plugin renders inline math ($...$) and block math ($$...$$) by concatenating the raw user-supplied con…
CVE-2026-44899 medium 6.1 6.1 slesdebian debianwindows windows mistune_project 9d ago Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.2.1, the Image directive plugin validates the :width: and :height: options with a regex compiled as _num_re = re.compile(r"^…
CVE-2026-44896 medium 6.1 6.1 slesdebian debianwindows windows mistune_project 9d ago Mistune is a Python Markdown parser with renderers and plugins. In 3.2.0 and realier, in src/mistune/directives/image.py, the render_figure() function concatenates figclass and figwidth options direc…
CVE-2025-68710 low 2.4 2.4 9d ago Easyelife App lock (aka Fingerprint,Applock or locker.app.safe.applocker) 1.9.2 for Android allows a local attacker with physical access to bypass the PIN lock. The lock is implemented as an overlay …
CVE-2026-44444 critical 9.1 9.1 9d ago Lumiverse is a full-featured AI chat application. Prior to 0.9.7, the Spindle extension build pipeline calls bun install without the --ignore-scripts flag before running the static backend safety sca…
CVE-2026-44449 critical 9.1 9.1 9d ago Lumiverse is a full-featured AI chat application. Prior to 0.9.7, when the primary toSmbPath(fullPath) call throws, the method falls back to a dirname/basename split and only validates the directory …
CVE-2026-44451 critical 9.3 9.3 9d ago Lumiverse is a full-featured AI chat application. Prior to 0.9.7, the component override system transpiles user-supplied TSX via Sucrase and evaluates it with new Function, shadowing dangerous global…
CVE-2026-44844 medium 5.5 windows windows 9d ago eml_parser serves as a python module for parsing eml files and returning various information found in the e-mail as well as computed information. Prior to 3.0.1, EmlParser.get_raw_body_text() recurse…
CVE-2026-9579 medium 6.3 6.3 9d ago A vulnerability was found in JeecgBoot up to 3.9.1. Impacted is the function user.getUsername of the file /sys/user/login/setting/userEdit of the component SysUser. The manipulation of the argument u…
CVE-2026-44836 medium 6.5 6.5 debian debian 9d ago view_component is a framework for building reusable, testable, and encapsulated view components in Ruby on Rails. From 3.0.0 to 4.9.0, the preview route derives an example name from the URL and calls…
CVE-2026-44214 medium 5.3 5.3 rexxars 9d ago eventsource-encoder encodes events as well-formed EventSource/Server Sent Event (SSE) messages. Prior to 1.0.2, eventsource-encoder does not sanitize the event or id fields of an EventSourceMessage b…
CVE-2026-48047 medium 5.5 9d ago XWiki Platform vulnerable to potential arbitrary file writing using path traversal from (subwiki) admin
CVE-2026-25426 medium 5.3 5.3 9d ago Missing Authorization vulnerability in Magepeople inc. Taxi Booking Manager for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Taxi Booking M…
CVE-2026-24520 medium 4.3 4.3 9d ago Missing Authorization vulnerability in bPlugins Tiktok Feed allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Tiktok Feed: from n/a through 1.0.24.
CVE-2026-25444 medium 4.3 4.3 9d ago Missing Authorization vulnerability in Magepeople inc. WpBookingly allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WpBookingly: from n/a through 1.2.9.
CVE-2026-35202 low 2.5 9d ago Pterodactyl is a free, open-source game server management panel. Prior to version 1.12.3, the Pterodactyl Client API has a logic flaw that lets users bypass their assigned limits for database allocat…
CVE-2026-27331 medium 6.3 6.3 9d ago Missing Authorization vulnerability in Magepeople inc. WpTravelly allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WpTravelly: from n/a through 2.1.5.
CVE-2026-9572 low 3.3 3.3 debian debian gpac 9d ago A security vulnerability has been detected in GPAC up to 2.4.0. Affected by this issue is the function Media_GetSample of the file src/isomedia/media.c of the component MP4Box. Such manipulation of t…
CVE-2026-3660 critical 9.8 9.8 ibm 9d ago IBM Engineering Lifecycle Management 7.0.3, 7.1.0, and 7.2.0 could allow an unauthenticated remote attacker to update server property files that would allow them to gain unauthorized access to the ap…
CVE-2026-9567 low 3.3 3.3 debian debian 9d ago A security flaw has been discovered in GPAC up to 2.4.0. Affected is the function MergeFragment of the file src/isomedia/isom_intern.c of the component MP4Box. The manipulation results in null pointe…
CVE-2026-7453 medium 5.5 5.5 autodesk 9d ago A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can cause a Stack Exhaustion vulnerability, leading to a denial-of-service condition.
CVE-2026-7450 medium 5.5 5.5 autodesk 9d ago A maliciously crafted PAR file, when parsed through Autodesk 3ds Max, can force a NULL Pointer Dereference vulnerability. Successful exploitation may cause the application to crash, leading to a deni…
CVE-2026-7251 critical 9.8 9.8 9d ago Eppendorf BioFlo 320 is vulnerable due to VNC server using a hard-coded password. If a remote attacker knows the network address of any BioFlo 320 model with remote access enabled, they can gain full…
CVE-2026-46624 critical 9.9 9.9 twenty 9d ago Twenty is an open source CRM. From 1.7.7 through 1.16.7, a critical Remote Code Execution (RCE) vulnerability exists in Twenty CRM via a chained SQL Injection and PostgreSQL COPY TO PROGRAM attack. I…
CVE-2026-44749 medium 4.3 4.3 9d ago The SAP Gateway allows attackers to inject content into error messages, potentially leading to disclosure of request artefacts (e.g., regex patterns) and revealing underlying URI parsing logic. Leadi…
CVE-2026-9568 medium 5.0 5.0 9d ago A weakness has been identified in ThingsBoard up to 4.3.1.1. Affected by this vulnerability is the function getGatewayDockerComposeFile of the file /api/v1/provision of the component YAML Handler. Th…
CVE-2026-42448 low 3.5 3.5 9d ago Magic Wormhole: receive, with --output pointing at an existing directory can be path-traversed
CVE-2026-44668 critical 9.8 9.8 9d ago FACTION is a PenTesting Report Generation and Collaboration Framework. Prior to 1.8.3, AccessControlInterceptor, the authentication gate for all Struts2 actions, unconditionally calls invocation.invo…
CVE-2026-41164 medium 4.4 4.4 10d ago nuts-node has JWT type confusion in v1 access token introspection that allows VP replay as access token
CVE-2026-9170 critical 9.8 9.8 ibm 10d ago IBM HTTP Server 8.5, and 9.0
CVE-2025-33221 medium 4.4 4.4 10d ago NVIDIA Display Driver for Windows and Linux contains a vulnerability in the kernel driver, where a user could cause an incorrect permission assignment for a critical resource. A successful exploit of…
CVE-2026-24201 medium 5.8 5.8 10d ago NVIDIA vGPU software contains a vulnerability in the virtual GPU manager, where an attacker could cause an out-of-bound access. A successful exploit of this vulnerability might lead to data tampering…
CVE-2026-8633 critical 9.8 9.8 ibm 10d ago IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to remote code executi…
CVE-2026-24197 medium 6.5 6.5 10d ago NVIDIA Display Driver for Linux contains a vulnerability in the Multi-Instance GPU (MIG) partition management, where an insecure default initialization of memory subsystem routing resources could lea…
CVE-2026-24199 medium 4.7 4.7 nvidia 10d ago NVIDIA Display Driver for Linux contains a vulnerability in a kernel module, where a user could cause a race condition by reordering compiler or processor memory instructions. A successful exploit of…
CVE-2026-24198 medium 5.6 5.6 10d ago NVIDIA GPU Display Driver for Linux contains a vulnerability where an advanced attacker could use a race condition to leak sensitive memory, which might cause limited exposure of sensitive informati…
CVE-2026-9565 medium 6.3 6.3 10d ago A vulnerability was determined in haojing8312 WorkClaw up to 0.6.4. This affects the function is_dangerous of the file apps/runtime/src-tauri/src/agent/tools/bash.rs of the component Blacklist Handle…
CVE-2026-9564 low 2.4 2.4 10d ago A vulnerability was found in SourceCodester/oretnom23 Hospitals Patient Records Management System 1.0. The impacted element is an unknown function of the file /admin/?page=patients/view_patient. Perf…
CVE-2026-48902 critical 9.8 9.8 joomla 10d ago The password and username reset features created plain http links for https connections if the "Force SSL" flag wasn't explicitly set.
CVE-2026-48693 medium 5.5 5.5 debian debian pavel-odintsov 10d ago FastNetMon Community Edition through 1.2.9 is vulnerable to a local symlink attack via predictable file paths in /tmp. The statistics file path defaults to '/tmp/fastnetmon.dat' (src/fastnetmon.cpp l…
CVE-2026-48691 critical 9.8 9.8 FIX debian debian pavel-odintsov 10d ago FastNetMon Community Edition through 1.2.9 contains an integer overflow in the BGP AS_PATH attribute encoder. In src/bgp_protocol.hpp, the IPv4UnicastAnnounce::get_attributes() function computes attr…
CVE-2026-47728 medium 4.3 4.3 10d ago Bugsink is a self-hosted error tracking tool. Prior to 2.2.0, Bugsink resolved sourcemaps and debug files by debug ID without scoping that lookup to the project that owned the uploaded metadata. An a…
CVE-2026-47715 low 3.1 3.1 10d ago Bugsink is a self-hosted error tracking tool. Prior to 2.2.0, Bugsink issue event pages accept a direct event identifier from the URL and, in affected versions, look up that event without also requir…
CVE-2026-46431 medium 4.3 4.3 10d ago Algernon: Auto-refresh SSE event server sets Access-Control-Allow-Origin: *
CVE-2026-46430 medium 4.3 4.3 10d ago Algernon: Auto-refresh SSE event server binds to all interfaces by default on Linux/macOS
CVE-2026-45721 critical 9.0 9.0 10d ago Algernon: handler.lua discovery walks parent directories above the server root
CVE-2026-44723 critical 9.9 9.9 vowpalwabbit 10d ago Vowpal Wabbit is a machine learning system. The workflow .github/workflows/python_checks.yml embeds ${{ github.event.pull_request.title }} directly inside double-quoted bash strings in four separate …
CVE-2026-44314 medium 4.3 4.3 traccar 10d ago Traccar is an open source GPS tracking system. Prior to 6.13.0, DeviceResource.uploadImage authorizes the target device only through Condition.Permission(User.class, getUserId(), Device.class) and th…
CVE-2026-24182 medium 6.5 6.5 10d ago NVIDIA Display Driver for Windows and Linux contains a vulnerability where an attacker could leak held driver locks. A successful exploit of this vulnerability might lead to denial of service.
CVE-2026-35222 critical 9.8 9.8 joomla 10d ago Improperly validated order clauses lead to a SQL injection vulnerability in com_tags.
CVE-2026-30894 medium 6.1 6.1 joomla 10d ago Lack of output escaping leads to a XSS vector in the content history component.
CVE-2026-24212 critical 9.8 9.8 linux-kernel nvidia 10d ago NVIDIA Isaac Launchable for Linux contains a vulnerability where sensitive information is transmitted in clear text. A successful exploit of this vulnerability might lead to code execution, escalatio…
CVE-2025-36220 critical 9.8 9.8 ibm 10d ago IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through Interim Fix 002 IBM Cloud Pak for Data System is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, …
CVE-2025-36145 medium 5.3 5.3 ibm 10d ago IBM watsonx.data 2.2 through 2.3.1 IBM Lakehouse does not properly restrict inbound and outbound connections which could allow an attacker to transfer or modify files without restrictions.
CVE-2025-14290 medium 5.4 5.4 ibm 10d ago IBM webMethods Integration (on prem) -Integration Server 10.15 through IS_10.15_Core_Fix2611.1 to IS_11.1_Core_Fix10 IBM webMethods Integration is vulnerable to server-side request forgery (SSRF). Th…
CVE-2025-13755 medium 5.5 5.5 ibm 10d ago IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 for Linux, UNIX and Windows (includes DB2 Connect Server) stores potentially sensitive information in log files that could be read by a local …
CVE-2026-44707 medium 6.8 6.8 10d ago Chatwoot is a customer engagement suite. From 2.14.0 to before 4.13.0, a Pre-Account Takeover (Pre-ATO) vulnerability existed in Chatwoot's authentication flow. Because email confirmation was not enf…
CVE-2026-9566 medium 4.3 4.3 10d ago A vulnerability was identified in teableio teable up to 1.9.x. This impacts an unknown function of the file apps/nextjs-app/src/features/auth/pages/LoginPage.tsx of the component Sign-up. The manipul…
CVE-2026-8856 critical 9.1 9.1 linux-kernel ibm 10d ago IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service in configurations where an attacker has write access to parts of the server configuration.
CVE-2026-35221 critical 9.8 9.8 joomla 10d ago Improperly built filter clauses lead to a SQL injection vulnerability in the search query for com_finder.
CVE-2026-48903 medium 6.1 6.1 joomla 10d ago Inadequate content filtering within the checkAttribute methods leads to XSS vulnerabilities in various components.
CVE-2026-35220 medium 4.3 4.3 joomla 10d ago Lack of CSRF token validation lead to a CSRF attack vector in the admin activation endpoint of com_users.
CVE-2026-40383 critical 9.8 9.8 joomla 10d ago An improper validation of user-supplied input leads to a local file inclusion vulnerability.
CVE-2026-48905 medium 6.1 6.1 joomla 10d ago Lack of input filtering leads to an XSS vector in the HTML filter code.
CVE-2026-25901 medium 6.1 6.1 joomla 10d ago Lack of output escaping leads to a XSS vector in the multilingual associations component.
CVE-2026-48899 critical 9.8 9.8 joomla 10d ago An improper access check allows privilege escalation through the com_users batch task.
CVE-2026-48900 medium 4.3 4.3 joomla 10d ago An improper access check allowed low privileged users to edit the task types of existing scheduler tasks.
CVE-2026-35223 critical 9.8 9.8 joomla 10d ago An improper access check allows unauthorized access to com_config webservice endpoints.
CVE-2026-25900 medium 6.1 6.1 joomla 10d ago Lack of output escaping leads to a XSS vector in the feed modules.
CVE-2026-48904 critical 9.8 9.8 joomla 10d ago An improper access check allows privelege escalation through the com_users group editing webservice endpoint.
CVE-2026-30895 medium 6.1 6.1 joomla 10d ago Lack of output escaping leads to a XSS vector in the readmore links for com_content.
CVE-2026-48898 critical 9.8 9.8 joomla 10d ago An improper access check allows privilege escalation through the com_users batch task.
CVE-2025-66407 medium 5.5 10d ago Weblate has a Server-Side Request Forgery issue
CVE-2026-47716 low 3.1 3.1 10d ago Bugsink is a self-hosted error tracking tool. Prior to 2.2.0, In affected versions, the issue list view authorizes access through the project in the URL, but applies the requested bulk action to the …
CVE-2026-48686 critical 9.8 9.8 FIX debian debian pavel-odintsov 10d ago FastNetMon Community Edition through 1.2.9 contains a stack-based buffer overflow in the BGP NLRI (Network Layer Reachability Information) decoder. The function decode_bgp_subnet_encoding_ipv4_raw() …
CVE-2026-48685 medium 6.5 6.5 FIX debian debian pavel-odintsov 10d ago FastNetMon Community Edition through 1.2.9 has out-of-bounds memory access because it incorrectly parses BGP path attributes with the extended length flag set. In src/bgp_protocol.hpp, the parse_raw_…
CVE-2026-48684 medium 6.5 6.5 FIX debian debian pavel-odintsov 10d ago FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read in the NetFlow v9 options template parser. In process_netflow_v9_options_template() (src/netflow_plugin/netflow_v9_collector.…
CVE-2026-48683 medium 6.5 6.5 FIX debian debian 10d ago FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read vulnerability in the NetFlow v9 data flowset processor. In src/netflow_plugin/netflow_v9_collector.cpp, the Data template bra…
CVE-2026-43936 medium 4.3 4.3 10d ago e107 is a content management system (CMS). Prior to 2.3.4, you can access the local environment by specifying the URL of the local environment from "Image/File URL:" of "From a remote location" in "M…
CVE-2026-43934 medium 6.5 6.5 10d ago e107 is a content management system (CMS). Prior to 2.3.4, a Broken Access Control vulnerability exists in the application, allowing an unauthorized authenticated user to edit comments posted by othe…