Search

Found 33,878 results in 1417ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-22679 critical 9.8 9.8 weaver 2mo ago Weaver (Fanwei) E-cology 10.0 versions prior to 20260312 contain an unauthenticated remote code execution vulnerability in the /papi/esearch/data/devops/dubboApi/debug/method endpoint that allows att…
CVE-2026-28808 unknown FIX debian debian sles 2mo ago Incorrect Authorization vulnerability in Erlang OTP (inets modules) allows unauthenticated access to CGI scripts protected by directory rules when served via script_alias. When script_alias maps a U…
CVE-2026-32144 unknown FIX debian debian sles 2mo ago Improper Certificate Validation vulnerability in Erlang OTP public_key (pubkey_ocsp module) allows OCSP designated-responder authorization bypass via missing signature verification. The OCSP respons…
CVE-2026-34197 unknown 2.5 KEVEXP debian debian 2mo ago Apache ActiveMQ contains an improper input validation vulnerability that allows for code injection.
CVE-2026-33227 unknown debian debian 2mo ago Apache ActiveMQ: Improper validation and restriction of a classpath path name
CVE-2026-28810 unknown FIX debian debian sles 2mo ago Generation of Predictable Numbers or Identifiers vulnerability in Erlang/OTP kernel (inet_res, inet_db modules) allows DNS Cache Poisoning. The built-in DNS resolver (inet_res) uses a sequential, pr…
CVE-2026-1114 critical 9.8 9.8 lollms 2mo ago In parisneo/lollms version 2.1.0, the application's session management is vulnerable to improper access control due to the use of a weak secret key for signing JSON Web Tokens (JWT). This vulnerabili…
CVE-2025-65115 critical 9.8 9.8 hitachi 2mo ago Remote Code Execution Vulnerability in JP1/IT Desktop Management 2 - Manager on Windows, JP1/IT Desktop Management 2 - Operations Director on Windows, Job Management Partner 1/IT Desktop Management 2…
CVE-2026-35022 critical 9.8 9.8 anthropic 2mo ago Rejected reason: This CVE ID has been rejected by its CVE Numbering Authority (CNA). It was determined that the -p flag behavior is documented in Anthropic's claude -h output with an explicit warning…
CVE-2026-35490 unknown 2mo ago changedetection.io Vulnerable to Authentication Bypass via Decorator Ordering
CVE-2026-35035 critical 9.5 2mo ago CI4MS: Company Information Public-Facing Page Full Platform Compromise & Full Account Takeover for All Roles & Privilege-Escalation via System Settings Company Information Stored DOM XSS
CVE-2026-34989 critical 9.0 9.0 ci4-cms-erp 2mo ago CI4MS: Profile & User Management Full Account Takeover for All-Roles & Privilege-Escalation via Stored DOM XSS
CVE-2026-37977 unknown 2mo ago Keycloak vulnerable to information disclosure via CORS header injection due to unvalidated JWT azp claim
CVE-2026-31405 critical 9.8 9.8 FIX slesdebian debian linux-kernel 2mo ago In the Linux kernel, the following vulnerability has been resolved: media: dvb-net: fix OOB access in ULE extension header tables The ule_mandatory_ext_handlers[] and ule_optional_ext_handlers[] ta…
CVE-2026-35616 unknown 1.5 KEV 2mo ago Fortinet FortiClient EMS contains an improper access control vulnerability that may allow an unauthenticated attacker to execute unauthorized code or commands via crafted requests.
CVE-2026-5584 critical 9.8 9.8 fosowl 2mo ago A vulnerability has been found in Fosowl agenticSeek 0.1.0. Impacted is the function PyInterpreter.execute of the file sources/tools/PyInterpreter.py of the component query Endpoint. Such manipulatio…
CVE-2026-5574 critical 9.1 9.1 2mo ago A security vulnerability has been detected in Technostrobe HI-LED-WR120-G2 5.5.0.1R6.03.30. Affected is the function deletefile of the component FsBrowseClean. The manipulation of the argument dir/pa…
CVE-2026-5573 critical 9.8 9.8 2mo ago A weakness has been identified in Technostrobe HI-LED-WR120-G2 5.5.0.1R6.03.30. This impacts an unknown function of the file /fs. Executing a manipulation of the argument cwd can lead to unrestricted…
CVE-2026-5570 critical 9.8 9.8 2mo ago A vulnerability was determined in Technostrobe HI-LED-WR120-G2 5.5.0.1R6.03.30. The affected element is the function index_config of the file /LoginCB. This manipulation causes improper authenticatio…
CVE-2026-5569 critical 9.8 9.8 2mo ago A vulnerability was found in Technostrobe HI-LED-WR120-G2 5.5.0.1R6.03.30. Impacted is an unknown function of the file /Technostrobe/ of the component Endpoint. The manipulation results in improper a…
CVE-2026-5562 critical 9.8 9.8 provectus 2mo ago A vulnerability was identified in provectus kafka-ui up to 0.7.2. This impacts the function validateAccess of the file /api/smartfilters/testexecutions of the component Endpoint. The manipulation lea…
CVE-2026-5526 critical 9.8 9.8 2mo ago A security flaw has been discovered in Tenda 4G03 Pro up to 1.0/1.1/04.03.01.53/192.168.0.1. Affected by this vulnerability is an unknown functionality of the file /bin/httpd. The manipulation result…
CVE-2026-35166 unknown FIX debian debian sles 2mo ago Hugo is a static site generator. From 0.60.0 to before 0.159.2, links and image links in the default markdown to HTML renderer are not properly escaped. Hugo users who trust their Markdown content or…
CVE-2026-32186 critical 10.0 10.0 2mo ago Server-side request forgery (ssrf) in Microsoft Bing allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-28373 critical 9.6 9.6 macos macos stackfield 2mo ago The Stackfield Desktop App before 1.10.2 for macOS and Windows contains a path traversal vulnerability in certain decryption functionality when processing the filePath property. A malicious export ca…
CVE-2026-23455 critical 9.1 9.1 FIX sles rheldebian debian 2mo ago In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_h323: check for zero length in DecodeQ931() In DecodeQ931(), the UserUserIE code path reads a 16-bit leng…
CVE-2026-23450 critical 9.8 9.8 FIX slesdebian debian linux-kernel 2mo ago In the Linux kernel, the following vulnerability has been resolved: net/smc: fix NULL dereference and UAF in smc_tcp_syn_recv_sock() Syzkaller reported a panic in smc_tcp_syn_recv_sock() [1]. smc_…
CVE-2026-5463 critical 9.8 9.8 danmcinerney 2mo ago Command injection vulnerability in console.run_module_with_output() in pymetasploit3 through version 1.0.6 allows attackers to inject newline characters into module options such as RHOSTS. This break…
CVE-2026-35545 unknown FIX debian debian 2mo ago An issue was discovered in Roundcube Webmail before 1.5.15 and 1.6.15. The remote image blocking feature can be bypassed via SVG content in an e-mail message. This may lead to information disclosure …
CVE-2026-35544 unknown FIX debian debian 2mo ago An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Insufficient Cascading Style Sheets (CSS) sanitization in HTML e-mail messages may lead to a fixed-position mitigation bypass vi…
CVE-2026-35543 unknown FIX debian debian 2mo ago An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. The remote image blocking feature can be bypassed via SVG content (with animate attributes) in an e-mail message. This may lead …
CVE-2026-35542 unknown FIX debian debian 2mo ago An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. The remote image blocking feature can be bypassed via a crafted background attribute of a BODY element in an e-mail message. Thi…
CVE-2026-35541 unknown FIX debian debian 2mo ago An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Incorrect password comparison in the password plugin could lead to type confusion that allows a password change without knowing …
CVE-2026-35540 unknown FIX debian debian 2mo ago An issue was discovered in Roundcube Webmail 1.6.0 before 1.6.14. Insufficient Cascading Style Sheets (CSS) sanitization in HTML e-mail messages may lead to SSRF or Information Disclosure, e.g., if s…
CVE-2026-35539 unknown FIX debian debian 2mo ago An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. XSS exists because of insufficient HTML attachment sanitization in preview mode. A victim must preview a text/html attachment.
CVE-2026-35538 unknown FIX debian debian 2mo ago An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Unsanitized IMAP SEARCH command arguments could lead to IMAP injection or CSRF bypass during mail search.
CVE-2026-35537 unknown FIX debian debian 2mo ago An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Unsafe deserialization in the redis/memcache session handler may lead to arbitrary file write operations by unauthenticated atta…
CVE-2026-35171 unknown 2mo ago Kedro has Arbitrary Code Execution via Malicious Logging Configuration
CVE-2026-35167 unknown 2mo ago Kedro: Path Traversal in versioned dataset loading via unsanitized version string
CVE-2026-32211 critical 9.1 9.1 2mo ago Missing authentication for critical function in Azure MCP Server allows an unauthorized attacker to disclose information over a network.
CVE-2026-33105 critical 10.0 10.0 2mo ago Improper authorization in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-26135 critical 9.6 9.6 2mo ago Server-side request forgery (ssrf) in Azure Custom Locations Resource Provider (RP) allows an authorized attacker to elevate privileges over a network.
CVE-2026-33107 critical 10.0 10.0 2mo ago Server-side request forgery (ssrf) in Azure Databricks allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-32213 critical 10.0 10.0 2mo ago Improper authorization in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-5368 critical 9.8 9.8 projectworlds 2mo ago A vulnerability was determined in projectworlds Car Rental Project 1.0. The affected element is an unknown function of the file /login.php of the component Parameter Handler. This manipulation of the…
CVE-2026-34877 critical 9.8 9.8 FIX debian debian armtrustedfirmware 2mo ago An issue was discovered in Mbed TLS versions from 2.19.0 up to 3.6.5, Mbed TLS 4.0.0. Insufficient protection of serialized SSL context or session structures allows an attacker who can modify the ser…
CVE-2026-4636 unknown 2mo ago Keycloak: UMA Policy Resource Injection Allows Unauthorized Cross-User Permission Grants
CVE-2026-4634 unknown 2mo ago Keycloak: Application-Level DoS via Scope Processing
CVE-2026-4325 unknown 2mo ago Keycloak: Replay of action tokens via improper handling of single-use entries
CVE-2026-4282 unknown 2mo ago Keycloak: Privilege escalation via forged authorization codes due to SingleUseObjectProvider isolation flaw
CVE-2026-3872 unknown 2mo ago Keycloak: Redirect URI validation bypass via ..;/ path traversal in OIDC auth endpoint
CVE-2026-5334 critical 9.8 9.8 itsourcecode 2mo ago A weakness has been identified in itsourcecode Online Enrollment System 1.0. Impacted is an unknown function of the file /enrollment/index.php?view=edit&id=3 of the component Parameter Handler. This …
CVE-2026-5333 critical 9.8 9.8 defaultfuction 2mo ago A security flaw has been discovered in DefaultFuction Content-Management-System 1.0. This issue affects some unknown processing of the file /admin/tools.php. The manipulation of the argument host res…
CVE-2026-5244 critical 9.8 9.8 FIX debian debian cesanta 2mo ago A vulnerability has been found in Cesanta Mongoose up to 7.20. This affects the function mg_tls_recv_cert of the file mongoose.c of the component TLS 1.3 Handler. Such manipulation of the argument pu…
CVE-2026-3502 unknown 1.5 KEV 2mo ago TrueConf Client contains a download of code without integrity check vulnerability. An attacker who is able to influence the update delivery path can substitute a tampered update payload. If the paylo…
CVE-2026-34525 unknown FIX slesdebian debian 2mo ago AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, multiple Host headers were allowed in aiohttp. This issue has been patched in version 3.13.4.
CVE-2026-34520 unknown FIX slesdebian debian 2mo ago AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, the C parser (the default for most installs) accepted null bytes and control characters in res…
CVE-2026-34519 unknown FIX slesdebian debian 2mo ago AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an attacker who controls the reason parameter when creating a Response may be able to inject e…
CVE-2026-34518 unknown FIX slesdebian debian 2mo ago AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, when following redirects to a different origin, aiohttp drops the Authorization header, but re…
CVE-2026-34517 unknown FIX slesdebian debian 2mo ago AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, for some multipart form fields, aiohttp read the entire field into memory before checking clie…
CVE-2026-34516 unknown FIX slesdebian debian 2mo ago AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, a response with an excessive number of multipart headers may be allowed to use more memory tha…
CVE-2026-34515 unknown FIX slesdebian debian 2mo ago AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, on Windows the static resource handler may expose information about a NTLMv2 remote path. This…
CVE-2026-34514 unknown FIX slesdebian debian 2mo ago AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an attacker who controls the content_type parameter in aiohttp could use this to inject extra …
CVE-2026-34513 unknown FIX slesdebian debian 2mo ago AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an unbounded DNS cache could result in excessive memory usage possibly resulting in a DoS situ…
CVE-2026-34873 critical 9.1 9.1 FIX slesdebian debian trustedfirmware 2mo ago An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session.
CVE-2026-22815 unknown FIX slesdebian debian 2mo ago AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, insufficient restrictions in header/trailer handling could cause uncapped memory usage. This i…
CVE-2026-34875 critical 9.8 9.8 FIX slesdebian debian trustedfirmware 2mo ago An issue was discovered in Mbed TLS through 3.6.5 and TF-PSA-Crypto 1.0.0. A buffer overflow can occur in public key export for FFDH keys.
CVE-2026-34159 critical 9.8 9.8 FIX debian debian ggml 2mo ago llama.cpp is an inference of several LLM models in C/C++. Prior to version b8492, the RPC backend's deserialize_tensor() skips all bounds validation when a tensor's buffer field is 0. An unauthentica…
CVE-2026-34072 critical 9.8 9.8 fccview 2mo ago Cr*nMaster (cronmaster) is a Cronjob management UI with human readable syntax, live logging and log history for cronjobs. Prior to version 2.2.0, an authentication bypass in middleware allows unauthe…
CVE-2026-34430 critical 9.6 9.6 deerflow 2mo ago ByteDance DeerFlow versions prior to commit 92c7a20 contain a sandbox escape vulnerability in bash tool handling that allows attackers to execute arbitrary commands on the host system by bypassing re…
CVE-2026-5257 critical 9.8 9.8 code-projects 2mo ago A vulnerability has been found in code-projects Simple Laundry System 1.0. This issue affects some unknown processing of the file /delstaffinfo.php of the component Parameter Handler. Such manipulati…
CVE-2026-5256 critical 9.8 9.8 code-projects 2mo ago A flaw has been found in code-projects Simple Laundry System 1.0. This vulnerability affects unknown code of the file /modify.php of the component Parameter Handler. This manipulation of the argument…
CVE-2026-5281 unknown 1.5 KEVFIX debian debian 2mo ago Google Dawn contains an use-after-free vulnerability that could allow a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page. This vulnerability …
CVE-2026-28886 unknown watchos iosmacos macos 2mo ago visionOS 26.4
CVE-2026-28880 unknown macos macos ios apple 2mo ago visionOS 26.4
CVE-2026-28879 unknown macos macos tvos ios 2mo ago visionOS 26.4
CVE-2026-28876 unknown iosmacos macos apple 2mo ago visionOS 26.4
CVE-2026-28868 unknown watchos iosmacos macos 2mo ago visionOS 26.4
CVE-2026-28867 unknown macos macos ios watchos 2mo ago visionOS 26.4
CVE-2026-28866 unknown macos macos ios 2mo ago macOS Sonoma 14.8.5
CVE-2026-28865 unknown tvosmacos macos ios 2mo ago visionOS 26.4
CVE-2026-28864 unknown macos macos watchos apple 2mo ago visionOS 26.4
CVE-2026-28852 unknown watchos iosmacos macos 2mo ago visionOS 26.4
CVE-2026-20690 unknown iosmacos macos tvos 2mo ago visionOS 26.4
CVE-2026-20687 unknown watchos iosmacos macos 2mo ago watchOS 26.4
CVE-2026-20668 unknown macos macos ios 2mo ago macOS Sonoma 14.8.5
CVE-2026-20637 unknown macos macos ios 2mo ago macOS Sonoma 14.8.5
CVE-2025-64505 unknown FIX debian debian sles apple 2mo ago visionOS 26.4
CVE-2025-43534 unknown ios 2mo ago iOS 18.7.7 and iPadOS 18.7.7
CVE-2025-43376 unknown ios 2mo ago iOS 18.7.7 and iPadOS 18.7.7
CVE-2025-14524 unknown FIX debian debian sles tvos 2mo ago When an OAuth2 bearer token is used for an HTTP(S) transfer, and that transfer performs a cross-protocol redirect to a second URL that uses an IMAP, LDAP, POP3 or SMTP scheme, curl might wrongly pass…
CVE-2026-0596 critical 9.5 2mo ago Mlflow: Command Injection when serving models with enable_mlserver=True
CVE-2026-5183 critical 9.8 9.8 2mo ago A vulnerability was determined in TRENDnet TEW-713RE up to 1.02. The affected element is the function sub_421494 of the file /goform/addRouting. Executing a manipulation of the argument dest can lead…
CVE-2026-5176 critical 9.8 9.8 2mo ago A security flaw has been discovered in Totolink A3300R 17.0.0cu.557_b20221024. Affected is the function setSyslogCfg of the file /cgi-bin/cstecgi.cgi. Performing a manipulation of the argument provid…
CVE-2026-34237 unknown 2mo ago MCP Java SDK has a Hardcoded Wildcard CORS (Access-Control-Allow-Origin: *)
CVE-2026-34361 unknown 2mo ago FHIR Validator HTTP service has SSRF via /loadIG Chains with startsWith() Credential Leak for Authentication Token Theft
CVE-2026-34360 unknown 2mo ago FHIR Validator: Unauthenticated Blind SSRF via /loadIG Endpoint Enables Internal Network Probing
CVE-2026-34359 unknown 2mo ago HAPI FHIR Core has Authentication Credential Leakage via Improper URL Prefix Matching on HTTP Redirect
CVE-2026-34165 unknown FIX debian debian 2mo ago go-git is an extensible git implementation library written in pure Go. From version 5.0.0 to before version 5.17.1, a vulnerability has been identified in which a maliciously crafted .idx file can ca…
CVE-2026-33762 unknown FIX debian debian 2mo ago go-git is an extensible git implementation library written in pure Go. Prior to version 5.17.1, go-git’s index decoder for format version 4 fails to validate the path name prefix length before applyi…