Search

Found 69,861 results in 3460ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-46559 medium 5.5 FIX debian debian 20d ago ImageMagick: Heap Buffer Over-Write of a single byte in the JP2 encoder.
CVE-2026-46557 medium 5.5 FIX debian debian 20d ago ImageMagick: Stack overflow in fx operation
CVE-2026-46523 medium 5.5 FIX debian debian 20d ago ImageMagick: Use-After-Free in MSL decoder.
CVE-2026-46522 high 9.0 EXPFIX debian debian 20d ago ImageMagick: Infinite Loop in the MIFF decoder can lead to CPU exhaustion
CVE-2026-46521 medium 5.5 FIX debian debian 20d ago ImageMagick: Heap Buffer Over-Write in MIFF encoder when using LZMA compression
CVE-2026-46520 high 8.0 FIX debian debian 20d ago ImageMagick: Heap Buffer Over-Write in IPL decoder when reading multiple images of different dimensions
CVE-2026-45664 medium 5.5 FIX debian debian 20d ago ImageMagick: Policy Bypass in MNG coder could
CVE-2026-45624 medium 5.5 FIX debian debian 20d ago ImageMagick: Heap Buffer Over-Read of a 4 bytes in distort operation.
CVE-2026-45367 high 8.0 20d ago HAPI FHIR: ReDoS via FHIRPath matches()/replaceMatches() in FHIR Validator HTTP Endpoint
CVE-2026-45554 medium 5.3 5.3 20d ago NiceGUI is a Python-based UI framework. Prior to version 3.12.0, two FastAPI routes that serve per-component static assets in NiceGUI accept a sub-path parameter that may resolve to a directory rathe…
CVE-2026-45553 high 7.5 7.5 20d ago NiceGUI is a Python-based UI framework. Prior to version 3.12.0, ui.restructured_text() renders reStructuredText server-side with Docutils without disabling file insertion directives. When a NiceGUI …
CVE-2026-45686 high 7.5 7.5 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.7.0 to before version 0.9.0, a remotely reachable integer overflow in OBI's memcac…
CVE-2026-45685 high 7.5 7.5 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.1.0 to before version 0.9.0, malformed MongoDB wire messages can trigger uncaught …
CVE-2026-45684 medium 5.3 5.3 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.7.0 to before version 0.9.0, OBI's log enricher mishandles writev buffers by readi…
CVE-2026-45682 medium 5.5 5.5 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the custom CappedConcurrentHashMap introduced for Java TLS state tracking…
CVE-2026-47092 high 7.8 7.8 jarrodwatts 20d ago Claude HUD through 0.0.12, patched in commit 234d9aa, contains a command injection vulnerability that allows local attackers to execute arbitrary commands by manipulating the COMSPEC environment vari…
CVE-2026-47090 medium 4.6 4.6 jarrodwatts 20d ago Claude HUD through 0.0.12, patched in commit 234d9aa, constructs OSC 8 terminal hyperlink escape sequences using raw cwd and branchUrl values without stripping control characters or encoding embedded…
CVE-2026-45246 medium 5.5 5.5 steipete 20d ago Summarize prior to 0.15.1 contains an insecure file permission vulnerability in the refresh-free configuration rewrite path that allows local users to read sensitive credentials by exploiting default…
CVE-2026-45245 high 7.4 7.4 steipete 20d ago Summarize's hover summary feature allows malicious pages to dispatch synthetic mouseover events over attacker-controlled links
CVE-2026-45244 medium 5.4 5.4 steipete 20d ago Summarize contains a missing authorization vulnerability
CVE-2026-21789 medium 4.6 4.6 20d ago HCL Connections contains a broken access control vulnerability that may allow unauthorized user to update data in certain scenarios.
CVE-2026-45681 medium 5.9 5.9 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the per-CPU message-buffer fallback path uses a 256-byte backup buffer bu…
CVE-2026-45680 high 7.5 7.5 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI replays BPF probe hits into histogram observations by looping once pe…
CVE-2026-45243 medium 6.1 6.1 steipete 20d ago Summarize contains a missing authorization vulnerability
CVE-2026-45242 high 7.1 7.1 steipete 20d ago Summarize contains a path traversal vulnerability
CVE-2026-45231 medium 6.1 6.1 20d ago DumbAssets through 1.0.11 contains a stored cross-site scripting vulnerability in asset fields including name, description, modelNumber, serialNumber, and tags that are stored without server-side san…
CVE-2026-45731 medium 4.9 4.9 wwbn 20d ago WWBN AVideo is an open source video platform. In 29.0 and earlier, view/update.php reads $_POST['updateFile'] as a relative path under updatedb/ and passes it to PHP's file() for line-by-line executi…
CVE-2026-45495 high 8.8 8.8 windows windows microsoft 20d ago Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2026-45494 medium 5.4 5.4 windows windows microsoft 20d ago Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2026-45492 medium 5.4 5.4 windows windows microsoft 20d ago Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network.
CVE-2026-32849 medium 5.5 5.5 20d ago NetBSD prior to commit ec8451e contains a signed integer overflow vulnerability in the cryptodev_op() function in sys/opencrypto/cryptodev.c where the local variable iov_len is declared as a signed i…
CVE-2026-32848 medium 4.7 4.7 20d ago NetBSD prior to commit ec8451e contains a race condition vulnerability in cryptodev_op() within the opencrypto subsystem that allows local attackers to trigger a double-free condition by concurrently…
CVE-2026-29965 medium 6.1 6.1 hsclabs 20d ago HSC MailInspector 5.3.3-7 is vulnerable to Cross Site Scripting (XSS) in the /police/WarningUrlPage.php endpoint due to improper neutralization of user-supplied input that uses alternate or obfuscate…
CVE-2026-29964 medium 6.1 6.1 hsclabs 20d ago HSC MailInspector v5.3.3-7 contains a Cross-Site Scripting (XSS) vulnerability in the /tap/tap.php endpoint due to improper neutralization of user-controlled input using alternate or obfuscated JavaS…
CVE-2026-29963 high 7.5 7.5 hsclabs 20d ago HSC MailInspector 5.3.3-7 has a Path Traversal vulnerability due to improper validation of user-supplied input in the /tap/dw.php endpoint. The text parameter is used to construct file paths without …
CVE-2026-29962 high 7.5 7.5 hsclabs 20d ago HSC MailInspector v5.3.3-7 contains a Local File Inclusion (LFI) vulnerability caused by improper control of user-supplied file paths. The endpoint /vendor/phpunit/phpunit.php processes user-controll…
CVE-2026-45678 high 7.5 7.5 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the Postgres protocol parser assumes BIND message payloads contain a vali…
CVE-2026-45679 medium 6.5 6.5 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI exports raw Redis error text as the span status message. Because Redi…
CVE-2026-45676 medium 5.5 5.5 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI's replacement ELF parser trusts section offsets, counts, and string o…
CVE-2026-45031 medium 5.5 FIX debian debian 20d ago ImageMagick: Policy Bypass in PSD decoder
CVE-2026-42306 high 8.0 20d ago Docker: Race condition in docker cp allows bind mount redirection to host path
CVE-2026-41568 medium 5.5 20d ago Docker: Race condition in docker cp allows creation of arbitrary empty files on the host via symlink swap
CVE-2026-45727 high 8.0 20d ago CloakBrowser is a tool to bypass bot detection tests. Prior to version 0.3.28, the cloakserve CDP multiplexer uses the user-supplied fingerprint query parameter directly as a filesystem path componen…
CVE-2026-45358 medium 5.5 FIX debian debian 20d ago ImageMagick: Out-of-Bounds Read of a single byte in meta encoder
CVE-2026-45359 medium 5.5 FIX debian debian 20d ago ImageMagick: Out-of-Bounds Read in connected components when the user supplies an invalid keep-top define
CVE-2026-41567 high 7.2 7.2 sles 20d ago Moby is an open source container framework. In versions prior to 29.5.1 and in moby/moby v2 prior to v2.0.0-beta.14, when a compressed archive is uploaded to a container via `PUT /containers/{id}/arc…
CVE-2026-45707 high 8.1 8.1 n8n-mcp 20d ago n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior to 2.51.2, when ENABLE_MULTI_TENANT=true, the HTTP transport documents that th…
CVE-2026-45701 medium 5.5 20d ago Sulu is an open-source PHP content management system based on the Symfony framework. Prior to versions 2.6.23 and 3.0.6, the password reset tokenand API key generation uses a weak cryptographical has…
CVE-2026-45327 high 8.2 8.2 20d ago TinyIce is a streaming server for audio and video. In versions 0.8.95 through 2.4.1, missing authentication on WebRTC ingest endpoint allows unauthenticated stream injection. Version 2.5.0 fixes the …
CVE-2026-8843 medium 6.5 6.5 20d ago Creating a "2dsphere_bucket" index on a non-timeseries bucket collection will succeed, but any subsequent attempt to insert a document which triggers updating that index will crash the server. A simi…
CVE-2026-41085 high 8.8 8.8 20d ago Thermo Fisher Scientific Torrent Suite Dx through 5.14.2 has a privilege escalation vulnerability that may allow an authenticated user with limited access privileges to gain unauthorized administrato…
CVE-2026-38719 medium 6.2 6.2 20d ago OpENer v2.3-558-g1e99582 contains an out-of-bounds read vulnerability in the Common Packet Format (CPF) parser, specifically in CreateCommonPacketFormatStructure() in source/src/enet_encap/cpf.c. A c…
CVE-2026-45325 high 8.0 20d ago @tmlmobilidade/utils has prototype pollution in its setValueAtPath
CVE-2026-45302 high 8.2 8.2 20d ago parse-nested-form-data is a tiny node module for parsing FormData by name into objects and arrays. Prior to version 1.0.1, parseFormData() walks bracket and dot-notation FormData field names into nes…
CVE-2026-45300 high 7.4 7.4 debian debian 20d ago The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. Versions on the 2.x branch prior to 2.15.0 and the 3.x branch pri…
CVE-2026-46385 high 8.0 20d ago iskorotkov/avro is a fast Go Avro codec. Prior to 2.33.0, the Avro array and map decoders looped over an attacker-controlled block-count value without checking the underlying reader's error state ins…
CVE-2026-45270 high 8.0 20d ago CI4MS: Stored XSS in Pages Module Content via Broken html_purify Validation Rule
CVE-2026-46384 high 8.0 20d ago iskorotkov/avro is a fast Go Avro codec. Prior to 2.33.0, several Avro decoder paths read attacker-controlled 64-bit values from the wire format and either narrowed them to platform-sized int before …
CVE-2026-45149 high 7.5 7.5 debian debian juliangruber 20d ago The brace-expansion library generates arbitrary strings containing a common prefix and suffix. From 5.0.0 to before 5.0.6, the max option was being applied too late. When expanding a single large num…
CVE-2026-45139 medium 5.5 20d ago CI4MS Fileeditor allows deletion and rename of critical application files due to missing extension allowlist on destructive operations
CVE-2026-36438 medium 5.3 5.3 20d ago An issue in Intelbras VIP-1230-D-G4 Version V2.800.00IB00C.0.T allows a remote attacker to obtain sensitive information via password reset functionality under /OutsideCmd
CVE-2026-20685 medium 6.5 6.5 20d ago An attacker in a privileged network position may be able to leak sensitive information. A path handling issue was addressed with improved validation. This issue is fixed in PCC Release 5E290.3.
CVE-2025-57282 high 8.8 8.8 20d ago ngrok is Vulnerable to Command Injection
CVE-2025-56352 high 7.5 7.5 20d ago In tinyMQTT commit 6226ade15bd4f97be2d196352e64dd10937c1962 (2024-02-18), the broker mishandles protocol violations during CONNECT packet parsing. When receiving a CONNECT packet with a zero-length C…
CVE-2026-45138 medium 5.5 20d ago CI4MS: Stored XSS in Blog Content via Broken `html_purify` Validation Rule
CVE-2026-45660 medium 5.4 5.4 20d ago Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.73.22 and 6.18.1, the Glide image proxy's URL validation could be bypassed using an IP representation that wasn't nor…
CVE-2026-42326 medium 5.5 FIX debian debian 20d ago ImageMagick: Heap Buffer Over-Read in IPTC encoder
CVE-2026-41949 high 7.5 7.5 dify 20d ago Dify before version 1.14.2 contains an authorization bypass vulnerability in the file preview endpoint that allows any authenticated user to read up to 3,000 characters of any uploaded document acros…
CVE-2026-39079 high 7.5 7.5 20d ago An issue in prestashop upsshipping all versions through at least 2.4.0 allows a remote attacker to obtain sensitive information via the /modules/upsshipping/logs/, and /modules/upsshipping/lib/UPSBas…
CVE-2026-26462 high 7.3 7.3 20d ago Offline Hospital Management System 5.3.0 allows remote code execution due to an improper Electron renderer configuration. The application enables Node.js integration while disabling context isolation…
CVE-2026-45577 medium 5.5 20d ago Neotoma provides versioned records that persist across agent runs. From 0.6.0 to before 0.11.1, Neotoma can treat public reverse-proxied requests as local when the app receives them over a loopback s…
CVE-2026-45627 high 8.2 8.2 20d ago Arcane is an interface for managing Docker containers, images, networks, and volumes. Prior to 1.19.0, the unauthenticated GET /api/app-images/logo endpoint reflects a user-supplied color query param…
CVE-2026-45626 medium 6.3 6.3 20d ago Arcane is an interface for managing Docker containers, images, networks, and volumes. In 1.18.1 and earlier, GET /environments/{id}/volumes/{volumeName}/browse accepts a path query parameter that is …
CVE-2026-45135 high 8.0 20d ago Caddy: Unsafe Unicode Handling in FastCGI splitPos Allows Execution of Non-PHP Files
CVE-2026-45620 medium 5.3 5.3 wwbn 20d ago WWBN AVideo is an open source video platform. In 29.0 and earlier, objects/mention.json.php has no User::loginCheck() or admin gate. It only has an entry guard: preg_match('/^@/', $_REQUEST['term']) …
CVE-2026-45609 medium 6.5 6.5 springaicommunity 20d ago mcp-security provides Security and Authorization support for Model Context Protocol in Spring AI. Prior to 0.1.9, the mcp-security framework fails to implement the mandatory SSRF mitigations outlined…
CVE-2026-46510 high 8.2 8.2 20d ago form-data-objectizer converts FormData to object. Prior to 1.0.1, form-data-objectizer walks bracket-notation form keys (e.g. name[sub]) into nested objects without filtering __proto__, constructor, …
CVE-2026-45582 medium 6.5 6.5 n8n-mcp 20d ago n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior to 2.51.3, the workflow telemetry sanitizer could retain partial fragments of …
CVE-2026-42009 high 7.5 7.5 FIX debian debian sleswindows windows 20d ago RHSA-2026:20612: gnutls security update (Important)
CVE-2026-8802 medium 4.3 4.3 20d ago A vulnerability was detected in opensourcepos Open Source Point of Sale up to 3.4.2. This issue affects the function getPicThumb of the file app/Controllers/Items.php. The manipulation of the argumen…
CVE-2026-41119 medium 6.8 6.8 20d ago Dell Live Optics Windows and Personal Edition collectors contain an improper certificate validation vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability leadi…
CVE-2026-7498 high 8.8 8.8 20d ago Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Basamak Information Technology Consulting and Organization Trade Ltd. Co. DernekWeb allows Stored…
CVE-2026-6347 high 7.6 7.6 mattermost 20d ago Mattermost doesn't sanitize sensitive configuration fields in the Mattermost Calls plugin
CVE-2026-6346 high 8.7 8.7 mattermost 20d ago Mattermost doesn't sanitize sensitive configuration fields before including them in support packet generation
CVE-2026-6345 medium 6.5 6.5 mattermost 20d ago Mattermost doesn't prevent disclosure of created user password
CVE-2026-6343 medium 4.3 4.3 mattermost 20d ago Mattermost doesn't check public/private permissions
CVE-2026-6339 medium 4.3 4.3 mattermost 20d ago Mattermost doesn't validate the X-Requested-With header on the burn-on-read reveal endpoint
CVE-2026-6333 medium 5.0 5.0 mattermost 20d ago Mattermost doesn't validate the Host header when constructing response URLs for custom slash command
CVE-2026-5163 medium 6.5 6.5 mattermost 20d ago Mattermost doesn't verify channel membership when processing AI-assisted message rewrites
CVE-2026-4286 medium 4.3 4.3 mattermost 20d ago Mattermost doesn't check if {{team_id}} was being changed when updating playbooks
CVE-2026-3471 medium 6.5 6.5 mattermost 20d ago Mattermost Desktop App versions <=6.1 6.0.1 5.4.13.0 fail to prevent an invalid URL from loading in a pop-up window in the Mattermost Desktop App which allows a malicious server owner to repeated cra…
CVE-2026-3117 medium 6.5 6.5 mattermost 20d ago Mattermost Plugins versions <=11.5 11.1.5 10.13.11 11.3.4.0 fail to properly check for permissions when processing commands in the Gitlab plugin which allows normal users to uninstall instances or se…
CVE-2026-28732 medium 4.3 4.3 mattermost 20d ago Mattermost doesn't enforce slash command trigger-word uniqueness during command updates
CVE-2026-8788 high 7.3 7.3 20d ago Net::Statsd::Lite versions through 0.10.0 for Perl allowed metric injections. The values from the set_add method were not checked for newlines, colons or pipes. Metrics generated from untrusted sour…
CVE-2026-6342 medium 4.3 4.3 mattermost 20d ago Mattermost Plugins versions <=11.5 11.1.5 10.13.11 11.3.4.0 fail to appropriately check for valid namespaces which allows plugin users to create subscriptions to groups that were not whitelisted via …
CVE-2026-6341 medium 4.3 4.3 mattermost 20d ago Mattermost Plugins versions <=11.5 11.1.5 10.13.11 11.3.4.0 fail to have API-level checks on which groups the user can create issues or attach comments to which allows a user that is member of multip…
CVE-2026-6340 medium 6.5 6.5 mattermost 20d ago Mattermost doesn't validate 7zip archive structure before processing
CVE-2026-4273 medium 4.3 4.3 mattermost 20d ago Mattermost doesn't validate that the RefreshedToken differs from the original invite token during remote cluster invite confirmation
CVE-2026-3637 medium 4.3 4.3 mattermost 20d ago Mattermost doesn't check the create_post channel permission during post edit operations
CVE-2026-3495 medium 4.8 4.8 mattermost 20d ago Mattermost doesn't escape some variables that could contain malicious content during error page composition