CVE Datenbank
Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.
CVE-2026-11028 - Use after free in Media in Google Chrome on Linux and ChromeOS prior to 149.0.7827.53 allowed a remo
CVE-2026-11027 - Insufficient validation of untrusted input in Glic in Google Chrome prior to 149.0.7827.53 allowed a
CVE-2026-11026 - Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attack
CVE-2026-11025 - Insufficient policy enforcement in Navigation in Google Chrome on Android prior to 149.0.7827.53 all
CVE-2026-11024 - Stack buffer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to p
CVE-2026-11023 - Inappropriate implementation in WebAppInstalls in Google Chrome prior to 149.0.7827.53 allowed a rem
CVE-2026-11022 - Insufficient validation of untrusted input in DevTools in Google Chrome prior to 149.0.7827.53 allow
CVE-2026-11021 - Insufficient validation of untrusted input in GPU in Google Chrome on Windows prior to 149.0.7827.53
CVE-2026-11020 - Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote
CVE-2026-11019 - Inappropriate implementation in Payments in Google Chrome on Android prior to 149.0.7827.53 allowed
CVE-2026-11018 - Insufficient policy enforcement in Actor in Google Chrome prior to 149.0.7827.53 allowed a remote at
CVE-2026-11017 - Inappropriate implementation in Link Preview in Google Chrome prior to 149.0.7827.53 allowed a remot
CVE-2026-11016 - Insufficient validation of untrusted input in Network in Google Chrome prior to 149.0.7827.53 allowe
CVE-2026-11015 - Out of bounds read in WebGPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to pe
CVE-2026-11014 - Insufficient policy enforcement in Extensions in Google Chrome prior to 149.0.7827.53 allowed an att
CVE-2026-11013 - Insufficient validation of untrusted input in Network in Google Chrome prior to 149.0.7827.53 allowe
CVE-2026-11012 - Use after free in Serial in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacke
CVE-2026-11011 - Insufficient policy enforcement in Password Manager in Google Chrome prior to 149.0.7827.53 allowed
CVE-2026-11010 - Use after free in WebShare in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attac
CVE-2026-11009 - Use after free in USB in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker t
CVE-2026-11008 - Insufficient validation of untrusted input in WebAppInstalls in Google Chrome prior to 149.0.7827.53
CVE-2026-11007 - Insufficient validation of untrusted input in WebView in Google Chrome on Android prior to 149.0.782
CVE-2026-11006 - Out of bounds read in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perf
CVE-2026-11005 - Out of bounds read in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote atta
CVE-2026-11004 - Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who ha
CVE-2026-11003 - Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execut
CVE-2026-11002 - Use after free in Autofill in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had
CVE-2026-11001 - Inappropriate implementation in Payments in Google Chrome prior to 149.0.7827.53 allowed a remote at
CVE-2026-11000 - Use after free in Fonts in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker t
CVE-2026-10999 - Integer overflow in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attack
CVE-2026-10998 - Out of bounds read in Media in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local
CVE-2026-10997 - Insufficient policy enforcement in Extensions in Google Chrome prior to 149.0.7827.53 allowed an att
CVE-2026-10996 - Inappropriate implementation in Workers in Google Chrome prior to 149.0.7827.53 allowed a remote att
CVE-2026-10995 - Heap buffer overflow in TabStrip in Google Chrome prior to 149.0.7827.53 allowed a remote attacker w
CVE-2026-10994 - Uninitialized Use in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obta
CVE-2026-10993 - Heap buffer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to ob
CVE-2026-10992 - Insufficient data validation in Animation in Google Chrome prior to 149.0.7827.53 allowed a remote a
CVE-2026-10991 - Use after free in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced
CVE-2026-10990 - Use after free in Glic in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had com
CVE-2026-10989 - Inappropriate implementation in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10988 - Use after free in Views in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had co
CVE-2026-10987 - Integer overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute
CVE-2026-10986 - Integer overflow in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execu
CVE-2026-10985 - Out of bounds read in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak
CVE-2026-10984 - Inappropriate implementation in Accessibility in Google Chrome on Android prior to 149.0.7827.53 all
CVE-2026-10983 - Insufficient validation of untrusted input in Dawn in Google Chrome prior to 149.0.7827.53 allowed a
CVE-2026-10982 - Use after free in WebXR in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute
CVE-2026-10981 - Insufficient validation of untrusted input in Codecs in Google Chrome prior to 149.0.7827.53 allowed
CVE-2026-10980 - Insufficient validation of untrusted input in DevTools in Google Chrome prior to 149.0.7827.53 allow
CVE-2026-10979 - Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obt
CVE-2026-10978 - Use after free in Chromoting in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote att
CVE-2026-10977 - Uninitialized Use in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had
CVE-2026-10976 - Uninitialized Use in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtai
CVE-2026-10975 - Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execut
CVE-2026-10974 - Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 149.0.7827.53 allowed
CVE-2026-10973 - Uninitialized Use in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak
CVE-2026-10972 - Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker t
CVE-2026-10971 - Insufficient validation of untrusted input in Printing in Google Chrome on Windows prior to 149.0.78
CVE-2026-10970 - Insufficient validation of untrusted input in InterestGroups in Google Chrome prior to 149.0.7827.53
CVE-2026-10969 - Insufficient validation of untrusted input in Extensions in Google Chrome prior to 149.0.7827.53 all
CVE-2026-10968 - Insufficient validation of untrusted input in Dawn in Google Chrome on Windows prior to 149.0.7827.5
CVE-2026-10967 - Use after free in SurfaceCapture in Google Chrome on Android prior to 149.0.7827.53 allowed a remote
CVE-2026-10966 - Inappropriate implementation in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote atta
CVE-2026-10965 - Integer overflow in DevTools in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to ex
CVE-2026-10964 - Integer overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute
CVE-2026-10963 - Integer overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute
CVE-2026-10962 - Type Confusion in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute
CVE-2026-10961 - Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote att
CVE-2026-10960 - Uninitialized Use in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who ha
CVE-2026-10959 - Use after free in Input in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10958 - Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote att
CVE-2026-10957 - Use after free in Glic in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute
CVE-2026-10956 - Use after free in MimeHandlerView in Google Chrome prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10955 - Type Confusion in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10954 - Use after free in Actor in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute
CVE-2026-10953 - Use after free in Core in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10952 - Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote att
CVE-2026-10951 - Use after free in Autofill in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10950 - Insufficient policy enforcement in Autofill in Google Chrome on iOS prior to 149.0.7827.53 allowed a
CVE-2026-10949 - Heap buffer overflow in Video in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who
CVE-2026-10948 - Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execut
CVE-2026-10947 - Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execut
CVE-2026-10946 - Heap buffer overflow in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who
CVE-2026-10945 - Use after free in PDF in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convince
CVE-2026-10944 - Insufficient policy enforcement in Autofill in Google Chrome on iOS prior to 149.0.7827.53 allowed a
CVE-2026-10943 - Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execut
CVE-2026-10942 - Inappropriate implementation in UI in Google Chrome on Windows prior to 149.0.7827.53 allowed a loca
CVE-2026-10941 - Out of bounds memory access in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacke
CVE-2026-10940 - Race in Codecs in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had
CVE-2026-10939 - Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execut
CVE-2026-10938 - Inappropriate implementation in Input in Google Chrome prior to 149.0.7827.53 allowed a remote attac
CVE-2026-10937 - Inappropriate implementation in Passwords in Google Chrome prior to 149.0.7827.53 allowed a remote a
CVE-2026-10936 - Type Confusion in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute ar
CVE-2026-10935 - Type Confusion in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute ar
CVE-2026-10934 - Use after free in Autofill in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attac
CVE-2026-10933 - Use after free in Audio in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10932 - Use after free in UI in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to
CVE-2026-10931 - Use after free in FileSystem in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to po
CVE-2026-10930 - Out of bounds read in ANGLE in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10929 - Heap buffer overflow in ANGLE in Google Chrome on Android prior to 149.0.7827.53 allowed a remote at
CVE-2026-10928 - Script injection in Headless in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to ex
CVE-2026-10927 - Out of bounds read in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had
CVE-2026-10926 - Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local netw
CVE-2026-10925 - Out of bounds write in Skia in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10924 - Integer overflow in Chromecast in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who
CVE-2026-10923 - Use after free in WebAppInstalls in Google Chrome on Android prior to 149.0.7827.53 allowed a local
CVE-2026-10922 - Insufficient validation of untrusted input in DevTools in Google Chrome prior to 149.0.7827.53 allow
CVE-2026-10921 - Integer overflow in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had c
CVE-2026-10920 - Insufficient validation of untrusted input in WebShare in Google Chrome on Mac prior to 149.0.7827.5
CVE-2026-10919 - Use after free in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had co
CVE-2026-10918 - Use after free in Viz in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had comp
CVE-2026-10917 - Insufficient validation of untrusted input in Media in Google Chrome prior to 149.0.7827.53 allowed
CVE-2026-10916 - Insufficient validation of untrusted input in DevTools in Google Chrome prior to 149.0.7827.53 allow
CVE-2026-10915 - Use after free in Core in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker who
CVE-2026-10914 - Use after free in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10913 - Use after free in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10912 - Insufficient validation of untrusted input in Extensions in Google Chrome prior to 149.0.7827.53 all
CVE-2026-10911 - Insufficient validation of untrusted input in Media in Google Chrome prior to 149.0.7827.53 allowed
CVE-2026-10910 - Type Confusion in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute ar
CVE-2026-10909 - Use after free in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had com
CVE-2026-10908 - Use after free in FullScreen in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote att
CVE-2026-10907 - Out of bounds write in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to po
CVE-2026-10906 - Use after free in WebAuthentication in Google Chrome prior to 149.0.7827.53 allowed a remote attacke
CVE-2026-10905 - Use after free in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had
CVE-2026-10904 - Inappropriate implementation in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10903 - Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execut
CVE-2026-10902 - Use after free in Ozone in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute
CVE-2026-10901 - Use after free in Passwords in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10900 - Use after free in Passwords in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker
CVE-2026-10899 - Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker w
CVE-2026-10898 - Stack buffer overflow in GPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who h
CVE-2026-10897 - Inappropriate implementation in GPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacke
CVE-2026-10896 - Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote att
CVE-2026-10895 - Use after free in Ozone in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute
CVE-2026-10894 - Use after free in Printing in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacke
CVE-2026-10893 - Use after free in Chromoting in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to ex
CVE-2026-10892 - Out of bounds write in GPU in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attac
CVE-2026-10891 - Use after free in GFX in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to
CVE-2026-10890 - Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local netw
CVE-2026-10889 - Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who ha
CVE-2026-10888 - Use after free in Cast Streaming in Google Chrome prior to 149.0.7827.53 allowed an attacker on the
CVE-2026-10887 - Use after free in Chromoting in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacke
CVE-2026-10886 - Use after free in FileSystem in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to po
CVE-2026-10885 - Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote att
CVE-2026-10884 - Use after free in Chromecast in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who h
CVE-2026-10883 - Type Confusion in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potenti
CVE-2026-10882 - Use after free in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execu
CVE-2026-10881 - Out of bounds read and write in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attac
CVE-2026-10875 - A security flaw has been discovered in projectworlds Online Art Gallery Shop Project 1.0. The impact
CVE-2026-10874 - A vulnerability was identified in projectworlds Online Art Gallery Shop Project 1.0. The affected el
CVE-2026-10873 - A vulnerability was determined in Shibby Tomato 1.28.0000. Impacted is the function rstats_path of t
CVE-2026-10872 - A vulnerability was found in Shibby Tomato 1.28.0000. This issue affects the function start_vpnserve
CVE-2025-8873 - On affected platforms running Arista EOS with IPsec configured, a specially crafted packet can cause
CVE-2024-27892 - Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when
CVE-2024-27891 - On affected platforms running Arista EOS with MACsec and egress ACLs configured on the same interfac
CVE-2024-27890 - Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when
CVE-2023-5502 - On affected platforms running Arista EOS with 802.1x authentication configured on the access/trunk p
CVE-2026-42547 - IRIS is a web collaborative platform that helps incident responders share technical details during i
CVE-2026-42543 - IRIS is a web collaborative platform that helps incident responders share technical details during i
CVE-2026-42540 - IRIS is a web collaborative platform that helps incident responders share technical details during i
CVE-2026-42539 - IRIS is a web collaborative platform that helps incident responders share technical details during i
CVE-2026-11322 - Hermes WebUI prior to v0.51.221 contains a path traversal vulnerability that allows attackers to esc
CVE-2026-10871 - A vulnerability has been found in Shibby Tomato 1.28.0000. This vulnerability affects the function s
CVE-2024-6858 - In Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a s
CVE-2026-5066 - A potential out-of-bounds write/read exists in the TLS socket connect path of the network sockets su
CVE-2026-42538 - IRIS is a web collaborative platform that helps incident responders share technical details during i
CVE-2026-42329 - Iris is a web collaborative platform that helps incident responders share technical details during i
CVE-2026-10870 - A flaw has been found in Shibby Tomato 1.28.0000. This affects the function start_dhcpc of the file
CVE-2026-5589 - An integer underflow in bt_mesh_sol_recv() in the Bluetooth Mesh solicitation handling (subsys/bluet
CVE-2026-41522 - Iris is a web collaborative platform that helps incident responders share technical details during i
CVE-2026-41518 - Chartbrew is an open-source web application that can connect directly to databases and APIs and use
CVE-2026-41249 - CoreShop is a Pimcore enhanced eCommerce solution. In versions 5.0.1 through 5.1.0-beta.1,, the GitH
CVE-2026-21404 - NAVTOR NavBox through version 4.16.1.20 contains hard-coded credentials within its Windows Communica
CVE-2026-48480 - The netty incubator codec.bhttp is a java language binary http parser. Prior to version 0.0.22.FInal
CVE-2026-41237 - Froxlor is open source server administration software. In version 2.3.6 and earlier, the LOC record
CVE-2026-41236 - Froxlor is open source server administration software. Version 2.3.6 contains a symlink-following fl
CVE-2026-41235 - Froxlor is open source server administration software. Version 2.3.6 lets administrators configure `
CVE-2026-41234 - Froxlor is open source server administration software. Prior to version 2.3.7, the `DomainZones.add`
CVE-2026-40898 - quic-go is an implementation of the QUIC protocol in Go. Prior to version 0.59.1, an attacker can ca
CVE-2026-36499 - A missing upper-bound check in the udpif_set_threads() function of Open vSwitch v3.6.90 allows an at
CVE-2025-71316 - SQLite 'sqldiff.exe' does not securely handle the way the Microsoft Windows C runtime converts Unico
CVE-2025-65640 - Cross Site Scripting (XSS) vulnerability in the "Task in Progress / Recent" page in Arket Globe Docu
CVE-2026-50292 - In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can
CVE-2026-48040 - The netty incubator codec.bhttp is a java language binary http parser. The library implements Oblivi
CVE-2026-41207 - The netty incubator codec.bhttp is a java language binary http parser. Prior to version 0.0.21.Final
CVE-2026-25551 - Seagull Software BarTender 2021 R1 through 12.0.1 contains an insecure deserialization vulnerability
CVE-2026-25550 - Seagull Software BarTender 2010, 2016, and 2019 contain an unauthenticated remote code execution vul
CVE-2026-10880 - OSNexus QuantaStor SDS Manager is vulnerable to SQL injection in the login endpoint. The username fi
CVE-2026-10796 - nvm (Node Version Manager) through 0.40.4 executes arbitrary commands from version strings supplied
CVE-2025-69755 - An issue in Neterbit NW-431F Router vNW-431F-20241014-IR03 allows a remote attacker to obtain sensit
CVE-2025-67448 - The SMS module in Neterbit NW-431F Router 20241014-IR03 and before is vulnerable to stored XSS. The
CVE-2025-67447 - The network diagnosis (ping) module in Neterbit NW-431F Router 20241014-IR03 and before is vulnerabl
CVE-2026-50266 - In OpenStack Neutron before 28.0.1, a project manager can create or update a port on a shared networ
CVE-2026-50076 - Deserialization of Untrusted Data in the Java replace-resolve path in Apache Fory fory-core Java SDK
CVE-2026-49942 - Net::CIDR::Set versions through 0.20 for Perl did not validate network masks. The mask portion of a
CVE-2026-49941 - Net::CIDR::Set versions through 0.20 for Perl did not validate IP addresses. The add method called
CVE-2026-49940 - Net::CIDR::Set versions through 0.20 for Perl accept non-ASCII IP addresses and netmasks. Unicode d
CVE-2026-46741 - Etsy::StatsD versions through 1.002002 for Perl allow metric injections. The metric names and value
CVE-2026-46739 - Net::Statsd versions before 0.13 for Perl allow metric injections. The metric names are not checked
CVE-2025-67446 - Improper Authentication (Authentication Bypass) exists in Neterbit NW-431F Router 20241014-IR03 and
CVE-2026-7774 - tarfile.data_filter could be bypassed using crafted link entries, including symlinks with empty or d
CVE-2026-5228 - Improper Access Control, Missing Authorization vulnerability in Kurt Software Studio WriteUp Mobile
CVE-2026-45287 - OpenTelemetry-Go is the Go implementation of OpenTelemetry. Prior to version 0.0.17, `go.opentelemet
CVE-2026-44393 - An issue was discovered in OpenStack oslo.messaging 1.0.0 through 17.3.0. The oslo.messaging RabbitM
CVE-2026-43986 - Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.1
CVE-2026-43985 - Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.1
CVE-2026-43984 - Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.1
CVE-2026-41178 - OpenTelemetry-Go is the Go implementation of OpenTelemetry. Versions 1.41.0 and 1.43.0 removed raw-l
CVE-2026-40930 - LIBPNG is a reference library for use in applications that process PNG (Portable Network Graphics) r
CVE-2026-38570 - bacnet_stack 1.3.1 contains an Out-of-bounds Read in bacnet_tag_number_decode which allows attackers
CVE-2026-36182 - GNCC GP5 v7.1.76 was discovered to utilize a weak hashing algorithm to protect the root password, po
CVE-2026-10868 - A mass assignment vulnerability exists in the MISP user edit functionality due to insufficient filte
CVE-2026-10815 - A vulnerability was found in LakshayD02 Hostel-Management-System-PHP up to f87e67c283bab6f718faf2fec
CVE-2026-10814 - A vulnerability has been found in milvus-io milvus up to 2.6.13. This vulnerability affects unknown
CVE-2026-10813 - A flaw has been found in LMCache up to 0.4.6. This affects the function hex_hash_to_int16 of the fil
CVE-2026-47707 - Strawberry GraphQL is a library for creating GraphQL APIs. In versions 0.172.0 through0.315.6, the M
CVE-2026-47706 - Strawberry GraphQL is a library for creating GraphQL APIs. In versions 0.71.0 through 0.315.6, the Q
CVE-2026-45739 - Strawberry GraphQL is a library for creating GraphQL APIs. In versions 0.288.4 through 0.315.3, Stra
CVE-2026-41065 - Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.1
CVE-2026-36180 - A lack of runtime integrity in GNCC GP5 v7.1.76 allows physically-proximate attackers to bypass file
CVE-2026-36178 - The factory reset functionality in GNCC GP5 v7.1.76 fails to clear sensitive cryptographic material
CVE-2026-36176 - GNCC GP5 v7.1.76 was discovered to store pre-signed Backblaze B2 upload URLs (PUT requests) in plain
CVE-2026-36175 - An issue in the U-Boot component of GNCC GP5 v7.1.76 allows physically-proximate attackers to bypass
CVE-2026-36174 - GNCC GP5 v7.1.76 was discovered to store sensitive wireless network information in plaintext during
CVE-2026-35906 - An undocumented debug CGI endpoint in T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03 allow
CVE-2026-35905 - T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03, and T7281 v1.0.03 were discovered to conta
CVE-2026-35904 - Incorrect access control in the web management interface of T3 Technology CPE models T625Pro v1.0.07
CVE-2026-28318 - SolarWinds Serv-U is susceptible to specially crafted POST requests that crash the Serv-U service wi
CVE-2026-10864 - A vulnerability in the MISP dashboard widgets allowed an authenticated user to manipulate the fields
CVE-2026-10863 - A security issue was fixed in the correlations over-correlation endpoint where the order query param
CVE-2026-10860 - A logic error in the MISP CRUD component delete handler allowed validation failures to be bypassed w
CVE-2026-10812 - A vulnerability was detected in zilliztech GPTCache up to 0.1.44. Affected by this issue is the func
CVE-2026-10811 - A security vulnerability has been detected in itsourcecode Fees Management System 1.0. Affected by t
CVE-2026-8762 - Rejected reason: After analysis, the originally reported behaviour was determined not to constitute
CVE-2026-8037 - OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an u
CVE-2026-45433 - This vulnerability exists in GX Earth 2022 ONT models due to the presence of hardcoded RSA private k
CVE-2026-43926 - FOSSBilling is a free, open-source billing and client management system. Prior to version 0.8.0, the
CVE-2026-40605 - Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to version 2.17
CVE-2026-10861 - An open redirect vulnerability existed in MISP UsersController::routeafterlogin() because the value
CVE-2026-10856 - A URL validation flaw in the MISP dashboard button widget allowed a crafted relative-looking URL to
CVE-2026-10855 - An authorization flaw existed in the MISP Event Template Importer overwrite workflow. When importing
CVE-2026-10854 - A visibility control issue in the event template creation workflow allowed non-site-admin users to a
CVE-2026-10810 - A weakness has been identified in itsourcecode Fees Management System up to 1.0. Affected is an unkn
CVE-2026-10809 - A security flaw has been discovered in itsourcecode Fees Management System 1.0. This impacts an unkn
CVE-2026-10808 - A vulnerability was identified in itsourcecode Fees Management System 1.0. This affects an unknown f
CVE-2026-10807 - A vulnerability was determined in mjperpinosa stumasy. The impacted element is an unknown function o
CVE-2026-10806 - A vulnerability was found in mjperpinosa stumasy. The affected element is an unknown function of the
CVE-2025-62338 - HCL BigFix Cloud Lifecycle Management is affected by lack of input validation. This low-level flaw
CVE-2025-59874 - HCL Hive Telco Observability is affected by a Required directives missing from the CSP issue is det
CVE-2025-46638 - Dell BSAFE SSL-J contains an allocation of resources without limits or throttling vulnerability. An
🏢 CVE nach Hersteller
Empfohlene Sicherheitstools
Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.