CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
27071 CVEs gefunden (Seite 108/109)

CVE-2026-48229 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in routes_i.

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48228 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in patient_w

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48227 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in patient.p

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48226 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in os_watch.

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48225 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in landb.php

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48224 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in ics214.ph

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48223 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in ics213rr.

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48222 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in ics213.ph

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48221 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in ics205a.p

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48220 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in ics205.ph

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48219 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in ics202.ph

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48218 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in icons/but

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48217 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in delete_mo

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48216 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in db_loader

🏢 Suse 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48215 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in circle.ph

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48214 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in add_nm.ph

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-39593 - Missing Authorization vulnerability in VillaTheme HAPPY allows Exploiting Incorrectly Configured Acc

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-48213 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in add.php t

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-48207 - Deserialization of untrusted data in Apache Fory PyFory. PyFory's ReduceSerializer could bypass docu

🏢 Apache 📅 21.5.2026 📊 CVSS: 9.8
9.8

CVE-2026-9089 - The ConnectWise Automate™ Agent does not fully verify the authenticity of components obtained during

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-39531 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 9.3
9.3

CVE-2026-36189 - Buffer Overflow vulnerability in Uncrustify Project Affected v.Uncrustify_d-0.82.0-132-bcc41cbdc and

🏢 F5 📅 21.5.2026 📊 CVSS: 6.2
6.2

CVE-2026-1816 - Improper restriction of excessive authentication attempts vulnerability in Turkiye Electricity Trans

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.3
6.3

CVE-2026-1815 - Insufficient session expiration vulnerability in Turkiye Electricity Transmission Corporation (TEİAŞ

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.7
5.7

CVE-2026-45208 - A time-of-check time-of-use vulnerability in the Apex One/SEP agent could allow a local attacker to

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-45207 - An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalat

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-45206 - An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalat

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-34930 - An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalat

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-34929 - An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalat

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-34928 - An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalat

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-34927 - An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalat

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-34926 - A directory traversal vulnerability in the Apex One (on-premise) server could allow a pre-authentica

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.7
6.7

CVE-2026-2740 - Zohocorp ManageEngine ADSelfService Plus version before 6525, DataSecurity Plus before 6264 and Reco

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 8.4
8.4

CVE-2025-71217 - An origin validation error vulnerability in the Trend Micro Apex One (mac) agent self-protection mec

🏢 Trend micro 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2025-71216 - A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) agent cache mechanism co

🏢 Trend micro 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2025-71215 - A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) agent iCore service sign

🏢 Trend micro 📅 21.5.2026 📊 CVSS: 7.0
7.0

CVE-2025-71214 - An origin validation error vulnerability in the Trend Micro Apex One (mac) agent iCore service could

🏢 Trend micro 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2025-71213 - An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to esc

🏢 Trend micro 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2025-71212 - A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker

🏢 Trend micro 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2025-71211 - A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to uplo

🏢 Trend micro 📅 21.5.2026 📊 CVSS: 9.8
9.8

CVE-2025-71210 - A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to uplo

🏢 Trend micro 📅 21.5.2026 📊 CVSS: 9.8
9.8

CVE-2025-13479 - Authorization bypass through User-Controlled key vulnerability in PosCube Hardware Software and Cons

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.5
7.5

CVE-2025-13477 - Exposure of private personal information to an unauthorized actor, Insufficiently Protected Credenti

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.1
7.1

CVE-2026-6841 - Request Tracker is vulnerable to a reflected cross-site scripting (XSS) vulnerability via the "Page"

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.1
6.1

CVE-2026-5118 - The Divi Form Builder plugin for WordPress is vulnerable to privilege escalation in versions up to,

🏢 Wordpress 📅 21.5.2026 📊 CVSS: 9.8
9.8

CVE-2026-45760 - (Externally Controlled Reference to a Resource in Another Sphere), (Authorization Bypass Through Use

🏢 Apache 📅 21.5.2026 📊 CVSS: 8.1
8.1

CVE-2026-43502 - In the Linux kernel, the following vulnerability has been resolved: net/rds: handle zerocopy send c

🏢 Linux 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-43501 - In the Linux kernel, the following vulnerability has been resolved: ipv6: rpl: reserve mac_len head

🏢 Linux 📅 21.5.2026 📊 CVSS: 9.8
9.8

CVE-2026-43499 - In the Linux kernel, the following vulnerability has been resolved: rtmutex: Use waiter::task inste

🏢 Linux 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-43498 - In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Disallow re-exporti

🏢 Linux 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-43497 - In the Linux kernel, the following vulnerability has been resolved: fbdev: udlfb: add vm_ops to dlf

🏢 Linux 📅 21.5.2026 📊 CVSS: 7.3
7.3

CVE-2026-43496 - In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_red: Replace dir

🏢 F5 📅 21.5.2026 📊 CVSS: 5.5
5.5

CVE-2026-43495 - In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: validate port_

🏢 Linux 📅 21.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-43494 - In the Linux kernel, the following vulnerability has been resolved: net/rds: reset op_nents when ze

🏢 Linux 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-0393 - The affected product may expose credentials remotely between low privileged visualization users duri

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-45255 - When bsdinstall or bsdconfig are prompted to scan for nearby Wi-Fi networks, they build up a list of

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-45254 - In the case of the cap_net service, when a key present in the old limit was omitted from the new lim

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-45253 - ptrace(PT_SC_REMOTE) failed to properly validate parameters for the syscall(2) and __syscall(2) meta

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 8.4
8.4

CVE-2026-45252 - When a fusefs file system implements extended attributes, the kernel may send a FUSE_LISTXATTR messa

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.5
5.5

CVE-2026-45251 - A file descriptor can be closed while a thread is blocked in a poll(2) or select(2) call waiting for

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-42396 - Insufficient Validation of Member Zone Data May Cause Catalog Zone Transfer to Fail

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 4.9
4.9

CVE-2026-42002 - Concurrency and locking defects in GSS-TSIG

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.9
5.9

CVE-2026-42001 - Insufficient Validation of Autoprimary SOA Queries

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-42000 - Insufficient Validation of Names During AXFR

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.8
6.8

CVE-2026-41999 - Incorrect Behaviour of Views with TCP PROXY Requests

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 4.8
4.8

CVE-2026-39461 - libcasper(3) communicates with helper processes via UNIX domain sockets, and uses the select(2) syst

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-28764 - MediaArea MediaInfoLib LXF element parsing heap-based buffer overflow vulnerability

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-9157 - Improper input validation, Unrestricted upload of file with dangerous type vulnerability in Gmission

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 8.4
8.4

CVE-2026-7837 - A time-of-check time-of-use (TOCTOU) condition in the ad_flush function in Netatalk 3.0.0 through 4.

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 3.7
3.7

CVE-2026-5434 - Honeywell Control Network Module (CNM) contains insertion of sensitive information into an unintende

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.9
5.9

CVE-2026-5433 - Honeywell Control Network Module (CNM) contains command injection vulnerability in the web interface

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 9.1
9.1

CVE-2026-4858 - Mattermost versions 11.6.x <= 11.6.0, 11.5.x <= 11.5.3, 11.4.x <= 11.4.4, 10.11.x <= 10.11.14 fail t

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 8.0
8.0

CVE-2026-45250 - The setcred(2) system call is only available to privileged users. However, before the privilege lev

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-44075 - A missing break statement in DSI OpenSession processing in Netatalk 1.5.0 through 4.4.2 causes a DSI

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 3.7
3.7

CVE-2026-44074 - Netatalk 2.1.0 through 4.4.2 combines multiple errno values using bitwise OR, resulting in incorrect

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 3.7
3.7

CVE-2026-44071 - Netatalk 3.1.2 through 4.4.2 is compiled without FORTIFY_SOURCE, which disables built-in buffer over

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 3.7
3.7

CVE-2026-44057 - A dead bounds check in the Spotlight RPC unmarshaller in Netatalk 3.0.0 through 4.4.2 results in an

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 3.1
3.1

CVE-2026-27393 - Missing Authorization vulnerability in Tobias CF7 WOW Styler allows Exploiting Incorrectly Configure

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.3
5.3

CVE-2026-27349 - Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in WPFunnel

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 4.3
4.3

CVE-2026-22880 - Mattermost Mobile Apps versions <=2.37 11.4 2.0.37 11.0.4 11.1.3 11.3.2 10.11.11.0 fail to properly

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.1
6.1

CVE-2026-7836 - An incorrect calculation in the hextoint macro in Netatalk 2.0.0 through 4.4.2 due to improper upper

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 3.1
3.1

CVE-2026-7835 - A format string argument mismatch in Netatalk 3.0.3 through 4.4.2 allows a remote authenticated atta

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 3.1
3.1

CVE-2026-4055 - Mattermost versions 11.5.x <= 11.5.1 fail to validate team-level run_create permission against the t

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 4.3
4.3

CVE-2026-44076 - Insufficient sanitization of volume paths in Netatalk 3.1.0 through 4.4.2 allows a local privileged

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.7
6.7

CVE-2026-44073 - Authentication modules in Netatalk 1.5.0 through 4.4.2 fail to check the return value of seteuid(),

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.0
5.0

CVE-2026-44072 - Netatalk 2.2.1 through 4.4.2 calls system() after a failed chdir() without properly handling the err

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 3.0
3.0

CVE-2026-44070 - An unbounded memory reallocation in the charset conversion code in Netatalk 2.0.0 through 4.4.2 allo

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 3.1
3.1

CVE-2026-44069 - An integer underflow in the volxlate function in Netatalk 3.0.0 through 4.4.2 allows a local privile

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 3.9
3.9

CVE-2026-44068 - Incomplete sanitization of extended attribute (EA) path components in Netatalk 2.1.0 through 4.4.2 a

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.6
7.6

CVE-2026-44067 - A heap over-read in extended attribute (EA) header parsing in Netatalk 2.1.0 through 4.4.2 allows a

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 4.2
4.2

CVE-2026-44066 - Multiple heap out-of-bounds reads in the Spotlight RPC unmarshalling code in Netatalk 3.1.0 through

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.1
7.1

CVE-2026-44065 - An off-by-two error in lp_write() in papd in Netatalk 2.0.0 through 4.4.2 allows an adjacent network

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 4.2
4.2

CVE-2026-44064 - An out-of-bounds read in ASP session ID handling in Netatalk 1.3 through 4.4.2 allows an adjacent ne

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.1
7.1

CVE-2026-44063 - An LDAP injection vulnerability in Netatalk 2.1.0 through 4.4.2 allows a remote authenticated attack

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 4.2
4.2

CVE-2026-44062 - A missing output length bounds check in pull_charset_flags() in Netatalk 2.0.4 through 4.4.2 allows

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-44061 - Netatalk 1.5.0 through 4.4.2 uses DES-ECB for authentication with a timing side channel, which allow

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 5.9
5.9

CVE-2026-44060 - An integer underflow in dsi_writeinit() in Netatalk 1.5.0 through 4.4.2 allows a remote unauthentica

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-44059 - A race condition in the privilege toggle mechanism in Netatalk 2.2.5 through 4.4.2 allows a local at

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 4.5
4.5

CVE-2026-44058 - An authentication bypass vulnerability in Netatalk 2.2.2 through 4.4.2 allows a remote privileged us

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.2
7.2

CVE-2026-44056 - A stack-based buffer overflow in desktop.c in Netatalk 1.3 through 4.2.2 allows a remote authenticat

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.4
6.4

CVE-2026-44055 - A logic error involving bitwise OR operations in Netatalk 3.1.4 through 4.4.2 allows a remote authen

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-44054 - Netatalk 2.0.0 through 4.4.2 generates AFP session tokens derived from predictable process IDs, whic

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-44053 - Netatalk 1.5.0 through 4.2.2 uses a broken cryptographic algorithm in the DHCAST128 UAM, which allow

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.4
7.4

CVE-2026-44052 - Netatalk 2.1.0 through 4.4.2 inserts LDAP simple-bind passwords into log output in cleartext, which

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-44051 - An improper link resolution vulnerability in Netatalk 3.0.2 through 4.4.2 allows a remote authentica

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 8.1
8.1

CVE-2026-44050 - A heap-based buffer overflow in the CNID daemon comm_rcv() function in Netatalk 2.0.0 through 4.4.2

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 9.9
9.9

CVE-2026-44049 - An out-of-bounds write due to improper null termination in convert_charset() in Netatalk 2.0.4 throu

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-44048 - A stack-based buffer overflow via UCS-2 type confusion in convert_charset() in Netatalk 2.0.4 throug

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-44047 - An SQL injection vulnerability in the MySQL CNID backend in Netatalk 3.1.0 through 4.4.2 allows a re

🏢 Mysql 📅 21.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-6279 - The Avada Builder (fusion-builder) plugin for WordPress is vulnerable to Unauthenticated Remote Code

🏢 Wordpress 📅 21.5.2026 📊 CVSS: 9.8
9.8

CVE-2026-2734 - In mlflow/mlflow versions up to 3.9.0, the `SearchModelVersions` REST API endpoint and the `mlflowSe

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-1543 - The Avada (Fusion) Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via mul

🏢 Wordpress 📅 21.5.2026 📊 CVSS: 6.4
6.4

CVE-2026-4811 - The WPB Floating Menu & Categories for WordPress – Sticky Side Menu with Icons plugin for WordPress

🏢 Wordpress 📅 21.5.2026 📊 CVSS: 4.9
4.9

CVE-2026-9152 - A missing authentication vulnerability exists in the Altium 365 SearchService. A legacy SOAP endpoin

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-48172 - LiteSpeed User-End cPanel Plugin before 2.4.5 allows privilege escalation (possibly to root), as exp

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 9.8
9.8

CVE-2026-1881 - The Broadstreet plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versio

🏢 Wordpress 📅 21.5.2026 📊 CVSS: 4.3
4.3

CVE-2026-9149 - A flaw was found in libsolv. This heap buffer overflow vulnerability occurs when a victim processes

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-40165 - authentik is an open-source identity provider. Versions 2025.12.4 and prior, and versions 2026.2.0-r

🏢 Sonstige 📅 21.5.2026 📊 CVSS: 8.7
8.7

CVE-2026-9150 - A flaw was found in libsolv. This stack-based buffer overflow vulnerability occurs in libsolv's Debi

🏢 Debian 📅 20.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-8399 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-47782 - Android App "RoboForm Password Manager" provided by Siber Systems, Inc. handles Android intents with

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-47372 - Crypt::SaltedHash versions through 0.09 for Perl generate insecure random values for salts. These v

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 9.1
9.1

CVE-2026-40102 - Plane is an open-source project management tool. In versions 1.3.0 and below, SavedAnalyticEndpoint

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-40094 - nimiq-blockchain provides persistent block storage for Nimiq's Rust implementation. In versions 1.3.

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.3
4.3

CVE-2026-40092 - nimiq-blockchain provides persistent block storage for Nimiq's Rust implementation. In versions 1.3.

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-39960 - Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.28.1 and below contain fla

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-8632 - A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software

🏢 Linux 📅 20.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-8631 - A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software

🏢 Linux 📅 20.5.2026 📊 CVSS: 9.8
9.8

CVE-2026-47373 - Crypt::SaltedHash versions through 0.09 for Perl is susceptible to timing attacks. These versions u

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-9144 - Taiko AG1000-01A SMS Alert Gateway Rev 7.3 and Rev 8 contains a stored cross-site scripting vulnerab

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.6
7.6

CVE-2026-9141 - Taiko AG1000-01A SMS Alert Gateway Rev 7.3 and Rev 8 contains an authentication bypass vulnerability

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 9.8
9.8

CVE-2026-9139 - Taiko AG1000-01A SMS Alert Gateway Rev 7.3 and Rev 8 contains a hard-coded credential vulnerability

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 9.8
9.8

CVE-2026-9137 - The CSP report endpoint in MISP intended to limit logged CSP reports to 1 KB but incorrectly allowed

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-9136 - A vulnerability was identified in the ShadowAttribute proposal creation workflow. The add action acc

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-9133 - Active debug code exists in the ARN resolver of amazon-mq rabbitmq-aws before version 0.2.1. A debug

🏢 Aws 📅 20.5.2026 📊 CVSS: 7.7
7.7

CVE-2026-9129 - A path traversal vulnerability exists in the Altium Enterprise Server Viewer StorageController due t

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-9126 - Use after free in DOM in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker to execu

🏢 Google 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-9124 - Insufficient validation of untrusted input in Input in Google Chrome on prior to 148.0.7778.179 allo

🏢 Google 📅 20.5.2026 📊 CVSS: 5.3
5.3

CVE-2026-9123 - Heap buffer overflow in Chromecast in Google Chrome on Android, Linux, ChromeOS prior to 148.0.7778.

🏢 Google 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-9122 - Out of bounds read in GPU in Google Chrome on Mac prior to 148.0.7778.179 allowed a remote attacker

🏢 Google 📅 20.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-9121 - Out of bounds read in GPU in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker to p

🏢 Google 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-9120 - Use after free in WebRTC in Google Chrome prior to 148.0.7778.179 allowed a remote attacker to execu

🏢 Google 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-9119 - Heap buffer overflow in WebRTC in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker

🏢 Google 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-9118 - Use after free in XR in Google Chrome on Windows prior to 148.0.7778.179 allowed a remote attacker t

🏢 Google 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-9117 - Type Confusion in GFX in Google Chrome on Linux, ChromeOS prior to 148.0.7778.179 allowed a remote a

🏢 Google 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-9116 - Insufficient policy enforcement in ServiceWorker in Google Chrome on prior to 148.0.7778.179 allowed

🏢 Google 📅 20.5.2026 📊 CVSS: 4.3
4.3

CVE-2026-9115 - Insufficient policy enforcement in Service Worker in Google Chrome on prior to 148.0.7778.179 allowe

🏢 Google 📅 20.5.2026 📊 CVSS: 4.3
4.3

CVE-2026-9114 - Use after free in QUIC in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker to exec

🏢 Google 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-9113 - Out of bounds read in GPU in Google Chrome on Mac prior to 148.0.7778.179 allowed a remote attacker

🏢 Google 📅 20.5.2026 📊 CVSS: 4.3
4.3

CVE-2026-9112 - Use after free in GPU in Google Chrome on Windows prior to 148.0.7778.179 allowed a remote attacker

🏢 Google 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-9111 - Use after free in WebRTC in Google Chrome on Linux prior to 148.0.7778.179 allowed a remote attacker

🏢 Google 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-9110 - Inappropriate implementation in UI in Google Chrome on Windows prior to 148.0.7778.179 allowed a rem

🏢 Google 📅 20.5.2026 📊 CVSS: 4.2
4.2

CVE-2026-9102 - A path traversal vulnerability exists in the Altium Enterprise Server ComparisonService due to missi

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-9082 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Drupal 📅 20.5.2026 📊 CVSS: 9.8
9.8

CVE-2026-47099 - TeleJSON prior to 6.0.0 contains a DOM-based cross-site scripting vulnerability in the parse() funct

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.1
6.1

CVE-2026-45444 - Unrestricted Upload of File with Dangerous Type vulnerability in WP Swings Gift Cards For WooCommerc

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 10.0
10.0

CVE-2026-39850 - Yii 2 is a PHP application framework. Versions 2.0.54 and prior contain flawed logic in the core vie

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.4
7.4

CVE-2026-39405 - Frappe Learning Management System (LMS) is a learning system that helps users structure their conten

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-39352 - Frappe is a full-stack web application framework. Versions prior to 15.105.0 and 16.15.0 contain a p

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-39311 - Trilium Notes is a cross-platform, hierarchical note taking application focused on building large pe

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.8
6.8

CVE-2026-39310 - Trilium Notes is a cross-platform, hierarchical note taking application focused on building large pe

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 8.6
8.6

CVE-2026-35016 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in search.ph

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.6
4.6

CVE-2026-35015 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in do_unit_m

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.6
4.6

CVE-2026-35014 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in routes_nm

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.6
4.6

CVE-2026-35013 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in street_vi

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.6
4.6

CVE-2026-35012 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in add_facno

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.6
4.6

CVE-2026-35011 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in opena.php

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.6
4.6

CVE-2026-35010 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in patient_J

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.6
4.6

CVE-2026-35009 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in add_note.

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.6
4.6

CVE-2026-35008 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in single.ph

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.6
4.6

CVE-2026-35007 - Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in single_un

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.6
4.6

CVE-2026-33137 - XWiki Platform is a generic wiki platform offering runtime services for applications built on top of

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-2813 - ArcGIS Server contains an input validation weakness in the login redirection workflow. An Authentica

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.7
4.7

CVE-2026-2812 - ArcGIS Server contains an improper authentication vulnerability in an undocumented administrative en

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.3
5.3

CVE-2026-26028 - CryptPad is an end-to-end encrypted collaborative office suite. In versions prior to 2026.2.0, the H

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.1
6.1

CVE-2026-24218 - NVIDIA DGX OS contains a vulnerability in the factory provisioning process, where the cloning of a

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 8.1
8.1

CVE-2026-24217 - NVIDIA BioNeMo Core for Linux contains a vulnerability where a user could cause a path traversal by

🏢 Linux 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-24216 - NVIDIA BioNemo for Linux contains a vulnerability where a user could cause a deserialization of untr

🏢 Linux 📅 20.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-24188 - NVIDIA TensorRT contains a vulnerability where an attacker could cause an out-of-bounds write. A suc

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 8.2
8.2

CVE-2026-23734 - XWiki Platform is a generic wiki platform. Versions prior to 18.1.0-rc-1, 17.10.3, 17.4.9, and 16.10

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-30691 - Cross-Site Scripting (XSS) vulnerability in @cyntler/react-doc-viewer v1.17.1 allows remote attacker

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.1
6.1

CVE-2026-20240 - In Splunk Enterprise versions below 10.2.2, 10.0.5, 9.4.11, and 9.3.12, and Splunk Cloud Platform ve

🏢 Splunk 📅 20.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-20239 - In Splunk Enterprise versions below 10.2.2 and 10.0.5, and Splunk Cloud Platform versions below 10.3

🏢 Splunk 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-20238 - In Splunk AI Toolkit versions below 5.7.3, a low-privileged user that does not hold the 'admin' or '

🏢 Splunk 📅 20.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-9101 - Prototype pollution in csv parsing logic during import can lead to untrusted file paths (but not arg

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.3
4.3

CVE-2026-9100 - The MongoDB C Driver's legacy GridFS API accepts malformed file metadata from the database without a

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.9
5.9

CVE-2026-9087 - A flaw was found in Keycloak. The cross-session verification proof is keyed only by (local userId, i

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.4
6.4

CVE-2026-8342 - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-7613 - The Cost of Goods by PixelYourSite plugin for WordPress is vulnerable to Stored Cross-Site Scripting

🏢 Wordpress 📅 20.5.2026 📊 CVSS: 7.2
7.2

CVE-2026-44926 - InfoScale CmdServer before 7.4.2 mishandles access control.

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-44925 - Cross-Site Request Forgery (CSRF) vulnerability in InfoScale v.9.1.3 Operations Manager (VIOM) allow

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-44924 - InfoScale VIOM 9.1.3 allows XSS.

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.4
5.4

CVE-2026-44923 - SQL injection in InfoScale VIOM before v9.1.3 allows remote attackers to escalate privileges.

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-20223 - A vulnerability in the&nbsp;access validation of internal REST APIs of Cisco Secure Workload could a

🏢 Cisco 📅 20.5.2026 📊 CVSS: 10.0
10.0

CVE-2026-20206 - A vulnerability in the BrowserBot component of Cisco ThousandEyes Enterprise Agent could have allowe

🏢 Cisco 📅 20.5.2026 📊 CVSS: 6.3
6.3

CVE-2026-20199 - A vulnerability in the SSL certificate handling of Cisco ThousandEyes Virtual Appliance could allow

🏢 Cisco 📅 20.5.2026 📊 CVSS: 4.7
4.7

CVE-2026-20171 - A vulnerability in the Border Gateway Protocol (BGP)&nbsp;enforce-first-as feature of&nbsp;Cisco Nex

🏢 Cisco 📅 20.5.2026 📊 CVSS: 6.8
6.8

CVE-2026-9084 - MISP’s OIDC authentication plugin allowed automatic linking of an OIDC identity to an existing local

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-8598 - An undocumented configuration export port is accessible on some models of ZKTeco CCTV cameras. This

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 9.1
9.1

CVE-2026-8488 - Allocation of resources without limits or throttling vulnerability in Progress Software MOVEit Autom

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.3
4.3

CVE-2026-8487 - Incorrect default permissions vulnerability in Progress Software MOVEit Automation allows Retrieve E

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-8486 - Allocation of resources without limits or throttling vulnerability in Progress Software MOVEit Autom

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.3
5.3

CVE-2026-5783 - Improper neutralization of input during web page generation ('cross-site scripting') vulnerability i

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.6
7.6

CVE-2026-4293 - The affected Kieback & Peter DDC building controllers are vulnerable to cross-site scripting, enabli

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.3
5.3

CVE-2026-39047 - Buffer Overflow vulnerability in EPSON L14150 FL27PB allows a remote attacker to execute arbitrary c

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2025-32750 - Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory

🏢 Dell 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2023-7346 - Ledger Bitcoin app versions 2.1.0 and 2.1.1 contain an address derivation vulnerability that allows

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.0
4.0

CVE-2026-8485 - Uncontrolled Memory Allocation vulnerability in Progress Software MOVEit Automation allows Excessive

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.9
5.9

CVE-2026-8469 - Allocation of Resources Without Limits or Throttling vulnerability in phenixdigital phoenix_storyboo

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-8467 - Code Injection vulnerability in phenixdigital phoenix_storybook allows unauthenticated remote code e

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-47068 - Authorization Bypass Through User-Controlled Key vulnerability in phenixdigital phoenix_storybook al

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 0.0
0.0

CVE-2026-24425 - Twig versions 2.16.x and 3.9.0 through 3.25.x contain a sandbox bypass vulnerability when using a So

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 8.8
8.8

CVE-2026-22554 - MediaArea MediaInfoLib Channel Splitting heap-based buffer overflow vulnerability

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-21836 - The HCL DominoIQ RAG feature is affected by a Broken Access Control vulnerability.  Under certain ci

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-5950 - An unbounded resend loop vulnerability exists in the BIND 9 resolver state machine during bad-server

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.3
5.3

CVE-2026-5947 - Undefined behavior may result due to a race condition leading to a use-after-free violation. If BIN

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-5946 - Multiple flaws have been identified in `named` related to the handling of DNS messages whose CLASS i

🏢 Aws 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-45584 - Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code ove

🏢 Microsoft 📅 20.5.2026 📊 CVSS: 8.1
8.1

CVE-2026-45498 - Microsoft Defender Denial of Service Vulnerability

🏢 Microsoft 📅 20.5.2026 📊 CVSS: 4.0
4.0

CVE-2026-45443 - Missing Authorization vulnerability in ADD-ONS.ORG PDF for Elementor Forms + Drag And Drop Template

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.0
5.0

CVE-2026-42834 - Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-42383 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.6
7.6

CVE-2026-41091 - Improper link resolution before file access ('link following') in Microsoft Defender allows an autho

🏢 Microsoft 📅 20.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-3593 - A use-after-free vulnerability exists within the DNS-over-HTTPS implementation. This issue affects B

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.4
7.4

CVE-2026-3592 - BIND resolvers are vulnerable to an amplified resource consumption/exhaustion attack. If a victim r

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.3
5.3

CVE-2026-3039 - BIND servers that are configured to use TKEY-based authentication via GSS-API tokens are vulnerable

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-29518 - Rsync versions before 3.4.3 contain a time-of-check to time-of-use (TOCTOU) race condition in daemon

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.0
7.0

CVE-2026-27424 - Missing Authorization vulnerability in WP Chill Image Photo Gallery Final Tiles Grid allows Exploiti

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.3
4.3

CVE-2026-27405 - Missing Authorization vulnerability in Magepeople inc. WpBookingly allows Exploiting Incorrectly Con

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.5
6.5

CVE-2026-24573 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.5
6.5

CVE-2025-11954 - Cross-Site request forgery (CSRF) vulnerability in Sitemio Information Technologies Trade Ltd. Co. W

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 8.0
8.0

CVE-2025-31985 - HCL BigFix Service Management (SM) is affected by a security misconfiguration due to a missing or in

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 3.7
3.7

CVE-2025-31973 - HCL BigFix Service Management (SM) is susceptible to a Configuration – 'Insecure Use of Base Image

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.0
4.0

CVE-2026-25602 - Insufficient Verification of Data Authenticity vulnerability in Mesalvo Meona Client Launcher Compon

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 4.4
4.4

CVE-2026-22315 - Incorrect Privilege Assignment vulnerability in Mesalvo Meona Client Launcher Component, Mesalvo Meo

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.2
7.2

CVE-2026-22314 - Improper Control of Generation of Code ('Code Injection') vulnerability in Mesalvo Meona Client Laun

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 9.0
9.0

CVE-2026-0857 - Cleartext Storage of Sensitive Information in Memory vulnerability in Mesalvo Meona Client Launcher

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 6.0
6.0

CVE-2026-0856 - Improper Access Control vulnerability in Mesalvo Meona Client Launcher Component, Mesalvo Meona Serv

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-9064 - A flaw was found in 389-ds-base. The get_ldapmessage_controls_ext() function in the LDAP server does

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-6728 - The Slider Revolution plugin for WordPress is vulnerable to Sensitive Information Exposure in versio

🏢 Wordpress 📅 20.5.2026 📊 CVSS: 5.3
5.3

CVE-2026-44933 - `PluginScript` attempts to `chroot` the plugin to the `repoManagerRoot`, this root is frequently `/`

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.8
7.8

CVE-2026-44608 - NLnet Labs Unbound 1.14.0 up to and including version 1.25.0 has a locking inconsistency vulnerabili

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.9
5.9

CVE-2026-44390 - NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability when handling replies with

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.3
5.3

CVE-2026-42960 - NLnet Labs Unbound up to and including version 1.25.0 is vulnerable to poisoning via promiscuous rec

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 10.0
10.0

CVE-2026-42959 - NLnet Labs Unbound up to and including version 1.25.0 has a denial of service vulnerability in the D

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-42944 - NLnet Labs Unbound 1.14.0 up to and including version 1.25.0 has a vulnerability that results in hea

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-42923 - NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the DNSSEC validator wh

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.3
5.3

CVE-2026-42534 - NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability in the jostle logic that c

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 5.3
5.3

CVE-2026-41292 - NLnet Labs Unbound up to and including version 1.25.0 is vulnerable to a degradation of service atta

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.5
7.5

CVE-2026-41054 - In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX

🏢 Sonstige 📅 20.5.2026 📊 CVSS: 7.8
7.8
«« « Zurück Seite 108 von 109 Weiter » »»

🏢 CVE nach Hersteller

Empfohlene Sicherheitstools

Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.