CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
28864 CVEs gefunden (Seite 19/116)

CVE-2026-65370 - ServiceTalk HTTP/1.x incorrectly handles malformed Transfer-Encoding which could result in request s

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-64826 - rConfig before 8.2.13 contains a path traversal vulnerability that allows authenticated attackers to

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-62421 - Rejected reason: Voluntarily withdrawn

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-19654 - A unauthenticated remote peer may lead rsyslogd to crash due to a flaw in the optional imptcp module

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-19503 - MongoDB Schema Manager and MongoDB Atlas SQL ODBC Driver do not validate the scheme of the authoriza

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.8
4.8

CVE-2026-19502 - MongoDB SQL Schema Builder CLI records its startup configuration to standard output and, when file l

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.5
5.5

CVE-2026-19130 - A flaw was found in the provider-credential-controller component of multicluster-engine (MCE). An at

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-19004 - An application using the MongoDB BI Connector ODBC Driver may experience a memory-safety issue when

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-19002 - A missing bounds check when parsing stored procedure parameter metadata in the MongoDB BI Connector

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-19001 - The MongoDB BI Connector ODBC Driver may write outside the bounds of a fixed-size buffer when an app

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-18888 - The MongoDB BI Connector ODBC Driver converts floating point column values into text without checkin

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-18097 - IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 for Linux, UNIX and Windows (includes DB2 C

🏢 Linux 📅 12.8.2026 📊 CVSS: 5.5
5.5

CVE-2026-18096 - IBM Db2 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacke

🏢 Linux 📅 12.8.2026 📊 CVSS: 3.3
3.3

CVE-2026-17616 - IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.8
6.8

CVE-2026-16695 - IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 could allow a local attacker to execute arbit

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.8
7.8

CVE-2026-16480 - IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is affected by an improper authorization vu

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-16033 - A path traversal vulnerability in LXD allows an attacker to achieve arbitrary host file read or unco

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.5
8.5

CVE-2026-14866 - IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 is vulnerable to injection of rogue certifica

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.7
7.7

CVE-2026-13622 - A symlink following vulnerability was found in KubeVirt's virt-handler migration proxy. During live

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-13476 - IBM Informix Dynamic Server 14.10, 15.0, and 12.10 could allow an unauthenticated user to execute ar

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.3
7.3

CVE-2026-13433 - IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 (ACS) is vulnerable to downloading unverified

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.3
8.3

CVE-2026-13367 - IBM Informix Dynamic Server 14.10, and 15.0 contain a local privilege escalation vulnerability in th

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.8
7.8

CVE-2026-13105 - IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 is vulnerable to zip slip path traversal expl

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-13094 - IBM i Access Client Solutions 1.1.2.0 through 1.1.9.13 is vulnerable to arbitrary code execution on

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.8
7.8

CVE-2026-11932 - IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-10543 - IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to privilege escalation with

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.2
8.2

CVE-2026-73434 - A flaw was found in GStreamer gst-plugins-good (avidemux). In gst_avi_demux_riff_parse_vprp(), the n

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.1
6.1

CVE-2026-73433 - A flaw was found in GStreamer gst-plugins-good (avidemux). When parsing FUJIFILM metadata in an AVI

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.6
6.6

CVE-2026-73415 - jupyterlab is an extensible environment for interactive and reproducible computing, based on the Jup

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73414 - Shescape is a simple shell escape library for JavaScript. Prior to 2.1.14 and 3.0.1, getEscapeFuncti

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73413 - Shescape is a simple shell escape library for JavaScript. From 2.1.11 until 2.1.14 and 3.0.1, the fl

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73412 - Shescape is a simple shell escape library for JavaScript. Prior to 2.1.14 and 3.0.1, this impacts us

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73411 - Shescape is a simple shell escape library for JavaScript. Prior to 2.1.14 and 3.0.1, getEscapeFuncti

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73409 - Budibase is an open-source low-code platform. Prior to 3.40.1, packages/server/src/integrations/mong

🏢 Oracle 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73407 - Budibase is an open-source low-code platform. Prior to 3.40.1, RestIntegration._req in packages/serv

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73406 - Budibase is an open-source low-code platform. Prior to 3.39.32, GET /api/global/users/tenant/:id was

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-73332 - CamaleonCMS contains a stored cross-site scripting vulnerability in the cama_contact_form plugin tha

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.7
8.7

CVE-2026-73331 - CamaleonCMS 2.9.1 contains an authenticated SQL injection vulnerability that allows authenticated at

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-73330 - CamaleonCMS 2.9.1 contains a server-side template injection vulnerability that allows authenticated

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.6
6.6

CVE-2026-73329 - CamaleonCMS contains a stored cross-site scripting vulnerability that allows authenticated low-privi

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.7
8.7

CVE-2026-73326 - CamaleonCMS contains a missing authorization vulnerability that allows any authenticated low-privile

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.6
7.6

CVE-2026-73308 - Budibase is an open-source low-code platform. Prior to 3.39.25, packages/server/src/api/controllers/

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.7
5.7

CVE-2026-73307 - Budibase is an open-source low-code platform. Prior to 3.39.4, uploadUrl in packages/server/src/util

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73306 - Budibase is an open-source low-code platform. Prior to 3.39.25, POST /api/global/auth/:tenantId/logi

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-73303 - Budibase is an open-source low-code platform. Prior to 3.40.0, POST /api/v2/email on account.budibas

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.2
8.2

CVE-2026-73269 - A flaw was found in the cluster-curator-controller component. A local user, by creating a ClusterCur

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-73268 - A flaw was found in the cluster-curator-controller component of multicluster engine (MCE). A tenant

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-72809 - SiYuan versions <= v3.7.2 (patched in v3.7.4) contain an authentication bypass vulnerability in the

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.0
8.0

CVE-2026-72808 - SiYuan versions up to and including v3.7.2 (fixed in v3.7.4) contain an information disclosure vulne

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72807 - SiYuan versions before v3.7.4 contain a second-order SQL injection vulnerability in attribute-view t

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.0
8.0

CVE-2026-72806 - SiYuan versions before v3.7.4 contain an authentication bypass vulnerability in the FilterViewByPubl

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72805 - SiYuan versions before v3.7.4 fail to enforce publish-access checks on getBlockBreadcrumb, getRefTex

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72804 - SiYuan versions before v3.7.4 fail to validate publish-password tier in getGraph and getLocalGraph e

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.6
8.6

CVE-2026-72803 - SiYuan versions before v3.7.4 fail to enforce publish-access checks in the getBlockAttrs and batchGe

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72802 - SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the resolveAssetPat

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-72801 - SiYuan versions before v3.7.4 disclose encrypted-notebook key-derivation material and wrapped data k

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-72800 - SiYuan versions before v3.7.4 fail to apply publish-access filtering to the getAttributeViewKeysByID

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72799 - SiYuan before v3.7.4 (affected <=v3.7.2) fails to enforce publish-access filters on five filetree pa

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72798 - SiYuan versions before v3.7.4 fail to properly filter related-database content in renderAttributeVie

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.6
8.6

CVE-2026-72797 - SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getEncryptedNot

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72796 - SiYuan before v3.7.4 contains an access control bypass vulnerability where static-file routes in the

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72795 - SiYuan versions before v3.7.4 fail to filter embedded block content by publish access in the getBloc

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.6
8.6

CVE-2026-72794 - siyuan versions before v3.7.4 expose the session cookie signing key through the /api/system/getConf

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.6
8.6

CVE-2026-72793 - SiYuan versions before v3.7.4 fail to mask sensitive configuration fields in the /api/system/getConf

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.6
8.6

CVE-2026-72792 - SiYuan before v3.7.4 contains an information disclosure vulnerability in the /api/tag/getTag endpoin

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72791 - SiYuan v3.7.4-alpha.1 (a pre-release; the endpoint does not exist in stable v3.7.3 or earlier) conta

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72790 - SiYuan before v3.7.4 contains an information disclosure vulnerability in the /api/notebook/getNotebo

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72789 - SiYuan before v3.7.4 fails to properly validate publish access for encrypted notebooks, treating the

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.6
8.6

CVE-2026-72788 - SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the UILayout filter

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-72787 - Craft CMS versions before 5.10.8 contain a stored cross-site scripting vulnerability in the control

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.4
6.4

CVE-2026-72786 - Craft CMS versions before 5.10.8 contain an authentication bypass vulnerability in the elements/save

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-72508 - A flaw was found in the multicloud-operators-subscription component of Red Hat Advanced Cluster Mana

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-6821 - GitLab has remediated an issue in GitLab EE affecting all versions from 12.0 before 19.0.6, 19.1 bef

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-67579 - Deserialization of Untrusted Data vulnerability in ash-project ash allows an unauthenticated attacke

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.4
7.4

CVE-2026-63300 - An improper validation vulnerability in the instancePostMigration function in lxd/instance_post.go o

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-63299 - An authorization bypass vulnerability in LXD allows an authenticated user to bypass project-level di

🏢 Aws 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-63298 - An improper neutralization of special elements vulnerability in LXD's NVIDIA instance configuration

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-63297 - An authorization bypass vulnerability in LXD due to a timing flaw during configuration merging allow

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-63296 - An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass target proje

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-63295 - An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass project-leve

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-63294 - A link following vulnerability in LXD allows an attacker to achieve root command execution on the ho

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-63293 - A link following vulnerability in LXD allows an attacker to achieve arbitrary file read and write op

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-62420 - An authorization bypass vulnerability in LXD allows an authenticated attacker to bypass target proje

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-59917 - Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.17, contain Improper Acc

🏢 Dell 📅 12.8.2026 📊 CVSS: 7.8
7.8

CVE-2026-59916 - Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.17, contain Improper Acc

🏢 Dell 📅 12.8.2026 📊 CVSS: 7.8
7.8

CVE-2026-59914 - Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.17, contain an Authentic

🏢 Dell 📅 12.8.2026 📊 CVSS: 7.8
7.8

CVE-2026-4879 - GitLab has remediated an issue in GitLab EE affecting all versions from 16.0 before 19.0.6, 19.1 bef

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-49466 - Draft List is a WordPress plugin to manage and promote unpublished content. Versions 2.6.3 and below

🏢 Wordpress 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-46731 - Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.17, contain an Authentic

🏢 Dell 📅 12.8.2026 📊 CVSS: 7.8
7.8

CVE-2026-19657 - ScadaLTS 2.7.8.1 reflects user-supplied input into an HTML response without sanitization. An unauthe

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.1
6.1

CVE-2026-19656 - ScadaLTS 2.7.8.1 exposes a server-side method that lacks authorization checks, allowing any authenti

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-19643 - An out-of-bounds read issue in the Base64 decoder in Amazon aws-sdk-cpp before 1.11.862, on some pla

🏢 Aws 📅 12.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-19642 - An out-of-bounds write issue in the Base64 decoder in Amazon aws-sdk-cpp before 1.11.862 might allow

🏢 Aws 📅 12.8.2026 📊 CVSS: 5.9
5.9

CVE-2026-19228 - GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.4 and 19.2

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.5
8.5

CVE-2026-18679 - When kuma-dp is started against an HTTPS control plane and the operator did not pass a CA certificat

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-18433 - GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.4 and 19.2

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-18150 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive informa

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-18148 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to inject arbitrary content

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-18099 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary script

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.9
8.9

CVE-2026-17642 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary comman

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-17445 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrict

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.2
8.2

CVE-2026-17417 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary comman

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-17111 - IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to SQL injection. A remote attacker could send specially c

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.6
7.6

CVE-2026-17083 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to a stack-

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-17082 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to gain elevated privileges

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-16494 - GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.4 and 19.2

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-15217 - GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 19.0.6, 19.1

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.7
8.7

CVE-2026-15216 - GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 19.0.6, 19.1

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.7
8.7

CVE-2026-13361 - IBM Informix oninit sq_sgkprepare RCE via unchecked SQL Interface length field.

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-13267 - IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-12618 - IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.2
7.2

CVE-2026-12359 - IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-12005 - IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.2
7.2

CVE-2026-12004 - IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.7
8.7

CVE-2026-11937 - IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 3.1
3.1

CVE-2026-11923 - IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.4
7.4

CVE-2025-9486 - GitLab has remediated an issue in GitLab EE affecting all versions from 15.6 before 19.0.6, 19.1 bef

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 3.3
3.3

CVE-2026-73301 - Budibase is an open-source low-code platform. Prior to 3.39.25, the GET /api/global/groups endpoint

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-19311 - Missing authorization in the Execute Monitor API in Amazon OpenSearch Alerting plugin might allow an

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-18952 - Missing input validation in the threat intelligence feed parser in the OpenSearch Security Analytics

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-18678 - When an operator adds an HTTPS control plane profile to kumactl without providing a CA certificate,

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-18677 - In Kong Mesh running in universal mode with a MeshIdentity whose SPIFFE ID path template derives fro

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-18676 - The default kuma-cp configuration in Kong Mesh reveals the admin bootstrap token and signing keys to

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-18675 - The dataplane token validator in kuma-cp performs an unchecked Go type assertion on the JWT kid head

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-18673 - When kuma-dp is configured with the Envoy admin API on a Unix domain socket, which is the default, i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-8667 - GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.6 before 19.0.6, 19.1

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-7427 - GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.5 before 19.0.6, 19.1

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-73327 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as the re

🏢 Joomla 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73300 - Budibase is an open-source low-code platform. Prior to 3.40.0, the MySQL integration component in Bu

🏢 Mysql 📅 12.8.2026 📊 CVSS: 9.6
9.6

CVE-2026-73299 - Prompty is a markdown file format (.prompty) for LLM prompts. Prior to 0.1.5 and 2.0.0-beta.5, the T

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 10.0
10.0

CVE-2026-73298 - The Microsoft Container Migration Solution Accelerator is a multi-service application that provides

🏢 Azure 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-69106 - A low-privileged user may poison cached artifact metadata under specific conditions, potentially cau

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-49467 - Pingvin Share X is a secure and easy self-hosted file sharing platform. A vulnerability in versions

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-44741 - Pimcore's Admin Classic Bundle provides a Backend UI for Pimcore. Versions prior to 2.3.6 and 1.7.18

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-42018 - JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when an

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-18713 - IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to privilege escalation via Navigator for i. An authentica

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-18669 - IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to a privilege escalation as the result of a remote code

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-18250 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive informa

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.3
6.3

CVE-2026-18244 - GitLab has remediated an issue in GitLab EE affecting all versions from 17.7 before 19.0.6, 19.1 bef

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-18235 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary Contro

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.3
8.3

CVE-2026-17420 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrict

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.3
6.3

CVE-2026-17419 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to modify SQL tables due to

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-17418 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to cause a denial of service

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.5
8.5

CVE-2026-17276 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to escalate privileges due

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.6
9.6

CVE-2026-17271 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to impro

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-17268 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrict

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.8
6.8

CVE-2026-17266 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive informa

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-17248 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of servic

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-17222 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to modify data in certain S

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-17218 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to an out-o

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-17110 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary comman

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-17109 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to add unexpected parameter

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-16956 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary commands d

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-16931 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to impro

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-16907 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code d

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.6
7.6

CVE-2026-16906 - IBM i 7.6, and 7.5 could allow a remote authenticated attacker to execute arbitrary commands with el

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-16904 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary comman

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-16863 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive informa

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.7
7.7

CVE-2026-16860 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code d

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-16856 - IBM i 7.6, and 7.5 could allow a local attacker to gain elevated privileges due to improper neutrali

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-16627 - GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.2 that u

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.7
7.7

CVE-2026-15423 - GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.0 before 19.0.6, 19.1

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.5
8.5

CVE-2026-73297 - Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior t

🏢 Microsoft 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73296 - Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior t

🏢 Microsoft 📅 12.8.2026 📊 CVSS: 9.4
9.4

CVE-2026-73295 - Material for MkDocs is a powerful documentation framework built on top of MkDocs. From 7.2.0 until 9

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.4
5.4

CVE-2026-73240 - Specifically crafted inputs may lead to git argument injection in Apache Allura. This issue affects

🏢 Apache 📅 12.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-73239 - Insecure Direct Object Reference (IDOR) due to missing permission checks for multiple Artifact types

🏢 Apache 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-73238 - XSS vulnerability in code display in Apache Allura. This issue affects Apache Allura: before 1.19.1

🏢 Apache 📅 12.8.2026 📊 CVSS: 6.1
6.1

CVE-2026-73237 - XSS vulnerability in Markdown handling in Apache Allura. This issue affects Apache Allura: from 1.1

🏢 Apache 📅 12.8.2026 📊 CVSS: 6.1
6.1

CVE-2026-48554 - Nagios Core before 4.5.14 and Nagios XI before 2026R1.7 are vulnerable to authenticated remote code

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-48553 - Nagios Core before 4.5.13 and Nagios XI before 2026R1.5 are vulnerable to authenticated remote code

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-48552 - Nagios Core before 4.5.14 and Nagios XI before 2026R1.7 are vulnerable to DOM-based cross-site scrip

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.4
5.4

CVE-2026-48551 - Nagios Core before 4.5.14 and Nagios XI before 2026R1.7 contain a cross-site request forgery protect

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.4
7.4

CVE-2026-48550 - Nagios Core before 4.5.14 and Nagios XI before 2026R1.7 are vulnerable to reflected cross-site scrip

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.1
6.1

CVE-2026-18847 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote unauthenticated attacker to harvest credentials du

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-18683 - IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to privilege escalation via Navigator for i. An authentic

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-18499 - IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to a privilege es

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-18246 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrict

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 3.0
3.0

CVE-2026-18144 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrict

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-18106 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive informa

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-18098 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive informa

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-17095 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrict

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.3
8.3

CVE-2026-17094 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive informa

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-16694 - IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to stored cross-site scripting. This vulnerability allows

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.4
6.4

CVE-2026-73325 - Fujitsu Research's OneCompression library 1.2.0 contains an unsafe deserialization vulnerability tha

🏢 Dell 📅 12.8.2026 📊 CVSS: 7.8
7.8

CVE-2026-73294 - Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.17 and 2.19.5-beta2, reposi

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-73293 - Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.19 and from 2.19.0-alpha3

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-73292 - Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.21, the /api/users/{id}/pas

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.3
8.3

CVE-2026-70547 - An authenticated user without repository read permission may access package metadata under specific

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-69107 - An unauthenticated user may access restricted artifacts in JFrog Artifactory under specific conditio

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.9
5.9

CVE-2026-69105 - An unauthenticated attacker may cause untrusted package content to be cached under specific conditio

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-68971 - Apache Airflow's asset materialization endpoint (`POST /api/v2/assets/{asset_id}/materialize`) and t

🏢 Apache 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-68970 - Apache Airflow's Task SDK did not mask the contents of a Variable whose JSON value is a list, so sec

🏢 Apache 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-68969 - Apache Airflow wrote Variable values and Connection `extra` contents to the audit log in cleartext w

🏢 Apache 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-68968 - Apache Airflow's Backfill API authorized a request against a Dag id supplied by the caller whenever

🏢 Apache 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-68759 - A holder of a valid integration credential may impersonate other users under specific conditions.

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.2
7.2

CVE-2026-68758 - A low-privileged authenticated user may access restricted support information under specific conditi

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-68076 - Apache Airflow's environment-variable secrets backend resolved a team-scoped Connection or Variable

🏢 Apache 📅 12.8.2026 📊 CVSS: 5.4
5.4

CVE-2026-67587 - Apache Airflow's Task SDK rebuilt a `Callback` object from serialized data by re-running its constru

🏢 Apache 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-67260 - Apache Airflow 3.3.0 moved human-in-the-loop tasks from the triggerer to a new `awaiting_input` task

🏢 Apache 📅 12.8.2026 📊 CVSS: 7.3
7.3

CVE-2026-66384 - An authenticated user may write data outside the intended Docker cache path under specific remote-re

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-66016 - Under specific self-hosted Helm configurations, generated TLS private keys may be retained in render

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.7
6.7

CVE-2026-65941 - In WhatsUp Gold versions released before 2026.0.2, an unauthenticated remote attacker with network a

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-65940 - In WhatsUp Gold versions released before 2026.0.2, a privileged attacker can write arbitrary files t

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.8
6.8

CVE-2026-65939 - In WhatsUp Gold versions released before 2026.0.2, a privileged attacker can create a LogToFile acti

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.8
6.8

CVE-2026-65938 - In WhatsUp Gold versions released before 2026.0.2, an improper authorization vulnerability in the Sc

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-65937 - In WhatsUp Gold versions released before 2026.0.2, an authenticated attacker can bypass frontend con

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.0
8.0

CVE-2026-65926 - An anonymous caller when anonymous access is enabled, or a low-privilege authenticated user, may lea

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 3.1
3.1

CVE-2026-65017 - Apache Airflow's Config API did not mask team-scoped sensitive configuration values in multi-team de

🏢 Apache 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-64639 - Incorrect database cloning process in Plesk from 18.0.52 before 18.0.79.6 and 18.0.80.2 allows a low

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-59244 - Apache Airflow's secrets masker did not mask `var.json` Variable values whose value is a dict in the

🏢 Apache 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-59242 - Apache Airflow's XCom `GET /api/v2/{...}/xcomEntries/{key}?deserialize=true` endpoint passed a strin

🏢 Apache 📅 12.8.2026 📊 CVSS: 5.4
5.4

CVE-2026-58076 - Apache Airflow's serialization layer reconstructed exception nodes by calling `import_string()` on a

🏢 Apache 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-54183 - Apache Airflow's secrets masker hides values stored under sensitive key names when they are displaye

🏢 Apache 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-19548 - Multiple Use-After-Free vulnerabilities were found in the add_archive_element function in ld/ldmain.

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.5
5.5

CVE-2026-15803 - In Eclipse RDF4J, several XML parser entry points do not fully restrict XML External Entity (XXE) pr

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-35988 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-35977 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-32737 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-32087 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-32084 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-31943 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-30178 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-27570 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-27245 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-25275 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-24837 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-24488 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-20020 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73432 - Vulnerability-Lookup contains a server-side request forgery (SSRF) vulnerability in the remote-insta

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73431 - Vulnerability-Lookup contains an authentication weakness in its account activation and password-rec

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73405 - An authorization bypass vulnerability in Vulnerability-Lookup allowed inactive or unconfirmed accoun

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73374 - A stored cross-site scripting (XSS) vulnerability existed in Vulnerability-Lookup in the render_tag_

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73291 - Seerr is an open-source media request and discovery manager for Jellyfin, Plex, and Emby. Prior to v

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-73290 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.12, an anonymous Li

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-73289 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.12, RustFS evaluate

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-73288 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-rc.1, RustFS Object Lock

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73287 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.12, RustFS handles

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.4
5.4

CVE-2026-73286 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.12, RustFS get_cond

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-73285 - RustFS is a distributed object storage system built in Rust. From 1.0.0-alpha.64 until 1.0.0-rc.1, R

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-73284 - RustFS is a distributed object storage system built in Rust. RustFS AddServiceAccount in rustfs/src/

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-73265 - RustFS is a distributed object storage system built in Rust. RustFS authorizes explicit versionId re

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-73264 - Prowler is a cloud security platform. Prior to 5.33.1, an authenticated user with Lighthouse provide

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.6
7.6

CVE-2026-73263 - Prowler is a cloud security platform. Prior to 5.36.0, the Kubernetes provider connection test accep

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-73262 - Prowler is a cloud security platform. Prior to 5.37.0, Prowler's HTML output formatter in prowler/li

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.4
5.4

CVE-2026-68760 - An unauthenticated user may bypass authentication under specific cache conditions.

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-68757 - A user with access to a valid SAML response may impersonate another user under specific conditions.

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-68756 - A party with write access to stored session data may affect JFrog Artifactory under specific conditi

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.6
6.6

CVE-2026-68755 - A bundle writer may create misleading release promotion information under specific conditions.

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-68754 - A repository publisher without delete permission may modify protected package content under specific

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5
«« « Zurück Seite 19 von 116 Weiter » »»

🏢 CVE nach Hersteller

Empfohlene Sicherheitstools

Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.