CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
16189 CVEs gefunden (Seite 16/65)

CVE-2026-23249 - In the Linux kernel, the following vulnerability has been resolved: xfs: check for deleted cursors

🏢 Linux 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2025-71270 - In the Linux kernel, the following vulnerability has been resolved: LoongArch: Enable exception fix

🏢 Linux 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2025-71269 - In the Linux kernel, the following vulnerability has been resolved: btrfs: do not free data reserva

🏢 Linux 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2025-71268 - In the Linux kernel, the following vulnerability has been resolved: btrfs: fix reservation leak in

🏢 Linux 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32610 - Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.2, the Glances

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-30695 - A Cross-Site Scripting (XSS) vulnerability exists in the web-based configuration interface of Zucche

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-30345 - A zip slip vulnerability in the Admin import functionality of CTFd v3.8.1-18-gdb5a18c4 allows attack

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-1463 - The Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery plugin for WordPress is vulnerable

🏢 Wordpress 📅 18.3.2026 📊 CVSS: 8.8
8.8

CVE-2025-67830 - Mura before 10.1.14 allows beanFeed.cfc getQuery sortby SQL injection.

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-3090 - The Post SMTP – Complete Email Deliverability and SMTP Solution with Email Logs, Alerts, Backup SMTP

🏢 Wordpress 📅 18.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-33004 - Jenkins LoadNinja Plugin 2.1 and earlier does not mask LoadNinja API keys displayed on the job confi

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-33003 - Jenkins LoadNinja Plugin 2.1 and earlier stores LoadNinja API keys unencrypted in job config.xml fil

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-33002 - Jenkins 2.442 through 2.554 (both inclusive), LTS 2.426.3 through LTS 2.541.2 (both inclusive) perfo

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-33001 - Jenkins 2.554 and earlier, LTS 2.541.2 and earlier does not safely handle symbolic links during the

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-2992 - The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to Privil

🏢 Wordpress 📅 18.3.2026 📊 CVSS: 8.2
8.2

CVE-2026-2991 - The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to Authen

🏢 Wordpress 📅 18.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-2559 - The Post SMTP plugin for WordPress is vulnerable to unauthorized modification of data due to a missi

🏢 Azure 📅 18.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-2512 - The Code Embed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via custom field me

🏢 Wordpress 📅 18.3.2026 📊 CVSS: 6.4
6.4

CVE-2026-24063 - When a plugin is installed using the Arturia Software Center (MacOS), it also installs an uninstall.

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.2
8.2

CVE-2026-24062 - The "Privileged Helper" component of the Arturia Software Center (MacOS) does not perform sufficient

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.8
7.8

CVE-2025-67829 - Mura before 10.1.14 allows beanFeed.cfc getQuery sortDirection SQL injection.

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-55046 - MuraCMS through 10.1.10 contains a CSRF vulnerability that allows attackers to permanently destroy a

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.1
8.1

CVE-2025-55045 - The update address CSRF vulnerability in MuraCMS through 10.1.10 allows attackers to manipulate user

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.1
7.1

CVE-2025-55044 - The Trash Restore CSRF vulnerability in MuraCMS through 10.1.10 allows attackers to restore deleted

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.8
8.8

CVE-2025-55043 - MuraCMS through 10.1.10 contains a CSRF vulnerability in the bundle creation functionality (csetting

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2025-55041 - MuraCMS through 10.1.10 contains a CSRF vulnerability in the Add To Group functionality for user man

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.0
8.0

CVE-2025-55040 - The import form CSRF vulnerability in MuraCMS through 10.1.10 allows attackers to upload and install

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-32609 - Glances is an open-source system cross-platform monitoring tool. The GHSA-gh4x fix (commit 5d3de60)

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-3278 - Improper neutralization of input during web page generation ('cross-site scripting') vulnerability i

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-32694 - In Juju from version 3.0.0 through 3.6.18, when a secret owner grants permissions to a secret to a g

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.6
6.6

CVE-2026-25449 - Deserialization of Untrusted Data vulnerability in shinetheme Traveler traveler allows Object Inject

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32693 - In Juju from version 3.0.0 through 3.6.18, the authorization of the "secret-set" tool is not perform

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-32692 - An authorization bypass vulnerability in the Vault secrets back-end implementation of Juju versions

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.6
7.6

CVE-2026-32691 - A race condition in the secrets management subsystem of Juju versions 3.0.0 through 3.6.18 allows an

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-33265 - In LibreChat 0.8.1-rc2, a logged-in user obtains a JWT for both the LibreChat API and the RAG API.

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.3
6.3

CVE-2025-41258 - LibreChat version 0.8.1-rc2 uses the same JWT secret for the user session mechanism and RAG API whic

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.0
8.0

CVE-2026-23248 - In the Linux kernel, the following vulnerability has been resolved: perf/core: Fix refcount bug and

🏢 Linux 📅 18.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-23247 - In the Linux kernel, the following vulnerability has been resolved: tcp: secure_seq: add back ports

🏢 Linux 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-23246 - In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: bounds-check li

🏢 Linux 📅 18.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-23245 - In the Linux kernel, the following vulnerability has been resolved: net/sched: act_gate: snapshot p

🏢 Linux 📅 18.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-23244 - In the Linux kernel, the following vulnerability has been resolved: nvme: fix memory allocation in

🏢 Linux 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-23243 - In the Linux kernel, the following vulnerability has been resolved: RDMA/umad: Reject negative data

🏢 Linux 📅 18.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-23242 - In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix potential NULL po

🏢 Linux 📅 18.3.2026 📊 CVSS: 7.5
7.5

CVE-2025-71267 - In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop tr

🏢 Linux 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2025-71266 - In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: check return value o

🏢 Linux 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2025-71265 - In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop in

🏢 Linux 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2025-12518 - beefree.io SDK is vulnerable to Stored XSS in Social Media icon URL parameter in email builder funct

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32565 - Missing Authorization vulnerability in Ajay Contextual Related Posts contextual-related-posts allows

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-1217 - The Yoast Duplicate Post plugin for WordPress is vulnerable to unauthorized modification of data due

🏢 Wordpress 📅 18.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-22730 - A critical SQL injection vulnerability in Spring AI's MariaDBFilterExpressionConverter allows attack

🏢 Mariadb 📅 18.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-22729 - A JSONPath injection vulnerability in Spring AI's AbstractFilterExpressionConverter allows authentic

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.6
8.6

CVE-2026-22323 - A CSRF vulnerability in the Link Aggregation configuration interface allows an unauthenticated remot

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.1
7.1

CVE-2026-22322 - A stored cross‑site scripting (XSS) vulnerability in the Link Aggregation configuration interface al

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.1
7.1

CVE-2026-22321 - A stack-based buffer overflow in the device's Telnet/SSH CLI login routine occurs when a unauthentic

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-22320 - A stack-based buffer overflow in the CLI's TFTP file‑transfer command handling allows a low-privileg

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-22319 - A stack-based buffer overflow in the device's file installation workflow allows a high-privileged at

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 4.9
4.9

CVE-2026-22318 - A stack-based buffer overflow vulnerability in the device's file transfer parameter workflow allows

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 4.9
4.9

CVE-2026-22317 - A command injection vulnerability in the device’s Root CA certificate transfer workflow allows a hig

🏢 Linux 📅 18.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-22316 - A remote attacker with user privileges for the webUI can use the setting of the TFTP Filename with a

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2025-31703 - A vulnerability found in Dahua NVR/XVR device. A third-party malicious attacker with physical access

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-3512 - The Writeprint Stylometry plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via t

🏢 Wordpress 📅 18.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-32608 - Glances is an open-source system cross-platform monitoring tool. The Glances action system allows ad

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.0
7.0

CVE-2025-15363 - The Get Use APIs WordPress plugin before 2.0.10 executes imported JSON, which could allow users wit

🏢 Wordpress 📅 18.3.2026 📊 CVSS: 5.9
5.9

CVE-2026-32606 - IncusOS is an immutable OS image dedicated to running Incus. Prior to 202603142010, the default conf

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.6
7.6

CVE-2026-32596 - Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.2, Glances web server

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-32268 - The Azure Blob Storage for Craft CMS plugin provides an Azure Blob Storage integration for Craft CMS

🏢 Azure 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4366 - A flaw was identified in Keycloak, an identity and access management solution, where it improperly f

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 5.8
5.8

CVE-2026-33189 - Rejected reason: Further research determined the issue originates from a different product.

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33188 - Rejected reason: Further research determined the issue originates from a different product.

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33187 - Rejected reason: Further research determined the issue originates from a different product.

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33058 - Kanboard is project management software focused on Kanban methodology. Versions prior to 1.2.51 have

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-32266 - The Google Cloud Storage for Craft CMS plugin provides a Google Cloud Storage integration for Craft

🏢 Google cloud 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32265 - The Amazon S3 for Craft CMS plugin provides an Amazon S3 integration for Craft CMS. In versions 2.0.

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32256 - music-metadata is a metadata parser for audio and video media files. Prior to version 11.12.3, music

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-32254 - Kube-router is a turnkey solution for Kubernetes networking. Prior to version 2.8.0, Kube-router's p

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.1
7.1

CVE-2026-31938 - jsPDF is a library to generate PDFs in JavaScript. Prior to version 4.2.1, user control of the `opti

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 9.6
9.6

CVE-2026-31898 - jsPDF is a library to generate PDFs in JavaScript. Prior to version 4.2.1, user control of arguments

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-31891 - Cockpit is a headless content management system. Any Cockpit CMS instance running version 2.13.4 or

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.7
7.7

CVE-2026-31865 - Elysia is a Typescript framework for request validation, type inference, OpenAPI documentation, and

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-30922 - pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.3, the `pyasn1` library is vulnerable to

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-30884 - mdjnelson/moodle-mod_customcert is a Moodle plugin for creating dynamically generated certificates w

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 9.6
9.6

CVE-2026-2575 - A flaw was found in Keycloak. An unauthenticated remote attacker can trigger an application level De

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-29112 - DiceBear is an avatar library for designers and developers. Prior to version 9.4.0, the `ensureSize(

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-1926 - The Subscriptions for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of

🏢 Wordpress 📅 18.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-1780 - The [CR]Paid Link Manager plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via t

🏢 Wordpress 📅 18.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-4356 - A flaw has been found in itsourcecode University Management System 1.0. Affected is an unknown funct

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 2.4
2.4

CVE-2026-4268 - The WP Go Maps (formerly WP Google Maps) plugin for WordPress is vulnerable to Stored Cross-Site Scr

🏢 Google 📅 18.3.2026 📊 CVSS: 6.4
6.4

CVE-2026-2603 - A flaw was found in Keycloak. A remote attacker could bypass security controls by sending a valid SA

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-2092 - A flaw was found in Keycloak. Keycloak's Security Assertion Markup Language (SAML) broker endpoint d

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.7
7.7

CVE-2026-29056 - Kanboard is project management software focused on Kanban methodology. Prior to 1.2.51, Kanboard's u

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-28500 - Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. In ve

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.6
8.6

CVE-2026-28499 - LeafKit is a templating language with Swift-inspired syntax. Prior to version 1.14.2, HTML escaping

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-27545 - OpenClaw versions prior to 2026.2.26 contain an approval bypass vulnerability in system.run executio

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-27524 - OpenClaw versions prior to 2026.2.21 accept prototype-reserved keys in runtime /debug set override o

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-27523 - OpenClaw versions prior to 2026.2.24 contain a sandbox bind validation vulnerability allowing attack

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-27522 - OpenClaw versions prior to 2026.2.24 contain a local media root bypass vulnerability in sendAttachme

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-22217 - OpenClaw version 2026.2.22 prior to 2026.2.23 contain an arbitrary code execution vulnerability in s

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-22181 - OpenClaw versions prior to 2026.3.2 contain a DNS pinning bypass vulnerability in strict URL fetch p

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.6
7.6

CVE-2026-22180 - OpenClaw versions prior to 2026.3.2 contain a path-confinement bypass vulnerability in browser outpu

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-22179 - OpenClaw versions prior to 2026.2.22 in macOS node-host system.run contain an allowlist bypass vulne

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-22178 - OpenClaw versions prior to 2026.2.19 construct RegExp objects directly from unescaped Feishu mention

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-22177 - OpenClaw versions prior to 2026.2.21 fail to filter dangerous process-control environment variables

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-22175 - OpenClaw versions prior to 2026.2.23 contain an exec approval bypass vulnerability in allowlist mode

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.1
7.1

CVE-2026-22174 - OpenClaw versions prior to 2026.2.22 inject the x-OpenClaw-relay-token header into Chrome CDP probe

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.8
6.8

CVE-2026-22171 - OpenClaw versions prior to 2026.2.19 contain a path traversal vulnerability in the Feishu media down

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.2
8.2

CVE-2026-22170 - OpenClaw versions prior to 2026.2.22 with the optional BlueBubbles plugin contain an access control

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-22169 - OpenClaw versions prior to 2026.2.22 contain an allowlist bypass vulnerability in the safeBins confi

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.7
6.7

CVE-2026-22168 - OpenClaw versions prior to 2026.2.21 contain an approval-integrity mismatch vulnerability in system.

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-29057 - Next.js is a React framework for building full-stack web applications. Starting in version 9.5.0 and

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-28674 - xiaoheiFS is a self-hosted financial and operational system for cloud service businesses. In version

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-28673 - xiaoheiFS is a self-hosted financial and operational system for cloud service businesses. In version

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-27980 - Next.js is a React framework for building full-stack web applications. Starting in version 10.0.0 an

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-27979 - Next.js is a React framework for building full-stack web applications. Starting in version 16.0.1 an

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-4355 - A vulnerability was detected in Portabilis i-Educar 2.11. This impacts an unknown function of the fi

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 3.5
3.5

CVE-2026-4354 - A vulnerability was identified in TRENDnet TEW-824DRU 1.010B01/1.04B01. The impacted element is the

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 3.5
3.5

CVE-2026-27978 - Next.js is a React framework for building full-stack web applications. Starting in version 16.0.1 an

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-27977 - Next.js is a React framework for building full-stack web applications. Starting in version 16.0.1 an

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-27895 - LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings)

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-27894 - LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings)

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-27811 - Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. Prior to vers

🏢 Apache 📅 18.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-27459 - pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to ve

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-27448 - pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 0.14.0 and prior to ve

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-26004 - Sentry is a developer-first error tracking and performance monitoring tool. Versions prior to 26.1.0

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-26001 - The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collec

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 7.1
7.1

CVE-2026-25937 - GLPI is a free Asset and IT management software package. Starting in version 11.0.0 and prior to ver

🏢 Sonstige 📅 18.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-3856 - IBM Db2 Recovery Expert for Linux, UNIX and Windows 5.5 IF 2 could allow an attacker to modify or co

🏢 Linux 📅 17.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-22727 - Unprotected internal endpoints in Cloud Foundry Capi Release 1.226.0 and below, and CF Deployment v5

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-21994 - Vulnerability in the Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit product of

🏢 Oracle 📅 17.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-20643 - A cross-origin issue in the Navigation API was addressed with improved input validation. This issue

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-1264 - IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.7_2, 6.2.0.0 through

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.1
7.1

CVE-2025-14031 - IBM Sterling B2B Integrator and and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.7_2, 6.2.0.0 thr

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-4349 - A vulnerability was determined in Duende IdentityServer4 up to 4.1.2. The affected element is an unk

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 5.6
5.6

CVE-2026-32842 - Edimax GS-5008PL firmware version 1.00.54 and prior contain an insecure credential storage vulnerabi

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-32841 - Edimax GS-5008PL firmware version 1.00.54 and prior contain an authentication bypass vulnerability t

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-32840 - Edimax GS-5008PL firmware version 1.00.54 and prior contain a stored cross-site scripting vulnerabil

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-32839 - Edimax GS-5008PL firmware version 1.00.54 and prior contain a cross-site request forgery vulnerabili

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-32838 - Edimax GS-5008PL firmware version 1.00.54 and prior use cleartext HTTP for the web management interf

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-1376 - IBM i 7.6 could allow a remote attacker to cause a denial of service using failed authentication con

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-1267 - IBM Planning Analytics Local 2.1.0 through 2.1.17 could allow an unauthorized access to sensitive ap

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.5
6.5

CVE-2025-14806 - IBM Planning Analytics Local 2.1.0 through 2.1.17 could allow an attacker to trick the caching mecha

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 5.7
5.7

CVE-2026-2809 - Netskope was notified about a potential gap in its Endpoint DLP Module for Netskope Client on Window

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4359 - A compromised third party cloud server or man-in-the-middle attacker could send a malformed HTTP res

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 2.0
2.0

CVE-2026-4358 - A specially crafted aggregation query with $lookup by an authenticated user with write privileges ca

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.4
6.4

CVE-2026-4295 - Improper trust boundary enforcement in Kiro IDE before version 0.8.0 on all supported platforms migh

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-4064 - Missing authorization checks on multiple gRPC service endpoints in PowerShell Universal before 2026.

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 8.3
8.3

CVE-2026-3563 - Improper input validation in the apps and endpoints configuration in PowerShell Universal before 202

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 5.5
5.5

CVE-2026-32981 - A path traversal vulnerability was identified in Ray Dashboard (default port 8265) in Ray versions p

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-32837 - miniaudio version 0.11.25 and earlier contain a heap out-of-bounds read vulnerability in the WAV BEX

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 5.5
5.5

CVE-2026-32836 - dr_libs dr_flac.h version 0.13.3 and earlier contain an uncontrolled memory allocation vulnerability

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 5.5
5.5

CVE-2026-30707 - An issue was discovered in SpeedExam Online Examination System (SaaS) after v.FEV2026. It allows Bro

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-25936 - GLPI is a free Asset and IT management software package. Starting in version 11.0.0 and prior to ver

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.5
6.5

CVE-2025-15584 - Netskope was notified about a potential gap in its Endpoint DLP Module for Netskope Client on Window

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-3207 - Configuration issue in Java Management Extensions (JMX) in TIBCO BPM Enterprise version 4.x allows u

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-25790 - Wazuh is a free and open source platform used for threat prevention, detection, and response. Starti

🏢 Wazuh 📅 17.3.2026 📊 CVSS: 4.9
4.9

CVE-2026-25772 - Wazuh is a free and open source platform used for threat prevention, detection, and response. Starti

🏢 Wazuh 📅 17.3.2026 📊 CVSS: 4.9
4.9

CVE-2026-25771 - Wazuh is a free and open source platform used for threat prevention, detection, and response. Starti

🏢 Wazuh 📅 17.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-22882 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-20726 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-66633 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-66617 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-66503 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-66342 - A type confusion vulnerability exists in the EMF functionality of Canva Affinity. A specially crafte

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.8
7.8

CVE-2025-66042 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-66000 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-65119 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-64776 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-64735 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-64733 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-64301 - An out‑of‑bounds write vulnerability exists in the EMF functionality of Canva Affinity. By using a s

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.8
7.8

CVE-2025-62500 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-62403 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-61979 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-61952 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-58427 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-47873 - An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a sp

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-4319 - A vulnerability was identified in code-projects Simple Food Order System 1.0. Affected by this vulne

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-32298 - The Angeet ES3 KVM does not properly sanitize user-supplied variables parsed by the 'cfg.lua' script

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 9.1
9.1

CVE-2026-32297 - The Angeet ES3 KVM allows a remote, unauthenticated attacker to write arbitrary files, including con

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-32296 - Sipeed NanoKVM before 2.3.1 exposes a Wi-Fi configuration endpoint without proper security checks, a

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 8.2
8.2

CVE-2026-32295 - JetKVM before 0.5.4 does not rate limit login requests, enabling brute-force attempts to guess crede

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-32294 - JetKVM prior to 0.5.4 does not verify the authenticity of downloaded firmware files. An attacker-in-

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 4.7
4.7

CVE-2026-32293 - The GL-iNet Comet (GL-RM1) KVM connects to a GL-iNet site during boot-up to provision client and CA

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 3.7
3.7

CVE-2026-32292 - The GL-iNet Comet (GL-RM1) KVM web interface does not limit login requests, enabling brute-force att

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-32291 - The GL-iNet Comet (GL-RM1) KVM before 1.8.2 does not require authentication on the UART serial conso

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.8
6.8

CVE-2026-32290 - The GL-iNet Comet (GL-RM1) KVM before version 1.8.2 does not sufficiently verify the authenticity of

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 4.7
4.7

CVE-2026-25770 - Wazuh is a free and open source platform used for threat prevention, detection, and response. Starti

🏢 Wazuh 📅 17.3.2026 📊 CVSS: 9.1
9.1

CVE-2026-25769 - Wazuh is a free and open source platform used for threat prevention, detection, and response. Versio

🏢 Wazuh 📅 17.3.2026 📊 CVSS: 9.1
9.1

CVE-2026-25534 - ### Impact Spinnaker updated URL Validation logic on user input to provide sanitation on user inputt

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 9.1
9.1

CVE-2026-21570 - This High severity RCE (Remote Code Execution)  vulnerability was introduced in versions 9.6.0, 10.0

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4148 - A use-after-free vulnerability can be triggered in sharded clusters by an authenticated user with th

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-4147 - An authenticated user with the read role may read limited amounts of uninitialized stack memory via

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-28506 - Outline is a service that allows for collaborative documentation. Prior to 1.5.0, the events.list AP

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-24901 - Outline is a service that allows for collaborative documentation. Prior to 1.4.0, an Insecure Direct

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-23759 - Perle IOLAN STS/SCS terminal server models with firmware versions prior to 6.0 allow authenticated O

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-21886 - OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables.

🏢 Suse 📅 17.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-4318 - A vulnerability was determined in UTT HiPER 810G up to 1.7.7-171114. Affected is the function strcpy

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-3564 - A condition in ScreenConnect may allow an actor with access to server-level cryptographic material u

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 9.0
9.0

CVE-2025-13406 - NULL Pointer Dereference vulnerability in Softing Industrial Automation GmbH smartLink SW-HT (Webser

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4324 - A flaw was found in the Katello plugin for Red Hat Satellite. This vulnerability, caused by improper

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-3888 - Local privilege escalation in snapd on Linux allows local attackers to get root privilege by re-crea

🏢 Linux 📅 17.3.2026 📊 CVSS: 7.8
7.8

CVE-2025-62320 - HTML Injection can be carried out in Product when a web application does not properly check or clean

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 4.7
4.7

CVE-2026-4271 - A flaw was found in libsoup, a library for handling HTTP requests. This vulnerability, known as a Us

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 5.3
5.3

CVE-2025-31966 - HCL Sametime is vulnerable to broken server-side validation. While the application performs client-s

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 2.7
2.7

CVE-2026-30911 - Apache Airflow versions 3.1.0 through 3.1.7 missing authorization vulnerability in the Execution API

🏢 Apache 📅 17.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-28779 - Apache Airflow versions 3.1.0 through 3.1.7 session token (_token) in cookies is set to path=/ regar

🏢 Apache 📅 17.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-28563 - Apache Airflow versions 3.1.0 through 3.1.7 /ui/dependencies endpoint returns the full DAG dependenc

🏢 Apache 📅 17.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-26929 - Apache Airflow versions 3.0.0 through 3.1.7 FastAPI DagVersion listing API does not apply per-DAG au

🏢 Apache 📅 17.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-3634 - A flaw was found in libsoup. An attacker controlling the value used to set the Content-Type header c

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 3.9
3.9

CVE-2026-3633 - A flaw was found in libsoup. A remote attacker, by controlling the method parameter of the `soup_mes

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 3.9
3.9

CVE-2026-3632 - A flaw was found in libsoup, a library used by applications to send network requests. This vulnerabi

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 3.9
3.9

CVE-2026-23241 - In the Linux kernel, the following vulnerability has been resolved: audit: add missing syscalls to

🏢 Linux 📅 17.3.2026 📊 CVSS: 0.0
0.0

CVE-2025-71239 - In the Linux kernel, the following vulnerability has been resolved: audit: add fchmodat2() to chang

🏢 Linux 📅 17.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4208 - The extension fails to properly reset the generated MFA code after successful authentication. This l

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4202 - The extension fails to verify, if an authenticated user has permissions to access to redirects resul

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32586 - Missing Authorization vulnerability in Pluggabl Booster for WooCommerce woocommerce-jetpack allows E

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-1323 - The extension fails to properly define allowed classes used when deserializing transport failure met

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4312 - GCB/FCB Audit Software developed by DrangSoft has a Missing Authentication vulnerability, allowing u

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-3237 - In affected versions of Octopus Server it was possible for a low privileged user to manipulate an AP

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4258 - All versions of the package sjcl are vulnerable to Improper Verification of Cryptographic Signature

🏢 Oracle 📅 17.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-4308 - A weakness has been identified in frdel/agent0ai agent-zero 0.9.7. This affects the function handle_

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 6.3
6.3

CVE-2026-4307 - A security flaw has been discovered in frdel/agent0ai agent-zero 0.9.7-10. The impacted element is t

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-2373 - The Royal Addons for Elementor – Addons and Templates Kit for Elementor plugin for WordPress is vuln

🏢 Wordpress 📅 17.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-0708 - A flaw was found in libucl. A remote attacker could exploit this by providing a specially crafted Un

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 8.3
8.3

CVE-2026-2579 - The WowStore – Store Builder & Product Blocks for WooCommerce plugin for WordPress is vulnerable to

🏢 Wordpress 📅 17.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-4289 - A security vulnerability has been detected in Tiandy Easy7 Integrated Management Platform up to 7.17

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-4288 - A weakness has been identified in Tiandy Easy7 Integrated Management Platform 7.17.0. The impacted e

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-4287 - A security flaw has been discovered in Tiandy Easy7 Integrated Management Platform 7.17.0. The affec

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-4285 - A vulnerability was identified in taoofagi easegen-admin up to 8f87936ac774065b92fb20aab55b274a6ea76

🏢 Sonstige 📅 17.3.2026 📊 CVSS: 2.7
2.7

CVE-2026-4284 - A vulnerability was determined in taoofagi easegen-admin up to 8f87936ac774065b92fb20aab55b274a6ea76

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 4.7
4.7

CVE-2026-4177 - YAML::Syck versions through 1.36 for Perl has several potential security vulnerabilities including a

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 9.1
9.1

CVE-2026-21991 - A DTrace component, dtprobed, allows arbitrary file creation through crafted USDT provider names.

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 5.5
5.5

CVE-2026-2454 - Mattermost versions 11.3.x <= 11.3.0, 11.2.x <= 11.2.2, 10.11.x <= 10.11.10 fail to handle incorrect

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 5.8
5.8

CVE-2026-29522 - ZwickRoell Test Data Management versions prior to 3.0.8 contain a local file inclusion (LFI) vulnera

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-26230 - Mattermost versions 10.11.x <= 10.11.10 fail to properly validate permission requirements in the tea

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 3.8
3.8

CVE-2026-1629 - Mattermost versions 10.11.x <= 10.11.10 Fail to invalidate cached permalink preview data when a user

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 4.3
4.3

CVE-2025-69902 - A command injection vulnerability in the minimal_wrapper.py component of kubectl-mcp-server v1.2.0 a

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-50881 - The `flow/admin/moniteur.php` script in Use It Flow administration website before 10.0.0 is vulnerab

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-32267 - Craft CMS is a content management system (CMS). From version 4.0.0-RC1 to before version 4.17.6 and

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-32264 - Craft CMS is a content management system (CMS). From version 4.0.0-RC1 to before version 4.17.5 and

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-32263 - Craft CMS is a content management system (CMS). From version 5.6.0 to before version 5.9.11, in src/

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-32262 - Craft CMS is a content management system (CMS). From version 4.0.0-RC1 to before version 4.17.5 and

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-30882 - Chamilo LMS is a learning management system. Chamilo LMS version 1.11.34 and prior contains a Reflec

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-30881 - Chamilo LMS is a learning management system. Version 1.11.34 and prior contains a SQL Injection vuln

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-30876 - Chamilo LMS is a learning management system. Prior to version 1.11.36, Chamilo is vulnerable to user

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-30875 - Chamilo LMS is a learning management system. Prior to version 1.11.36, an arbitrary file upload vuln

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-29516 - Buffalo TeraStation NAS TS5400R firmware version 4.02-0.06 and prior contain an excessive file permi

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 4.9
4.9

CVE-2026-28430 - Chamilo LMS is a learning management system. Prior to version 1.11.34, there is an unauthenticated S

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-26304 - Mattermost versions 11.3.x <= 11.3.0, 11.2.x <= 11.2.2 fail to verify run_create permission for empt

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 4.3
4.3

CVE-2025-69693 - Out-of-bounds read in FFmpeg 8.0 and 8.0.1 RV60 video decoder (libavcodec/rv60dec.c). The quantizati

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 5.4
5.4

CVE-2025-68971 - In Forgejo through 13.0.3, the attachment component allows a denial of service by uploading a multi-

🏢 Sonstige 📅 16.3.2026 📊 CVSS: 6.5
6.5
«« « Zurück Seite 16 von 65 Weiter » »»

🏢 CVE nach Hersteller

Empfohlene Sicherheitstools

Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.