CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
16510 CVEs gefunden (Seite 2/67)

CVE-2026-5025 - The '/logs' and '/logs-stream' endpoints in the log router allow any authenticated user to read the

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-5022 - The '/api/v1/files/images/{flow_id}/{file_name}' endpoint does not enforce any authentication or aut

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-5010 - A reflected Cross-Site Scripting (XSS) vulnerability has been discovered in Clickedu. This vulnerabi

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4984 - The Twilio integration webhook handler accepts any POST request without validating Twilio's 'X-Twili

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 8.2
8.2

CVE-2026-4980 - A local file disclosure vulnerability in the XInclude processing component of Inkscape 1.1 before 1.

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.3
6.3

CVE-2026-4957 - A flaw has been found in OpenBMB XAgent 1.0.0. The impacted element is the function FunctionHandler.

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 2.7
2.7

CVE-2026-4956 - A vulnerability was detected in Shenzhen Ruiming Technology Streamax Crocus 1.3.44. The affected ele

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-4955 - A vulnerability was found in Shenzhen Ruiming Technology Streamax Crocus 1.3.44. This impacts an unk

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-4954 - A security vulnerability has been detected in mingSoft MCMS up to 5.5.0. Impacted is the function li

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.3
6.3

CVE-2026-4953 - A weakness has been identified in mingSoft MCMS up to 5.5.0. This issue affects the function catchIm

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-33766 - WWBN AVideo is an open source video platform. In versions up to and including 26.0, `isSSRFSafeURL()

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33764 - WWBN AVideo is an open source video platform. In versions up to and including 26.0, the AI plugin's

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-33763 - WWBN AVideo is an open source video platform. In versions up to and including 26.0, the `get_api_vid

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-33761 - WWBN AVideo is an open source video platform. In versions up to and including 26.0, three `list.json

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-33759 - WWBN AVideo is an open source video platform. In versions up to and including 26.0, the `objects/pla

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-33758 - OpenBao is an open source identity-based secrets management system. Prior to version 2.5.2, OpenBao

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33757 - OpenBao is an open source identity-based secrets management system. Prior to version 2.5.2, OpenBao

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 9.6
9.6

CVE-2026-33755 - Group-Office is an enterprise customer relationship management and groupware tool. Prior to versions

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-33750 - The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-33748 - BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33433 - Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.42, 3.6.11, and 3.7.0-ea.

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33284 - GlobaLeaks is free and open-source whistleblowing software. Prior to version 5.0.89, the /api/suppor

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33206 - calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books.

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33205 - calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books.

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-30689 - A blog.admin v.8.0 and before system's getinfobytoken API interface contains an improper access cont

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-30637 - Server-Side Request Forgery (SSRF) vulnerability exists in the AnnounContent of the /admin/read.php

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-30407 - Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-30304 - In its design for automatic terminal command execution, AI Code offers two options: Execute safe com

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 9.6
9.6

CVE-2026-30303 - The command auto-approval module in Axon Code contains an OS Command Injection vulnerability, render

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-29871 - A path traversal vulnerability exists in the awesome-llm-apps project in commit e46690f99c3f08be80a9

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-28375 - A testdata data-source can be used to trigger out-of-memory crashes in Grafana.

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-27880 - The OpenFeature feature toggle evaluation endpoint reads unbounded values into memory, which can cau

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-27879 - A resample query can be used to trigger out-of-memory crashes in Grafana.

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-27877 - When using public dashboards and direct data-sources, all direct data-sources' passwords are exposed

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-27876 - A chained attack via SQL Expressions and a Grafana Enterprise plugin can lead to a remote arbitrary

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 9.1
9.1

CVE-2026-1496 - Vulnerable versions of Coverity Connect lack an error handler in the authentication logic for comman

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2025-69988 - BS Producten Petcam 33.1.0.0818 is vulnerable to Incorrect Access Control. An unauthenticated attack

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.5
6.5

CVE-2025-69986 - A buffer overflow vulnerability exists in the ONVIF GetStreamUri function of LSC Indoor Camera V7.6.

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.2
7.2

CVE-2025-61190 - A Reflected Cross-Site Scripting (XSS) vulnerability has been identified in DSpace JSPUI 6.5 within

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2024-11604 - Insertion of Sensitive Information into Log File vulnerability in the SCIM Driver module in OpenText

🏢 Linux 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32859 - ByteDance Deer-Flow versions prior to commit 5dbb362 contain a stored cross-site scripting vulnerabi

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-32695 - Traefik is an HTTP reverse proxy and load balancer. Prior to versions 3.6.11 and 3.7.0-ea.2, Traefik

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2025-13478 - Cache misconfiguration vulnerability in OpenText Identity Manager on Windows, Linux allows remote au

🏢 Linux 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4982 - A user with permission "update world" in any Venueless world is able to exfiltrate chat messages fro

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4340 - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4622 - OS Command Injection vulnerability in NEC Platforms, Ltd. Aterm Series allows a attacker to execute

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4621 - Hidden Functionality vulnerability in NEC Platforms, Ltd. Aterm Series allows a attacker to enable t

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4620 - OS Command Injection vulnerability in NEC Platforms, Ltd. Aterm Series allows a attacker to execute

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4619 - Path Traversal vulnerability in NEC Platforms, Ltd. Aterm Series allows a attacker to wtite over any

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4309 - Missing Authorization vulnerability in NEC Platforms, Ltd. Aterm Series allows a attacker to get a s

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-25101 - Bludit allows user's session identifier to be set before authentication. The value of this session I

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-25100 - Bludit is vulnerable to Stored Cross-Site Scripting (XSS) in its image upload functionality. An auth

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-25099 - Bludit’s API plugin allows an authenticated attacker with a valid API token to upload files of any t

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2023-7339 - Stack-based buffer overflow vulnerability in Softing Industrial Automation GmbH gateways allows over

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-3457 - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerab

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-27860 - If auth_username_chars is empty, it is possible to inject arbitrary LDAP filter to Dovecot's LDAP au

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 3.7
3.7

CVE-2026-27859 - A mail message containing excessive amount of RFC 2231 MIME parameters causes LMTP to use too much C

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-27858 - Attacker can send a specifically crafted message before authentication that causes managesieve to al

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-27857 - Sending "NOOP (((...)))" command with 4000 parenthesis open+close results in ~1MB extra memory usage

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-27856 - Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attac

🏢 Oracle 📅 27.3.2026 📊 CVSS: 7.4
7.4

CVE-2026-27855 - Dovecot OTP authentication is vulnerable to replay attack under specific conditions. If auth cache i

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.8
6.8

CVE-2026-24031 - Dovecot SQL based authentication can be bypassed when auth_username_chars is cleared by admin. This

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.7
7.7

CVE-2026-0394 - When dovecot has been configured to use per-domain passwd files, and they are placed one path compon

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 5.3
5.3

CVE-2025-59032 - ManageSieve AUTHENTICATE command crashes when using literal as SASL initial response. This can be us

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.5
7.5

CVE-2025-59031 - Dovecot has provided a script to use for attachment to text conversion. This script unsafely handles

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 4.3
4.3

CVE-2025-59028 - When sending invalid base64 SASL data, login process is disconnected from the auth server, causing a

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-4948 - A flaw was found in firewalld. A local unprivileged user can exploit this vulnerability by mis-autho

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 5.5
5.5

CVE-2026-34353 - In OCaml through 4.14.3, Bigarray.reshape allows an integer overflow, and resultant reading of arbit

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 5.9
5.9

CVE-2026-33559 - WordPress Plugin "OpenStreetMap" provided by MiKa contains a cross-site scripting vulnerability. On

🏢 Wordpress 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33366 - Missing authentication for critical function vulnerability in BUFFALO Wi-Fi router products may allo

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33280 - Hidden functionality issue exists in BUFFALO Wi-Fi router products, which may allow an attacker to g

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32678 - Authentication bypass issue exists in BUFFALO Wi-Fi router products, which may allow an attacker to

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32669 - Code injection vulnerability exists in BUFFALO Wi-Fi router products. If this vulnerability is explo

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-27650 - OS Command Injection vulnerability exists in BUFFALO Wi-Fi router products. If this vulnerability is

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-22744 - In RedisFilterExpressionConverter of spring-ai-redis-store, when a user-controlled string is passed

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-22743 - Spring AI's spring-ai-neo4j-store contains a Cypher injection vulnerability in Neo4jVectorFilterExpr

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-22742 - Spring AI's spring-ai-bedrock-converse contains a Server-Side Request Forgery (SSRF) vulnerability i

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 8.6
8.6

CVE-2026-22738 - In Spring AI, a SpEL injection vulnerability exists in SimpleVectorStore when a user-supplied value

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 9.8
9.8

CVE-2024-14028 - Use after free vulnerability in Softing smartLink HW-DP or smartLink HW-PN webserver allows HTTP DoS

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-4910 - A security vulnerability has been detected in Shenzhen Ruiming Technology Streamax Crocus up to 1.3.

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-3098 - The Smart Slider 3 plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to,

🏢 Wordpress 📅 27.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-4909 - A weakness has been identified in code-projects Exam Form Submission 1.0. This impacts an unknown fu

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 2.4
2.4

CVE-2026-4908 - A security flaw has been discovered in code-projects Simple Laundry System 1.0. This affects an unkn

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-4907 - A vulnerability was identified in Page-Replica Page Replica up to e4a7f52e75093ee318b4d5a9a9db675105

🏢 F5 📅 27.3.2026 📊 CVSS: 6.3
6.3

CVE-2026-4906 - A vulnerability was determined in Tenda AC5 15.03.06.47. The affected element is the function decode

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-33935 - MyTube is a self-hosted downloader and player for several video websites Prior to version 1.8.72, an

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33890 - MyTube is a self-hosted downloader and player for several video websites Prior to version 1.8.71, an

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33747 - BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 8.4
8.4

CVE-2026-33745 - cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.39.0, t

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.4
7.4

CVE-2026-33744 - BentoML is a Python library for building online serving systems optimized for AI apps and model infe

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-33735 - MyTube is a self-hosted downloader and player for several video websites Prior to version 1.8.69, an

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33730 - Open Source Point of Sale (opensourcepos) is a web based point of sale application written in PHP us

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-33729 - OpenFGA is a high-performance and flexible authorization/permission engine built for developers and

🏢 Google 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33728 - dd-trace-java is a Datadog APM client for Java. In versions of dd-trace-java 0.40.0 through prior to

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33726 - Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to

🏢 Azure 📅 27.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-33725 - Metabase is an open source business intelligence and embedded analytics tool. In Metabase Enterprise

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-33721 - MapServer is a system for developing web-based GIS applications. Starting in version 4.2 and prior t

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-33718 - OpenHands is software for AI-driven development. Starting in version 1.5.0, a Command Injection vuln

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.6
7.6

CVE-2026-33701 - OpenTelemetry Java Instrumentation provides OpenTelemetry auto-instrumentation and instrumentation l

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33699 - pypdf is a free and open-source pure-python PDF library. Versions prior to 6.9.2 have a vulnerabilit

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33693 - Lemmy is a link aggregator and forum for the fediverse. Prior to version 0.7.0-beta.9, the `v4_is_in

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-4905 - A vulnerability was found in Tenda AC5 15.03.06.47. Impacted is the function formWifiWpsOOB of the f

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-4904 - A vulnerability has been found in Tenda AC5 15.03.06.47. This issue affects the function formSetCfm

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-33945 - Incus is a system container and virtual machine manager. Incus instances have an option to provide c

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 9.9
9.9

CVE-2026-33898 - Incus is a system container and virtual machine manager. Prior to version 6.23.0, the web server spa

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-33697 - Cocos AI is a confidential computing system for AI. The current implementation of attested TLS (aTLS

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-29071 - Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 3.1
3.1

CVE-2026-29070 - Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-28788 - Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 7.1
7.1

CVE-2026-28786 - Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-27893 - vLLM is an inference and serving engine for large language models (LLMs). Starting in version 0.10.1

🏢 Sonstige 📅 27.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-4903 - A flaw has been found in Tenda AC5 15.03.06.47. This vulnerability affects the function formQuickInd

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-4902 - A vulnerability was detected in Tenda AC5 15.03.06.47. This affects the function fromAddressNat of t

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-34352 - In TigerVNC before 1.16.2, Image.cxx in x0vncserver allows other users to observe or manipulate the

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.5
8.5

CVE-2026-33897 - Incus is a system container and virtual machine manager. Prior to version 6.23.0, instance template

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 9.9
9.9

CVE-2026-33743 - Incus is a system container and virtual machine manager. Prior to version 6.23.0, a specially crafte

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-33711 - Incus is a system container and virtual machine manager. Incus provides an API to retrieve VM screen

🏢 Linux 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33542 - Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validati

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4900 - A weakness has been identified in code-projects Online Food Ordering System 1.0. This affects an unk

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-4899 - A security flaw has been discovered in code-projects Online Food Ordering System 1.0. Affected by th

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 2.4
2.4

CVE-2026-4898 - A vulnerability was identified in code-projects Online Food Ordering System 1.0. Affected by this vu

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-4346 - The vulnerability affecting TL-WR850N v3 allows cleartext storage of administrative and Wi-Fi creden

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-3650 - A memory leak exists in the Grassroots DICOM library (GDCM). The bug occurs when parsing malformed D

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-33687 - Sharp is a content management framework built for Laravel as a package. Versions prior to 9.20.0 con

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-33686 - Sharp is a content management framework built for Laravel as a package. Versions prior to 9.20.0 hav

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-33682 - Streamlit is a data oriented application development framework for python. Streamlit Open Source ver

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.7
4.7

CVE-2026-33674 - PrestaShop is an open source e-commerce web application. Versions prior to 8.2.5 and 9.1.0 improperl

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 2.0
2.0

CVE-2026-33673 - PrestaShop is an open source e-commerce web application. Versions prior to 8.2.5 and 9.1.0 are vulne

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.6
7.6

CVE-2026-33672 - Picomatch is a glob matcher written JavaScript. Versions prior to 4.0.4, 3.0.2, and 2.3.2 are vulner

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-33671 - Picomatch is a glob matcher written JavaScript. Versions prior to 4.0.4, 3.0.2, and 2.3.2 are vulner

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-33670 - SiYuan is a personal knowledge management system. Prior to version 3.6.2, the /api/file/readDir inte

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-33669 - SiYuan is a personal knowledge management system. Prior to version 3.6.2, document IDs were retrieve

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-33664 - Kestra is an open-source, event-driven orchestration platform Versions up to and including 1.3.3 ren

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-33661 - Pay is an open-source payment SDK extension package for various Chinese payment services. Prior to v

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.6
8.6

CVE-2026-33658 - Active Storage allows users to attach cloud and local files in Rails applications. Prior to versions

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33653 - Ulloady is a file uploader script with multi-file upload support. A Stored Cross-Site Scripting (XSS

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.6
4.6

CVE-2026-28377 - A vulnerability in Grafana Tempo exposes the S3 SSE-C encryption key in plaintext through the /statu

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-1556 - Information disclosure in the file URI processing of File (Field) Paths in Drupal File (Field) Paths

🏢 Drupal 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-0748 - In the Drupal 7 Internationalization (i18n) module, the i18n_node submodule allows a user with both

🏢 Drupal 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2025-12805 - A flaw was found in Red Hat OpenShift AI (RHOAI) llama-stack-operator. This vulnerability allows una

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-4933 - Incorrect Authorization vulnerability in Drupal Unpublished Node Permissions allows Forceful Browsin

🏢 Drupal 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-4393 - Cross-Site Request Forgery (CSRF) vulnerability in Drupal Automated Logout allows Cross Site Request

🏢 Drupal 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-3622 - The vulnerability exists in the UPnP component of TL-WR841N v14, where improper input validation lea

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-3573 - Incorrect Authorization vulnerability in Drupal AI (Artificial Intelligence) allows Resource Injecti

🏢 Drupal 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-3532 - Improper Handling of Case Sensitivity vulnerability in Drupal OpenID Connect / OAuth client allows P

🏢 Drupal 📅 26.3.2026 📊 CVSS: 4.2
4.2

CVE-2026-3531 - Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal OpenID Connect / OA

🏢 Drupal 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-3530 - Server-Side Request Forgery (SSRF) vulnerability in Drupal OpenID Connect / OAuth client allows Serv

🏢 Drupal 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-3529 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Google 📅 26.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-3528 - Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability i

🏢 Drupal 📅 26.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-3527 - Missing Authentication for Critical Function vulnerability in Drupal AJAX Dashboard allows Exploitin

🏢 Drupal 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-3526 - Incorrect Authorization vulnerability in Drupal File Access Fix (deprecated) allows Forceful Browsin

🏢 Drupal 📅 26.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-3525 - Incorrect Authorization vulnerability in Drupal File Access Fix (deprecated) allows Forceful Browsin

🏢 Drupal 📅 26.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-33742 - Invoice Ninja is a source-available invoice, quote, project and time-tracking app built with Laravel

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-33738 - Lychee is a free, open-source photo-management tool. Prior to version 7.5.3, the photo `description`

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33645 - Fireshare facilitates self-hosted media and link sharing. In version 1.5.1, an authenticated path tr

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.1
7.1

CVE-2026-33644 - Lychee is a free, open-source photo-management tool. Prior to version 7.5.2, the SSRF protection in

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33640 - Outline is a service that allows for collaborative documentation. Outline implements an Email OTP lo

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33638 - Ech0 is an open-source, self-hosted publishing platform for personal idea sharing. Prior to version

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-33635 - iCalendar is a Ruby library for dealing with iCalendar files in the iCalendar format defined by RFC-

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-33628 - Invoice Ninja is a source-available invoice, quote, project and time-tracking app built with Laravel

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-33623 - PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser. Pinc

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.7
6.7

CVE-2026-33622 - PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser. Pinc

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33621 - PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser. Pinc

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.8
4.8

CVE-2026-33620 - PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser. Pinc

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-33619 - PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser. Pinc

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.1
4.1

CVE-2026-33545 - MobSF is a mobile application security testing tool used. Prior to version 4.4.6, MobSF's `read_sqli

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-33541 - TSPortal is the WikiTide Foundation’s in-house platform used by the Trust and Safety team to manage

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-33537 - Lychee is a free, open-source photo-management tool. The patch introduced for GHSA-cpgw-wgf3-xc6v (S

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33375 - The Grafana MSSQL data source plugin contains a logic flaw that allows a low-privileged user (Viewer

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-2272 - A flaw was found in GIMP. An integer overflow vulnerability exists when processing ICO image files,

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-2271 - A flaw was found in GIMP's PSP (Paint Shop Pro) file parser. A remote attacker could exploit an inte

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 3.3
3.3

CVE-2026-2239 - A flaw was found in GIMP. Heap-buffer-overflow vulnerability exists in the fread_pascal_string funct

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 2.8
2.8

CVE-2026-2100 - A flaw was found in p11-kit. A remote attacker could exploit this vulnerability by calling the C_Der

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-21724 - A vulnerability has been discovered in Grafana OSS where an authorization bypass in the provisioning

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-0968 - A flaw was found in libssh in which a malicious SFTP (SSH File Transfer Protocol) server can exploit

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-0967 - A flaw was found in libssh. A remote attacker, by controlling client configuration files or known_ho

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-0966 - The API function `ssh_get_hexa()` is vulnerable, when 0-lenght input is provided to this function. T

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-0965 - A flaw was found in libssh where it can attempt to open arbitrary files during configuration parsing

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-0964 - A malicious SCP server can send unexpected paths that could make the client application override loc

🏢 Suse 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33632 - ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies.

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33631 - ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies.

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.7
8.7

CVE-2026-33536 - ImageMagick is free and open-source software used for editing and manipulating digital images. Prior

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.1
5.1

CVE-2026-33535 - ImageMagick is free and open-source software used for editing and manipulating digital images. Prior

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.0
4.0

CVE-2026-33532 - `yaml` is a YAML parser and serialiser for JavaScript. Parsing a YAML document with a version of `ya

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-33531 - InvenTree is an Open Source Inventory Management System. Prior to version 1.2.6, a path traversal vu

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33530 - InvenTree is an Open Source Inventory Management System. Prior to version 1.2.6, certain API endpoin

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.7
7.7

CVE-2026-33529 - Zoraxy is a general purpose HTTP reverse proxy and forwarding tool. Prior to version 3.3.2, an authe

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 3.3
3.3

CVE-2026-33528 - GoDoxy is a reverse proxy and container orchestrator for self-hosters. Prior to version 0.27.5, the

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-33525 - Authelia is an open-source authentication and authorization server providing two-factor authenticati

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32287 - Boolean XPath expressions that evaluate to true can cause an infinite loop in logicalQuery.Select, l

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32286 - The DataRow.Decode function fails to properly validate field lengths. A malicious or compromised Pos

🏢 Postgresql 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32285 - The Delete function fails to properly validate offsets when processing malformed JSON input. This ca

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-32284 - The msgpack decoder fails to properly validate the input buffer length when processing truncated fix

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-2436 - A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerabi

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2023-7338 - Ruckus Unleashed contains a remote code execution vulnerability in the web-based management interfac

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.5
7.5

CVE-2021-4474 - Ruckus Access Point products contain an arbitrary file read vulnerability in the command-line interf

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.9
4.9

CVE-2026-4926 - Impact: A bad regular expression is generated any time you have multiple sequential optional groups

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-4923 - Impact: When using multiple wildcards, combined with at least one parameter, a regular expression c

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.9
5.9

CVE-2026-3190 - A flaw was found in Keycloak. The User-Managed Access (UMA) 2.0 Protection API endpoint for permissi

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-3121 - A flaw was found in Keycloak. An administrator with `manage-clients` permission can exploit a miscon

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-33506 - Ory Polis, formerly known as BoxyHQ Jackson, bridges or proxies a SAML login flow to OAuth 2.0 or Op

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-33505 - Ory Keto is am open source authorization server for managing permissions at scale. Prior to version

🏢 Aws 📅 26.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-33491 - Zen C is a systems programming language that compiles to human-readable GNU C/C11. Prior to version

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-33153 - Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists.

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33152 - Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists.

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 9.1
9.1

CVE-2026-33149 - Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists.

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-33148 - Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists.

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-30463 - Daylight Studio FuelCMS v1.5.2 was discovered to contain a SQL injection vulnerability via the /cont

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.7
7.7

CVE-2026-30458 - An issue in Daylight Studio FuelCMS v1.5.2 allows attackers to exfiltrate users' password reset toke

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 9.1
9.1

CVE-2026-30457 - An issue in the /parser/dwoo component of Daylight Studio FuelCMS v1.5.2 allows attackers to execute

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-29969 - A cross-site scripting (XSS) vulnerability in the wff_cols_pref.css.aspx endpoint of staffwiki v7.0.

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-29055 - Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists.

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-28503 - Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists.

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-26213 - thingino-firmware versions up to the firmware-2026-03-16 release contains an unauthenticated os comm

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33732 - srvx is a universal server based on web standards. Prior to version 0.11.13, a pathname parsing disc

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.8
4.8

CVE-2026-33504 - Ory Hydra is an OAuth 2.0 Server and OpenID Connect Provider. Prior to version 26.2.0, the listOAuth

🏢 Aws 📅 26.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-33503 - Ory Kratos is an identity, user management and authentication system for cloud services. Prior to ve

🏢 Aws 📅 26.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-33496 - ORY Oathkeeper is an Identity & Access Proxy (IAP) and Access Control Decision API that authorizes H

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-33495 - ORY Oathkeeper is an Identity & Access Proxy (IAP) and Access Control Decision API that authorizes H

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-33494 - ORY Oathkeeper is an Identity & Access Proxy (IAP) and Access Control Decision API that authorizes H

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 10.0
10.0

CVE-2026-33490 - H3 is a minimal H(TTP) framework. In versions 2.0.0-0 through 2.0.1-rc.16, the `mount()` method in h

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 3.7
3.7

CVE-2026-33487 - goxmlsig provides XML Digital Signatures implemented in Go. Prior to version 1.6.0, the `validateSig

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-33486 - Roadiz is a polymorphic content management system based on a node system that can handle many types

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.8
6.8

CVE-2026-33481 - Syft is a a CLI tool and Go library for generating a Software Bill of Materials (SBOM) from containe

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-33477 - FileRise is a self-hosted web-based file manager with multi-file upload, editing, and batch operatio

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-32857 - Firecrawl version 2.8.0 and prior contain a server-side request forgery (SSRF) protection bypass vul

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.6
8.6

CVE-2026-4867 - Impact: A bad regular expression is generated any time you have three or more parameters within a s

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-3116 - Mattermost Plugins versions <=11.4 11.0.4 11.1.3 11.3.2 10.11.11.0 fail to validate incoming request

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.9
4.9

CVE-2026-3115 - Mattermost versions 11.2.x <= 11.2.2, 10.11.x <= 10.11.10, 11.4.x <= 11.4.0, 11.3.x <= 11.3.1 fail t

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-3114 - Mattermost versions 11.4.x <= 11.4.0, 11.3.x <= 11.3.1, 11.2.x <= 11.2.3, 10.11.x <= 10.11.11 fail t

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-3113 - Mattermost versions 11.4.x <= 11.4.0, 11.3.x <= 11.3.1, 11.2.x <= 11.2.3, 10.11.x <= 10.11.11 fail t

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.0
5.0

CVE-2026-3112 - Mattermost versions 11.4.x <= 11.4.0, 11.3.x <= 11.3.1, 11.2.x <= 11.2.3, 10.11.x <= 10.11.11 fail t

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.8
6.8

CVE-2026-3109 - Mattermost Plugins versions <=11.4 10.11.11.0 fail to validate webhook request timestamps which allo

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 2.2
2.2

CVE-2026-3108 - Mattermost versions 11.2.x <= 11.2.2, 10.11.x <= 10.11.10, 11.4.x <= 11.4.0, 11.3.x <= 11.3.1 fail t

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.0
8.0

CVE-2026-34071 - Stirling-PDF is a locally hosted web application that allows you to perform various operations on PD

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-33636 - LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portabl

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.6
7.6

CVE-2026-33470 - Frigate is a network video recorder (NVR) with realtime local object detection for IP cameras. In ve

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-33469 - Frigate is a network video recorder (NVR) with realtime local object detection for IP cameras. In ve

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-33468 - Kysely is a type-safe TypeScript SQL query builder. Prior to version 0.28.14, Kysely's `DefaultQuery

🏢 Mysql 📅 26.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-33442 - Kysely is a type-safe TypeScript SQL query builder. In versions 0.28.12 and 0.28.13, the `sanitizeSt

🏢 Mysql 📅 26.3.2026 📊 CVSS: 8.1
8.1

CVE-2026-33438 - Stirling-PDF is a locally hosted web application that allows you to perform various operations on PD

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-33430 - Briefcase is a tool for converting a Python project into a standalone native application. Starting i

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-33416 - LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portabl

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-33402 - Sakai is a Collaboration and Learning Environment (CLE). In versions 23.0 through 23.4 and 25.0 thro

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-33015 - EVerest is an EV charging software stack. Prior to version 2026.02.0, even immediately after CSMS pe

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.2
5.2

CVE-2026-33014 - EVerest is an EV charging software stack. Prior to version 2026.02.0, during RemoteStop processing,

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.2
5.2

CVE-2026-33009 - EVerest is an EV charging software stack. Versions prior to 2026.02.0 have a data race leading to C+

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 8.2
8.2

CVE-2026-32846 - OpenClaw through 2026.3.23 (fixed in commit 4797bbc) contains a path traversal vulnerability in medi

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-29905 - Kirby CMS through 5.1.4 allows an authenticated user with 'Editor' permissions to cause a persistent

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-29044 - EVerest is an EV charging software stack. Prior to version 2026.02.0, when WithdrawAuthorization is

🏢 Sonstige 📅 26.3.2026 📊 CVSS: 5.0
5.0
«« « Zurück Seite 2 von 67 Weiter » »»

🏢 CVE nach Hersteller

Empfohlene Sicherheitstools

Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.