CVE Datenbank
Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.
CVE-2026-72089 - In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Reject firmware log
CVE-2026-72088 - In the Linux kernel, the following vulnerability has been resolved: scsi: hpsa: Fix DMA mapping lea
CVE-2026-72087 - In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix memory leak in
CVE-2026-72086 - In the Linux kernel, the following vulnerability has been resolved: scsi: xen: scsiback: Free the c
CVE-2026-72085 - In the Linux kernel, the following vulnerability has been resolved: scsi: xen: scsiback: Free unsub
CVE-2026-72084 - In the Linux kernel, the following vulnerability has been resolved: scsi: target: Bound PR-OUT Tran
CVE-2026-72083 - In the Linux kernel, the following vulnerability has been resolved: scsi: target: core: Fix iSCSI I
CVE-2026-72082 - In the Linux kernel, the following vulnerability has been resolved: scsi: elx: efct: Fix refcount l
CVE-2026-72081 - In the Linux kernel, the following vulnerability has been resolved: scsi: elx: efct: Fix I/O leak o
CVE-2026-72080 - In the Linux kernel, the following vulnerability has been resolved: fs/resctrl: Fix use-after-free
CVE-2026-72079 - In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix use-after-
CVE-2026-72078 - In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - validate contr
CVE-2026-72077 - In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix firmware l
CVE-2026-72076 - In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix out-of-bou
CVE-2026-72075 - In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix race condi
CVE-2026-72074 - In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix type confu
CVE-2026-72073 - In the Linux kernel, the following vulnerability has been resolved: mmc: vub300: fix use-after-free
CVE-2026-72072 - In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: macsec: fix use-afte
CVE-2026-72071 - In the Linux kernel, the following vulnerability has been resolved: tracing/user_events: Fix use-af
CVE-2026-72070 - In the Linux kernel, the following vulnerability has been resolved: wifi: libertas_tf: fix use-afte
CVE-2026-72069 - In the Linux kernel, the following vulnerability has been resolved: locking/rt: Fix the incorrect R
CVE-2026-72068 - In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: Use u64 multi
CVE-2026-72067 - In the Linux kernel, the following vulnerability has been resolved: cpu: hotplug: Preserve per inst
CVE-2026-72066 - In the Linux kernel, the following vulnerability has been resolved: cpu: hotplug: Bound hotplug sta
CVE-2026-72065 - In the Linux kernel, the following vulnerability has been resolved: net: mana: Validate the packet
CVE-2026-72064 - In the Linux kernel, the following vulnerability has been resolved: net: mana: Sync page pool RX fr
CVE-2026-72063 - In the Linux kernel, the following vulnerability has been resolved: gpio: tegra: do not call pinctr
CVE-2026-72062 - In the Linux kernel, the following vulnerability has been resolved: gpio: mt7621: avoid corruption
CVE-2026-72061 - In the Linux kernel, the following vulnerability has been resolved: net: sit: require CAP_NET_ADMIN
CVE-2026-72060 - In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: icssg: guard
CVE-2026-72059 - In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: destroy DMA po
CVE-2026-72058 - In the Linux kernel, the following vulnerability has been resolved: net: ixp4xx_hss: fix duplicate
CVE-2026-72057 - In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: preserve tc_
CVE-2026-72056 - In the Linux kernel, the following vulnerability has been resolved: net: ena: clean up XDP TX queue
CVE-2026-72055 - In the Linux kernel, the following vulnerability has been resolved: net: ip6_vti: require CAP_NET_A
CVE-2026-72054 - In the Linux kernel, the following vulnerability has been resolved: net: ip_vti: require CAP_NET_AD
CVE-2026-72053 - In the Linux kernel, the following vulnerability has been resolved: net: ipip: require CAP_NET_ADMI
CVE-2026-72052 - In the Linux kernel, the following vulnerability has been resolved: net: ip6_gre: require CAP_NET_A
CVE-2026-72051 - In the Linux kernel, the following vulnerability has been resolved: net: ip6_tunnel: require CAP_NE
CVE-2026-72050 - In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Free BPID bitmap
CVE-2026-72049 - In the Linux kernel, the following vulnerability has been resolved: ieee802154: admin-gate legacy L
CVE-2026-72048 - In the Linux kernel, the following vulnerability has been resolved: ieee802154: ca8210: fix cas_ctl
CVE-2026-72047 - In the Linux kernel, the following vulnerability has been resolved: ieee802154: ca8210: fix pointer
CVE-2026-72046 - In the Linux kernel, the following vulnerability has been resolved: gve: fix header buffer corrupti
CVE-2026-72045 - In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: cn10k: restrict V
CVE-2026-72044 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-72043 - In the Linux kernel, the following vulnerability has been resolved: LoongArch: Fix missing dirty pa
CVE-2026-72042 - In the Linux kernel, the following vulnerability has been resolved: ipmi: Fix user refcount underfl
CVE-2026-72041 - In the Linux kernel, the following vulnerability has been resolved: espintcp: use sk_msg_free_parti
CVE-2026-72040 - In the Linux kernel, the following vulnerability has been resolved: ipmi: fix refcount leak in i_ip
CVE-2026-72039 - In the Linux kernel, the following vulnerability has been resolved: bnx2x: fix potential memory lea
CVE-2026-72038 - In the Linux kernel, the following vulnerability has been resolved: net: liquidio: fix BAR resource
CVE-2026-72037 - In the Linux kernel, the following vulnerability has been resolved: net: lan743x: Initialize eth_sy
CVE-2026-72036 - In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_multiq: Replace
CVE-2026-72035 - In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_taprio: Replace
CVE-2026-72034 - In the Linux kernel, the following vulnerability has been resolved: fhandle: reject detached mounts
CVE-2026-72033 - In the Linux kernel, the following vulnerability has been resolved: orangefs: keep the readdir entr
CVE-2026-72032 - In the Linux kernel, the following vulnerability has been resolved: net/mlx5: HWS, fix matcher leak
CVE-2026-72031 - In the Linux kernel, the following vulnerability has been resolved: ata: libata-core: Add NOLPM qui
CVE-2026-72030 - In the Linux kernel, the following vulnerability has been resolved: ata: libata-core: Reject an inv
CVE-2026-72029 - In the Linux kernel, the following vulnerability has been resolved: net: wwan: iosm: bound device o
CVE-2026-72028 - In the Linux kernel, the following vulnerability has been resolved: riscv: probes: save original sp
CVE-2026-72027 - In the Linux kernel, the following vulnerability has been resolved: mm/compaction: handle free_page
CVE-2026-72026 - In the Linux kernel, the following vulnerability has been resolved: irqchip/irq-riscv-imsic-early:
CVE-2026-72025 - In the Linux kernel, the following vulnerability has been resolved: s390/monwriter: Reject buffer r
CVE-2026-72024 - In the Linux kernel, the following vulnerability has been resolved: mac802154: remove interfaces wi
CVE-2026-72023 - In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: fix SQB pointer l
CVE-2026-72022 - In the Linux kernel, the following vulnerability has been resolved: llc: fix SAP refcount leak in l
CVE-2026-72021 - In the Linux kernel, the following vulnerability has been resolved: ipvs: use parsed transport offs
CVE-2026-72020 - In the Linux kernel, the following vulnerability has been resolved: ipvs: reset full ip_vs_seq stru
CVE-2026-72019 - In the Linux kernel, the following vulnerability has been resolved: macsec: don't read an unset MAC
CVE-2026-72018 - In the Linux kernel, the following vulnerability has been resolved: dibs: loopback: validate offset
CVE-2026-72017 - In the Linux kernel, the following vulnerability has been resolved: net: macb: drop in-flight Tx SK
CVE-2026-72016 - In the Linux kernel, the following vulnerability has been resolved: cpu/hotplug: Fix NULL kobject w
CVE-2026-72015 - In the Linux kernel, the following vulnerability has been resolved: fs/resctrl: Fix double-add of p
CVE-2026-72014 - In the Linux kernel, the following vulnerability has been resolved: drbd: reject data replies with
CVE-2026-72013 - In the Linux kernel, the following vulnerability has been resolved: riscv: Prevent NULL pointer der
CVE-2026-72012 - In the Linux kernel, the following vulnerability has been resolved: tracing/osnoise: Call synchroni
CVE-2026-72011 - In the Linux kernel, the following vulnerability has been resolved: s390/diag: Add missing array_in
CVE-2026-72010 - In the Linux kernel, the following vulnerability has been resolved: cgroup/cpuset: rebind mm mempol
CVE-2026-72009 - In the Linux kernel, the following vulnerability has been resolved: pmdomain: imx93-blk-ctrl: Extra
CVE-2026-72008 - In the Linux kernel, the following vulnerability has been resolved: pmdomain: mediatek: Fix possibl
CVE-2026-72007 - In the Linux kernel, the following vulnerability has been resolved: pmdomain: imx: Fix i.MX8MP VC80
CVE-2026-72006 - In the Linux kernel, the following vulnerability has been resolved: net/mlx5: free mlx5_st_idx_data
CVE-2026-72005 - In the Linux kernel, the following vulnerability has been resolved: wifi: rt2x00: avoid full teardo
CVE-2026-72004 - In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix memory leak
CVE-2026-72003 - In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: cyw: fix heap o
CVE-2026-68479 - In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btrtl: validate firm
CVE-2026-68478 - In the Linux kernel, the following vulnerability has been resolved: memstick: ms_block: reject a ca
CVE-2026-68477 - In the Linux kernel, the following vulnerability has been resolved: ipvs: fix more places with wron
CVE-2026-68476 - In the Linux kernel, the following vulnerability has been resolved: ipvs: reload ip header after he
CVE-2026-68475 - In the Linux kernel, the following vulnerability has been resolved: reset: sunxi: fix memory region
CVE-2026-68474 - In the Linux kernel, the following vulnerability has been resolved: powerpc/spufs: fix out-of-bound
CVE-2026-68473 - In the Linux kernel, the following vulnerability has been resolved: powerpc/uaccess: correct check
CVE-2026-68472 - In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: validate EHT ML
CVE-2026-68471 - In the Linux kernel, the following vulnerability has been resolved: wifi: ieee80211: validate MLE c
CVE-2026-68470 - In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: validate extens
CVE-2026-68469 - In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: fix permanently
CVE-2026-68468 - In the Linux kernel, the following vulnerability has been resolved: mtd: virt-concat: free duplicat
CVE-2026-68467 - In the Linux kernel, the following vulnerability has been resolved: mtd: mchp23k256: use SPI match
CVE-2026-68466 - In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: lpc32xx_slc: fail
CVE-2026-68465 - In the Linux kernel, the following vulnerability has been resolved: mmc: sdhci-esdhc-imx: fix esdhc
CVE-2026-68464 - In the Linux kernel, the following vulnerability has been resolved: mmc: sdhci-esdhc-imx: disable i
CVE-2026-68463 - In the Linux kernel, the following vulnerability has been resolved: mmc: sdhci-esdhc-imx: use pm_ru
CVE-2026-68462 - In the Linux kernel, the following vulnerability has been resolved: bpf: Reject negative const offs
CVE-2026-68461 - In the Linux kernel, the following vulnerability has been resolved: device property: initialize the
CVE-2026-68460 - In the Linux kernel, the following vulnerability has been resolved: f2fs: fix potential deadlock in
CVE-2026-68459 - In the Linux kernel, the following vulnerability has been resolved: f2fs: fix potential deadlock in
CVE-2026-68458 - In the Linux kernel, the following vulnerability has been resolved: binder: cache secctx size befor
CVE-2026-68457 - In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials f
CVE-2026-68456 - In the Linux kernel, the following vulnerability has been resolved: usb: atm: ueagle-atm: wait for
CVE-2026-68455 - In the Linux kernel, the following vulnerability has been resolved: liveupdate: validate session ty
CVE-2026-18807 - The ECS WordPress plugin before 4.3.8 does not have capability or ownership checks on its dynamic r
CVE-2026-18216 - The Backup Migration WordPress plugin before 2.1.7 does not properly restrict a post-restore automat
CVE-2026-16611 - The Product Feed PRO for WooCommerce by AdTribes WordPress plugin before 13.5.7 does not perform an
CVE-2026-16541 - The Simply Schedule Appointments WordPress plugin before 1.6.12.17 does not restrict the user record
CVE-2026-16007 - AppFlowy's qcuiknote feature is affected by a SQL injection vulnerability. Authenticated users with
CVE-2026-14230 - The ECS WordPress plugin before 4.3.8 does not perform capability or object-ownership checks on its
CVE-2026-14229 - The ECS WordPress plugin before 4.3.8 does not check the post status or any capability when renderi
CVE-2026-18387 - The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to ge
CVE-2026-17090 - The Beaver Builder Page Builder – Drag and Drop Website Builder plugin for WordPress is vulnerable t
CVE-2026-16586 - The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is
CVE-2026-16146 - The Invisible Anti-Spam & CAPTCHA — reCAPTCHA Alternative for All Forms plugin for WordPress is vuln
CVE-2026-16145 - The Invisible Anti-Spam & CAPTCHA — reCAPTCHA Alternative for All Forms plugin for WordPress is vuln
CVE-2026-16094 - The Invisible Anti-Spam & CAPTCHA — reCAPTCHA Alternative for All Forms plugin for WordPress is vuln
CVE-2026-15993 - The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is v
CVE-2026-15948 - The Hydra Booking — Appointment Scheduling & Booking Calendar plugin for WordPress is vulnerable to
CVE-2026-15453 - The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to generi
CVE-2026-13360 - The Cookie Banner for GDPR / CCPA – WPLP Cookie Consent plugin for WordPress is vulnerable to Stored
CVE-2026-8840 - The Booking calendar, Appointment Booking System plugin for WordPress is vulnerable to authorization
CVE-2026-16080 - The Image Uploader for Welcart plugin for WordPress is vulnerable to generic SQL Injection via the '
CVE-2026-15965 - The MaxUpload – Big File Uploads – Increase Maximum File Upload Size plugin for WordPress is vulnera
CVE-2026-15341 - The User Session Synchronizer plugin for WordPress is vulnerable to Authentication Bypass leading to
CVE-2026-15312 - The Propovoice: All-in-One Client Management System plugin for WordPress is vulnerable to Privilege
CVE-2026-15303 - The 6Storage Rentals plugin for WordPress is vulnerable to authentication bypass in versions up to,
CVE-2026-15162 - The Object Sync for Salesforce plugin is vulnerable to unauthenticated SQL Injection via the wordpre
CVE-2026-15001 - The bLoyal: Loyalty & Promotions by bLoyal plugin for WordPress is vulnerable to Privilege Escalatio
CVE-2026-14484 - The RapiSafe – Secure Multi File Upload for Contact Form 7 plugin for WordPress is vulnerable to arb
CVE-2026-14433 - The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable t
CVE-2026-12128 - The Pinpoint Booking System – Version 2 plugin for WordPress is vulnerable to Price Manipulation via
CVE-2026-74250 - In OpenStack Ironic before 38.0.1, the autodetect deploy interface may fail to run cleaning immediat
CVE-2026-74247 - A flaw was found in Red Hat Quay. A user with FEATURE_BUILD_SUPPORT enabled and repository write acc
CVE-2026-74245 - A flaw was found in Red Hat Quay's exported logs feature. An unauthenticated attacker with a valid f
CVE-2026-74244 - A flaw was found in Red Hat Quay's Stripe billing webhook handler. This vulnerability allows an unau
CVE-2026-74243 - A flaw was found in Red Hat Quay. When the SECURITY_SCANNER_V4_PSK (pre-shared key) is not set, a re
CVE-2026-74242 - A flaw was found in Red Hat Quay. An administrator of any repository, by knowing or guessing a targe
CVE-2026-74241 - A flaw was found in Red Hat Quay's external Lightweight Directory Access Protocol (LDAP) authenticat
CVE-2026-74240 - A flaw was found in Red Hat Quay's JWT (JSON Web Token) validation for federated robot accounts and
CVE-2026-63650 - OpenVPN 2.7_alpha1 through 2.7.5 using mbedTLS allows remote authenticated users to be misidentified
CVE-2026-63649 - The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows
CVE-2026-18932 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-73683 - Laravel Socialite's Facebook provider contains an authentication bypass vulnerability that allows un
CVE-2026-69414 - Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Micros
CVE-2026-74248 - OpenStack Octavia through 18.0.0 mishandles quality of service (QoS) policy authorization. By associ
CVE-2026-73682 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. CVE-2026
CVE-2026-71570 - Joomla Extension - icagenda.com - ACL bypass allowing arbitrary user enumeration < 2.0.0-4.0.11 - A
CVE-2026-67366 - Joomla Extension - icagenda.com - CSRF on frontend registration actions in iCagenda < 2.0.0-4.0.11 -
CVE-2026-50523 - Improper neutralization of special elements used in a command ('command injection') in Microsoft Pow
CVE-2026-73680 - Cockpit CMS 2.14.0 and prior contains a command injection vulnerability in the FFmpeg integration th
CVE-2026-71571 - Joomla Extension - icagenda.com - Authenticated SQL injection via unescaped numeric filter in iCage
CVE-2026-67365 - Joomla Extension - icagenda.com - Unauthenticated SQL injection in iCagenda < 4.0.0-4.0.11 - Unauthe
CVE-2026-64887 - Use of hard-coded cryptographic key vulnerability in Johnson Controls Airwall allows : Cryptanalytic
CVE-2026-39925 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-34492 - External control of file name or path vulnerability in Johnson Controls Airwall allows : File Manipu
CVE-2026-27871 - Cwe-327 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Johnson Controls TL280 all
CVE-2026-19910 - PAX Technology Q80 Application Installer Signature Verification Bypass Remote Code Execution Vulnera
CVE-2026-19909 - PAX Technology Q80 AIP File Parsing Link Following Remote Code Execution Vulnerability. This vulnera
CVE-2026-19908 - PAX Technology Q80 XCB Daemon Missing Authentication Vulnerability. This vulnerability allows networ
CVE-2026-18554 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensiti
CVE-2026-18178 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to delete arbitra
CVE-2026-17227 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to bypass securit
CVE-2026-17209 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to execute arbitr
CVE-2026-17186 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary CL command
CVE-2026-17184 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary code due t
CVE-2026-17182 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to bypass authentication and ob
CVE-2026-17181 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to write files to arbitrary loc
CVE-2026-17179 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to cause a denial
CVE-2026-17177 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to cause a denial of service du
CVE-2026-17175 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensiti
CVE-2026-17173 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensiti
CVE-2026-17081 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to write arbitrary files due to
CVE-2026-17079 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to bypass securit
CVE-2026-16915 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensiti
CVE-2026-16905 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensiti
CVE-2026-16879 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to bypass securit
CVE-2026-16708 - IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to obtain sensitive information
CVE-2026-73679 - ImpressCMS contains an authenticated remote code execution vulnerability in the custom tag module th
CVE-2026-73678 - MindsDB Minds Platform version 26.1.0 and earlier contains an unauthenticated remote code execution
CVE-2026-50029 - js-toml is a TOML parser for JavaScript, Prior to version 1.1.2, the interpreter checks whether a ke
CVE-2026-50027 - mcp-memory-service is a semantic memory layer for AI applications. Prior to 10.67.1, all HTTP routes
CVE-2026-49457 - erlang_quic is a pure Erlang QUIC implementation. Prior to version 1.4.4, the QUIC client did not au
CVE-2026-45699 - Netatalk is a Free and Open Source file server suite for Unix-like operating systems. In versions 3.
CVE-2026-19188 - A critical OS command injection vulnerability has been identified in the Haiwell IoT Cloud HMI Gate
CVE-2026-18403 - LimeSurvey Community Edition 7.0.5 contains an authenticated SQL injection vulnerability in the Cent
CVE-2025-7639 - The vulnerability, if exploited, could allow an authenticated miscreant with "DNA Authority - Opera
CVE-2026-73850 - Emlog is an open source website building system. In 2.6.20 and earlier, there is a SQL injection vul
CVE-2026-73849 - Emlog is an open source website building system. In 2.6.26 and earlier, install.php accepts action=r
CVE-2026-73847 - Emlog is an open source website building system. In 2.6.26 and earlier, missing CSRF protection on t
CVE-2026-72970 - Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to exe
CVE-2026-63361 - LimeSurvey Community Edition 7.0.5 contains an authenticated reflected cross-site scripting vulnerab
CVE-2026-49282 - Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's public `cs_insn_name(
CVE-2026-49263 - Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's WebAssembly backend a
CVE-2026-48528 - Metacat is data repository software that helps researchers preserve, share, and discover data. Metac
CVE-2026-19847 - A security flaw has been discovered in TOTOLINK A800R 4.1.2cu.5137_B20200730. Affected is the functi
CVE-2026-19846 - A vulnerability was identified in TOTOLINK A800R 4.1.2cu.5137_B20200730. This impacts the function s
CVE-2026-19682 - A command injection vulnerability exists in Security Center where a remote, unauthenticated attacker
CVE-2026-19681 - An authenticated command injection vulnerability exists in Security Center related to file upload pr
CVE-2026-19680 - A SQL injection vulnerability exists in Security Center that could allow an attacker to access unaut
CVE-2026-19679 - An input validation vulnerability exists in Security Center's file upload handling, where insufficie
CVE-2026-19639 - An improper access control vulnerability exists where an authenticated non-administrative applicatio
CVE-2026-19636 - An issue was identified in which CSRF tokens were generated using a predictable method, potentially
CVE-2026-19635 - A local privilege escalation vulnerability exists in Security Center. An attacker with write access
CVE-2026-19631 - A SQL injection vulnerability exists in Security Center that could allow an authenticated administra
CVE-2026-19629 - A privilege escalation vulnerability exists in Tenable Security Center that allows a user with "Secu
CVE-2026-12366 - Zephyr's dynamic kernel-object disposal path unref_check() in kernel/userspace/userspace.c frees an
CVE-2026-12365 - A use-after-free exists in the Zephyr second-generation work queue (kernel/work.c) in the handling o
CVE-2026-12364 - The user-space system-call verifier z_vrfy_z_log_msg_static_create() in subsys/logging/log_msg.c was
CVE-2026-12363 - The LoRaWAN Fragmented Data Block Transport service (subsys/lorawan/services/frag_transport.c) does
CVE-2026-73846 - CKAN MCP Server is a tool for querying CKAN open data portals. Prior to 0.4.112, canonicalizeParams
CVE-2026-73845 - CKAN MCP Server is a tool for querying CKAN open data portals. Prior to 0.4.112, the ckan_get_mqa_qu
CVE-2026-73844 - CKAN MCP Server is a tool for querying CKAN open data portals. Prior to 0.4.112, error paths reflect
CVE-2026-73107 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-49989 - CrateDB is a distributed SQL database. Prior to versions 6.2.8 and 6.3.2, any authenticated user can
CVE-2026-49986 - The Cortex MCP server (`neuro-cortex-memory`), a cross-platform persistent memory MCP, prior to vers
CVE-2026-49826 - Concourse is a container-based automation system written in Go. Prior to version 8.2.3, an attacker
CVE-2026-47766 - crun is an open source OCI Container Runtime fully written in C. Prior to version 1.28, crun's defau
CVE-2026-47192 - kas is a setup tool for bitbake based projects. Starting in version 4.8 and prior to version 5.3, ka
CVE-2026-47191 - kas is a setup tool for bitbake based projects. Prior to version 5.3, when relying solely on a git c
CVE-2026-46603 - VP8L decoding in golang.org/x/image/vp8l can allocate an excessive amount of memory when processing
CVE-2026-46439 - compliance-trestle is a tooling platform for managing compliance as code. Versions prior to 3.12.2 a
CVE-2026-46380 - compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 a
CVE-2026-19845 - A vulnerability was determined in TOTOLINK A800R 4.1.2cu.5137_B20200730. This affects the function s
CVE-2026-19844 - A vulnerability was found in TOTOLINK A800R 4.1.2cu.5137_B20200730. The impacted element is the func
CVE-2026-19841 - A flaw has been found in TRENDNET TEW-813DRU 1.01b01. Impacted is an unknown function of the file /e
CVE-2026-19839 - A vulnerability was detected in SourceCodester Simple Doctors Appointment System 1.0. This issue aff
CVE-2026-19838 - A security vulnerability has been detected in Webkul Bagisto up to 2.4.4. This vulnerability affects
CVE-2026-19628 - A command injection vulnerability exists in Tenable Security Center. An authenticated administrator
CVE-2026-19626 - A remote code execution vulnerability exists in Tenable Security Center's report generation function
CVE-2023-7347 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-66272 - Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain a Missing Authentication for C
CVE-2026-66271 - Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Unrestricted Upload of File
CVE-2026-66270 - Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Unrestricted Upload of File
CVE-2026-63702 - Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain a Use of Hard-coded Credential
CVE-2026-63701 - Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Improper Deserialization of
CVE-2026-63700 - Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Incorrect Default Permissio
CVE-2026-57472 - Nozomi Networks Labs identified a CWE-22: Improper Limitation of a Pathname to a Restricted Director
CVE-2026-57471 - Nozomi Networks Labs identified a CWE-22: Improper Limitation of a Pathname to a Restricted Director
CVE-2026-57469 - Nozomi Networks Labs identified a CWE-352: Cross-Site Request Forgery (CSRF) vulnerability in the we
CVE-2026-53970 - ZeroBrew version 0.3.1 and prior contains a missing integrity verification vulnerability in the Ruby
CVE-2026-19884 - In Eclipse Theia versions up to and including 1.69.0, opening a folder starts source control integra
🏢 CVE nach Hersteller
Empfohlene IT-Security & Netzwerk-Hardware
Von NetzBastion getestete & empfohlene Sicherheits- und Netzwerk-Hardware