CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
18103 CVEs gefunden (Seite 26/73)

CVE-2026-66653 - Unauthenticated Local File Inclusion in Barista <= 2.5.1 versions.

🏢 Arista 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-66478 - Unauthenticated SQL Injection in Church Admin <= 5.1.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.3
9.3

CVE-2026-66472 - Unauthenticated SQL Injection in Everest Backup <= 2.3.12 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.3
9.3

CVE-2026-66471 - Subscriber Cross Site Scripting (XSS) in Accordion <= 3.0.6 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-66469 - Unauthenticated Broken Access Control in Arvow AI SEO Writer <= 1.5.3 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-66468 - Unauthenticated Cross Site Scripting (XSS) in Local Delivery Drivers for WooCommerce <= 3.0.0 versio

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-66467 - Subscriber Cross Site Scripting (XSS) in FluentCommunity <= 2.7.5 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-66466 - Unauthenticated Broken Access Control in StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Up

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-66465 - Unauthenticated Broken Authentication in Cartify <= 1.3.0.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-66464 - Unauthenticated Broken Access Control in Internal Link Optimiser <= 5.2.7 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-66463 - Unauthenticated Sensitive Data Exposure in iCARRY <= 2.9 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-66462 - Unauthenticated Sensitive Data Exposure in WooCommerce Appointments <= 5.3.8 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-66461 - Unauthenticated Broken Access Control in SMEPay: UPI Gateway for WooCommerce <= 1.0.5 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-66460 - Subscriber Cross Site Scripting (XSS) in AfterShip Tracking <= 1.18.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-66459 - Unauthenticated Broken Access Control in AI for SEO <= 2.4.2 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-66458 - Unauthenticated SQL Injection in RealPress <= 1.1.2 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.3
9.3

CVE-2026-66456 - Subscriber Cross Site Scripting (XSS) in Profile Extra Fields by BestWebSoft <= 1.3.4 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-66455 - Subscriber Broken Access Control in ReactPress <= 3.4.0 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.0
6.0

CVE-2026-66454 - Unauthenticated Broken Access Control in WP Social Avatar <= 1.5 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-66453 - Unauthenticated Broken Authentication in Salon booking system <= 10.30.26 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-66450 - Unauthenticated Local File Inclusion in Geo Mashup <= 1.13.18 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-66449 - Unauthenticated Cross Site Scripting (XSS) in Geo Mashup <= 1.13.18 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-66446 - Subscriber SQL Injection in If-So Dynamic Content Personalization <= 1.10 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.3
9.3

CVE-2026-66444 - Subscriber Sensitive Data Exposure in Payment Forms for Paystack <= 4.0.5 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-66443 - Unauthenticated Sensitive Data Exposure in REST API Log <= 1.7.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-66441 - Unauthenticated Broken Access Control in MultiVendorX <= 5.0.10 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-66436 - Unauthenticated SQL Injection in Active Products Tables for WooCommerce <= 1.1.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.3
9.3

CVE-2026-66432 - Subscriber Sensitive Data Exposure in WPJAM Basic <= 7.0.2.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-66431 - Unauthenticated Broken Access Control in Bitcoin Lightning Payment Gateway for WooCommerce (via CLIN

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-66430 - Subscriber SQL Injection in Visitor Traffic Real Time Statistics Pro <= 11.10 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.5
8.5

CVE-2026-66429 - Unauthenticated Cross Site Scripting (XSS) in Visitor Traffic Real Time Statistics Pro <= 11.10 vers

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-66426 - Unauthenticated Cross Site Scripting (XSS) in WP-Stats <= 2.56 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-66424 - Unauthenticated Privilege Escalation in SMS Alert Order Notifications <= 3.9.7 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-65582 - Subscriber Arbitrary File Download in AI Hub <= 1.3.10 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.7
7.7

CVE-2026-65580 - Unauthenticated Cross Site Scripting (XSS) in Agrion <= 1.0.0 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-61984 - Unauthenticated Broken Access Control in WPMobile.App <= 11.77 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-61980 - Unauthenticated Arbitrary File Download in OMGF Pro <= 5.2.7 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-61979 - Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-61978 - Unauthenticated Broken Access Control in Secure Card Gateway for ePay Paycenter (Piraeus Bank) <= 1.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-61974 - Unauthenticated Cross Site Scripting (XSS) in Mang Board WP <= 2.3.4 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-61969 - Unauthenticated SQL Injection in Listdom <= 5.6.0 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.3
9.3

CVE-2026-61967 - Unauthenticated Privilege Escalation in miniorange otp verification <= 5.5.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-61966 - Subscriber SQL Injection in WPJAM Basic <= 7.0.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.3
9.3

CVE-2026-61965 - Unauthenticated Cross Site Scripting (XSS) in GeekyBot <= 1.2.6 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-61962 - Unauthenticated Arbitrary Code Execution in WP BASE Booking <= 6.3.0 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 10.0
10.0

CVE-2026-61960 - Unauthenticated Cross Site Scripting (XSS) in WP Full Stripe Free <= 8.5.0 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-48702 - Rekor is a software supply chain transparency log. Starting in version 0.3.0 and prior to version 1.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-28189 - Unauthenticated Arbitrary File Deletion in Participants Database <= 2.7.8.4 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.4
7.4

CVE-2026-28188 - Unauthenticated Broken Access Control in Hydra Booking <= 1.2.2 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.3
7.3

CVE-2026-28187 - Unauthenticated Cross Site Scripting (XSS) in Knowledge Base for Documentation, FAQs with AI Assista

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-28186 - Subscriber Broken Access Control in Travelfic Toolkit <= 1.5.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-28185 - Unauthenticated Broken Authentication in Log in with Google <= 1.4.2 versions.

🏢 Google 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-28184 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-28182 - Subscriber Cross Site Scripting (XSS) in AcyMailing SMTP Newsletter <= 10.11.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-28181 - Subscriber Broken Access Control in AcyMailing SMTP Newsletter <= 10.11.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-28176 - Unauthenticated PHP Object Injection in Booking Activities <= 1.18.4 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-28175 - Unauthenticated Cross Site Scripting (XSS) in Visitors Traffic Real Time Statistics <= 8.11 versions

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-28174 - Customer Sensitive Data Exposure in WP Event SOlution <= 4.1.18 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-28173 - Customer Arbitrary Content Deletion in WP Event SOlution <= 4.1.19 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-28170 - Unauthenticated Cross Site Scripting (XSS) in Blog Floating Button <= 1.4.20 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-28168 - Subscriber SQL Injection in CubeWP <= 1.1.30 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.5
8.5

CVE-2026-28161 - Subscriber Privilege Escalation in Service Finder Booking <= 6.2 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-28159 - Subscriber Broken Access Control in Service Finder Booking <= 6.2 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-28158 - Unauthenticated Cross Site Scripting (XSS) in Do Lasso <= 358 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-28157 - Subscriber Path Traversal in Do Lasso <= 358 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-28156 - Subscriber SQL Injection in Do Lasso <= 358 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.5
8.5

CVE-2026-28155 - Unauthenticated Insecure Direct Object References (IDOR) in Do Lasso <= 358 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-28149 - Unauthenticated PHP Object Injection in Headless Single Sign On <= 1.6 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-28148 - Unauthenticated Bypass Vulnerability in Headless Single Sign On <= 1.6 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-28142 - Unauthenticated SQL Injection in Web Directory Free <= 1.7.13 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.3
9.3

CVE-2026-28008 - Unauthenticated Broken Authentication in OAuth Single Sign On – SSO (OAuth Client) <= 7.0.0 versions

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-28004 - Unauthenticated Cross Site Scripting (XSS) in Business Directory <= 6.4.25 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-28003 - Unauthenticated Cross Site Scripting (XSS) in Maspik – Spam blacklist <= 2.9.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-28002 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.5
8.5

CVE-2026-28001 - Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.3
9.3

CVE-2026-27999 - Subscriber Broken Access Control in Tourfic <= 2.23.1 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-27544 - Unauthenticated Remote Code Execution (RCE) in QA Analytics <= 5.2.0.0 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 10.0
10.0

CVE-2026-27543 - Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-27539 - Unauthenticated Cross Site Scripting (XSS) in Welcart e-Commerce <= 2.11.31 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-27538 - Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-27537 - Unauthenticated Cross Site Scripting (XSS) in Popup by Supsystic <= 1.11.2 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-27536 - Unauthenticated Cross Site Scripting (XSS) in MailChimp Subscribe Forms <= 4.3.3 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-27535 - Subscriber Broken Access Control in Solace Extra <= 1.6.0 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-27380 - Editor PHP Object Injection in Car Rental Manager <= 1.3.9 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.2
7.2

CVE-2026-27345 - Unauthenticated Broken Access Control in Taxi Booking Manager for WooCommerce <= 2.0.3 versions.

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-21832 - HCL AION is affected by a vulnerability where indirect prompt injection can lead to HTML injection i

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-19716 - Stored Cross-site Scripting (CWE-79) in the user management component in maalfer Pentestify before 1

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2025-62318 - HCL AION is affected by a vulnerability where JavaScript responses containing data could be referenc

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 3.7
3.7

CVE-2025-62315 - HCL AION is affected by a vulnerability where certain input fields do not enforce sufficient server-

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 3.4
3.4

CVE-2025-62314 - HCL AION is affected by a vulnerability where certain endpoints lack sufficient anti-automation cont

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 5.6
5.6

CVE-2026-73585 - A flaw was found in sblim-cmpi-base. Insecure temporary file creation in the provider registration s

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.3
6.3

CVE-2026-73584 - A flaw was found in sblim-sfcb. A local, low-privileged attacker can exploit a race condition during

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.3
6.3

CVE-2026-73583 - A flaw was found in sblim-sfcb. A local attacker with access to the system can exploit an unsafe des

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.6
6.6

CVE-2026-6471 - Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION priv

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 7.2
7.2

CVE-2026-6470 - Missing authorization in PostgreSQL DDL commands allows an object creator to achieve denial of servi

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-6469 - Incorrect ownership assignment in PostgreSQL ALTER TABLE ALTER TYPE command reassigns ownership of d

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 3.8
3.8

CVE-2026-6464 - Untrusted data inclusion in PostgreSQL psql COPY may allow a server administrator to elicit executio

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-49827 - WebErpMesv2 is a Resource Management and Manufacturing execution system Web for industry. Versions 1

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-49478 - Fulcio is a certificate authority for issuing code signing certificates for an OpenID Connect (OIDC)

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.7
8.7

CVE-2026-19385 - Heap buffer overflow in PostgreSQL pg_dump of long function transform lists allows an object creator

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-18408 - Untrusted data inclusion in pg_dump in PostgreSQL allows a malicious superuser of the origin server

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-18024 - Buffer over-read in PostgreSQL ascii() SQL function allows a user to disclose up to 3 bytes after th

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-16241 - Integer underflow in PostgreSQL ECPG allows a database server administrator to achieve temporary den

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 3.8
3.8

CVE-2026-16239 - Type confusion in PostgreSQL "portal"/cursor lifecycle allows a user to execute arbitrary code as th

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-16238 - Type confusion in PostgreSQL pg_restore_attribute_stats() allows an object creator to execute arbitr

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-15742 - Integer wraparound in PostgreSQL fuzzystrmatch allows a user to direct writes to a huge range of add

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-15741 - SQL injection in PostgreSQL EXTRACT() deparse allows an object owner to execute arbitrary SQL as a s

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-14681 - Improper enforcement of message integrity in PostgreSQL GSSAPI support allows a user to negotiate GS

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 4.2
4.2

CVE-2026-14680 - Type confusion with PostgreSQL "internal" data type arguments allows any user to execute arbitrary c

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-14679 - Stack buffer overflow in PostgreSQL argument name matching allows an object creator to achieve unkno

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.2
8.2

CVE-2026-14678 - Buffer over-read in PostgreSQL pg_trgm index picksplit function reads past end of a heap buffer. Th

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-14677 - Integer wraparound in PostgreSQL 32-bit builds of pltcl and plperl allows an object creator to cause

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-14676 - Heap buffer overflow in PostgreSQL pg_stat_statements allows the query author to execute arbitrary c

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-14673 - Untrusted search path in PostgreSQL amcheck allows a grantee of amcheck function EXECUTE privilege t

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 3.8
3.8

CVE-2026-14672 - Observable response discrepancy in PostgreSQL SCRAM authentication allows an unauthenticated user to

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-14671 - Type confusion in PostgreSQL module "refint" allows an object creator to execute arbitrary code as t

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-14670 - Heap buffer overflow in PostgreSQL plperl return of a tied hash allows the function owner to execute

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-14669 - Heap buffer overflow in PostgreSQL to_char(timestamptz) allows the party choosing the timezone to ex

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-14668 - Type confusion regarding input of PostgreSQL ctid data type selectivity estimator allows an object c

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-14666 - Incomplete tracking in PostgreSQL of changes to role membership, role attributes, and database owner

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 4.2
4.2

CVE-2026-14664 - Heap buffer overflow in PostgreSQL regexp allows the query author to execute arbitrary code as the o

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-14663 - Cleartext storage in PostgreSQL pgcrypto disabled ciphers allows a user to recover cleartext, via di

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-14662 - Integer wraparound in PostgreSQL tsvector and tsquery data type functions allows an unprivileged dat

🏢 Postgresql 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2025-52640 - HCL AION is affected by a vulnerability where the shared storage used by product components is archi

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 4.7
4.7

CVE-2026-73629 - Serendipity before 2.6.0 contains a server-side request forgery vulnerability in the serendipity_url

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.5
8.5

CVE-2026-73628 - Serendipity versions >= 2.3.5 and <= 2.6.0 contain a reflected cross-site scripting vulnerability in

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.1
6.1

CVE-2026-73627 - JupyterLab (pip package 'jupyterlab') versions >=4.1.0,<=4.5.9 and >=4.6.0,<=4.6.1 contain a plugin

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73626 - JupyterLab versions >=4.6.0,<=4.6.1 and <=4.5.9 contain an allowlist/blocklist enforcement gap in Py

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-73625 - GitPython versions before 3.1.54 contain a remote code execution vulnerability in the check_unsafe_o

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-73624 - GitPython versions before 3.1.54 contain an arbitrary file overwrite vulnerability in the Diffable.d

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-73623 - GitPython before 3.1.54 contains an incomplete denylist in unsafe_git_clone_options that omits --tem

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-73622 - GitPython before 3.1.55 fails to disable environment variable expansion in Remote.create() and Submo

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-73621 - GitPython before 3.1.56 contains an argument injection vulnerability in the Commit.count() method, w

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 5.4
5.4

CVE-2026-73620 - GitPython before 3.1.57 fails to guard git option forwarding in IndexFile.checkout() and TagReferenc

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-73619 - GitPython before 3.1.57 contains an incomplete denylist in the unsafe_git_archive_options guard that

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-73618 - Budibase Server before 3.40.0 contains a NoSQL injection vulnerability in the MongoDB query executio

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.3
8.3

CVE-2026-73617 - Budibase before 3.40.0 contains a NoSQL injection vulnerability in the MongoDB datasource integratio

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.1
7.1

CVE-2026-73616 - OpenRemote notification deletion endpoints fail to enforce realm boundaries, allowing any realm admi

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-73615 - Network-AI versions before 5.15.1 contain a security matcher bypass vulnerability where SandboxPolic

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-73614 - Network-AI ClaudeHookBridge before 5.15.1 truncates the target string to 500 characters before evalu

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-73613 - filebrowser versions before 2.63.19 contain an out-of-scope file deletion vulnerability in the TUS u

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.2
8.2

CVE-2026-73612 - File Browser before v2.63.22 fails to validate access rules for descendants during recursive copy, r

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-73611 - File Browser versions from 2.50.0 through 2.63.21 fail to validate JWT expiration when proxy authent

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.8
6.8

CVE-2026-73610 - SiYuan before v3.7.4 contains an information disclosure vulnerability in the local storage filter th

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-73609 - SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getBookmarkLabe

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-73608 - SiYuan's development branch (endpoint introduced by commit 9b8e8956f, not present in v3.7.3 or maste

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.6
8.6

CVE-2026-73607 - SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the /api/storage/ge

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-73606 - SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the /api/block/getR

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-73605 - SiYuan versions before v3.7.4 contain a path traversal vulnerability in the getUniqueFilename endpoi

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 5.8
5.8

CVE-2026-73604 - Flowise before 3.1.3 contains an incomplete credential redaction vulnerability in the GET /api/v1/cr

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-73603 - Flowise before 3.1.4 fails to validate chatflow visibility in the unauthenticated text-to-speech end

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-73602 - Flowise before 3.1.3 contains a sandbox escape vulnerability in the vm2 JavaScript sandbox that allo

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.9
9.9

CVE-2026-73601 - Flowise versions before 3.1.3 contain a remote code execution vulnerability in the Custom MCP node w

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-73488 - Flowise versions before 3.1.3 contain an insecure direct object reference vulnerability in the GET /

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-73487 - Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV and Airtable Agent n

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-73486 - Flowise before 3.1.3 contains a code injection vulnerability in the CSV Agent node's customReadCSV p

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-73485 - Flowise before 3.1.3 contains a code injection vulnerability in the Airtable Agent node that allows

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-73484 - Flowise before 3.1.3 contains a sandbox escape vulnerability in pythonCodeValidator.ts that fails to

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-73483 - Flowise (packages flowise and flowise-components) in versions <= 3.1.2 contain a sandbox escape in t

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-45819 - baseline-browser-mapping 2.x before 2.11.0 calls process.exit() instead of throwing on invalid or co

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-18368 - In Teltonika Networks RUTOS devices, a vulnerability exists in modbusgwd due to improper handling o

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-16455 - In Teltonika Networks RUTOS devices running versions 7.07.1 through 7.24.1 and TSWOS devices running

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-12263 - Zohocorp ManageEngine Password Manager Pro versions before 13232 and PAM360 versions before 8551 are

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-59507 - : Use of Hard-coded Credentials : Exposure of Sensitive Information to an Unauthorized Actor : Impro

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.3
9.3

CVE-2026-59506 - : Missing Authentication for Critical Function vulnerability in Priority Portal Generator addon to P

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.3
9.3

CVE-2026-59505 - : Improper Access Control vulnerability in Priority Portal Generator addon to Priority ERP (develope

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.6
8.6

CVE-2026-59504 - : Client-Side Enforcement of Server-Side Security vulnerability in Priority Portal Generator addon t

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.1
9.1

CVE-2026-59503 - : Exposure of Sensitive Information to an Unauthorized Actor : Exposure of Private Personal Informat

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.1
9.1

CVE-2026-59502 - : Observable Discrepancy vulnerability in Priority Portal Generator addon to Priority ERP (developed

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-59501 - : Improper Access Control vulnerability in Priority Portal Generator addon to Priority ERP (develope

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.2
8.2

CVE-2026-59500 - : Improper Authentication vulnerability in Priority Portal Generator addon to Priority ERP (develope

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 10.0
10.0

CVE-2026-59499 - : Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Priority Portal Genera

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.6
8.6

CVE-2026-19484 - @fastify/busboy is a multipart form-data parser. In versions 3.1.0 through 3.2.0, a remote unauthent

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-11970 - This vulnerability allows a normal (non-admin) user to disable the Forcepoint One Endpoint SafariExt

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-19696 - Ixia IxVeriWave and Vector Informatik BLF file parser crashes in 4.6.0 to 4.6.7 allows denial of ser

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.6
6.6

CVE-2026-19695 - Gammu DCT3 trace file parser crash in 4.6.0 to 4.6.7 allows denial of service

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 4.7
4.7

CVE-2026-19694 - TTX Logger file parser crash in 4.6.0 to 4.6.7 allows denial of service

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 4.7
4.7

CVE-2026-19481 - @fastify/busboy is a multipart form-data parser. In versions 1.0.0 through 3.2.0, an attacker who ca

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-16459 - Padding oracle attack vulnerability in Oberon microsystem AG’s Oberon PSA Crypto library in all vers

🏢 Oracle 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-16458 - Padding oracle attack vulnerability in Oberon microsystem AG’s ocrypto library in all versions since

🏢 Oracle 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-15413 - The Link Factory WordPress plugin is a backdoor. Distributed as a "homepage sentence publisher", it

🏢 Wordpress 📅 13.8.2026 📊 CVSS: 10.0
10.0

CVE-2026-14332 - The Ecwid by Lightspeed Ecommerce Shopping Cart WordPress plugin before 7.0.9 does not perform a cap

🏢 Wordpress 📅 13.8.2026 📊 CVSS: 5.4
5.4

CVE-2026-14298 - Mattermost versions 11.9.x <= 11.9.0, 11.8.x <= 11.8.4, 11.7.x <= 11.7.7, 10.11.x <= 10.11.22 fail t

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-3639 - The PPWP – Password Protect Pages plugin for WordPress is vulnerable to Stored Cross-Site Scripting

🏢 Wordpress 📅 13.8.2026 📊 CVSS: 6.4
6.4

CVE-2026-11840 - Zohocorp ManageEngine Password Manager Pro versions before 13232 and ManageEngine PAM360 versions be

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-18622 - Foxit PDF Editor/Reader inconsistently alerts users when signature fields are abnormally modified, i

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 4.7
4.7

CVE-2026-18146 - The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin fo

🏢 Wordpress 📅 13.8.2026 📊 CVSS: 7.2
7.2

CVE-2026-3835 - The Prevent Direct Access – Protect WordPress Files plugin for WordPress is vulnerable to unauthoriz

🏢 Wordpress 📅 13.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-19088 - The ShopEngine Elementor WooCommerce Builder Addon WordPress plugin before 4.9.3 does not protect o

🏢 Wordpress 📅 13.8.2026 📊 CVSS: 5.4
5.4

CVE-2026-18945 - The WP Helper Premium WordPress plugin before 4.7.6 does not verify the order key when rendering its

🏢 Wordpress 📅 13.8.2026 📊 CVSS: 8.2
8.2

CVE-2026-14213 - The Booking for Appointments and Events Calendar WordPress plugin before 2.4.6 does not verify that

🏢 Wordpress 📅 13.8.2026 📊 CVSS: 3.7
3.7

CVE-2026-14182 - The Customer Email Verification for WooCommerce WordPress plugin before 3.2.6 does not correctly val

🏢 Wordpress 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-13610 - The KiviCare WordPress plugin before 4.5.2 does not restrict the roles assignable through its unaut

🏢 Wordpress 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-13328 - The Food Menu WordPress plugin before 6.0.2 does not perform any capability or ownership check on i

🏢 Wordpress 📅 13.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-72506 - VoiceTra provided by National Institute of Information and Communications Technology (NICT) contains

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-19182 - An incorrect authorization check in the v2 Alarm REST API in OpenNMS Meridian and Horizon allows a l

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 4.3
4.3

CVE-2026-19135 - A JEXL expression sandbox bypass exists in multiple versions of OpenNMS Meridian and Horizon. A low-

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 5.4
5.4

CVE-2026-18728 - A flaw was found in open-iscsi. An integer underflow vulnerability in the `iscsiuio` component, spec

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-0301 - An information disclosure vulnerability in the URL Filtering feature of Palo Alto Networks PAN-OS® s

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-0299 - Local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app enable a loc

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 7.8
7.8

CVE-2026-0298 - An improper input validation vulnerability exists in the Windows Pre-Logon Access Provider (PLAP) co

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-0297 - A buffer overflow vulnerability exists in the Palo Alto Networks GlobalProtect™ app that enables a m

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 8.1
8.1

CVE-2026-0296 - Improper certificate validation vulnerabilities in Palo Alto Networks GlobalProtect™ app enable an u

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 7.4
7.4

CVE-2026-0295 - A race condition in the Palo Alto Networks GlobalProtect™ client on macOS enables a locally authenti

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 7.0
7.0

CVE-2026-0294 - A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma® Access Agent app on Wind

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 7.8
7.8

CVE-2026-0293 - A vulnerability in Palo Alto Networks Prisma® Access Agent on Windows enables a local attacker with

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 6.0
6.0

CVE-2026-0292 - An authentication bypass vulnerability in the network driver of Palo Alto Networks Prisma® Access Ag

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 6.0
6.0

CVE-2026-0291 - An improper link resolution before file access vulnerability exists in the Palo Alto Networks Prisma

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 4.4
4.4

CVE-2026-0290 - An information disclosure vulnerability in the Account Protection feature of Palo Alto Networks Pri

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 5.5
5.5

CVE-2026-0289 - A security bypass vulnerability in the Account Protection feature of Palo Alto Networks Prisma® Bro

🏢 Palo alto 📅 13.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-50544 - NortheBridge/luminalshine is a Sunshine-compatible game stream host for Moonlight. Prior to version

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.3
6.3

CVE-2026-49819 - UpSnap is a wake on lan web app. Versions 4.4.1 through 5.3.5 are vulnerable to a missing-authentica

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-49473 - @cedar-policy/authorization-for-expressjs is an open-source Express.js middleware that integrates Ce

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 8.8
8.8

CVE-2026-48791 - sigstore-java is a sigstore java client for interacting with sigstore infrastructure. Version 2.0.0

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 2.0
2.0

CVE-2026-46688 - The Meeting Room Booking System (MRBS) is a PHP-based application for booking meeting rooms. Prior t

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-46382 - The Meeting Room Booking System (MRBS) is a PHP-based application for booking meeting rooms. Prior t

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-17431 - PDF::WebKit versions through 1.2 for Perl allow OS command injection via a 2-arg open() of the outpu

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 6.1
6.1

CVE-2026-16770 - PDF::WebKit versions through 1.2 for Perl allow argument injection into wkhtmltopdf via meta tags in

🏢 Sonstige 📅 13.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-71194 - In OpenStack Designate before 22.0.2, the mDNS handler performs pool-blind lookups when resolving re

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.8
6.8

CVE-2026-71193 - In OpenStack Designate before 22.0.1, zone creation checks (_is_subzone, _is_superzone, and the dupl

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.6
9.6

CVE-2026-49481 - UpSnap is a wake on lan web app. Versions prior to 5.4.0 have an OS command injection vulnerability

🏢 Linux 📅 12.8.2026 📊 CVSS: 9.6
9.6

CVE-2026-47718 - FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. When `secureEnabled=true`,

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-47717 - FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. In fuxa-server version 1.3

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-15424 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-15141 - The web interface of the affected device relies on the HTTP referrer header as part of request valid

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.7
5.7

CVE-2026-7366 - IBM DataPower Gateway 11.0.0.0 through 11.0.0.1 and IBM DataPower Gateway 10.5.0.0 through 10.5.0.21

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.2
4.2

CVE-2026-73519 - WolfStack before 25.9.2 contains a hard-coded cluster-authentication secret compiled into every buil

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-73501 - kin-openapi is a Go project for handling OpenAPI files. Prior to 0.144.0, ValidationHandler.Load() i

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.1
9.1

CVE-2026-73500 - etcd is a distributed key-value store for the data of a distributed system. Prior to versions 3.5.33

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73499 - etcd is a distributed key-value store for the data of a distributed system. Prior to versions 3.5.33

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73498 - MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira).

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.7
7.7

CVE-2026-73495 - blaze is a Scala library for building asynchronous pipelines, with a focus on network IO. Prior to 0

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.4
7.4

CVE-2026-73493 - Http4s (http4s-blaze-server) is a minimal, idiomatic Scala interface for HTTP services. Prior to 0.2

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-73492 - Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, buil

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-71846 - A flaw was found in insights-client. The component's ServiceAccount is bound to a ClusterRole granti

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-71473 - A flaw was found in the `search-v2-operator` component. A user with specific administrative permissi

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.5
8.5

CVE-2026-71471 - A flaw was found in acm-search-v2-rhel9. An attacker with administrative privileges on the hub clust

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.0
9.0

CVE-2026-71469 - A flaw was found in search-v2-api. An unauthenticated attacker can exploit this by sending requests

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.5
7.5

CVE-2026-19003 - A data source definition containing an over-length file path setting may cause the MongoDB BI Connec

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 7.8
7.8

CVE-2026-18750 - vinny/views.py: (ModifyEmailNotifications) IDOR: view fetches VinceCommEmail by raw pk from URL and

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.3
5.3

CVE-2026-18749 - The type=track branch authorises on _is_my_case(t_attach.case) only and never checks VinceTrackAttac

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 9.8
9.8

CVE-2026-18744 - Any authenticated case participant can fetch any OTHER vendor's CaseStatement + per-vul CaseMemberSt

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-18727 - A flaw was found in open-iscsi's iscsiuio component. This vulnerability involves an integer underflo

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-18726 - A flaw was found in open-iscsi. This vulnerability allows a remote attacker on the same local networ

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 6.5
6.5

CVE-2026-17485 - IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and obtain s

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.2
8.2

CVE-2026-10534 - IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to buffer overflow in the IXF

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 8.4
8.4

CVE-2024-27253 - IBM DOORS Next 7.0.3 through 7.0.3 Interim Fix 018 could allow an authenticated user to bypass secur

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 10.0
10.0

CVE-2026-73491 - Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, buil

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 0.0
0.0

CVE-2026-73490 - Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, buil

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 4.7
4.7

CVE-2026-73430 - Russh is a Rust SSH client & server library. Prior to 0.62.4, an unauthenticated SSH client can caus

🏢 Sonstige 📅 12.8.2026 📊 CVSS: 5.3
5.3
«« « Zurück Seite 26 von 73 Weiter » »»

🏢 CVE nach Hersteller

🛡️

Empfohlene IT-Security & Netzwerk-Hardware

Von NetzBastion getestete & empfohlene Sicherheits- und Netzwerk-Hardware

✓ Geprüfte Qualität
2FA Hardware Key Bestseller

YubiKey 5 NFC (USB-A & NFC)

Verfügbarkeit & Preis prüfen ↗
Juice-Jacking Schutz Impuls-Tipp (~10€)

USB-Datenblocker (USB-Kondom)

Verfügbarkeit & Preis prüfen ↗
Mini Server & Pi-hole Top-Tipp

Raspberry Pi 5 (8GB RAM)

Verfügbarkeit & Preis prüfen ↗
Firewall & Router Netzwerk

UniFi Cloud Gateway Ultra

Verfügbarkeit & Preis prüfen ↗
OPNsense Hardware Profi-Firewall

Protectli Vault 4-Port

Verfügbarkeit & Preis prüfen ↗
MicroSD für Pi / Router Zubehör (~16€)

SanDisk Extreme Pro 128GB

Verfügbarkeit & Preis prüfen ↗
Alle IT-Sicherheit-Produkte bei Amazon durchsuchen → * Als Amazon-Partner verdienen wir an qualifizierten Verkäufen.