CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
16326 CVEs gefunden (Seite 30/66)

CVE-2019-25502 - Simple Job Script contains a cross-site scripting vulnerability that allows unauthenticated attacker

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 6.1
6.1

CVE-2019-25501 - Simple Job Script contains an SQL injection vulnerability that allows attackers to manipulate databa

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 8.2
8.2

CVE-2019-25500 - Simple Job Script contains an SQL injection vulnerability that allows unauthenticated attackers to m

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 8.2
8.2

CVE-2019-25499 - Simple Job Script contains an SQL injection vulnerability that allows unauthenticated attackers to m

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 8.2
8.2

CVE-2019-25498 - Simple Job Script contains an SQL injection vulnerability that allows unauthenticated attackers to m

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 8.2
8.2

CVE-2026-3520 - Multer is a node.js middleware for handling `multipart/form-data`. A vulnerability in Multer prior t

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-29069 - Craft is a content management system (CMS). Prior to 5.9.0-beta.2 and 4.17.0-beta.2, the actionSendA

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-28784 - Craft is a content management system (CMS). Prior to 5.8.22 and 4.16.18, it is possible to craft a m

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-28783 - Craft is a content management system (CMS). Prior to 5.9.0-beta.1 and 4.17.0-beta.1, Craft CMS imple

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.1
9.1

CVE-2026-28782 - Craft is a content management system (CMS). Prior to 5.9.0-beta.1 and 4.17.0-beta.1, the "Duplicate"

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-28781 - Craft is a content management system (CMS). Prior to 4.17.0-beta.1 and 5.9.0-beta.1, the entry creat

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-28697 - Craft is a content management system (CMS). Prior to 4.17.0-beta.1 and 5.9.0-beta.1, an authenticate

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.1
9.1

CVE-2026-28696 - Craft is a content management system (CMS). Prior to 4.17.0-beta.1 and 5.9.0-beta.1, the GraphQL dir

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-28695 - Craft is a content management system (CMS). There is an authenticated admin RCE in Craft CMS 5.8.21

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-23812 - A vulnerability has been identified where an attacker connecting to an access point as a standard wi

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-23811 - A vulnerability in the client isolation mechanism may allow an attacker to bypass Layer 2 (L2) commu

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-23810 - A vulnerability in the packet processing logic may allow an authenticated attacker to craft and tran

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-23809 - A technique has been identified that adapts a known port-stealing method to Wi-Fi environments that

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-23808 - A vulnerability has been identified in a standardized wireless roaming protocol that could enable a

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-23601 - A vulnerability has been identified in the wireless encryption handling of Wi-Fi transmissions. A ma

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-22760 - Dell Device Management Agent (DDMA), versions prior to 26.02, contain an Improper Check for Unusual

🏢 Dell 📅 4.3.2026 📊 CVSS: 3.3
3.3

CVE-2026-20005 - Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could a

🏢 Cisco 📅 4.3.2026 📊 CVSS: 5.8
5.8

CVE-2025-69969 - A lack of authentication and authorization mechanisms in the Bluetooth Low Energy (BLE) communicatio

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.6
9.6

CVE-2025-66944 - SQL Injection vulnerability in vran-dev databaseir v.1.0.7 and before allows a remote attacker to ex

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-66678 - An issue in the HwRwDrv.sys component of Nil Hardware Editor Hardware Read & Write Utility v1.25.11.

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-15558 - Docker CLI for Windows searches for plugin binaries in C:\ProgramData\Docker\cli-plugins, a director

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 8.0
8.0

CVE-2026-26673 - An issue in DJI Mavic Mini, Spark, Mavic Air, Mini, Mini SE 0.1.00.0500 and below allows a remote at

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-26514 - An Argument Injection vulnerability exists in bird-lg-go before commit 6187a4e. The traceroute modul

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-26478 - A shell command injection vulnerability in Mobvoi Tichome Mini smart speaker 012-18853 and 027-58389

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-22285 - Dell Device Management Agent (DDMA), versions prior to 26.02, contain a Plaintext Storage of Passwor

🏢 Dell 📅 4.3.2026 📊 CVSS: 4.4
4.4

CVE-2025-62879 - A vulnerability has been identified within the Rancher Backup Operator, resulting in the leakage of

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 6.8
6.8

CVE-2025-59787 - 2N Access Commander application version 3.4.2 and prior returns HTTP 500 Internal Server Error respo

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 6.5
6.5

CVE-2025-59786 - 2N Access Commander version 3.4.2 and prior improperly invalidates session tokens, allowing multiple

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-59785 - Improper validation of API end-point in 2N Access Commander version 3.4.2 and prior allows attacker

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.2
7.2

CVE-2025-59784 - 2N Access Commander version 3.4.1 and prior is vulnerable to log pollution. Certain parameters sent

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.2
7.2

CVE-2025-59783 - API endpoint for user synchronization in 2N Access Commander version 3.4.1 did not have a sufficient

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.2
7.2

CVE-2025-12801 - A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux,

🏢 Linux 📅 4.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-23238 - In the Linux kernel, the following vulnerability has been resolved: romfs: check sb_set_blocksize()

🏢 Linux 📅 4.3.2026 📊 CVSS: 5.5
5.5

CVE-2026-23237 - In the Linux kernel, the following vulnerability has been resolved: platform/x86: classmate-laptop:

🏢 Linux 📅 4.3.2026 📊 CVSS: 5.5
5.5

CVE-2026-23236 - In the Linux kernel, the following vulnerability has been resolved: fbdev: smscufx: properly copy i

🏢 Linux 📅 4.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-23235 - In the Linux kernel, the following vulnerability has been resolved: f2fs: fix out-of-bounds access

🏢 Linux 📅 4.3.2026 📊 CVSS: 7.1
7.1

CVE-2026-23234 - In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid UAF in f2fs_

🏢 Linux 📅 4.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-23233 - In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid mapping wron

🏢 Linux 📅 4.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-23232 - In the Linux kernel, the following vulnerability has been resolved: Revert "f2fs: block cache/dio w

🏢 Linux 📅 4.3.2026 📊 CVSS: 5.5
5.5

CVE-2025-71238 - In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix bsg_done() c

🏢 Hpe 📅 4.3.2026 📊 CVSS: 7.8
7.8

CVE-2025-70342 - erase-install prior to v40.4 commit 2c31239 writes swiftDialog credential output to a hardcoded path

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 6.6
6.6

CVE-2025-70341 - Insecure permissions in App-Auto-Patch v3.4.2 create a race condition which allows attackers to writ

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-3103 - A logic error in the remove_password() function in Checkmk GmbH's Checkmk versions <2.4.0p23, <2.3.0

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 5.4
5.4

CVE-2025-40896 - The server certificate was not verified when an Arc agent connected to a Guardian or CMC. A malic

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 6.5
6.5

CVE-2025-40895 - A Stored HTML Injection vulnerability was discovered in the CMC's Sensor Map functionality due to im

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 4.8
4.8

CVE-2025-40894 - A Stored HTML Injection vulnerability was discovered in the Alerted Nodes Dashboard functionality du

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 4.4
4.4

CVE-2026-25907 - Dell PowerScale OneFS, version 9.13.0.0, contains an overly restrictive account lockout mechanism vu

🏢 Dell 📅 4.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-24732 - Files or Directories Accessible to External Parties, Incorrect Permission Assignment for Critical Re

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-23231 - In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix use-a

🏢 Linux 📅 4.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-22270 - Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains a

🏢 Dell 📅 4.3.2026 📊 CVSS: 6.7
6.7

CVE-2026-21426 - Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains a

🏢 Dell 📅 4.3.2026 📊 CVSS: 6.7
6.7

CVE-2026-21425 - Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains a

🏢 Dell 📅 4.3.2026 📊 CVSS: 6.7
6.7

CVE-2026-21424 - Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains a

🏢 Dell 📅 4.3.2026 📊 CVSS: 6.7
6.7

CVE-2026-21423 - Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains a

🏢 Dell 📅 4.3.2026 📊 CVSS: 6.7
6.7

CVE-2026-21422 - Dell PowerScale OneFS, versions 9.10.0.0 through 9.10.1.5 and versions 9.11.0.0 through 9.12.0.1, co

🏢 Dell 📅 4.3.2026 📊 CVSS: 3.4
3.4

CVE-2026-21421 - Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains a

🏢 Dell 📅 4.3.2026 📊 CVSS: 6.7
6.7

CVE-2026-3058 - The Seraphinite Accelerator plugin for WordPress is vulnerable to Sensitive Information Exposure in

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-3056 - The Seraphinite Accelerator plugin for WordPress is vulnerable to unauthorized modification of data

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-2355 - The My Calendar – Accessible Event Manager plugin for WordPress is vulnerable to Stored Cross-Site S

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 6.4
6.4

CVE-2026-1674 - The Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder p

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-3439 - A post-authentication Stack-based Buffer Overflow vulnerability in SonicOS certificate handling allo

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 4.9
4.9

CVE-2026-1706 - The All-in-One Video Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting vi

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 6.1
6.1

CVE-2023-7337 - The JS Help Desk – AI-Powered Support & Ticketing System plugin for WordPress is vulnerable to SQL I

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-3094 - Delta Electronics CNCSoft-G2 lacks proper validation of the user-supplied file. If a user opens a ma

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-2748 - SEPPmail Secure Email Gateway before version 15.0.1 improperly validates S/MIME certificates issued

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-2747 - SEPPmail Secure Email Gateway before version 15.0.1 decrypts inline PGP messages without isolating t

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-2746 - SEPPmail Secure Email Gateway before version 15.0.1 does not properly communicate PGP signature veri

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-27446 - Missing Authentication for Critical Function (CWE-306) vulnerability in Apache Artemis, Apache Activ

🏢 Apache 📅 4.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-27445 - SEPPmail Secure Email Gateway before version 15.0.1 does not properly verify that a PGP signature wa

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-27444 - SEPPmail Secure Email Gateway before version 15.0.1 incorrectly interprets email addresses in the em

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-27443 - SEPPmail Secure Email Gateway before version 15.0.1 does not properly sanitize the headers from S/MI

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-27442 - The GINA web interface in SEPPmail Secure Email Gateway before version 15.0.1 does not properly chec

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-27441 - SEPPmail Secure Email Gateway before version 15.0.1 insufficiently neutralizes the PDF encryption pa

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-1236 - The Envira Gallery for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting v

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 6.4
6.4

CVE-2025-66168 - Apache ActiveMQ does not properly validate the remaining length field which may lead to an overflow

🏢 Apache 📅 4.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-29120 - The /root/anaconda-ks.cfg installation configuration file in International Datacasting Corporation (

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-29119 - International Datacasting Corporation (IDC) SFX Series SuperFlex(SFX2100) SatelliteReceiver contains

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-28778 - International Datacasting Corporation (IDC) SFX Series SuperFlex Satellite Receiver contains undocum

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-28777 - International Datacasting Corporation (IDC) SFX2100 Satellite Receiver, trivial password for the `

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-28776 - International Datacasting Corporation (IDC) SFX Series SuperFlex SatelliteReceiver contains hardcode

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-28775 - An unauthenticated Remote Code Execution (RCE) vulnerability exists in the SNMP service of Internati

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-28774 - An OS Command Injection vulnerability exists in the web-based Traceroute diagnostic utility of Inter

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-28773 - The web-based Ping diagnostic utility (/IDC_Ping/main.cgi) in International Datacasting Corporation

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-28772 - A Reflected Cross-Site Scripting (XSS) vulnerability in the /IDC_Logging/index.cgi endpoint of Inter

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-28771 - A Reflected Cross-Site Scripting (XSS) vulnerability exists in the /index.cgi endpoint of Internatio

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-2732 - The Enable Media Replace plugin for WordPress is vulnerable to unauthorized modification of data due

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-2363 - The WP-Members Membership Plugin plugin for WordPress is vulnerable to SQL Injection via the 'order_

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-28770 - Improper neutralization of special elements in the /IDC_Logging/checkifdone.cgi script in Internatio

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-28769 - A path traversal vulnerability exists in the /IDC_Logging/checkifdone.cgi script in International Da

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-2025 - The Mail Mint WordPress plugin before 1.19.5 does not have authorization in one of its REST API end

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-3242 - In Concrete CMS below version 9.4.8, a rogue administrator can add stored XSS via the Switch Languag

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 4.8
4.8

CVE-2026-3241 - In Concrete CMS below version 9.4.8, a stored cross-site scripting (XSS) vulnerability exists in the

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 4.8
4.8

CVE-2026-3240 - In Concrete CMS below version 9.4.8, a user with permission to edit a page with element Legacy form

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 4.8
4.8

CVE-2026-2994 - Concrete CMS below version 9.4.8 is subject to CSRF by a Rogue Administrator using the Anti-Spam All

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 6.8
6.8

CVE-2026-3452 - Concrete CMS below version 9.4.8 is vulnerable to Remote Code Execution by stored PHP object injecti

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-3244 - In Concrete CMS below version 9.4.8, A stored cross-site scripting (XSS) vulnerability exists in the

🏢 Sonstige 📅 4.3.2026 📊 CVSS: 4.8
4.8

CVE-2026-2292 - The Morkva UA Shipping plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin s

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 4.4
4.4

CVE-2026-2289 - The Taskbuilder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 4.4
4.4

CVE-2026-1980 - The WPBookit plugin for WordPress is vulnerable to unauthorized data disclosure due to a missing aut

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-1945 - The WPBookit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'wpb_user_nam

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-1651 - The Email Subscribers by Icegram Express plugin for WordPress is vulnerable to SQL Injection via the

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-1273 - The Post Grid Gutenberg Blocks for News, Magazines, Blog Websites – PostX plugin for WordPress is vu

🏢 Wordpress 📅 4.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-3266 - Missing Authorization vulnerability in OpenText™ Filr allows Authentication Bypass. The vulnerabilit

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-3076 - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-2363. Reason: T

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-28289 - FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. A patch bypass vu

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 10.0
10.0

CVE-2026-27981 - HomeBox is a home inventory and organization system. Prior to 0.24.0, the authentication rate limite

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.4
7.4

CVE-2026-27971 - Qwik is a performance focused javascript framework. qwik <=1.19.0 is vulnerable to RCE due to an uns

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-27932 - joserfc is a Python library that provides an implementation of several JSON Object Signing and Encry

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-27905 - BentoML is a Python library for building online serving systems optimized for AI apps and model infe

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-27622 - OpenEXR provides the specification and reference implementation of the EXR file format, an image sto

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-27601 - Underscore.js is a utility-belt library for JavaScript. Prior to 1.13.8, the _.flatten and _.isEqual

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-27600 - HomeBox is a home inventory and organization system. Prior to 0.24.0-rc.1, the notifier functionalit

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 5.0
5.0

CVE-2026-26279 - Froxlor is open source server administration software. Prior to 2.3.4, a typo in Froxlor's input val

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.1
9.1

CVE-2026-26272 - HomeBox is a home inventory and organization system. Prior to 0.24.0-rc.1, a stored cross-site scrip

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 4.6
4.6

CVE-2026-26266 - AliasVault is a privacy-first password manager with built-in email aliasing. A stored cross-site scr

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.3
9.3

CVE-2026-25590 - The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collec

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 4.5
4.5

CVE-2026-3487 - A vulnerability was found in itsourcecode College Management System 1.0. This issue affects some unk

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 4.7
4.7

CVE-2026-3224 - Authentication bypass in the Microsoft Entra ID (Azure AD) authentication mode in Devolutions Server

🏢 Azure 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-3204 - Improper input validation in the error message page in Devolutions Server 2025.3.16 and earlier all

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-3130 - Improper Enforcement of Behavioral Controls in Devolutions Server 2025.3.15 and earlier allows an au

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-2590 - Improper enforcement of the Disable password saving in vaults setting in the connection entry comp

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-27012 - OpenSTAManager is an open source management software for technical assistance and invoicing. In 2.9.

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-25146 - OpenEMR is a free and open source electronic health records and medical practice management applicat

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.6
9.6

CVE-2026-24898 - OpenEMR is a free and open source electronic health records and medical practice management applicat

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 10.0
10.0

CVE-2026-24848 - OpenEMR is a free and open source electronic health records and medical practice management applicat

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.9
9.9

CVE-2026-24415 - OpenSTAManager is an open source management software for technical assistance and invoicing. OpenSTA

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-21866 - Dify is an open-source LLM app development platform. Prior to 1.11.2, Dify is vulnerable to a stored

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 5.4
5.4

CVE-2026-1775 - The Labkotec LID-3300IP has an existing vulnerability in the ice detector software that enables an u

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-3486 - A vulnerability has been found in itsourcecode College Management System 1.0. This vulnerability aff

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 4.7
4.7

CVE-2026-3485 - A flaw has been found in D-Link DIR-868L 110b03. This affects the function sub_1BF84 of the componen

🏢 D-link 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-25906 - Dell Optimizer, versions prior to 6.3.1, contain an Improper Link Resolution Before File Access ('Li

🏢 Dell 📅 3.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-24502 - Dell Command | Intel vPro Out of Band, versions prior to 4.7.0, contain an Uncontrolled Search Path

🏢 Dell 📅 3.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-1713 - IBM MQ 9.1.0.0 through 9.1.0.33 LTS, 9.2.0.0 through 9.2.0.40 LTS, 9.3.0.0 through 9.3.0.36 LTS, 9.3

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 5.0
5.0

CVE-2026-1567 - IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 An XML External Entity (XXE) vulnerabili

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.1
7.1

CVE-2025-70240 - Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/form

🏢 D-link 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-70239 - Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/form

🏢 D-link 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-70234 - Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/form

🏢 D-link 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-14480 - IBM Aspera faspio Gateway 1.3.6 uses weaker than expected cryptographic algorithms that could allow

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 5.1
5.1

CVE-2025-14456 - IBM MQ Appliance 9.4 CD through 9.4.4.0 to 9.4.4.1

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 5.9
5.9

CVE-2025-13688 - IBM DataStage on Cloud Pak for Data 5.1.2 through 5.3.0 could allow an authenticated user to execute

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.3
6.3

CVE-2025-13687 - IBM DataStage on Cloud Pak for Data 5.1.2 through 5.3.0 could allow an authenticated user to execute

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.3
6.3

CVE-2025-13686 - IBM DataStage on Cloud Pak for Data 5.1.2 through 5.3.0 could allow an authenticated user to execute

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.3
6.3

CVE-2026-3494 - In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_even

🏢 Mariadb 📅 3.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-3484 - A vulnerability was detected in PhialsBasement nmap-mcp-server up to bee6d23547d57ae02460022f7c78ac0

🏢 F5 📅 3.3.2026 📊 CVSS: 6.3
6.3

CVE-2026-2915 - HP System Event Utility might allow denial of service with elevated arbitrary file writes. This pote

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.1
7.1

CVE-2026-2606 - IBM webMethods API Gateway (on-prem) 10.11 through 10.11_Fix3210.15 to 10.15_Fix2711.1 to 11.1_Fix7

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-29022 - dr_libs dr_wav.h version 0.14.4 and earlier (fixed in commit 8a7258c) contain a heap buffer overflow

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.3
7.3

CVE-2026-26892 - Sourcecodester Logistic Hub Parcel's Management System v1.0 is vulnerable to SQL Injection in /manag

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-26891 - Sourcecodester Logistic Hub Parcel's Management System v1.0 is vulnerable to SQL Injection in /manag

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 2.7
2.7

CVE-2026-26889 - Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 2.7
2.7

CVE-2026-26888 - Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 2.7
2.7

CVE-2026-26887 - Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 2.7
2.7

CVE-2026-1265 - IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to writing of sensitive In

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-0869 - Authentication bypass in Brocade ASCG 3.4.0 Could allow an unauthorized user to perform ASCG operati

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 8.8
8.8

CVE-2025-70241 - Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/form

🏢 D-link 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-70237 - Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/form

🏢 D-link 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-70236 - Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/form

🏢 D-link 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-66945 - A path traversal vulnerability exists in the ZIP extraction API of Zdir Pro 4.x. When a crafted ZIP

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.1
9.1

CVE-2025-36364 - IBM DevOps Plan 3.0.0 through 3.0.5 allows web page cache to be stored locally which can be read by

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.2
6.2

CVE-2025-36363 - IBM DevOps Plan 3.0.0 through 3.0.5 uses an inadequate account lockout setting that could allow a re

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 5.9
5.9

CVE-2025-14923 - IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.2 IBM WebSphere Application Serve

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 4.7
4.7

CVE-2025-14604 - IBM Storage Scale IBM S through rage Scale 5.2.3.0 - 5.2.3.5, and IBM S through rage Scale 6.0.0.0 -

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.6
6.6

CVE-2025-13734 - IBM Engineering Requirements Management DOORS Next 7.1, and 7.2 could allow an authenticated user to

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 5.4
5.4

CVE-2025-13616 - IBM DataStage on Cloud Pak for Data 5.1.2 through 5.3.0 returns sensitive information in an HTTP res

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.5
6.5

CVE-2025-13490 - IBM App Connect Operator versions CD 11.3.0 through 11.6.0 and 12.1.0 through 12.20.0, LTS versions

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 5.9
5.9

CVE-2024-55027 - Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to stroe credentials in plaintext i

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.5
7.5

CVE-2024-55026 - An issue in the reset_pj.cgi endpoint of Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 allows un

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2024-55025 - Incorrect access control in the VNC component of Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 a

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.5
6.5

CVE-2024-55024 - An authentication bypass vulnerability in the authorization mechanism of Weintek cMT-3072XH2 easyweb

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2024-55023 - Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to contain a hardcoded encryption k

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 5.3
5.3

CVE-2024-55022 - Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to contain an authenticated command

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 8.8
8.8

CVE-2024-55021 - Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to contain a hardcoded password in

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.5
7.5

CVE-2024-55020 - A command injection vulnerability in the DHCP activation feature of Weintek cMT-3072XH2 easyweb Web

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2024-55019 - Incorrect access control in the component download_wb.cgi of Weintek cMT-3072XH2 easyweb Web Version

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-3437 - An Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Portwell

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-26890 - Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 2.7
2.7

CVE-2026-0540 - DOMPurify 3.1.3 through 3.3.1 and 2.5.3 through 2.5.8, fixed in commit 2726c74, contain a cross-site

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-69765 - Tenda AX3 firmware v16.03.12.11 contains a stack overflow in formGetIptv function and the list param

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.5
7.5

CVE-2025-67840 - Multiple authenticated OS command injection vulnerabilities exist in the Cohesity (formerly Stone Ra

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.2
7.2

CVE-2025-63912 - Cohesity TranZman Migration Appliance Release 4.0 Build 14614 was discovered to use a weak cryptogra

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.5
7.5

CVE-2025-63911 - Cohesity TranZman Migration Appliance Release 4.0 Build 14614 was discovered to contain an authentic

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.2
7.2

CVE-2025-63910 - An authenticated arbitrary file upload vulnerability in Cohesity TranZman Migration Appliance Releas

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.2
7.2

CVE-2025-63909 - Incorrect access control in the component /opt/SRLtzm/bin/TapeDumper of Cohesity TranZman Migration

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.2
7.2

CVE-2025-15599 - DOMPurify 3.1.3 through 3.2.6 and 2.5.3 through 2.5.8 contain a cross-site scripting vulnerability t

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.1
6.1

CVE-2023-31044 - An issue was discovered in Nokia Impact before Mobile 23_FP1. In Impact DM 19.11 onwards, a remote a

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 2.0
2.0

CVE-2021-35486 - A Cross-Site Request Forgery (CSRF) vulnerability in Nokia IMPACT through 19.11.2.10-202101180421502

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 8.1
8.1

CVE-2021-35485 - The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an au

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 8.0
8.0

CVE-2021-35484 - Nokia IMPACT through 19.11.2.10-20210118042150283 allows an authenticated user to perform a Time-bas

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 8.2
8.2

CVE-2021-35483 - The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an au

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 4.1
4.1

CVE-2026-3136 - An improper authorization vulnerability in GitHub Trigger Comment Control in Google Cloud Build prio

🏢 Google 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-26886 - Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /admin/se

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 2.7
2.7

CVE-2026-26885 - Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /classes/

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 2.7
2.7

CVE-2026-26884 - Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /msms/adm

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 2.7
2.7

CVE-2026-26883 - Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /msms/cla

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 2.7
2.7

CVE-2025-62817 - An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, and 2

🏢 Samsung 📅 3.3.2026 📊 CVSS: 7.5
7.5

CVE-2025-62816 - An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, and 2

🏢 Samsung 📅 3.3.2026 📊 CVSS: 5.5
5.5

CVE-2025-66680 - An issue in the WiseDelfile64.sys component of WiseCleaner Wise Force Deleter 7.3.2 and earlier allo

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.1
7.1

CVE-2025-66363 - An issue was discovered in LBS in Samsung Mobile Processor Exynos 2200. There was no check for memor

🏢 Samsung 📅 3.3.2026 📊 CVSS: 7.5
7.5

CVE-2025-62815 - An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, 1580, and 2500. A NULL

🏢 Samsung 📅 3.3.2026 📊 CVSS: 5.5
5.5

CVE-2025-62814 - An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, and 2400. A NULL

🏢 Samsung 📅 3.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-3465 - A vulnerability was determined in Tuya App and SDK 24.07.11 on Android. Affected by this vulnerabili

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 3.1
3.1

CVE-2026-2637 - iBoysoft NTFS for Mac contains a local privilege escalation vulnerability in its privileged helper d

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-28518 - OpenViking versions 0.2.1 and prior, fixed in commit 46b3e76, contain a path traversal vulnerability

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-25674 - An issue was discovered in 6.0 before 6.0.3, 5.2 before 5.2.12, and 4.2 before 4.2.29. Race conditio

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 3.7
3.7

CVE-2026-25673 - An issue was discovered in 6.0 before 6.0.3, 5.2 before 5.2.12, and 4.2 before 4.2.29. `URLField.to_

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-24103 - A buffer overflow vulnerability was discovered in goform/formSetMacFilterCfg in Tenda AC15V1.0 V15.0

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-22891 - A heap-based buffer overflow vulnerability exists in the Intan CLP parsing functionality of The Bios

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-20777 - A heap-based buffer overflow vulnerability exists in the Nicolet WFT parsing functionality of The Bi

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 8.1
8.1

CVE-2025-70821 - renren-secuity before v5.5.0 is vulnerable to SQL Injection in the BaseServiceImpl.java component

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-64736 - An out-of-bounds read vulnerability exists in the ABF parsing functionality of The Biosig Project li

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.1
6.1

CVE-2025-57622 - An issue in Step-Video-T2V allows a remote attacker to execute arbitrary code via the /vae-api , /ca

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-52365 - A command injection vulnerability in the szc script of the ccurtsinger/stabilizer repository allows

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.8
7.8

CVE-2026-3344 - A vulnerability in WatchGuard Fireware OS may allow an attacker to bypass the Fireware OS filesystem

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 4.9
4.9

CVE-2026-3343 - A reflected cross-site scripting (XSS) vulnerability in the Fireware OS Web UI enabled execution of

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-3342 - An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow an authenticated privileged

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-3351 - Improper authorization in the API endpoint GET /1.0/certificates in Canonical LXD 6.6 on Linux allow

🏢 Linux 📅 3.3.2026 📊 CVSS: 4.3
4.3

CVE-2026-3463 - A weakness has been identified in xlnt-community xlnt up to 1.6.1. Impacted is the function xlnt::de

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 3.3
3.3

CVE-2025-59060 - Hostname verification bypass issue in Apache Ranger NiFiRegistryClient/NiFiClient is reported in Apa

🏢 Apache 📅 3.3.2026 📊 CVSS: 5.3
5.3

CVE-2025-59059 - Remote Code Execution Vulnerability in NashornScriptEngineCreator is reported in Apache Ranger versi

🏢 Apache 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-2568 - The WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms plugin for WordPre

🏢 Wordpress 📅 3.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-22886 - OpenMQ exposes a TCP-based management service (imqbrokerd) that by default requires authentication.

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2025-15598 - A vulnerability was found in Dataease SQLBot up to 1.5.1. This impacts the function validateEmbedded

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 3.7
3.7

CVE-2026-1876 - Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F S

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-1875 - Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F S

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-1874 - Always-Incorrect Control Flow Implementation vulnerability in Mitsubishi Electric Corporation MELSEC

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 0.0
0.0

CVE-2025-15595 - Privilege escalation via dll hijacking in Inno Setup 6.2.1 and ealier versions.

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 7.8
7.8

CVE-2025-12345 - A security vulnerability has been detected in LLM-Claw 0.1.0/0.1.1/0.1.1a/0.1.1a-p1. The affected el

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-3455 - Versions of the package mailparser before 3.9.3 are vulnerable to Cross-site Scripting (XSS) via the

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 6.1
6.1

CVE-2026-3449 - Versions of the package @tootallnate/once before 3.0.1 are vulnerable to Incorrect Control Flow Scop

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 3.3
3.3

CVE-2026-1492 - The User Registration & Membership – Custom Registration Form Builder, Custom Login Form, User Profi

🏢 Wordpress 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-20801 - Cleartext Transmission of Sensitive Information (CWE-319) in a component used in the Gallagher Hanwh

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 5.6
5.6

CVE-2026-20757 - Improper Locking vulnerability (CWE-667) in Gallagher Morpho integration allows a privileged operato

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 2.5
2.5

CVE-2025-47147 - Cleartext Storage of Sensitive Information (CWE-312) in the Command Centre Mobile Client on Android

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 5.7
5.7

CVE-2026-2628 - The All-in-One Microsoft 365 & Entra ID / Azure AD SSO Login plugin for WordPress is vulnerable to a

🏢 Azure 📅 3.3.2026 📊 CVSS: 9.8
9.8

CVE-2026-2448 - The Page Builder by SiteOrigin plugin for WordPress is vulnerable to Local File Inclusion in all ver

🏢 Wordpress 📅 3.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-2269 - The Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin plugin for

🏢 Wordpress 📅 3.3.2026 📊 CVSS: 7.2
7.2

CVE-2026-1487 - The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerab

🏢 Wordpress 📅 3.3.2026 📊 CVSS: 6.5
6.5

CVE-2026-0754 - An embedded test key and certificate could be extracted from a Poly Voice device using specialized r

🏢 Sonstige 📅 3.3.2026 📊 CVSS: 0.0
0.0

CVE-2026-1566 - The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerab

🏢 Wordpress 📅 3.3.2026 📊 CVSS: 8.8
8.8

CVE-2026-1336 - The AI ChatBot with ChatGPT and Content Generator by AYS plugin for WordPress is vulnerable to unaut

🏢 Wordpress 📅 3.3.2026 📊 CVSS: 5.3
5.3

CVE-2026-2583 - The Blocksy theme for WordPress is vulnerable to Stored Cross-Site Scripting via the `blocksy_meta`

🏢 Wordpress 📅 2.3.2026 📊 CVSS: 6.4
6.4

CVE-2026-3338 - Improper signature validation in PKCS7_verify() in AWS-LC allows an unauthenticated user to bypass s

🏢 Aws 📅 2.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-3337 - Observable timing discrepancy in AES-CCM decryption in AWS-LC allows an unauthenticated user to pote

🏢 Aws 📅 2.3.2026 📊 CVSS: 5.9
5.9

CVE-2026-3336 - Improper certificate validation in PKCS7_verify() in AWS-LC allows an unauthenticated user to bypass

🏢 Aws 📅 2.3.2026 📊 CVSS: 7.5
7.5

CVE-2026-2256 - A command injection vulnerability in ModelScope's ms-agent versions v1.6.0rc1 and earlier exists, al

🏢 Sonstige 📅 2.3.2026 📊 CVSS: 6.5
6.5
«« « Zurück Seite 30 von 66 Weiter » »»

🏢 CVE nach Hersteller

Empfohlene Sicherheitstools

Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.