CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
16100 CVEs gefunden (Seite 59/65)

CVE-2026-0594 - The List Site Contributors plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 6.1
6.1

CVE-2025-15486 - The Kunze Law plugin for WordPress is vulnerable to Stored Cross-Site Scripting via plugin's shortco

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 4.4
4.4

CVE-2025-15378 - The AJS Footnotes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'note_li

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 7.2
7.2

CVE-2025-15377 - The Sosh Share Buttons plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versi

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 4.3
4.3

CVE-2025-15283 - The Name Directory plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'name_d

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 7.2
7.2

CVE-2025-15266 - The GeekyBot — Generate AI Content Without Prompt, Chatbot and Lead Generation plugin for WordPress

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 7.2
7.2

CVE-2025-15021 - The Gotham Block Extra Light plugin for WordPress is vulnerable to Stored Cross-Site Scripting via a

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 4.4
4.4

CVE-2025-15020 - The Gotham Block Extra Light plugin for WordPress is vulnerable to Arbitrary File Read in all versio

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 6.5
6.5

CVE-2025-14880 - The Netcash WooCommerce Payment Gateway plugin for WordPress is vulnerable to unauthorized modificat

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 5.3
5.3

CVE-2025-14854 - The WP-CRM System plugin for WordPress is vulnerable to unauthorized access due to missing capabilit

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 5.4
5.4

CVE-2025-14725 - The Internal Link Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admi

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 4.4
4.4

CVE-2025-14615 - The DASHBOARD BUILDER – WordPress plugin for Charts and Graphs plugin for WordPress is vulnerable to

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 7.1
7.1

CVE-2025-14613 - The GetContentFromURL plugin for WordPress is vulnerable to Server-Side Request Forgery in all versi

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 7.2
7.2

CVE-2025-14502 - The News and Blog Designer Bundle plugin for WordPress is vulnerable to Local File Inclusion in all

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 9.8
9.8

CVE-2025-14482 - The Crush.pics Image Optimizer - Image Compression and Optimization plugin for WordPress is vulnerab

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 4.3
4.3

CVE-2025-14464 - The PDF Resume Parser plugin for WordPress is vulnerable to Sensitive Information Exposure in all ve

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 5.3
5.3

CVE-2025-14389 - The WPBlogSyn plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, an

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 4.3
4.3

CVE-2025-14379 - The Testimonials Creator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 4.4
4.4

CVE-2025-14301 - The Integration Opvius AI for WooCommerce plugin for WordPress is vulnerable to Path Traversal in al

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 9.8
9.8

CVE-2025-13627 - The Makesweat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'makesweat_c

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 4.4
4.4

CVE-2025-12178 - The SpiceForms Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th

🏢 Wordpress 📅 14.1.2026 📊 CVSS: 6.4
6.4

CVE-2026-22718 - The VSCode extension for Spring CLI are vulnerable to command injection, resulting in command execut

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 6.8
6.8

CVE-2025-68970 - Permission verification bypass vulnerability in the media library module. Impact: Successful exploit

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 6.1
6.1

CVE-2025-68969 - Multi-thread race condition vulnerability in the thermal management module. Impact: Successful explo

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 6.8
6.8

CVE-2025-68968 - Double free vulnerability in the multi-mode input module. Impact: Successful exploitation of this vu

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 7.8
7.8

CVE-2025-68967 - Vulnerability of improper permission control in the print module. Impact: Successful exploitation of

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 5.7
5.7

CVE-2025-68966 - Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vuln

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 5.1
5.1

CVE-2025-68965 - Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vuln

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 4.7
4.7

CVE-2025-68964 - Data verification vulnerability in the HiView module. Impact: Successful exploitation of this vulner

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 6.2
6.2

CVE-2025-68963 - Man-in-the-middle attack vulnerability in the Clone module. Impact: Successful exploitation of this

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 5.7
5.7

CVE-2025-68962 - Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploit

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 5.1
5.1

CVE-2025-68961 - Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploit

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 5.1
5.1

CVE-2025-68960 - Multi-thread race condition vulnerability in the video framework module. Impact: Successful exploita

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 8.4
8.4

CVE-2025-68959 - Permission verification bypass vulnerability in the media library module. Impact: Successful exploit

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 6.2
6.2

CVE-2025-68958 - Multi-thread race condition vulnerability in the card framework module. Impact: Successful exploitat

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 8.0
8.0

CVE-2025-68957 - Multi-thread race condition vulnerability in the card framework module. Impact: Successful exploitat

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 8.4
8.4

CVE-2025-68956 - Multi-thread race condition vulnerability in the card framework module. Impact: Successful exploitat

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 8.0
8.0

CVE-2025-68955 - Multi-thread race condition vulnerability in the card framework module. Impact: Successful exploita

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 8.0
8.0

CVE-2025-12053 - The drivers in the tool packages use RTL_QUERY_REGISTRY_DIRECT flag to read a registry value to whic

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 7.8
7.8

CVE-2025-12052 - The drivers in the tool packages use RTL_QUERY_REGISTRY_DIRECT flag to read a registry value to whic

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 7.8
7.8

CVE-2025-12051 - The drivers in the tool packages use RTL_QUERY_REGISTRY_DIRECT flag to read a registry value to whic

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 7.8
7.8

CVE-2025-12050 - The drivers in the tool packages use RTL_QUERY_REGISTRY_DIRECT flag to read a registry value to whic

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-22686 - Enclave is a secure JavaScript sandbox designed for safe AI agent code execution. Prior to 2.7.0, th

🏢 Sonstige 📅 14.1.2026 📊 CVSS: 10.0
10.0

CVE-2026-0716 - A flaw was found in libsoup’s WebSocket frame processing when handling incoming messages. If a non-d

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 4.8
4.8

CVE-2023-54341 - Webgrind 1.1 and before contains a reflected cross-site scripting vulnerability that allows unauthen

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.1
6.1

CVE-2023-54340 - WorkOrder CMS 0.1.0 contains a SQL injection vulnerability that allows unauthenticated attackers to

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.2
8.2

CVE-2023-54339 - Webgrind 1.1 contains a remote command execution vulnerability that allows unauthenticated attackers

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2023-54338 - Tftpd32 SE 4.60 contains an unquoted service path vulnerability that allows local attackers to poten

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2023-54337 - Sysax Multi Server 6.95 contains a denial of service vulnerability in the administrative password fi

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.1
9.1

CVE-2023-54336 - Mediconta 3.7.27 contains an unquoted service path vulnerability in the servermedicontservice that a

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2023-54335 - eXtplorer 2.1.14 contains an authentication bypass vulnerability that allows attackers to login with

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2023-54334 - Explorer32++ 1.3.5.531 contains a buffer overflow vulnerability in Structured Exception Handler (SEH

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2023-54333 - Social-Share-Buttons 2.2.3 contains a critical SQL injection vulnerability in the project_id paramet

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.2
8.2

CVE-2023-54332 - Jetpack 11.4 contains a cross-site scripting vulnerability in the contact form module that allows at

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.1
6.1

CVE-2023-54331 - Outline 1.6.0 contains an unquoted service path vulnerability that allows local attackers to potenti

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2023-54330 - Inbit Messenger versions 4.6.0 to 4.9.0 contain a remote stack-based buffer overflow vulnerability t

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2023-54329 - Inbit Messenger 4.6.0 - 4.9.0 contains a remote command execution vulnerability that allows unauthen

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2023-54328 - AimOne Video Converter 2.04 Build 103 contains a buffer overflow vulnerability in its registration f

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.5
6.5

CVE-2023-53985 - Zstore, now referred to as Zippy CRM, 6.5.4 contains a reflected cross-site scripting vulnerability

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.1
6.1

CVE-2023-53984 - Clevo HotKey Clipboard 2.1.0.6 contains an unquoted service path vulnerability in the HKClipSvc serv

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50939 - e107 CMS version 3.2.1 contains a critical file upload vulnerability that allows authenticated admin

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2022-50938 - CONTPAQi AdminPAQ 14.0.0 contains an unquoted service path vulnerability in the AppKeyLicenseServer

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50937 - Ametys CMS v4.4.1 contains a persistent cross-site scripting vulnerability in the link directory's i

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.1
6.1

CVE-2022-50936 - WBCE CMS version 1.5.2 contains an authenticated remote code execution vulnerability that allows att

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.8
8.8

CVE-2022-50935 - Flame II HSPA USB Modem contains an unquoted service path vulnerability in its Windows service confi

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2022-50934 - Rejected reason: This candidate was withdrawn by its CNA. Further investigation showed that it was n

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 0.0
0.0

CVE-2022-50933 - Cain & Abel 4.9.56 contains an unquoted service path vulnerability that allows local attackers to po

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2022-50932 - Kyocera Command Center RX ECOSYS M2035dn contains a directory traversal vulnerability that allows un

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2022-50931 - TeamSpeak 3.5.6 contains an insecure file permissions vulnerability that allows local attackers to r

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2022-50930 - Emerson PAC Machine Edition 9.80 contains an unquoted service path vulnerability in the TrapiServer

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50929 - Connectify Hotspot 2018 contains an unquoted service path vulnerability in its ConnectifyService exe

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50928 - BlueSoleilCS 5.4.277 contains an unquoted service path vulnerability in its Windows service configur

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2022-50927 - Cyclades Serial Console Server 3.3.0 contains a local privilege escalation vulnerability due to over

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.2
6.2

CVE-2022-50926 - WAGO 750-8212 PFC200 G2 2ETH RS firmware contains a privilege escalation vulnerability that allows a

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2022-50925 - Prowise Reflect version 1.0.9 contains a remote keystroke injection vulnerability that allows attack

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2022-50924 - Private Internet Access 3.3 contains an unquoted service path vulnerability that allows local users

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50923 - Cobian Backup 0.9 contains an unquoted service path vulnerability that allows local users to execute

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2022-50922 - Audio Conversion Wizard v2.01 contains a buffer overflow vulnerability that allows attackers to exec

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2022-50921 - WOW21 5.0.1.9 contains an unquoted service path vulnerability that allows local attackers to potenti

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2022-50920 - Sandboxie-Plus 5.50.2 contains an unquoted service path vulnerability in the SbieSvc Windows service

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50919 - Tdarr 2.00.15 contains an unauthenticated remote code execution vulnerability in its Help terminal t

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2022-50918 - VIVE Runtime Service 1.0.0.4 contains an unquoted service path vulnerability that allows local users

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50917 - ProtonVPN 1.26.0 contains an unquoted service path vulnerability in its WireGuard service configurat

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2022-50916 - e107 CMS version 3.2.1 contains a file upload vulnerability that allows authenticated administrators

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2022-50915 - PTPublisher 2.3.4 contains an unquoted service path vulnerability in the PTProtect service that allo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2022-50914 - EaseUS Data Recovery 15.1.0.0 contains an unquoted service path vulnerability in the EaseUS UPDATE S

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50913 - ITeC ITeCProteccioAppServer contains an unquoted service path vulnerability that allows local attack

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50912 - ImpressCMS 1.4.4 contains a file upload vulnerability with weak extension sanitization that allows a

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2022-50911 - Rejected reason: This candidate was withdrawn by its CNA. Further investigation showed that it was n

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 0.0
0.0

CVE-2022-50910 - Beehive Forum 1.5.2 contains a host header injection vulnerability in the forgot password functional

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2022-50909 - Algo 8028 Control Panel version 3.3.3 contains a command injection vulnerability in the fm-data.lua

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.8
8.8

CVE-2022-50908 - Mailhog 1.0.1 contains a stored cross-site scripting vulnerability that allows attackers to inject m

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2022-50907 - e107 CMS version 3.2.1 contains a file upload vulnerability that allows authenticated administrative

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2022-50906 - e107 CMS 3.2.1 contains an upload restriction bypass vulnerability that allows authenticated adminis

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 4.8
4.8

CVE-2022-50905 - e107 CMS version 3.2.1 contains multiple vulnerabilities that allow cross-site scripting (XSS) attac

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2022-50904 - Wondershare UBackit 2.0.5 contains an unquoted service path vulnerability that allows local users to

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50903 - Wondershare MobileTrans 3.5.9 contains an unquoted service path vulnerability in the ElevationServic

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50902 - Wondershare FamiSafe 1.0 contains an unquoted service path vulnerability in the FSService that allow

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50901 - Wondershare Dr.Fone 11.4.9 contains an unquoted service path vulnerability in the DFWSIDService that

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50900 - Wondershare Dr.Fone 12.0.18 contains an unquoted service path vulnerability that allows local users

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50899 - Geonetwork 3.10 through 4.2.0 contains an XML external entity vulnerability in PDF rendering that al

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.5
6.5

CVE-2022-50898 - NanoCMS 0.4 contains an authenticated file upload vulnerability that allows remote code execution th

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.8
8.8

CVE-2022-50897 - mPDF 7.0 contains a local file inclusion vulnerability that allows attackers to read arbitrary syste

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2022-50896 - Testa 3.5.1 contains a reflected cross-site scripting vulnerability in the login.php redirect parame

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.1
6.1

CVE-2022-50895 - Aero CMS 0.0.1 contains a SQL injection vulnerability in the author parameter that allows attackers

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2022-50894 - VIAVIWEB Wallpaper Admin 1.0 contains an SQL injection vulnerability that allows authenticated attac

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.5
6.5

CVE-2022-50893 - VIAVIWEB Wallpaper Admin 1.0 contains an unauthenticated remote code execution vulnerability in the

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2022-50892 - VIAVIWEB Wallpaper Admin 1.0 contains a SQL injection vulnerability that allows attackers to bypass

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.2
8.2

CVE-2022-50891 - Owlfiles File Manager 12.0.1 contains a cross-site scripting vulnerability that allows attackers to

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.0
5.0

CVE-2022-50890 - Owlfiles File Manager 12.0.1 contains a path traversal vulnerability in its built-in HTTP server tha

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2022-50808 - CoolerMaster MasterPlus 1.8.5 contains an unquoted service path vulnerability in the MPService that

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2022-50807 - Rejected reason: This candidate was withdrawn by its CNA. Further investigation showed that it was n

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 0.0
0.0

CVE-2022-50806 - 4images 1.9 contains a remote command execution vulnerability that allows authenticated administrato

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2022-50805 - Senayan Library Management System 9.0.0 contains a SQL injection vulnerability in the 'class' parame

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.2
8.2

CVE-2022-50693 - Splashtop 8.71.12001.0 contains an unquoted service path vulnerability in the Splashtop Software Upd

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2021-47751 - CuteEditor for PHP (now referred to as Rich Text Editor) 6.6 contains a directory traversal vulnerab

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2021-47750 - YouPHPTube <= 7.8 contains a cross-site scripting vulnerability that allows attackers to inject mali

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.1
6.1

CVE-2021-47749 - YouPHPTube <= 7.8 contains a local file inclusion vulnerability that allows unauthenticated attacker

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2020-36919 - WPForms 1.7.8 contains a cross-site scripting vulnerability in the slider import search feature and

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.1
6.1

CVE-2020-36911 - Covenant 0.1.3 - 0.5 contains a remote code execution vulnerability that allows attackers to craft m

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2026-23478 - Cal.com is open-source scheduling software. From 3.1.6 to before 6.0.7, there is a vulnerability in

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2025-68947 - NSecsoft 'NSecKrnl' is a Windows driver that allows a local, authenticated attacker to terminate pro

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 4.7
4.7

CVE-2025-68658 - Open Source Point of Sale (opensourcepos) is a web based point of sale application written in PHP us

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 4.3
4.3

CVE-2026-22871 - GuardDog is a CLI tool to identify malicious PyPI packages. Prior to 2.7.1, there is a path traversa

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2026-22870 - GuardDog is a CLI tool to identify malicious PyPI packages. Prior to 2.7.1, GuardDog's safe_extract(

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2026-22869 - Eigent is a multi-agent Workforce. A critical security vulnerability in the CI workflow (.github/wor

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2026-22868 - go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. A vulnerable

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2026-22862 - go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. A vulnerable

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2026-22861 - iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and appli

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.8
8.8

CVE-2026-21303 - Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerabilit

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2026-21302 - Substance3D - Modeler versions 1.22.4 and earlier are affected by an Out-of-bounds Read vulnerabilit

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2026-21301 - Substance3D - Modeler versions 1.22.4 and earlier are affected by a NULL Pointer Dereference vulnera

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2026-21300 - Substance3D - Modeler versions 1.22.4 and earlier are affected by a NULL Pointer Dereference vulnera

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2026-21299 - Substance3D - Modeler versions 1.22.4 and earlier are affected by an out-of-bounds write vulnerabili

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21298 - Substance3D - Modeler versions 1.22.4 and earlier are affected by an out-of-bounds write vulnerabili

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-0543 - Improper Input Validation (CWE-20) in Kibana's Email Connector can allow an attacker to cause an Exc

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.5
6.5

CVE-2026-0531 - Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana Fleet can lead to Excessive

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.5
6.5

CVE-2026-0530 - Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana Fleet can lead to Excessive

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.5
6.5

CVE-2026-0528 - Improper Validation of Array Index (CWE-129) exists in Metricbeat can allow an attacker to cause a D

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.5
6.5

CVE-2025-37186 - A local privilege-escalation vulnerability has been discovered in the HPE Aruba Networking Virtual I

🏢 Aruba 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2025-15056 - A lack of data validation vulnerability in the HTML export feature in Quill in allows Cross-Site Scr

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 0.0
0.0

CVE-2026-22818 - Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.11.

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.2
8.2

CVE-2026-22817 - Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.11.

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.2
8.2

CVE-2026-22814 - @adonisjs/lucid is an SQL ORM for AdonisJS built on top of Knex. Prior to 21.8.2 and 22.0.0-next.6,

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 0.0
0.0

CVE-2026-22809 - tarteaucitron.js is a compliant and accessible cookie banner. Prior to 1.29.0, a Regular Expression

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 4.4
4.4

CVE-2026-21308 - Substance3D - Designer versions 15.0.3 and earlier are affected by an Out-of-bounds Read vulnerabili

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2026-21307 - Substance3D - Designer versions 15.0.3 and earlier are affected by an out-of-bounds write vulnerabil

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21306 - Substance3D - Sampler versions 5.1.0 and earlier are affected by an out-of-bounds write vulnerabilit

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21305 - Substance3D - Painter versions 11.0.3 and earlier are affected by an out-of-bounds write vulnerabili

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21287 - Substance3D - Stager versions 3.1.5 and earlier are affected by a Use After Free vulnerability that

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2025-68931 - Jervis is a library for Job DSL plugin scripts and shared Jenkins pipeline libraries. Prior to 2.2,

🏢 Oracle 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2025-68925 - Jervis is a library for Job DSL plugin scripts and shared Jenkins pipeline libraries. Prior to 2.2,

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.3
5.3

CVE-2025-68704 - Jervis is a library for Job DSL plugin scripts and shared Jenkins pipeline libraries. Prior to 2.2,

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2025-68703 - Jervis is a library for Job DSL plugin scripts and shared Jenkins pipeline libraries. Prior to 2.2,

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2025-68702 - Jervis is a library for Job DSL plugin scripts and shared Jenkins pipeline libraries. Prior to 2.2,

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2025-68701 - Jervis is a library for Job DSL plugin scripts and shared Jenkins pipeline libraries. Prior to 2.2,

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2025-68698 - Jervis is a library for Job DSL plugin scripts and shared Jenkins pipeline libraries. Prior to 2.2,

🏢 Oracle 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2025-37179 - Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for ha

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.3
5.3

CVE-2025-37178 - Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for ha

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.3
5.3

CVE-2025-37177 - An arbitrary file deletion vulnerability has been identified in the command-line interface of mobili

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.5
6.5

CVE-2025-37176 - A command injection vulnerability in AOS-8 allows an authenticated privileged user to alter a packag

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.5
6.5

CVE-2025-37175 - Arbitrary file upload vulnerability exists in the web-based management interface of mobility conduct

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2025-37174 - Authenticated arbitrary file write vulnerability exists in the web-based management interface of mob

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2025-37173 - An improper input handling vulnerability exists in the web-based management interface of mobility co

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2025-37172 - Authenticated command injection vulnerabilities exist in the web-based management interface of mobil

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2025-37171 - Authenticated command injection vulnerabilities exist in the web-based management interface of mobil

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2025-37170 - Authenticated command injection vulnerabilities exist in the web-based management interface of mobil

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2025-37169 - A stack overflow vulnerability exists in the AOS-10 web-based management interface of a Mobility Gat

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.2
7.2

CVE-2025-37168 - Arbitrary file deletion vulnerability have been identified in a system function of mobility conducto

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.2
8.2

CVE-2026-22791 - openCryptoki is a PKCS#11 library and tools for Linux and AIX. In 3.25.0 and 3.26.0, there is a heap

🏢 Linux 📅 13.1.2026 📊 CVSS: 6.6
6.6

CVE-2026-21304 - InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vuln

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21288 - Illustrator versions 29.8.3, 30.0 and earlier are affected by a NULL Pointer Dereference vulnerabili

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2026-21283 - Bridge versions 15.1.2, 16.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21281 - InCopy versions 21.0, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21280 - Illustrator versions 29.8.3, 30.0 and earlier are affected by an Untrusted Search Path vulnerability

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.6
8.6

CVE-2026-21278 - InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Out-of-bounds Read vulnerabili

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2026-21277 - InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vuln

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21276 - InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Access of Uninitialized Pointe

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21275 - InDesign Desktop versions 21.0, 19.5.5 and earlier are affected by an Access of Uninitialized Pointe

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21274 - Dreamweaver Desktop versions 21.6 and earlier are affected by an Incorrect Authorization vulnerabili

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21272 - Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Input Validation vulnerabi

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.6
8.6

CVE-2026-21271 - Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Input Validation vulnerabi

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.6
8.6

CVE-2026-21268 - Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Input Validation vulnerabi

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.6
8.6

CVE-2026-21267 - Dreamweaver Desktop versions 21.6 and earlier are affected by an Improper Neutralization of Special

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.6
8.6

CVE-2026-21226 - Deserialization of untrusted data in Azure Core shared client library for Python allows an authorize

🏢 Azure 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2025-68949 - n8n is an open source workflow automation platform. From 1.36.0 to before 2.2.0, the Webhook node’s

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.3
5.3

CVE-2025-68271 - OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or mor

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 10.0
10.0

CVE-2026-21265 - Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificate

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 6.4
6.4

CVE-2026-21224 - Stack-based buffer overflow in Azure Connected Machine Agent allows an authorized attacker to elevat

🏢 Azure 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-21221 - Concurrent execution using shared resource with improper synchronization ('race condition') in Capab

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.0
7.0

CVE-2026-21219 - Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.0
7.0

CVE-2026-20965 - Improper verification of cryptographic signature in Windows Admin Center allows an authorized attack

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2026-20963 - Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 9.8
9.8

CVE-2026-20962 - Use of uninitialized resource in Dynamic Root of Trust for Measurement (DRTM) allows an authorized a

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 4.4
4.4

CVE-2026-20959 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 4.6
4.6

CVE-2026-20958 - Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to d

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 5.4
5.4

CVE-2026-20957 - Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20956 - Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute c

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20955 - Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute c

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20953 - Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2026-20952 - Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2026-20951 - Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20950 - Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20949 - Improper access control in Microsoft Office Excel allows an unauthorized attacker to bypass a securi

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20948 - Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute co

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20947 - Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Of

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 8.8
8.8

CVE-2026-20946 - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20944 - Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 8.4
8.4

CVE-2026-20943 - Untrusted search path in Microsoft Office allows an unauthorized attacker to execute code locally.

🏢 Microsoft 📅 13.1.2026 📊 CVSS: 7.0
7.0

CVE-2026-20941 - Improper link resolution before file access ('link following') in Host Process for Windows Tasks all

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20940 - Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker t

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20939 - Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an author

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2026-20938 - Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an autho

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20937 - Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an author

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2026-20936 - Out-of-bounds read in Windows NDIS allows an authorized attacker to disclose information with a phys

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 4.3
4.3

CVE-2026-20935 - Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an unaut

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.2
6.2

CVE-2026-20934 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2026-20932 - Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an author

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2026-20931 - External control of file name or path in Windows Telephony Service allows an authorized attacker to

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.0
8.0

CVE-2026-20929 - Improper access control in Windows HTTP.sys allows an authorized attacker to elevate privileges over

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2026-20927 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.3
5.3

CVE-2026-20926 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2026-20925 - External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.5
6.5

CVE-2026-20924 - Use after free in Windows Management Services allows an authorized attacker to elevate privileges lo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20923 - Use after free in Windows Management Services allows an authorized attacker to elevate privileges lo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20922 - Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20921 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2026-20920 - Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20919 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2026-20918 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20877 - Use after free in Windows Management Services allows an authorized attacker to elevate privileges lo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20876 - Heap-based buffer overflow in Windows Virtualization-Based Security (VBS) Enclave allows an authoriz

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.7
6.7

CVE-2026-20875 - Null pointer dereference in Windows Local Security Authority Subsystem Service (LSASS) allows an una

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.5
7.5

CVE-2026-20874 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20873 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20872 - External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 6.5
6.5

CVE-2026-20871 - Use after free in Desktop Windows Manager allows an authorized attacker to elevate privileges locall

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20870 - Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20869 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.0
7.0

CVE-2026-20868 - Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorize

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 8.8
8.8

CVE-2026-20867 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20866 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20865 - Use after free in Windows Management Services allows an authorized attacker to elevate privileges lo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20864 - Heap-based buffer overflow in Connected Devices Platform Service (Cdpsvc) allows an authorized attac

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20863 - Double free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.0
7.0

CVE-2026-20862 - Exposure of sensitive information to an unauthorized actor in Windows Management Services allows an

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 5.5
5.5

CVE-2026-20861 - Concurrent execution using shared resource with improper synchronization ('race condition') in Windo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20860 - Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver f

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20859 - Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges lo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8

CVE-2026-20858 - Use after free in Windows Management Services allows an authorized attacker to elevate privileges lo

🏢 Sonstige 📅 13.1.2026 📊 CVSS: 7.8
7.8
«« « Zurück Seite 59 von 65 Weiter » »»

🏢 CVE nach Hersteller

Empfohlene Sicherheitstools

Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.