CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
28656 CVEs gefunden (Seite 84/115)

CVE-2026-34914 - A missing sanitisation of user input in the zone-include.php script of Revive Adserver 6.0.6 and ear

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-34913 - A missing access control check when linking trackers to campaigns through the campaign-trackers.php

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-34912 - A missing access control check when linking banners or campaigns to a zone through the zone-include.

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-33760 - Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.0, Langf

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-13007 - Tenable Identity Exposure contains multiple unauthenticated API endpoints under /w/api/* that expose

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-12958 - Missing symlink validation in Language Servers for AWS may allow an arbitrary file write outside of

🏢 Aws 📅 23.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-12957 - Improper trust boundary enforcement in Language Servers for AWS before version 1.65.0 on all support

🏢 Aws 📅 23.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-11940 - tarfile.extractall() with the 'data' or 'tar' filter could be bypassed by a crafted archive where a

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 0.0
0.0

CVE-2025-61028 - An issue in the time_t_to_dt component of openlink virtuoso-opensource v7.2.11 allows attackers to c

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2025-61027 - An issue in the t_set_push component of openlink virtuoso-opensource v7.2.11 allows attackers to cau

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2025-61025 - An issue in the sslr_qst_get component of openlink virtuoso-opensource v7.2.11 allows attackers to c

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2025-61023 - An issue in the st_compare component of openlink virtuoso-opensource v7.2.11 allows attackers to cau

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2025-61022 - An issue in the sqlo_tb_col_preds component of openlink virtuoso-opensource v7.2.11 allows attackers

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2025-61021 - An issue in the sqlo_natural_join_cond component of openlink virtuoso-opensource v7.2.11 allows atta

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2025-61020 - An issue in the sqlo_strip_in_join component of openlink virtuoso-opensource v7.2.11 allows attacker

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2025-61019 - An issue in the sqlo_key_part_best component of openlink virtuoso-opensource v7.2.11 allows attacker

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2025-61018 - An issue in the sqlo_place_dt_set component of openlink virtuoso-opensource v7.2.11 allows attackers

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2025-13162 - Uncontrolled Search Path Element vulnerability in ABB Control Builder A, ABB 800xA for Advant Master

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 4.4
4.4

CVE-2026-56696 - OpenHarness /issue and /pr_comments slash commands lack remote_invocable=False protection, allowing

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-56695 - OpenHarness ohmo gateway /resume and /summary slash commands default remote_invocable to True, allow

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-56694 - NanoClaw before 2.1.0 contains a privilege escalation vulnerability in the channel-registration appr

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-56693 - NanoClaw before 2.1.17 contains a privilege escalation vulnerability in the create_agent delivery-ac

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-56692 - NanoClaw before 2.1.17 contains a symlink following vulnerability in forwardAttachedFiles that allow

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-56402 - NanoClaw before 2.1.17 contains a privilege escalation vulnerability in the handleApprovalsResponse

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-55767 - Guzzle is an extensible PHP HTTP client. Prior to 7.12.1, CookieJar incorrectly accepts cookies with

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 5.8
5.8

CVE-2026-55766 - guzzlehttp/psr7 is a PSR-7 HTTP message library implementation in PHP. Prior to 2.12.1, guzzlehttp/p

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 4.8
4.8

CVE-2026-55568 - Guzzle is an extensible PHP HTTP client. Prior to 7.12.1, in certain configurations, traffic expecte

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 5.9
5.9

CVE-2026-54314 - n8n is an open source workflow automation platform. Prior to 2.24.0, the Compression node's Decompre

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54313 - n8n is an open source workflow automation platform. Prior to 2.24.0, an authenticated user with work

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.7
7.7

CVE-2026-54312 - n8n is an open source workflow automation platform. Prior to 2.24.0, an authenticated user with perm

🏢 Microsoft 📅 23.6.2026 📊 CVSS: 8.5
8.5

CVE-2026-54311 - n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, an authenticated use

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.7
7.7

CVE-2026-54310 - n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, an authenticated use

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 9.9
9.9

CVE-2026-54309 - n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, when @n8n/mcp-browse

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 10.0
10.0

CVE-2026-54303 - n8n is an open source workflow automation platform. Prior to 2.24.0, an endpoint in the Meta and Mic

🏢 Microsoft 📅 23.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-52673 - SQL Injection vulnerability in Cboard v.0.4.2 and before allows a remote attacker to execute arbitra

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 6.5
6.5

CVE-2025-62180 - Pega Platform versions 8.3.0 through Infinity 25.1.2 are affected by an authorization weakness that

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 0.0
0.0

CVE-2025-55639 - GPAC MP4Box v2.4 was discovered to contain a NULL pointer dereference in the gf_isom_add_track_kind(

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 6.5
6.5

CVE-2025-15619 - HCL Connections contains a broken access control vulnerability that may allow an unauthorized user t

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 3.5
3.5

CVE-2026-56815 - pwnlift before d7a9544, in a privileged deployment, contains a symlink following vulnerability in th

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.4
7.4

CVE-2026-35019 - NetComm NF20MESH routers running firmware R6B031 and earlier contain an authentication bypass vulner

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-35018 - NetComm NF20MESH routers running firmware R6B031 and earlier contain an authenticated remote code ex

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-28496 - FOSSBilling is a free, open-source billing and client management system. Versions prior to 0.8.0 hav

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-27604 - FOSSBilling is a free, open-source billing and client management system. Starting in version 0.5.4 a

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-12969 - An out-of-bounds read vulnerability exists in dnsmasq's find_soa() function in src/rfc1035.c. When p

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-11772 - DRIMO CMS is vulnerable to Reflected XSS via q parameter in searching functionality. An attacker can

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-10609 - A missing authorization flaw was found in the OpenShift Cluster Logging Operator. The operator creat

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 6.8
6.8

CVE-2026-56784 - OpenRemote before 1.25.0 contains an insecure direct object reference (IDOR) vulnerability in the bu

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-56762 - Hono before 4.12.12 does not validate cookie names on the write path in the setCookie(), serialize()

🏢 Cloudflare 📅 23.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-56701 - Grav before 2.0.0-beta.2 contains an XML external entity injection vulnerability in SVG file upload

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-56379 - ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG deco

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-56376 - ImageMagick before 7.1.2-15 and 6.9.13-40 contains a heap use-after-free in the meta coder: when mem

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 3.7
3.7

CVE-2026-56371 - ImageMagick before 7.1.2-15 and 6.9.13-40 contains a memory leak in coders/txt.c when processing TXT

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-56322 - Capgo before 12.128.2 contains an information disclosure vulnerability in the unauthenticated /updat

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-56315 - picklescan before 1.0.4 fails to block at least seven Python standard library modules (including uui

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-56301 - Nuxt 4.0.0 before 4.4.7 and 3.18.0 before 3.21.7, when running the development server (nuxt dev) on

🏢 Linux 📅 23.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-56275 - Flowise before 3.1.0 contains a server-side request forgery vulnerability in the Execute Flow node t

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-56274 - Flowise before 3.1.2 contains multiple OS command injection vulnerabilities in the Custom MCP Server

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 9.9
9.9

CVE-2026-56263 - Crawl4AI before 0.8.7 contains a stored cross-site scripting vulnerability in the monitor dashboard

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-56258 - Crawl4AI before 0.8.8 contains an arbitrary file write vulnerability in the screenshot and PDF endpo

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-56248 - Cap-go capgo (capgo-backend) before 12.128.12 contains an unauthenticated denial-of-service vulnerab

🏢 Postgresql 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-56243 - Capgo before 12.128.2 contains a security control bypass vulnerability where the PostgREST/RLS plane

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-56234 - Capgo before 12.128.2 contains a credential validation vulnerability in the POST /functions/v1/priva

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-56225 - Capgo before 12.128.2 contains an authorization bypass vulnerability in its public API key managemen

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.3
8.3

CVE-2026-56222 - Capgo before 12.128.2 contains an authorization bypass vulnerability in POST /private/role_bindings

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.2
7.2

CVE-2026-54892 - Inefficient algorithmic complexity in Plug's nested-parameter decoder allows an unauthenticated remo

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-4610 - The ProfileGrid – User Profiles, Groups and Communities plugin for WordPress is vulnerable to Stored

🏢 Wordpress 📅 23.6.2026 📊 CVSS: 6.4
6.4

CVE-2026-44089 - Totolink EX1200L router is vulnerable to Buffer Overflow in the login functionality in cgi-bin/cstec

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-10857 - Improper neutralization of input during web page generation ('cross-site scripting') vulnerability i

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-10711 - Missing authentication for critical function vulnerability in AKIN Software Computer Import Export I

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.8
8.8

CVE-2025-71376 - picklescan before 0.0.29 fails to detect malicious pickle files using idlelib.autocomplete.AutoCompl

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.1
8.1

CVE-2025-71370 - picklescan before 0.0.28 fails to detect malicious torch.jit.unsupported_tensor_ops.execWrapper func

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.1
8.1

CVE-2025-71365 - picklescan before 0.0.33 fails to detect malicious pickle files that invoke numpy.f2py.crackfortran.

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.1
8.1

CVE-2025-71341 - picklescan before 0.0.29 fails to detect the profile.Profile.runctx function when analyzing pickle f

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.1
8.1

CVE-2025-71337 - Flowise before 3.0.10 (affected versions 3.0.7 and earlier) contains an unverified email change vuln

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 8.3
8.3

CVE-2023-54365 - Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 req

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-4983 - Open VSX Registry does not sanitize SVG files uploaded as extension icons prior to storage, and serv

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 4.1
4.1

CVE-2026-11374 - In ManageEngine ADSelfService Plus, RecoveryManager Plus, M365 Manager Plus, and ADAudit Plus, the S

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 9.0
9.0

CVE-2026-9733 - Mojolicious::Plugin::Web::Auth::OAuth2 versions through 0.17 for Perl have an insecure default state

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 9.1
9.1

CVE-2026-10521 - An high privileged remote attacker can access a hidden configuration method, that should not be acce

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.2
7.2

CVE-2026-8379 - The Frontend File Manager Plugin WordPress plugin through 23.6 does not properly enforce its nonce c

🏢 Wordpress 📅 23.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-8378 - The Frontend File Manager Plugin WordPress plugin through 23.6 does not sanitise nor escape a filena

🏢 Wordpress 📅 23.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-8172 - The Simple Basic Contact Form WordPress plugin through 20250114 does not escape user-supplied input

🏢 Wordpress 📅 23.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-8163 - The Infility Global WordPress plugin before 2.15.19 does not properly sanitize and escape some param

🏢 Wordpress 📅 23.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-7842 - The Infility Global Infility Global WordPress plugin before 2.15.20 for WordPress does not sanitize

🏢 Wordpress 📅 23.6.2026 📊 CVSS: 6.8
6.8

CVE-2026-12866 - All versions of the package expr-eval are vulnerable to Code Execution via the toJSFunction() API. A

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-55655 - A flaw was found in OpenSSH. A local unprivileged attacker on a Linux client host can hijack client-

🏢 Linux 📅 23.6.2026 📊 CVSS: 5.0
5.0

CVE-2026-55654 - A flaw was found in OpenSSH. This vulnerability, a heap out-of-bounds read, occurs during the cleanu

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 3.7
3.7

CVE-2026-55653 - A flaw was found in OpenSSH. A malicious SSH server can exploit a double free vulnerability in the D

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-11833 - Overview: A vulnerability has been found in FAST/TOOLS and CI Server. The web server may return a r

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-10658 - bt_iso_recv() in subsys/bluetooth/host/iso.c pulled the ISO SDU header (4 bytes) or, when the timest

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-10651 - bt_sdp_parse_attribute() in subsys/bluetooth/host/classic/sdp.c validated only that the SDP record b

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-10645 - The Zephyr ext2 filesystem driver (subsys/fs/ext2) trusted the on-disk directory entry fields de_rec

🏢 Sonstige 📅 23.6.2026 📊 CVSS: 4.9
4.9

CVE-2026-54236 - vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.23.1rc0, the fi

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-54235 - vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.23.1rc0, ll tem

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-54233 - vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.23.1rc0, vLLM's

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-54232 - vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.22.1, the vLLM

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-53923 - vLLM is an inference and serving engine for large language models (LLMs). From 0.5.5 until 0.23.1rc0

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48746 - vLLM is an inference and serving engine for large language models (LLMs). From 0.3.0 until 0.22.0, a

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 9.1
9.1

CVE-2026-47155 - vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.22.0, vLLM's re

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-41523 - vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.22.0, an assert

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-56698 - Nuxt versions 4.0.0 before 4.4.7 and 3.x before 3.21.7 fail to validate script-capable URLs in the n

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-56697 - Nuxt versions 4.0.0 before 4.4.7 and 3.x before 3.21.7 accept protocol-relative paths such as //evil

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-56357 - n8n before 1.123.15 and 2.5.0 contains a webhook forgery vulnerability in the GitHub Webhook Trigger

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 4.0
4.0

CVE-2026-56348 - n8n before 2.20.0 contains a credential exfiltration vulnerability in the POST /rest/dynamic-node-pa

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 9.1
9.1

CVE-2026-56326 - Nuxt versions 4.0.0 before 4.4.7 and 3.x before 3.21.7 contain a server-side open redirect vulnerabi

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-56324 - Capgo before 12.128.2 contains a rate limit bypass vulnerability in the channel_self endpoint that a

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.2
8.2

CVE-2026-56323 - Capgo before 12.128.2 contains an information disclosure vulnerability in the /functions/v1/channel_

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-56321 - Capgo (backend Supabase edge functions) before 12.128.2 does not apply the global authentication mid

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-56314 - Capgo before 12.128.12 fails to filter deleted app versions when joining channels during /updates re

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-56311 - Capgo before 12.128.2 contains an authorization bypass vulnerability in the public.get_current_plan_

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-56306 - Capgo before 12.128.2 contains a weak parsing vulnerability in the x-limited-key-id header that allo

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.4
6.4

CVE-2026-56280 - Cap-go before 12.128.2 contains a privilege inversion vulnerability in GET /build/logs/:jobId that a

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-56268 - Flowise before 3.1.2 contains an information disclosure vulnerability in the /api/v1/chatflows/apike

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.7
7.7

CVE-2026-56266 - Crawl4AI before 0.8.7 contains a server-side request forgery vulnerability in the /crawl, /crawl/str

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.6
8.6

CVE-2026-56255 - Capgo before 12.128.2 contains a denial of service vulnerability in the POST /app/demo endpoint that

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-56221 - Cap-go before 12.128.2 contains multiple SQL injection vulnerabilities in cloudflare.ts where user-c

🏢 Cloudflare 📅 22.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-55409 - Filament is a collection of full-stack components for accelerated Laravel development. From 3.0.0 un

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.6
7.6

CVE-2026-54911 - UltraJSON is a fast JSON encoder and decoder written in pure C with bindings for Python 3.7+. Prior

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-54281 - Nest is a framework for building scalable Node.js server-side applications. Prior to 11.1.24, an aut

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-48517 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePack-CShar

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48516 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, InterfaceLookupFo

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48515 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePack-CShar

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48514 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, UnsafeBlitFormatt

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48513 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, runtime-generated

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48512 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePack-CShar

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48511 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, ExpandoObjectForm

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48510 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, when MessagePack-

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48509 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, the parameterless

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 9.1
9.1

CVE-2026-48506 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePackReader

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48505 - Filament is a collection of full-stack components for accelerated Laravel development. From 4.0.0 un

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.4
7.4

CVE-2026-48502 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePackReader

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48500 - Filament is a collection of full-stack components for accelerated Laravel development. From 3.0.0 un

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-48167 - Filament is a collection of full-stack components for accelerated Laravel development. From 4.0.0 un

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.4
6.4

CVE-2026-48166 - Filament is a collection of full-stack components for accelerated Laravel development. From 4.0.0 un

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-48109 - MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, A vulnerability e

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.2
8.2

CVE-2026-48067 - Filament is a collection of full-stack components for accelerated Laravel development. From filament

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-44889 - WebOb provides objects for HTTP requests and responses. Prior to 1.8.10, the normalization of the HT

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-44311 - Fabric.js is a Javascript HTML5 canvas library. Prior to 7.4.0, a potential Cross-Site Scripting (XS

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.4
5.4

CVE-2025-71358 - picklescan before 0.0.29 fails to detect malicious pickle files that exploit idlelib.autocomplete.Au

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.1
8.1

CVE-2025-71344 - picklescan before 0.0.30 (affected versions 0.0.26 and earlier) fails to detect the ensurepip._run_p

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.1
8.1

CVE-2025-71339 - Picklescan before 0.0.33 fails to detect the numpy.f2py.crackfortran._eval_length gadget in pickle _

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-55603 - http-proxy-middleware is node.js http-proxy middleware. From 3.0.4 until 3.0.7 and 4.1.1, fixRequest

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-55599 - phpseclib is a PHP secure communications library. From 0.1.1 until 1.0.30, 2.0.55, and 3.0.54, when

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.8
5.8

CVE-2026-54651 - pypdf is a free and open-source pure-python PDF library. Prior to 6.13.1, an attacker who uses this

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-54531 - pypdf is a free and open-source pure-python PDF library. Prior to 6.13.0, an attacker who uses this

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-54530 - pypdf is a free and open-source pure-python PDF library. Prior to 6.13.0, an attacker who uses this

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-49468 - LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.84.

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-49461 - pypdf is a free and open-source pure-python PDF library. Prior to 6.12.2, an attacker who uses this

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-49460 - pypdf is a free and open-source pure-python PDF library. Prior to 6.12.2, an attacker who uses this

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 3.3
3.3

CVE-2026-47242 - Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-47241 - Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-47240 - Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-45034 - PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet files. Prior to 1.30.5, CVE

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-44727 - Jupyter Server is the backend for Jupyter web applications. Prior to 2.20, the nbconvert HTTP handle

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-41479 - Authlib is a Python library which builds OAuth and OpenID Connect servers. Prior to 1.6.10 and 1.7.1

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-39904 - Gophish through 0.12.1 contains a denial of service vulnerability that allows authenticated users wi

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-48931 - A flaw in Node.js HTTP Agent can cause a client to accept as valid a response that is send before th

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 3.7
3.7

CVE-2026-44274 - Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Improper Link Resolution Be

🏢 Dell 📅 22.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-44273 - Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain a Use of Default Credentials v

🏢 Dell 📅 22.6.2026 📊 CVSS: 6.0
6.0

CVE-2026-44272 - Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Improper Neutralization of

🏢 Dell 📅 22.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-44271 - Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Improper Neutralization of

🏢 Dell 📅 22.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-10852 - IBM WebSphere Application Server and IBM WebSphere Application Server Liberty are vulnerable to deni

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.9
5.9

CVE-2026-55443 - LangChain is a framework for building agents and LLM-powered applications. Prior to 1.3.9, several L

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.1
5.1

CVE-2026-54300 - @astrojs/netlify is an adapter that allows Astro to deploy your hybrid or server rendered site to Ne

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-54299 - Astro is a web framework. Prior to 6.4.6, Astro SSR apps with prerendered error pages (/404 or /500

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54298 - Astro is a web framework. Prior to 6.4.6, the spreadAttributes function in Astro's server-side rende

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 4.2
4.2

CVE-2026-54293 - NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials s

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54288 - Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.

🏢 Aws 📅 22.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-53779 - WebP Server Go through 0.14.4 contains a path traversal vulnerability on Windows that allows unauthe

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-53778 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-53663 - React Router is a router for React. From 7.12.0 until 7.15.1, certain CSRF checks in React Router v7

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 3.1
3.1

CVE-2026-50146 - Astro is a web framework. Prior to 6.3.3, when a component uses a client:* directive, Astro inserts

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-11834 - A command injection vulnerability has been identified in the DHCP option processing logic in multipl

🏢 Tp-link 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-56109 - The Advanced Linux Sound Architecture (ALSA) library before 1.2.16.1 contains a double-free vulnerab

🏢 Linux 📅 22.6.2026 📊 CVSS: 6.8
6.8

CVE-2026-55602 - http-proxy-middleware is node.js http-proxy middleware. From 0.16.0 until 2.0.10, 3.0.6, and 4.1.0,

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.6
8.6

CVE-2026-55388 - piscina is a node.js worker pool implementation. Prior to 6.0.0-rc.2, 5.2.0, and 4.9.3, piscina's co

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-54290 - Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-54289 - Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.

🏢 Aws 📅 22.6.2026 📊 CVSS: 4.8
4.8

CVE-2026-54287 - Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.

🏢 Aws 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-54286 - Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.9
5.9

CVE-2026-54285 - opentelemetry-js is the OpenTelemetry JavaScript Client. Prior to 2.8.0, W3CBaggagePropagator.extrac

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-54283 - Starlette is a lightweight ASGI framework/toolkit. From 0.4.1 until 1.3.1, request.form() accepts ma

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54282 - Starlette is a lightweight ASGI framework/toolkit. Prior to 1.3.0, the HTTP request path is not vali

🏢 Google 📅 22.6.2026 📊 CVSS: 3.7
3.7

CVE-2026-54280 - AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, pay

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54279 - AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, hos

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54278 - AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, dur

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54277 - AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, it

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54276 - AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, Dig

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-54275 - AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, the

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54274 - AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54273 - AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, no

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54271 - protobufjs-cli is the command line add-on for protobuf.js. Prior to 1.3.2 and 2.5.0, a previous fix

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.2
8.2

CVE-2026-54270 - protobufjs compiles protobuf definitions into JavaScript (JS) functions. From 8.2.0 to 8.4.2, protob

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-54269 - protobufjs compiles protobuf definitions into JavaScript (JS) functions. Prior to 8.6.0 and 7.6.3, p

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-53632 - launch-editor allows users to open files with line numbers in editor from Node.js. Prior to 2.14.1,

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-53571 - Vite is a frontend tooling framework for JavaScript. Prior to 8.0.16, 7.3.5, and 6.4.3, the contents

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-53540 - Python-Multipart is a streaming multipart parser for Python. Prior to 0.0.31, parse_form() did not v

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 3.7
3.7

CVE-2026-53539 - Python-Multipart is a streaming multipart parser for Python. Prior to 0.0.30, when parsing applicati

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-53538 - Python-Multipart is a streaming multipart parser for Python. Prior to 0.0.30, QuerystringParser trea

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 3.7
3.7

CVE-2026-53537 - Python-Multipart is a streaming multipart parser for Python. Prior to 0.0.30, parse_options_header p

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 3.7
3.7

CVE-2026-50556 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-50555 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-50269 - AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.0, att

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-50184 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-50171 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-50170 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-50169 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-50168 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.2
8.2

CVE-2026-49356 - Babel is a compiler for writing next generation JavaScript. Prior to 8.0.0-rc.6 and 7.29.6, @babel/c

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 3.2
3.2

CVE-2026-48712 - protobufjs compiles protobuf definitions into JavaScript (JS) functions. Prior to 7.6.1 and 8.4.1, p

🏢 Google 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-46417 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-42127 - The public dashboard query endpoint does not limit request body size before processing, allowing una

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-12249 - An issue was discovered in Canonical ADSys upstream versions through v0.16.2. During Active Director

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 9.0
9.0

CVE-2026-11994 - Akaunting 3.1.21 contains an authenticated stored Cross-Site Scripting vulnerability in the report m

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-11825 - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-10789 - A maliciously crafted webpage, when visited by a user with Autodesk Fusion Desktop running and the M

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 9.6
9.6

CVE-2026-9610 - IBM Datacap 9.1.7, 9.1.8, and 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, and 9.1.9 exposes resour

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 2.3
2.3

CVE-2026-9320 - IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.9
5.9

CVE-2026-9072 - IBM WebSphere Application Server and IBM WebSphere Application Server Liberty - when using Intellige

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-9071 - IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-9006 - IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to server-side request forgery (SSRF) wi

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.4
7.4

CVE-2026-8934 - A Missing Authorization vulnerability in a GraphQL private API operation of the Google App Engine se

🏢 Google 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-8858 - IBM WebSphere Application Server and IBM WebSphere Application Server Liberty are vulnerable to remo

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-8823 - Mattermost versions 11.7.x <= 11.7.0, 10.11.x <= 10.11.17 fail to validate bot targets when demoting

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 3.8
3.8

CVE-2026-8646 - IBM WebSphere Application Server 9.0 and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.4
7.4

CVE-2026-8636 - IBM Datacap 9.1.7, 9.1.8, and 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, and 9.1.9 allows an atta

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-8059 - IBM Datacap 9.1.7, 9.1.8, and 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, and 9.1.9 is vulnerable

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-7664 - IBM Langflow OSS 1.0.0 through 1.8.4 could allow unauthenticated attackers to access protected MCP p

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-7253 - IBM Sterling B2B Integrator and IBM Sterling File Gateway are vulnerable to SQL injection. A privile

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.0
6.0

CVE-2026-56104 - Chainlit before 2.10.1 contains a session hijacking vulnerability that allows unauthenticated attack

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.2
8.2

CVE-2026-54268 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-54267 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-54266 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-54265 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-54264 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-53655 - node-tar is a full-featured Tar for Node.js. Prior to 7.5.16, tar (node-tar) applies a PAX extended

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-53550 - js-yaml is a JavaScript YAML parser and dumper. Prior to 4.2.0 and 3.15.0, a crafted YAML document c

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-52725 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-50557 - Angular is a development platform for building mobile and desktop web applications using TypeScript/

🏢 Aws 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-50178 - The Angular Language Service VS Code Extension provides a rich editing experience for Angular templa

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-49241 - The Angular Language Service VS Code Extension provides a rich editing experience for Angular templa

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-41049 - Incorrect caching of authentication between different users of the  qSnapper dbus service before ver

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-41048 - Incorrect caching of authentication between different polkit methods in qSnapper before version 1.3.

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-41047 - Lack of authentication when using the "snapshot diff" functions in qSnapper before version 1.3.3 all

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-41046 - A path traversal attack when using a "configName" parameter in qSnapper before version 1.3.3 allowed

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.3
7.3

CVE-2026-41045 - A time-to-check-time-of-use in polkit authentication of qSnapper before version 1.3.3 allowed a loca

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-12725 - A heap-based buffer overflow was found in dnsmasq. When DNSSEC validation and query logging are both

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.9
5.9

CVE-2026-12628 - IBM Storage Protect Client 8.1.0.0 through 8.2.1.0 and IBM Storage Protect Snapshot For Windows 8.1.

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 9.1
9.1

CVE-2026-12549 - The fix for CVE-2026-2443 was regressed by a subsequent rework commit that replaced specific overflo

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 4.8
4.8

CVE-2026-12479 - A path traversal vulnerability exists in keras-team/keras version 3.14.0, specifically in the `DiskI

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0
«« « Zurück Seite 84 von 115 Weiter » »»

🏢 CVE nach Hersteller

Empfohlene Sicherheitstools

Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.