CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
28656 CVEs gefunden (Seite 85/115)

CVE-2026-11943 - Akaunting 3.1.21 contains an authenticated stored cross-site scripting vulnerability in the document

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-11942 - Akaunting 3.1.21 contains an authenticated stored cross-site scripting vulnerability in the reusable

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-11372 - IBM TRIRIGA Application Platform 5.0.2 through 5.0.3 is vulnerable to cross-site scripting. This vul

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-10845 - IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to bypass authentication

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.3
7.3

CVE-2024-51454 - IBM Engineering Workflow Management 7.0.2 through 7.0.2 Interim Fix 035, 7.0.3 through 7.0.3 Interim

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.5
6.5

CVE-2023-33854 - IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8, 5.0, 5.1, 5.2, a

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-9162 - Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 fail t

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-9029 - A user with Editor permissions can place a malicious script in the attribution field of a Geomap pan

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.3
7.3

CVE-2026-8074 - Mattermost versions 11.7.x <= 11.7.0, 10.11.x <= 10.11.17 fail to enforce bot-specific permission ch

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 3.8
3.8

CVE-2026-7167 - The vulnerability arises when the system fails to properly validate the 'email' field during the aut

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-7166 - Vulnerability involving the exposure of sensitive data provided without adequate protection. The API

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-7165 - The vulnerability is present in the ‘/addJugador’ endpoint: * The 'keyJugador' and 'keyJugadorObj

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-6673 - Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 fail t

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.4
6.4

CVE-2026-6653 - Use After Free in libxml2's xmlParseInternalSubset from GNOME libxml2 version 2.9.11 to 2.11.0 allow

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-6062 - Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 Fail t

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.4
6.4

CVE-2026-5139 - Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 fail t

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-56450 - AIL did not restrict repeated failed attempts to verify a two-factor authentication (OTP) code. An a

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-56448 - A path traversal vulnerability exists in AIL Framework before the release containing commit 0041456a

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-56447 - MISP allowed an authenticated site administrator to set the Kafka_rdkafka_config setting to an arbit

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.2
7.2

CVE-2026-56446 - MISP allowed a site administrator to configure an arbitrary filesystem path for the NDJSON error log

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.2
7.2

CVE-2026-56425 - The Azure Active Directory (AAD) authentication implementation contained multiple weaknesses in its

🏢 Azure 📅 22.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-56424 - MISP core contained multiple broken access-control flaws where authorization checks were performed a

🏢 Aws 📅 22.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-56423 - MISP Core contained broken access-control checks in the bulk deletion flows for Event Reports and Sh

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-54100 - A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platf

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.3
8.3

CVE-2026-54099 - A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platf

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-42129 - A user with Viewer permissions can use a path traversal in the Loki data source plugin to reach admi

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.7
7.7

CVE-2026-28381 - The Snowflake datasource allows for GET/PUT commands, which can allow any user with access to run qu

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 9.6
9.6

CVE-2026-12888 - An HTML injection vulnerability exists in the Google Chat webhook notification  sent by Thinkst Appl

🏢 Google 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-12602 - Incorrect default permissions in ArubaSign, affecting versions prior to v4.6.6. The vulnerability is

🏢 Aruba 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-10601 - A user with Viewer permissions can use specially crafted requests to the Tempo and Loki data source

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-10561 - IBM Langflow OSS 1.0.0 through 1.9.3 has an vulnerability due to an improper isolation of Python exe

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 10.0
10.0

CVE-2025-66389 - GitHub Copilot 1.372.0 allows filesystem access outside of a workspace folder (without user approval

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2025-33128 - IBM Engineering Workflow Management 7.0.3 through 7.0.3 Interim Fix 020, and 7.1 through 7.1 Interim

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.4
5.4

CVE-2025-2669 - IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8, 5.0, 5.1, 5.2, 5

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.0
6.0

CVE-2024-54178 - IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8,5.0,5.1,5.2,5.3 c

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-56422 - Multiple MISP core controllers and model capture paths accepted client-controlled request fields suc

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-11373 - Net::Statsite::Client versions through 1.1.0 for Perl allow metric injections. Net::Statsite::Clien

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 9.1
9.1

CVE-2026-12863 - An unvalidated redirect was contained in Venueless' social login functionality and could be exploite

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-12862 - Untrusted user data was passed verbatim to Excel exports for administrators. This allowed formula in

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-12581 - EasyFlow .NET developed by Digiwin has a Session Fixation vulnerability. If unauthenticated remote a

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-12580 - EasyFlow .NET developed by Digiwin has a Stored Cross-Site Scripting vulnerability, allowing authent

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.4
5.4

CVE-2025-4994 - The SafeLine SL6 and SL6+ devices integrated into elevator emergency intercom systems are vulnerable

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2023-45796 - A stored cross-site scripting vulnerability in the Runtime component of Pilz PASvisu before 1.14.1 a

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 8.1
8.1

CVE-2023-45795 - A cross-site scripting vulnerability in the Builder Component of Pilz PASvisu before 1.14.1 allows a

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-54665 - Apache NiFi 0.0.1 through 2.9.0 support building qualified URLs from one of several HTTP request hea

🏢 Apache 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-44914 - Apache NiFi 1.12.0 through 2.9.0 are missing authorization when replacing Process Groups that includ

🏢 Apache 📅 22.6.2026 📊 CVSS: 7.2
7.2

CVE-2026-44913 - Improper escaping of database table names in the CaptureChangeMySQL Processor included with Apache N

🏢 Apache 📅 22.6.2026 📊 CVSS: 7.2
7.2

CVE-2026-44911 - Authorization handling for component configuration verification requests in Apache NiFi 1.15.0 throu

🏢 Apache 📅 22.6.2026 📊 CVSS: 6.3
6.3

CVE-2025-66336 - Apache Doris MCP Server contains a SQL injection vulnerability in a metadata query path. A user-cont

🏢 Apache 📅 22.6.2026 📊 CVSS: 8.1
8.1

CVE-2025-62198 - An authenticated user can perform XSS. This issue affects Apache Atlas versions 2.4.0 and earlier.

🏢 Apache 📅 22.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-8157 - The Vitepos WordPress plugin before 3.4.2 does not properly restrict the roles that can be assigned

🏢 Wordpress 📅 22.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-7859 - The Motors WordPress plugin before 1.4.110 does not have proper authorisation and CSRF checks on on

🏢 Wordpress 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-6858 - The Transbank Webpay WordPress plugin before 1.14.0 does not sanitize and escape logs to be displaye

🏢 Wordpress 📅 22.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-4259 - The ultimate-woocommerce-auction-pro WordPress plugin through 2.4.5 does not sanitise and escape a p

🏢 Wordpress 📅 22.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-4110 - The ultimate-woocommerce-auction-pro WordPress plugin through 2.4.5 does not sanitise and escape a p

🏢 Wordpress 📅 22.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-10530 - The Pie Register WordPress plugin before 3.8.4.10 does not use sufficiently random values when gene

🏢 Wordpress 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-6645 - An insecure process execution vulnerability exists in the pc-printer-updater.exe component of the Pa

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-8918 - A permissive list of allowed inputs in ASUS Armoury Crate allows a local administrator to perform ar

🏢 Asus 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-11748 - A vulnerability has been identified in centraldogma-server-auth-shiro versions prior to 0.84.0, wher

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-11746 - A vulnerability has been identified in centraldogma-server versions prior to 0.84.0, where enabling

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-11745 - A vulnerability has been identified in centraldogma-server-mirror-git versions prior to 0.84.0, wher

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-12823 - A security flaw has been discovered in Browserbase Skills up to 20260526. This impacts an unknown fu

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 3.3
3.3

CVE-2026-12822 - A vulnerability was identified in langflow-ai langflow up to 1.9.3. This affects an unknown function

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-12821 - A vulnerability was determined in FlowiseAI Flowise up to 3.1.2. The impacted element is an unknown

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12815 - A vulnerability has been found in coollabsio coolify 4.0.0. Impacted is an unknown function of the c

🏢 Sonstige 📅 22.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12845 - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-12814 - A flaw has been found in Comfast CF-WR631AX V3 up to 2.7.0.8. This issue affects the function system

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12813 - A vulnerability was detected in activepieces up to 0.83.0. This vulnerability affects the function h

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12812 - A security vulnerability has been detected in Radware Cyber Controller up to 10.11.0. This affects a

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 3.5
3.5

CVE-2026-12811 - A weakness has been identified in kortix-ai suna up to 0.8.38. Affected by this issue is the functio

🏢 F5 📅 21.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-12810 - A security flaw has been discovered in Edimax BR-6478AC V2 1.23. Affected by this vulnerability is t

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12809 - A vulnerability was identified in Edimax BR-6478AC V2 1.23. Affected is the function wiz_5in1_redire

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12808 - A vulnerability was determined in Edimax BR-6478AC V2 1.23. This impacts the function stainfo of the

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12807 - A vulnerability was found in Edimax BR-6478AC V2 1.23. This affects the function setWAN of the file

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12806 - A vulnerability has been found in Edimax BR-6478AC V2 1.23. The impacted element is the function for

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-12805 - A flaw has been found in OFFIS DCMTK up to 3.7.0. The affected element is the function XMLNode::pars

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12804 - A vulnerability was detected in lemonldap-ng up to 2.23.0. Impacted is an unknown function in the li

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-56412 - libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 4.9
4.9

CVE-2026-56411 - xmlwf in libexpat before 2.8.2 has an integer overflow in endDoctypeDecl via NOTATION declarations.

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.9
6.9

CVE-2026-56410 - xmlwf in libexpat before 2.8.2 has an integer overflow in resolveSystemId.

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.9
6.9

CVE-2026-56409 - xmlwf in libexpat before 2.8.2 has an integer overflow for the output filename when -d outputDir is

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-56408 - libexpat before 2.8.2 has an integer overflow in copyString.

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.9
6.9

CVE-2026-56407 - libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and en

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.9
6.9

CVE-2026-56406 - libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.9
6.9

CVE-2026-56405 - libexpat before 2.8.2 has an integer overflow in getAttributeId.

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.9
6.9

CVE-2026-56404 - libexpat before 2.8.2 has an integer overflow in addBinding.

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.9
6.9

CVE-2026-56403 - libexpat before 2.8.2 has an integer overflow in storeAtts.

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.9
6.9

CVE-2026-56397 - SiYuan before v3.6.1 fails to sanitize package metadata and README content in the Bazaar marketplace

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 9.6
9.6

CVE-2026-56396 - phpMyFAQ before 4.1.4 contains missing authorization vulnerabilities in editUser() and updateUserRig

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-56395 - SiYuan before v3.6.1 fails to sanitize package metadata and README content in the Bazaar marketplace

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 9.6
9.6

CVE-2026-56394 - Craft CMS from 4.0.0-RC1 contains an authenticated path traversal vulnerability in the assets/icon e

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-56393 - Craft CMS 4.x (>= 4.0.0-RC1, < 4.17.0-beta.1) and 5.x (>= 5.0.0-RC1, < 5.9.0-beta.1) contain multipl

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 4.8
4.8

CVE-2026-56385 - Craft CMS versions >= 5.0.0-RC1, <= 5.9.13 and >= 4.0.0-RC1, <= 4.17.7 contain an authorization bypa

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-56384 - Craft CMS contains a missing authorization vulnerability in the assets/preview-thumb endpoint. A Con

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-56383 - Craft CMS contains a stored cross-site scripting (XSS) vulnerability in the editableTable.twig compo

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 4.8
4.8

CVE-2026-56382 - Craft CMS (composer package craftcms/cms) versions >= 5.5.0 and <= 5.9.13 contain a remote code exec

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.2
7.2

CVE-2026-56381 - Craft CMS from version 5.0.0-RC1 contains a stored cross-site scripting vulnerability in the User Pe

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 4.8
4.8

CVE-2026-56378 - ImageMagick before 7.1.2-15 (and 6.x before 6.9.13-40) contains a heap out-of-bounds read in the PCD

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 3.7
3.7

CVE-2026-56367 - ImageMagick before 7.1.2-15 and 6.9.x before 6.9.13-40 contains an integer overflow in the PSB (PSD

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 3.7
3.7

CVE-2026-56316 - Cap-go before 12.128.2 contains an information disclosure vulnerability in the OPTIONS /build/upload

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-56299 - Capgo before 12.128.2 contains an authentication bypass vulnerability in the /build/upload/:jobId/*

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-56265 - Crawl4AI before 0.8.7 contains an authentication bypass vulnerability due to a hardcoded default JWT

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-56253 - Capgo before 12.128.2 contains an improper access control vulnerability in the public.get_org_member

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-56251 - Capgo before 12.128.2 contains a broken row level security policy in the org_users table that allows

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-56242 - Capgo before 12.128.2 contains an unauthenticated security definer RPC function get_identity_apikey_

🏢 Oracle 📅 21.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-56239 - Capgo before 12.128.2 contains a potential privilege escalation vulnerability in the public.apply_us

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.6
7.6

CVE-2026-56236 - Capgo CLI before 12.128.2 contains arbitrary file overwrite vulnerabilities in login and build crede

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-56229 - Capgo before 12.128.2 contains an authorization bypass vulnerability in the /build/status and /build

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.5
6.5

CVE-2025-71378 - picklescan before 0.0.30 fails to detect cProfile.runctx function calls in pickle file reduce method

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 8.1
8.1

CVE-2025-71357 - picklescan before 0.0.30 fails to detect malicious pickle files using idlelib.pyshell.ModifiedInterp

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 8.1
8.1

CVE-2025-71351 - picklescan before 0.0.25 fails to detect malicious pickle files that use timeit.timeit() in the __re

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 0.0
0.0

CVE-2025-71348 - picklescan before 0.0.28 fails to detect malicious pickle files that invoke torch.utils._config_modu

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-12799 - A security vulnerability has been detected in BerriAI litellm up to 1.82.2. Affected by this issue i

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-12798 - A weakness has been identified in BerriAI litellm up to 1.82.2. Affected by this vulnerability is th

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12797 - A security flaw has been discovered in BerriAI litellm up to 1.82.5. Affected is the function async_

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12796 - A vulnerability was identified in BerriAI litellm up to 1.82.2. This impacts the function get_redire

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12795 - A vulnerability was determined in BerriAI litellm up to 1.82.2. This affects the function json.dumps

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.3
7.3

CVE-2026-12789 - A vulnerability was identified in ILIAS Learning Management System 11.0. This issue affects the func

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 4.7
4.7

CVE-2026-12788 - A vulnerability was determined in zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12787 - A vulnerability was found in zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1.0.0.

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12786 - A vulnerability has been found in Ezbsystems UltraISO Premium Edition up to 9.76. Affected by this i

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-52911 - In the Linux kernel, the following vulnerability has been resolved: ksmbd: scope conn->binding slow

🏢 Linux 📅 21.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-12784 - A weakness has been identified in IM-Magic Partition Resizer up to 7.9.0. This affects an unknown fu

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-12782 - A security flaw has been discovered in EaseUS Partition Master up to 14.5. The impacted element is a

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-12781 - A vulnerability was identified in EaseUS Partition Master up to 14.5. The affected element is an unk

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-12780 - A vulnerability was determined in AOMEI Backupper up to 8.3.0. Impacted is an unknown function in th

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-12779 - A vulnerability was found in AOMEI Dynamic Disk Manager up to 10.10.1. This issue affects some unkno

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-12778 - A vulnerability has been found in AOMEI Partition Assistant up to 10.10.1. This vulnerability affect

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.8
7.8

CVE-2026-12776 - A flaw has been found in Montodel House-Rental-Management up to 90010017b81265eb1ef3810268909f7719a3

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12775 - A vulnerability was detected in Montodel House-Rental-Management up to 90010017b81265eb1ef3810268909

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.3
7.3

CVE-2026-12774 - A security vulnerability has been detected in BerriAI litellm up to 1.82.2. Affected by this vulnera

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12773 - A weakness has been identified in BerriAI litellm up to 1.59.8. Affected is the function UserAPIKeyA

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 7.3
7.3

CVE-2026-12772 - A security flaw has been discovered in BerriAI litellm up to 1.82.2. This impacts the function authe

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12771 - A vulnerability was identified in BerriAI litellm up to 1.82.2. This affects an unknown function of

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 5.0
5.0

CVE-2026-12770 - A vulnerability was determined in BerriAI litellm up to 1.63.1. The impacted element is an unknown f

🏢 Sonstige 📅 21.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-56355 - GNU Savannah Administration Savane through 3.17 uses untrusted data as part of authorization.

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 3.7
3.7

CVE-2026-56347 - AVideo TopMenu plugin through version 26.0 contains a stored cross-site scripting vulnerability in m

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-56346 - AVideo through version 25.0 contains an authentication bypass vulnerability in the decryptMessage.js

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-56345 - AVideo through 29.0 contains an authorization bypass vulnerability in the Meet plugin's uploadRecord

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-56342 - AVideo through version 27.0 contains a server-side request forgery vulnerability in plugin/Live/test

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 6.8
6.8

CVE-2026-56341 - AVideo through version 26.0 contains multiple unauthenticated list.json.php endpoints in payment plu

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-56340 - vLLM versions >= 0.10.2 and < 0.13.0 are missing sparse tensor validation in multimodal embeddings p

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 8.8
8.8

CVE-2025-71379 - vLLM versions >= 0.6.3 and < 0.9.0 contain multiple regular expression denial of service (ReDoS) vul

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-5366 - Prefect version 3.6.23 is vulnerable to remote code execution due to improper handling of user-contr

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-56332 - Capgo before 12.128.2 contains an open redirect vulnerability in the confirm-signup endpoint that al

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 4.7
4.7

CVE-2026-56330 - Capgo before 12.128.2 contains an open redirect vulnerability in stripe_portal and stripe_checkout e

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 3.5
3.5

CVE-2026-56325 - Capgo before 12.128.2 uses ILIKE pattern matching instead of exact matching for app_id lookup in the

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 3.1
3.1

CVE-2026-56319 - Capgo before 12.128.2 contains an information disclosure vulnerability in the GET /statistics/app/:a

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-56317 - Nuxt before 4.4.7 (and the 3.x branch before 3.21.7) contains a cross-site scripting vulnerability i

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 6.1
6.1

CVE-2026-56307 - Cap-go before 12.128.12 contains a broken cursor pagination vulnerability in the /private/devices en

🏢 Cloudflare 📅 20.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-56304 - picklescan before 1.0.1 contains an unsafe pickle deserialization vulnerability allowing unauthentic

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-56295 - Capgo before 12.128.2 contains an authorization bypass vulnerability in webhook management endpoints

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-56294 - capacitor-native-biometric before 12.128.2 contains an authentication bypass vulnerability where the

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 4.8
4.8

CVE-2026-56282 - Capgo before 12.128.2 contains an information disclosure vulnerability in the unauthenticated /repli

🏢 Postgresql 📅 20.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-56276 - Flowise before 3.1.2 contains a mass assignment vulnerability in the PUT /api/v1/user endpoint that

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-56267 - Flowise before 3.0.13 contains an information exposure vulnerability in the POST /api/v1/account/for

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-56235 - Cap-go capgo before 12.128.2 contains an authorization bypass in several Supabase PostgREST RPC func

🏢 Oracle 📅 20.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-56228 - Capgo before 12.128.2 fails to enforce a maximum value on the minimum password length field in its p

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 4.9
4.9

CVE-2026-56227 - Capgo before 12.128.2 contains a server-side request forgery vulnerability in webhook URL validation

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 5.4
5.4

CVE-2026-56218 - Capgo before 12.128.2 fails to strip EXIF metadata including GPS geolocation data from uploaded imag

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 5.3
5.3

CVE-2025-71331 - Flowise before 3.0.8 contains a cross-site scripting (XSS) vulnerability caused by insufficient inpu

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 6.1
6.1

CVE-2024-58351 - Flowise before 2.1.4 allows configuration to be injected into the Chainflow during execution via the

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-12673 - Liquidfiles versions before 4.2.12 are affected by a broken access control vulnerability resulting i

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 0.0
0.0

CVE-2022-50972 - WooCommerce 7.1.0 contains a remote code execution vulnerability that allows attackers to execute ar

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 9.8
9.8

CVE-2020-37255 - WordPress Time Capsule Plugin 1.21.16 contains an authentication bypass vulnerability that allows un

🏢 Wordpress 📅 20.6.2026 📊 CVSS: 7.5
7.5

CVE-2019-25763 - WordPress Ultimate Addons for Beaver Builder 1.2.4.1 contains an authentication bypass vulnerability

🏢 Google 📅 20.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-48939 - A vulnerability in the iCagenda extension for Joomla allows the upload of arbitrary files in the fil

🏢 Joomla 📅 20.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-48909 - SP LMS (com_splms) < 4.1.4 by JoomShaper deserializes user-controlled cookie data without validation

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-48908 - A vulnerability in SP Page Builder for Joomla allows unauthenticated users to upload arbitrary files

🏢 Joomla 📅 20.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-12119 - The Simple File List plugin for WordPress is vulnerable to unauthorized file operations due to a mis

🏢 Wordpress 📅 20.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-11912 - The Simple File List plugin for WordPress is vulnerable to arbitrary file modification due to insuff

🏢 Wordpress 📅 20.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-11911 - The Simple File List plugin for WordPress is vulnerable to arbitrary file deletion due to insufficie

🏢 Wordpress 📅 20.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-9843 - The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to arbi

🏢 Wordpress 📅 20.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-9265 - Crypt::OpenSSL::PKCS12 versions before 1.96 for Perl permits a heap OOB read in print_attribute UTF8

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 9.1
9.1

CVE-2026-56216 - Capgo before 12.128.2 contains a scope escalation vulnerability in the POST /functions/v1/apikey end

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-56215 - Capgo before 12.128.12 allows authenticated users to modify their mutable public.users.email to arbi

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 8.3
8.3

CVE-2026-56214 - Capgo before 12.128.2 contains an information disclosure vulnerability in Supabase PostgREST RPC end

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-56213 - Capgo before 12.128.2 contains an authorization bypass vulnerability in the public.upsert_version_me

🏢 Sonstige 📅 20.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-56212 - Capgo before 12.128.2 contains an authentication logic flaw: a user with permission to manage team o

🏢 Suse 📅 20.6.2026 📊 CVSS: 3.8
3.8

CVE-2026-11551 - The Branda plugin for WordPress is vulnerable to privilege escalation via account takeover in all ve

🏢 Wordpress 📅 20.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-56082 - Capgo (Cap-go/capgo) before 12.128.2 contains an improper access control vulnerability in the SECURI

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-56081 - Cap-go before 12.128.2 contains an authentication logic flaw that lets an attacker register and cont

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 9.1
9.1

CVE-2026-56080 - Capgo before 12.128.2 contains a flaw in the Enforce Password Policy feature: after a Super Admin en

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 4.9
4.9

CVE-2026-56079 - Capgo before 12.128.2 contains a cross-tenant authorization bypass vulnerability in PostgREST endpoi

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-56073 - Cap-go before 12.128.2 contains an authentication bypass vulnerability in OTP verification that allo

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 9.4
9.4

CVE-2026-50559 - Quarkus is a Java framework for building cloud-native applications. Prior to versions 3.37.0, 3.36.3

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-50519 - Initialization of a resource with an insecure default in GitHub Copilot and Visual Studio Code allow

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-49346 - libde265 is an open source implementation of the h.265 video codec. Prior to version 1.1.0, a crafte

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-49337 - libde265 is an open source implementation of the h.265 video codec. Prior to version 1.0.20, a craft

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-49295 - libde265 is an open source implementation of the h.265 video codec. Prior to version 1.0.20, a craft

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-48794 - Authelia is an open-source authentication and authorization server providing two-factor authenticati

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-48584 - Execution with unnecessary privileges in Azure Synapse allows an authorized attacker to elevate priv

🏢 Azure 📅 19.6.2026 📊 CVSS: 9.9
9.9

CVE-2026-48582 - Missing authorization in Microsoft Exchange Online allows an authorized attacker to elevate privileg

🏢 Microsoft 📅 19.6.2026 📊 CVSS: 9.6
9.6

CVE-2026-48129 - Kestra is an open-source, event-driven orchestration platform. Prior to versions 1.3.19, 1.2.19, 1.1

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-47645 - Url redirection to untrusted site ('open redirect') in Microsoft 365 Copilot's Business Chat allows

🏢 Microsoft 📅 19.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-47203 - Authelia is an open-source authentication and authorization server providing two-factor authenticati

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-45480 - Improper authentication in Azure Active Directory allows an unauthorized attacker to elevate privile

🏢 Azure 📅 19.6.2026 📊 CVSS: 10.0
10.0

CVE-2026-42895 - Improper neutralization of special elements used in a command ('command injection') in Microsoft Cop

🏢 Microsoft 📅 19.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-32208 - Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft En

🏢 Microsoft 📅 19.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-49345 - Mercator is an open source web application that enables mapping of the information system. Prior to

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-49344 - Mercator is an open source web application that enables mapping of the information system. Prior to

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-49342 - YARD is a documentation generation tool for the Ruby programming language. Prior to version 0.9.44,

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 5.3
5.3

CVE-2026-48787 - gin-vue-admin is an AI-assisted basic development platform. In version 2.9.1, an authenticated attac

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-48774 - ProxySQL is a proxy for MySQL and its forks, as well as PostgreSQL. In versions 3.0.0 through 3.0.8,

🏢 Postgresql 📅 19.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-48773 - ProxySQL is a proxy for MySQL and its forks, as well as PostgreSQL. Versions 2.0.18 through 3.0.8 ha

🏢 Postgresql 📅 19.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-48772 - ProxySQL is a proxy for MySQL and its forks, as well as PostgreSQL. In versions 2.0.0 through 3.0.8,

🏢 Postgresql 📅 19.6.2026 📊 CVSS: 10.0
10.0

CVE-2026-48715 - radvd is a router advertisement daemon for IPv6. Prior to version 2.21, the `radvdump` utility shipp

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 8.8
8.8

CVE-2026-48089 - DevGuard provides vulnerability management for the full software supply chain. Prior to 1.4.2, on a

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-9375 - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-49340 - gonic is a music streaming server / free-software subsonic server API implementation. Prior to versi

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-49339 - gonic is a music streaming server / free-software subsonic server API implementation. The maintainer

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-49338 - gonic is a music streaming server / free-software subsonic server API implementation. Prior to versi

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-49336 - @microsoft/kiota-http-fetchlibrary provides TypeScript libraries for Kiota-generated API clients. In

🏢 Microsoft 📅 19.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-49293 - js-toml is a TOML parser for JavaScript, fully compliant with the TOML 1.0.0 Spec. Versions up to an

🏢 Apple 📅 19.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-49291 - mcp-memory-service is a semantic memory layer for AI applications. Prior to version 10.65.3, the HTT

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-49288 - Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.73.23 and 6.20.0,

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 4.3
4.3

CVE-2026-27878 - A TraceQL query in Grafana Tempo with a large exemplars hint value can cause the Tempo instance to a

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-12726 - A flaw was found in the AWX GitHub webhook integration. When processing GitHub pull_request webhooks

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 6.3
6.3

CVE-2026-12238 - The WP Go Maps – Most Popular Map Plugin plugin for WordPress is vulnerable to authorization bypass

🏢 Wordpress 📅 19.6.2026 📊 CVSS: 5.3
5.3

CVE-2023-54357 - Joomla com_booking component 2.4.9 contains an information disclosure vulnerability that allows unau

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.5
7.5

CVE-2026-49359 - PhpWeasyPrint is a PHP library allowing PDF generation from a URL or an HTML page. Prior to version

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 6.5
6.5

CVE-2026-49290 - Slopsmith is a self-contained web application for browsing, playing, and practicing Rocksmith 2014 C

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 0.0
0.0

CVE-2026-49287 - Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.73.23 and 6.20.0,

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 7.4
7.4

CVE-2026-49286 - PhpWeasyPrint is a PHP library allowing PDF generation from a URL or an HTML page. Prior to version

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 8.1
8.1

CVE-2026-49271 - libheif is a HEIF and AVIF file format decoder and encoder. Prior to version 1.22.1, the uncompresse

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 6.5
6.5

CVE-2019-25762 - Joomla! Component JoomProject 1.1.3.2 contains an information disclosure vulnerability that allows u

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.5
7.5

CVE-2019-25761 - Joomla! Component JoomCRM 1.1.1 contains an SQL injection vulnerability that allows authenticated at

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2019-25760 - Joomla! Component Easy Shop 1.2.3 contains a local file inclusion vulnerability that allows unauthen

🏢 Joomla 📅 19.6.2026 📊 CVSS: 6.2
6.2

CVE-2019-25759 - Joomla! Component vBizz 1.0.7 contains an SQL injection vulnerability that allows authenticated atta

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2019-25758 - Joomla! Component vBizz 1.0.7 contains an unrestricted file upload vulnerability that allows authent

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.8
8.8

CVE-2019-25757 - Joomla vWishlist 1.0.1 contains an SQL injection vulnerability that allows authenticated attackers t

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2019-25756 - Joomla! Component vAccount 2.0.2 contains an SQL injection vulnerability that allows unauthenticated

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25755 - Joomla Component vReview 1.9.11 contains an SQL injection vulnerability that allows unauthenticated

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25754 - Joomla Component vRestaurant 1.9.4 contains an SQL injection vulnerability that allows unauthenticat

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25753 - Joomla! Component VMap 1.9.6 contains an SQL injection vulnerability that allows unauthenticated att

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25752 - Joomla! Component J-BusinessDirectory 4.9.7 contains an SQL injection vulnerability that allows unau

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25751 - Joomla Component J-ClassifiedsManager 3.0.5 contains an SQL injection vulnerability that allows unau

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25750 - Joomla Component J-MultipleHotelReservation 6.0.7 contains an SQL injection vulnerability that allow

🏢 Joomla 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2019-25749 - Joomla J-CruisePortal 6.0.4 contains an SQL injection vulnerability that allows authenticated attack

🏢 Joomla 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-56211 - A remote code execution vulnerability was found in libaom, the reference AV1 codec implementation. I

🏢 Oracle 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-56210 - A heap-buffer-overflow read vulnerability was found in libaom, the reference AV1 codec implementatio

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-56209 - An arbitrary address write vulnerability was found in libaom, the reference AV1 codec implementation

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 7.1
7.1

CVE-2026-56208 - A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 7.6
7.6

CVE-2026-51846 - In Tenda AC7 v15.03.06.44, the wanSpeed parameter of the route /goform/AdvSetMacMtuWan has a stack b

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-51845 - Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the /goform/AdvSetMacMtuWan

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-51844 - Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the /goform/AdvSetMacMtuWan

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-51843 - Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the /goform/AdvSetMacMtuWan

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 9.8
9.8

CVE-2026-49260 - PhpWeasyPrint is a PHP library allowing PDF generation from a URL or an HTML page. Prior to version

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 8.2
8.2

CVE-2026-3196 - An integer overflow vulnerability was found in the virtio-snd device via PCM_INFO requests from the

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 5.5
5.5

CVE-2026-3195 - A flaw was found in QEMU. When reading input audio in the virtio-snd device input callback, the `vir

🏢 Sonstige 📅 19.6.2026 📊 CVSS: 7.4
7.4
«« « Zurück Seite 85 von 115 Weiter » »»

🏢 CVE nach Hersteller

Empfohlene Sicherheitstools

Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.