🔍 Suche
Durchsuche Tutorials, CVEs, Tools und Seiten
🛡️ CVEs (20+)
CVE-2026-45205
niedrig (0.0)CVE-2026-45205 - Uncontrolled Recursion vulnerability in Apache Commons. When processing an untrusted configuration
CVE-2026-42268
niedrig (0.0)CVE-2026-42268 - ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS
CVE-2026-43515
niedrig (0.0)CVE-2026-43515 - Improper Authorization vulnerability when multiple method constraints define an HTTP method for the
CVE-2026-43514
niedrig (3.7)CVE-2026-43514 - Observable Timing Discrepancy vulnerability when comparing AJP secret in Apache Tomcat. This issue
CVE-2026-43513
niedrig (0.0)CVE-2026-43513 - Improper Handling of Case Sensitivity vulnerability in LockOutRealm in Apache Tomcat. This issue af
CVE-2026-43512
niedrig (0.0)CVE-2026-43512 - DEPRECATED: Authentication Bypass Issues vulnerability in digest authentication in Apache Tomcat. T
CVE-2026-42498
hoch (7.3)CVE-2026-42498 - Exposure of HTTP Authentication Header to unexpected hosts during WebSocket authentication vulnerabi
CVE-2026-41293
niedrig (0.0)CVE-2026-41293 - Improper Input Validation vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11
CVE-2026-41284
hoch (7.5)CVE-2026-41284 - Allocation of Resources Without Limits or Throttling vulnerability in Apache Tomcat. This issue aff
CVE-2026-43826
mittel (6.5)CVE-2026-43826 - The OpenSearch logging provider, when configured with a `host` URL that embeds credentials (for exam
CVE-2026-41018
mittel (6.5)CVE-2026-41018 - The Elasticsearch logging provider, when configured with a `host` URL that embeds credentials (for e
CVE-2026-6722
kritisch (9.8)CVE-2026-6722 - In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.
CVE-2026-39816
hoch (8.8)CVE-2026-39816 - The optional extension component TinkerpopClientService is missing the Restricted annotation with th
CVE-2026-25199
kritisch (9.1)CVE-2026-25199 - Instances deployed via the Proxmox extension allow unauthorized access to instances belonging to oth
CVE-2026-25077
hoch (8.8)CVE-2026-25077 - Account users are allowed by default to register templates to be downloaded directly to the primary
CVE-2025-69233
mittel (6.5)CVE-2025-69233 - Due to multiple time-of-check time-of-use race conditions in the resource count check and increment
CVE-2025-66467
hoch (8.0)CVE-2025-66467 - Missing MinIO policy cleanup on bucket deletion via Apache CloudStack allows users to retain access
CVE-2013-10075
kritisch (9.1)CVE-2013-10075 - Apache::Session versions through 1.94 for Perl re-creates deleted sessions. The session stores Apac
CVE-2026-33844
kritisch (9.0)CVE-2026-33844 - Improper input validation in Azure Managed Instance for Apache Cassandra allows an authorized attack
CVE-2026-33109
kritisch (9.9)CVE-2026-33109 - Improper access control in Azure Managed Instance for Apache Cassandra allows an authorized attacker