Weaknesses of type CWE-472

124 results
CVE-2026-11088CRITICALInteger overflow in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to poteEPSS 0.3%CVE-2025-14750HIGHExternal Control of Assumed-Immutable Web Parameter in Weintek cMT X Series HMI EasyWeb ServiceEPSS 0.3%CVE-2025-54832MEDIUMOPEXUS FOIAXpress Public Access Link (PAL) state and territory list unauthorized modificationEPSS 0.3%CVE-2026-4911MEDIUMBooking Package <= 1.7.06 - Unauthenticated Price Manipulation via 'amount' ParameterEPSS 0.3%CVE-2026-34751CRITICALPayload has Unvalidated Input in Password Recovery EndpointsEPSS 0.3%CVE-2026-5870HIGHInteger overflow in Skia in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a EPSS 0.3%CVE-2025-25382HIGHAn issue in the Property Tax Payment Portal in Information Kerala Mission SANCHAYA v3.0.4 allows attackers to arbitrarily modify payment amoEPSS 0.3%CVE-2025-59382LOWQTS, QuTS hero, QuTScloud, QVP (QVR Pro appliances)EPSS 0.3%CVE-2026-10924HIGHInteger overflow in Chromecast in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process toEPSS 0.3%CVE-2026-10921HIGHInteger overflow in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potenEPSS 0.3%CVE-2026-11044MEDIUMInteger overflow in ANGLE in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive informatiEPSS 0.3%CVE-2025-26312MEDIUMSendQuick Entera devices before 11HF5 are vulnerable to CAPTCHA bypass by removing the Captcha parameter.EPSS 0.3%CVE-2026-7896HIGHInteger overflow in Blink in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to potentially exploit heap corruption via a craEPSS 0.3%CVE-2026-11211HIGHInteger overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crEPSS 0.3%CVE-2026-8532HIGHInteger overflow in XML in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a EPSS 0.3%CVE-2026-11171HIGHInteger overflow in Blink in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via aEPSS 0.3%CVE-2026-9968HIGHInteger overflow in V8 in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a cEPSS 0.3%CVE-2025-10892HIGHInteger overflow in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to potentially exploit heap corruption via a craftEPSS 0.3%CVE-2026-9909HIGHInteger overflow in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to execEPSS 0.3%CVE-2026-5277HIGHInteger overflow in ANGLE in Google Chrome on Windows prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderer proEPSS 0.3%