CVE search

401,054 results
CVE-2026-101283CRITICALiperf3 3.20–3.21 (esnet/iperf) has a pre-auth heap buffer overflow in decrypt_rsa_message(): a 256-byte RSA buffer is BIO_read with the attaEPSS 0.3%CVE-2026-103001MEDIUMPyJWT.decode() reintroduces options-dict mutation, enabling silent claim-verification bypass on dict reuseEPSS 0.2%CVE-2026-101276CRITICALiperf3 3.21 (esnet/iperf) contains a remote, unauthenticated heap use-after-free: the server's per-test watchdog server_timer_proc() frees sEPSS 0.4%CVE-2026-92172HIGHPrior to v66.0.0.733.524 of Meta Horizon OS, OVRMediaService could be induced to send a privileged PendingIntent including a com.oculus.horiEPSS 0.3%CVE-2026-92173CRITICALPrior to v74.0.0.878.1682 of Meta Horizon OS, MediaSyncJobReceiver could be induced to send a privileged PendingIntent including a com.oculuEPSS 0.3%CVE-2023-54403HIGHYonyou U8 CRM Arbitrary File Read via getemaildata.phpEPSS 0.5%CVE-2026-102105CRITICALKiteworks Email Protection Gateway server-side request forgeryEPSS 0.3%CVE-2026-102106CRITICALKiteworks Email Protection Gateway improper authenticationEPSS 0.4%CVE-2026-102107MEDIUMKiteworks Core user impersonation in a file-request featureEPSS 0.2%CVE-2024-58387HIGHInspur HCM Cloud Arbitrary File Read via file/download EndpointEPSS 0.6%CVE-2026-102108HIGHKiteworks Email Protection Gateway deserialization of untrusted dataEPSS 0.5%CVE-2026-102109HIGHKiteworks Secure Data Forms SQL injectionEPSS 0.2%CVE-2023-54402HIGHiDocView SSRF via /doc/upload Endpoint Hardcoded TokenEPSS 0.4%CVE-2026-102110MEDIUMMissing authentication on a Kiteworks appliance setup functionEPSS 0.2%CVE-2026-102111MEDIUMKiteworks Core Improper Validation of Specified Quantity in InputEPSS 0.2%CVE-2026-102112HIGHKiteworks Core Local Privilege EscalationEPSS 0.1%CVE-2026-102113HIGHKiteworks Core Local Privilege EscalationEPSS 0.1%CVE-2026-102114HIGHKiteworks Core OS Command InjectionEPSS 1.0%CVE-2026-102115CRITICALKiteworks Core Authentication Bypass in the Password Reset WorkflowEPSS 0.3%CVE-2026-102116HIGHKiteworks Email Protection Gateway Path TraversalEPSS 0.6%