Búsqueda de CVEs

400.917 resultados
CVE-2026-104413HIGHGhost 5.94.0 before 6.64.0 Stored XSS via Bookmark Card ImagesEPSS —CVE-2026-104412MEDIUMGhost 0.5.0 before 6.64.0 Privilege Escalation via Staff Role AssignmentEPSS —CVE-2026-104411HIGHGhost 6.22.1 before 6.64.0 Stored XSS via Local Storage File UploadsEPSS —CVE-2026-104410HIGHSiYuan before 3.8.5 Information Disclosure via /api/export/previewEPSS —CVE-2026-103763MEDIUMSiYuan before v3.8.5 Information Disclosure via /api/notebook/getNotebookInfoEPSS —CVE-2026-103762MEDIUMSiYuan before v3.8.5 Missing Authorization in Save-Path Resolver EndpointsEPSS —CVE-2026-85088MEDIUMApache Thrift, Apache Thrift: The C++ and D clients fall back to the certificate Common Name when subjectAltName entries are present but do not matchEPSS —CVE-2026-85087MEDIUMApache Thrift: Python ≥3.12 host-name check silently becomes a no-opEPSS —CVE-2026-85086MEDIUMApache Thrift: Perl TLS client disables certificate verification by defaultEPSS —CVE-2026-82459HIGHApache Thrift: Integer underflow in C++ THeaderTransport allows an unauthenticated remote peer to terminate a 32-bit processEPSS —CVE-2026-82458HIGHApache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: Container element count not bounded by the bytes availableEPSS —CVE-2026-96288HIGHApache Thrift: Erlang generated struct reads have no recursion-depth guard (unbounded memory)EPSS —CVE-2026-96292HIGHApache Thrift: Lua `THttpTransport:_parseHeaders` matches each header line with a backtracking pattern (quadratic)EPSS —CVE-2026-96294HIGHApache Thrift: nodejs web server: no `error` listener on an upgraded WebSocket connectionEPSS —CVE-2026-61373HIGHApache Thrift: Java TSaslNonblockingServer pre-auth unbounded SASL frame allocationEPSS —CVE-2026-96990HIGHApache Thrift: Erlang thrift_json_protocol reads a whole message with no size boundEPSS —CVE-2026-94642HIGHApache Thrift: PHP `TSimpleServer` exits the whole process on any non-transport exceptionEPSS —CVE-2026-94644HIGHApache Thrift: PHP `TJSONProtocol` string/number readers have no size boundEPSS —CVE-2026-94645HIGHApache Thrift: Node.js `TJSONProtocol` uses a peer-declared container size as an unbounded loop boundEPSS —CVE-2026-94650HIGHApache Thrift: c_glib generated struct readers have no recursion-depth guard (native stack exhaustion)EPSS —