Búsqueda de CVEs
398.696 resultadosCVE-2026-84463MEDIUMZammad: Stored HTML injection in Knowledge Base video widget enables forced session switching via unescaped iframe attributeEPSS 0.1%CVE-2026-84464HIGHZammad: IDOR in External Data Source rendering exposes ticket, user, group, and organization dataEPSS 0.3%CVE-2026-63216MEDIUMZammad: Stored XSS via unescaped option labels in the object attribute options context UIEPSS 0.2%CVE-2026-84458CRITICALZammad: Account takeover via unverified email matching during SSO auto-linkEPSS 0.4%CVE-2026-97895MEDIUMkrayin laravel-crm User Management UserController.php privileges managementEPSS 0.3%CVE-2026-84460MEDIUMZammad: Missing Authorization in TagsController#list Allows Cross-Object Tag EnumerationEPSS 0.3%CVE-2026-63206MEDIUMZammad: Remote image tracking bypass via shortened URL schemeEPSS 0.3%CVE-2026-63205MEDIUMZammad: Channel admins can read unauthorized attachments via signature rich-text bodyEPSS 0.3%CVE-2026-97064CRITICALX-SpringBoot through 6.0 Authentication Bypass via Static Master CodeEPSS 0.3%CVE-2026-97063CRITICALX-SpringBoot through 6.0 Authentication Bypass via Login CodeEPSS 0.3%CVE-2026-97060HIGHX-SpringBoot through 6.0 Authorization Bypass via User ManagementEPSS 0.3%CVE-2026-100192MEDIUMX-SpringBoot through 6.0 Credential Exposure via Unauthenticated EndpointEPSS 0.3%CVE-2026-97886MEDIUMmathurvishal CloudClassroom-PHP-Project managevideos2.php sql injectionEPSS 0.3%CVE-2026-91841HIGHNetworkmanager-vpnc: networkmanager-vpnc: incomplete fix for cve-2018-10900 allows root privilege escalation via ca-file path newline injectionEPSS 0.2%CVE-2026-91840HIGHNetworkmanager-vpnc: networkmanager-vpnc: local privilege escalation to root via newline injection in vpn usernameEPSS 0.2%CVE-2026-91839HIGHNetworkmanager-fortisslvpn: networkmanager-fortisslvpn: local privilege escalation to root via crlf injection in vpn profile credentialsEPSS 0.2%CVE-2026-91838HIGHNetworkmanager-sstp: networkmanager-sstp: local privilege escalation to root via shell injection in vpn profile fieldsEPSS 0.1%CVE-2026-97885MEDIUMmathurvishal CloudClassroom-PHP-Project updatefaculty.php sql injectionEPSS 0.3%CVE-2026-97884MEDIUMmathurvishal CloudClassroom-PHP-Project Student Update Functionality updatestudent.php sql injectionEPSS 0.2%CVE-2026-84462HIGHZammad: AI Agent template sanitizer bypass leads to remote code executionEPSS 0.3%