Búsqueda de CVEs

398.693 resultados
CVE-2026-101086HIGHNezha Dashboard before 2.3.5 Task Type Validation BypassEPSS —CVE-2026-101085HIGHNezha before 2.3.8 Denial of Service via Alert RuleEPSS —CVE-2026-101084CRITICALobot before v0.21.1 Authorization Bypass via /mcp-connectEPSS —CVE-2026-101065CRITICALObot Quickstart Docker Deployment Unauthenticated Admin AccessEPSS —CVE-2026-101064HIGHObot before v0.23.0 Server-Side Request Forgery via MCPEPSS —CVE-2026-101063MEDIUMObot before v0.23.0 Authentication Bypass via Registry APIEPSS —CVE-2026-101062HIGHObot before v0.23.0 Authentication Bypass via OAuth Dynamic Client RegistrationEPSS —CVE-2026-100879MEDIUMzhistaredu StarTraining dataScope Endpoint SysRoleServiceImpl.java checkRoleAllowed authorizationEPSS —CVE-2026-100878MEDIUMzhistaredu StarTraining authRole Endpoint SysUser.java SysUser.isAdmin authorizationEPSS —CVE-2026-96280HIGHFlatpak: flatpak: buffer overflow in oci delta stream path names on 32-bit systemsEPSS —CVE-2026-100877MEDIUMmathurvishal CloudClassroom-PHP-Project registrationform.php cross site scriptingEPSS —CVE-2026-96279MEDIUMFlatpak: flatpak: path traversal issue in oci archive extraction via hardlinksEPSS —CVE-2026-100876MEDIUMmathurvishal CloudClassroom-PHP-Project loginlinkstudent.php missing authenticationEPSS —CVE-2026-100875MEDIUMmathurvishal CloudClassroom-PHP-Project updatedetailsfromfaculty.php sql injectionEPSS —CVE-2026-100874MEDIUMmathurvishal CloudClassroom-PHP-Project addnewstudent.php sql injectionEPSS —CVE-2026-100873MEDIUMmathurvishal CloudClassroom-PHP-Project cross-site request forgeryEPSS —CVE-2026-101061LOWutcp-gql and utcp-websocket before 1.1.1 SSRF via URL validation bypassEPSS —CVE-2026-101060HIGHpython-utcp before 1.1.4 SSRF via unvalidated HTTP redirectsEPSS —CVE-2026-101059HIGHutcp-http before 1.1.4 OAuth2 tokenUrl Trust Boundary BypassEPSS —CVE-2026-101058HIGHpython-utcp before 1.1.12 SSRF via Remote HTTP ManualEPSS —