Falhas do tipo CWE-86
10 resultadosCVE-2026-28417MEDIUMVim has OS Command Injection in netrwEPSS 1.2%CVE-2023-31126CRITICALImproper Neutralization of Invalid Characters in Data Attribute Names in org.xwiki.commons:xwiki-commons-xmlEPSS 0.8%CVE-2023-22840LOWImproper neutralization in software for the Intel(R) oneVPL GPU software before version 22.6.5 may allow an authenticated user to potentiallEPSS 0.4%CVE-2024-10941MEDIUMA malicious website could have included an iframe with an malformed URI resulting in a non-exploitable browser crash. This vulnerability affEPSS 0.4%CVE-2025-20166MEDIUMCisco Common Services Platform Collector Cross-Site Scripting VulnerabilityEPSS 0.4%CVE-2024-21864HIGHImproper neutralization in some Intel(R) Arc(TM) & Iris(R) Xe Graphics software before version 31.0.101.5081 may allow an unauthenticated usEPSS 0.3%CVE-2025-20168MEDIUMCisco Common Services Platform Collector Cross-Site Scripting VulnerabilityEPSS 0.3%CVE-2025-20167MEDIUMCisco Common Services Platform Collector Cross-Site Scripting VulnerabilityEPSS 0.3%CVE-2025-66606LOWA vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation.
This product does not
properly encode URLs. An atEPSS 0.2%CVE-2021-33158HIGHImproper neutralization in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may allow a privilegEPSS 0.2%