Busca de CVEs
386.204 resultadosCVE-2026-15183CRITICALInput Validation Vulnerabilities in Snowflake Spark ConnectorEPSS 0.3%CVE-2026-59246MEDIUMZero-length HTTP/2 CONTINUATION frames bypass Mint's header-block byte-size cap and exhaust client memoryEPSS 0.5%CVE-2026-58229HIGHUnbounded HTTP/1 response-header and chunked-trailer accumulation in Mint causes memory-exhaustion DoSEPSS 0.5%CVE-2026-12606MEDIUMEclipse Grizzly in versions before 5.0.2, cannot properly parse the trailer section in malformed trailer header's line, which can be leveragEPSS 0.3%CVE-2026-59084CRITICALApache Tomcat: EncryptInterceptor requirements not clearly documentedEPSS 0.5%CVE-2026-15075HIGHIn Eclipse Vert.x versions up to and including 4.5.29 (4.x branch) and 5.1.4 (5.x branch), DefaultRedirectHandler (vertx-core) propagates alEPSS 0.2%CVE-2026-59083CRITICALApache Tomcat: Incorrect URL decoding in RewriteValve may allow security control bypassEPSS 0.4%CVE-2026-15076HIGHIn versions up to and including 4.5.29 (4.x branch) and 5.1.4 (5.x branch), the WebClientSession component of Eclipse Vert.x Web Client doesEPSS 0.2%CVE-2026-9561HIGHEclipse Kura versions prior to 5.6.2 trust the client-supplied X-Forwarded-For HTTP header as the authoritative source of the client IP addrEPSS 0.2%CVE-2026-57898CRITICALIn Eclipse BaSyx Java Server SDK versions 2.0.0-milestone-05 to 2.0.0-milestone-12, deployments using the MongoDB backend are vulnerable to EPSS 0.7%CVE-2025-8412LOWVMDP: Potential buffer overflow in the RtlQueryRegistryValues functionEPSS 0.1%CVE-2026-13699MEDIUMDatabroker 0.6.1 PublishValue missing data_point panicEPSS 0.4%CVE-2026-59674HIGHLPE from suricata user to root due to chown in %post in suricata packagingEPSS 0.2%CVE-2026-6851HIGHImproper link resolution before file access in Bitdefender Total Security via Link Following (VA-13681)EPSS 0.1%CVE-2026-15678MEDIUMcode-projects Online Job Portal DetailJob.php cross site scriptingEPSS 0.3%CVE-2026-15677MEDIUMcode-projects Online Job Portal JobSeekerInsert.php unrestricted uploadEPSS 0.5%CVE-2026-15676MEDIUMcode-projects Online Job Portal DeleteUser.php sql injectionEPSS 0.4%CVE-2026-12988MEDIUMWP 2FA < 3.1.1.2 - Account Takeover via 2FA Setup Email BindingEPSS 0.3%CVE-2026-12583HIGHNewsletters < 4.15 - Unauthenticated PHP Object Injection via Subscriber Custom FieldEPSS 0.6%CVE-2026-12511HIGHAI Engine < 3.5.5 - Editor+ Arbitrary File Write via Path TraversalEPSS 0.3%