Busca de CVEs
386.205 resultadosCVE-2026-44767MEDIUMAllowlist Bypass in setThemeRoot() Enables Cross-Origin CSS InjectionEPSS 0.3%CVE-2026-58233HIGHRemote Code Execution vulnerability in SAP Change and Transport System Attach Tool (ctsattach)EPSS 0.6%CVE-2026-44771MEDIUMMissing Authorization check in SAP S/4HANA (Draft operation)EPSS 0.3%CVE-2026-44770MEDIUMMissing Authorization check in SAP S/4 HANA (Create Single Payment)EPSS 0.3%CVE-2026-44769MEDIUMSQL Injection vulnerability in SAP S/4HANA Project Management (PPM-PRO)EPSS 0.3%CVE-2026-44768MEDIUMSecurity misconfiguration in SAP CRM (WebClient UI)EPSS 0.3%CVE-2026-44761CRITICALInsecure Sample Credentials in SAP Commerce CloudEPSS 0.5%CVE-2026-44760MEDIUMCross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server ABAP (applications based on Business Server Pages)EPSS 0.2%CVE-2026-44759MEDIUMCross Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise PortalEPSS 0.3%CVE-2026-44753LOWInformation Disclosure vulnerability in SAP HANA Extended Application Services classic model (User Self Service)EPSS 0.3%CVE-2026-44752HIGHCross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server Java(Configuration Wizard)EPSS 0.4%CVE-2026-44747CRITICALMemory Corruption vulnerability in SAP NetWeaver Application Server ABAPEPSS 0.6%CVE-2026-44745HIGHOpen Redirect vulnerability in SAP ApprouterEPSS 0.5%CVE-2026-27690CRITICALHTTP Request Smuggling in SAP ApprouterEPSS 0.7%CVE-2026-0487HIGHDLL Hijacking vulnerability in SAProuter on Microsoft WindowsEPSS 0.2%CVE-2026-15620MEDIUMmosaxiv clawlet tool_web_fetch.go tools.webFetch server-side request forgeryEPSS 0.4%CVE-2026-15619MEDIUMmosaxiv clawlet IPv4 tool_web_fetch.go web_fetch server-side request forgeryEPSS 0.4%CVE-2025-56362HIGHA reachable assertion vulnerability exists in the Matter SDK (connectedhomeip) before 1.4.2, specifically within the Level Control cluster'sEPSS 0.6%CVE-2025-56361HIGHA reachable assertion vulnerability exists in the Matter SDK (connectedhomeip) 1.3 thru 1.4, specifically within the Level Control cluster'sEPSS 0.6%CVE-2025-56364HIGHA use of uninitialized value vulnerability exists in the Matter SDK (connectedhomeip) before 1.4.0, where the `GetDestinationGroupId().ValueEPSS 0.6%