Busca de CVEs
386.205 resultadosCVE-2025-56364HIGHA use of uninitialized value vulnerability exists in the Matter SDK (connectedhomeip) before 1.4.0, where the `GetDestinationGroupId().ValueEPSS 0.6%CVE-2025-56361HIGHA reachable assertion vulnerability exists in the Matter SDK (connectedhomeip) 1.3 thru 1.4, specifically within the Level Control cluster'sEPSS 0.6%CVE-2025-56365HIGHA reachable assertion vulnerability exists in the Matter SDK (connectedhomeip) before 1.4.0, in the interaction model command processing logEPSS 0.6%CVE-2026-36035MEDIUMIncorrect access control in the /api/License/deactivateOffline endpoint of CAXPerts UniversalPlantViewer WebServices Server v2.7.6 allows auEPSS 0.5%CVE-2026-38450CRITICALAn issue in Aetopia Digital Asset Management DAM v.1.0.0 allows a remote attacker to execute arbitrary code via the name and description parEPSS 1.1%CVE-2026-36214MEDIUMosTicket versions from 1.10 up to 1.17.7 and from 1.18.0 up to 1.18.3 are vulnerable to a stored XSS due to a vulnerable Bootstrap Tooltip cEPSS 0.3%CVE-2025-56362HIGHA reachable assertion vulnerability exists in the Matter SDK (connectedhomeip) before 1.4.2, specifically within the Level Control cluster'sEPSS 0.6%CVE-2026-51105HIGHBuffer Overflow vulnerability in aMULE-Project aMule v.2.3.3 allows a remote attacker to cause a denial of service via the OP_SERVERMESSAGE EPSS 0.5%CVE-2026-52100HIGHCross Site Request Forgery vulnerability in andreimarcu linux-server v.1.0 through v.2.3.8 allows a remote attacker to execute arbitrary codEPSS 0.3%CVE-2026-52101CRITICALAn issue in andreimarcu linux-server v.1.0 through v.2.3.8 allows a remote attacker to obtain sensitive information via the function uploadREPSS 0.5%CVE-2026-15618MEDIUMmosaxiv clawlet exec Safety Guard tool_exec.go guardExecCommand protection mechanismEPSS 0.4%CVE-2026-15607MEDIUMtanstack db Alias Path select.ts select prototype pollutionEPSS 0.4%CVE-2026-15605LOWwandb Artifact Integrity Validation hashutil.py ArtifactManifestEntry.download weak hashEPSS 0.2%CVE-2026-57856HIGHCockpit CMS Path Traversal via Bucket Name in Bucket File Storage APIEPSS 0.6%CVE-2026-58489MEDIUMHedgeDoc: CSRF in GitHub Gist export callbackEPSS 0.2%CVE-2026-57855HIGHCockpit CMS Missing Authorization in Bucket File Storage APIEPSS 0.5%CVE-2026-58102CRITICALCrypt::OpenSSL::X509 versions before 2.1.3 for Perl allow a heap out-of-bounds read via a long certificate extension OID in hv_extsEPSS 0.3%CVE-2026-58101HIGHCrypt::OpenSSL::X509 versions before 2.1.3 for Perl allow denial of service via NULL pointer dereferenceEPSS 0.3%CVE-2026-58486HIGHHedgeDoc: Denial-of-service via YAML alias expansion in note frontmatterEPSS 0.4%CVE-2026-15598MEDIUMantv layout object.js setNestedValue prototype pollutionEPSS 0.4%