Busca de CVEs

386.207 resultados
CVE-2026-62194HIGHOpenClaw 2026.5.20 < 2026.6.9 Privilege Escalation via Plugin InstallEPSS 0.4%CVE-2026-62193MEDIUMOpenClaw 2026.6.5 < 2026.6.9 Authentication Bypass via Plugin InstallEPSS 0.3%CVE-2026-62192HIGHOpenClaw 2026.6.6 < 2026.6.9 Authorization BypassEPSS 0.4%CVE-2026-62191HIGHOpenClaw 2026.6.6 < 2026.6.9 Authorization Bypass via Message MutationsEPSS 0.4%CVE-2026-62190HIGHOpenClaw < 2026.6.9 Authorization Bypass via flock wrapperEPSS 0.5%CVE-2026-62189HIGHOpenClaw < 2026.6.9 Symlink Following via Mirror SyncEPSS 0.4%CVE-2026-62188HIGHOpenClaw < 2026.6.9 Feishu Authorization BypassEPSS 0.4%CVE-2026-62187HIGHOpenClaw < 2026.6.9 Feishu tools Authorization BypassEPSS 0.4%CVE-2026-62186HIGHOpenClaw < 2026.6.8 Authorization Bypass via HTTP Model OverrideEPSS 0.3%CVE-2026-62184HIGHluci-app-banip Log Monitor IP Extraction BypassEPSS 0.8%CVE-2026-15685HIGHOllama downloadBlob Improper Validation of Array Index Denial-of-Service VulnerabilityEPSS 0.7%CVE-2026-15596MEDIUMSourceCodester Class and Exam Timetabling System subject.php cross site scriptingEPSS 0.5%CVE-2026-61458HIGHPasswordPusher < 2.9.2 Passphrase Brute-Force via Unthrottled EndpointEPSS 0.4%CVE-2026-59801CRITICAL9Router 0.4.41 - Unauthenticated API Exposure via /api/providersEPSS 2.9%CVE-2026-58500HIGHMCP Appium: Unescaped Locator Data XSS in MCP-UI Resource (createLocatorGeneratorUI)EPSS 0.3%CVE-2026-58411HIGHChurchCRM has Reflected Cross-Site Scripting (XSS) via unsanitized request parameter names and valuesEPSS 0.4%CVE-2026-62242HIGHSpring Boot Admin Server < 4.1.2 SSRF via Unauthenticated Instance RegistrationEPSS 0.5%CVE-2026-62240HIGHCrewAI < 1.15.1 SSRF Filter Bypass via HTTP Redirect in Scrape ToolsEPSS 0.5%CVE-2026-62239MEDIUMFlashAttention Symlink Attack via tarfile.extractall in hopper/setup.pyEPSS 0.2%CVE-2026-15595MEDIUMSourceCodester Class and Exam Timetabling System forsubject.php cross site scriptingEPSS 0.5%