Busca de CVEs
389.882 resultadosCVE-2026-3182MEDIUMSensitive Data ExposureEPSS 0.6%CVE-2026-15811MEDIUMKronosnet: kronosnet: encryption key exposure in memory after cryptographic configuration changesEPSS 0.1%CVE-2026-15812MEDIUMKronosnet: kronosnet: access control list bypass via link id spoofing on unencrypted dynamic linksEPSS 0.3%CVE-2023-37507MEDIUMAn information disclosure vulnerability affects HCL DevOps PlanEPSS 0.2%CVE-2026-16266MEDIUMVersions of the package mongo-object before 3.0.3 are vulnerable to Prototype Pollution via the expandKey() function in util.js. An attackerEPSS 0.4%CVE-2026-15927MEDIUMQuay: mirror-registry: ssrf: repo-level mirror accepts external_reference without url validationEPSS 0.5%CVE-2023-37508LOWHCL DevOps Plan is susceptible to a Cross-Site Scripting (XSS) vulnerabilityEPSS 0.1%CVE-2026-15156MEDIUMEssential Addons for Elementor <= 6.6.11 - Authenticated (Contributor+) Stored Cross-Site Scripting via Reading Progress Global Color SettingsEPSS 0.3%CVE-2026-59776HIGHMissing Cryptographic Step (CWE-325) vulnerability exists in certain FeliCa IC chips shipped in or before 2017. If the vulnerability is explEPSS 0.1%CVE-2026-16336MEDIUMtrinodb trino OAuth2/OIDC ExternalUriInfo.java redirectEPSS 0.4%CVE-2026-16334MEDIUMitsourcecode Hospital Management System prescriptionorder.php sql injectionEPSS 0.3%CVE-2026-6952HIGHA post-authentication command injection vulnerability in the "LogServer" field of the syslog component in Zyxel AX7501-B1 firmware versions EPSS 1.5%CVE-2026-63729MEDIUMTeX Live SyncTeX Parser Heap Use-After-Free via Malformed SyncTeX FileEPSS 0.1%CVE-2026-16332MEDIUMD-Link DNS-320 multi_uploadify.php unrestricted uploadEPSS 1.4%CVE-2026-16331MEDIUMD-Link DNS-320 save_ajax.php unrestricted uploadEPSS 1.6%CVE-2026-16330MEDIUMD-Link DNS-320 uploadify.php unrestricted uploadEPSS 1.6%CVE-2026-16329MEDIUMD-Link DNS-320 uploadify.php unrestricted uploadEPSS 1.4%CVE-2026-30632HIGHDirectory traversal vulnerability in knowns-dev/knowns 0.11.4 via crafted folder name value to the create_doc tool.EPSS 0.7%CVE-2026-30633HIGHDirectory traversal vulnerability in knowns-dev/knowns 0.11.4 via crafted path value to the get_doc and update_doc tools.EPSS 0.9%CVE-2026-52476HIGHSQL Injection vulnerability in aiflowy <= 2.1.2 allows a remote attacker to obtain sensitive information via the getPageData method in the DEPSS 0.5%