Busca de CVEs
389.910 resultadosCVE-2026-47128MEDIUMnono: Sandbox escape on Linux via D-Bus: `systemd-run --user`EPSS 0.1%CVE-2026-16324MEDIUMMetasoft 美特软件 MetaCRM upload.jsp unrestricted uploadEPSS 0.5%CVE-2026-12900MEDIUMSpectra Gutenberg Blocks <= 2.19.28 - Authenticated (Contributor+) Stored Cross-Site Scripting via uagb/image BlockEPSS 0.3%CVE-2026-47134MEDIUMClearanceKit: Policy signing key in System Keychain has permissive ACL allowing any local-root process to forge signed policyEPSS 0.2%CVE-2026-47133MEDIUMClearanceKit's signed policy tables lack monotonic counter, allowing replay of older legitimately-signed snapshotsEPSS 0.2%CVE-2026-44510—CVE-2026-44510EPSS 0.2%CVE-2026-55550HIGHNextCRM has RBAC Bypass in MCP Product Tools that Allows Low-Privileged Users to Modify the CRM Product CatalogEPSS 0.3%CVE-2026-55544HIGHNextCRM has BOLA/IDOR in MCP Campaign Tools that Allows Cross-User Campaign Disclosure and TamperingEPSS 0.3%CVE-2026-47130HIGHNextCRM has a BOLA/IDOR in PATCH /api/crm/contacts/[id] that allows Cross-Tenant CRM Data TamperingEPSS 0.3%CVE-2026-47129HIGHNextCRM has Broken Access Control in Server Actions that allows any authenticated user to deactivate/activate arbitrary accountsEPSS 0.4%CVE-2026-44508—CVE-2026-44508EPSS 0.3%CVE-2026-44507—CVE-2026-44507EPSS 0.1%CVE-2026-56623HIGHApache MINA SSHD: Path traversal in org.apache.sshd:sshd-git on WindowsEPSS 0.6%CVE-2026-56624HIGHApache MINA SSHD: SSH certificate options lack validationsEPSS 0.3%CVE-2026-64650MEDIUMAI SDK Codex Harness Tool Relay Authorization BypassEPSS 0.2%CVE-2026-58624MEDIUMApache MINA SSHD: Remote execution of JGit commands can write files on the serverEPSS 0.6%CVE-2026-44509—CVE-2026-44509EPSS 0.1%CVE-2026-56452HIGHApache MINA SSHD: Path traversal in SCP file receptionEPSS 0.5%CVE-2026-64651MEDIUMAI SDK OpenCode Harness Tool Relay Authorization BypassEPSS 0.2%CVE-2026-55219MEDIUMPaymenter: Race condition in payWithCredit() enables credit double-spendEPSS 0.2%