Busca de CVEs

390.050 resultados
CVE-2026-64206HIGHBluetooth: L2CAP: cancel pending_rx_work before taking conn->lockEPSS 0.3%CVE-2026-64205i2c: i801: fix hardware state machine corruption in error pathEPSS 0.1%CVE-2026-64192bpf: Reject BPF_MAP_TYPE_INODE_STORAGE creation if BPF LSM is uninitializedEPSS 0.1%CVE-2026-64191HIGHi2c: stub: Reject I2C block transfers with invalid lengthEPSS 0.1%CVE-2026-64190net: team: fix NULL pointer dereference in team_xmit during mode changeEPSS 0.1%CVE-2026-64189HIGHnetfilter: ipset: fix race between dump and ip_set_list resizeEPSS 0.1%CVE-2026-64188HIGHnet: qualcomm: rmnet: fix endpoint use-after-free in rmnet_dellink()EPSS 0.1%CVE-2026-64187xfs: fail recovery on a committed log item with no regionsEPSS 0.1%CVE-2026-35048CRITICALPiwigo RCE via PHP Code Injection into Config File in InstallerEPSS 0.6%CVE-2026-58413MEDIUMEnvironmentManager.restore() backup ID path traversal copies arbitrary directories into environment dataEPSS 0.2%CVE-2026-35591HIGHPossible heap-based buffer overflow when decoding TIFF image containing well-crafted tileEPSS 0.2%CVE-2026-54051CRITICALNetwork-AI has an an OS Command Injection issueEPSS 0.7%CVE-2026-35590MEDIUMPossible out-of-bounds read leading to crash when decoding well-crafted EXIF metadataEPSS 0.1%CVE-2026-33328MEDIUMPossible integer overflow on 32-bit systems when reading GIF imagesEPSS 0.1%CVE-2026-33327HIGHPossible integer overflow leading to potential heap-based buffer overflowEPSS 0.2%CVE-2026-32825HIGHdataCycle No Brute-Force Protection On Web And API Login EndpointsEPSS 0.3%CVE-2026-32824HIGHdataCycle User API Password Reset And Confirmation Flows Trust Attacker- Controlled Redirect TargetsEPSS 0.3%CVE-2026-32823MEDIUMdataCycle State-Changing GET Endpoints Enable CSRFEPSS 0.1%CVE-2026-32821HIGHAPI Collection Impersonation Via user_email And Missing Object- Level AuthorizationEPSS 0.4%CVE-2026-32806HIGHdataCycle Authorization Bypass Via /remote_renderEPSS 0.4%