Busca de CVEs
390.578 resultadosCVE-2026-47425MEDIUMRattler vulnerable to entry-point path traversal in noarch:python install (arbitrary file write)EPSS 0.2%CVE-2026-16243MEDIUMEclipse OMR : arraycmp SIMD implementation does not check if the number of bytes to compare is zeroEPSS 0.4%CVE-2026-56583LOWHCL MyCloud was affected with Concurrent Login Vulnerability.EPSS 0.2%CVE-2026-56582LOWHCL MyCloud was affected with SSL/TLS Protocol Affected with LUCKY13 Vulnerability.EPSS 0.2%CVE-2026-56581LOWHCL MyCloud was affected with Cookie Attribute Path Not SetEPSS 0.2%CVE-2026-56580LOWHCL MyCloud was affected by Using Components with Known VulnerabilityEPSS 0.3%CVE-2026-56579LOWHCL MyCloud was affected with Exposure of Sensitive Information to an Unauthorized Actor.EPSS 0.2%CVE-2026-56578LOWHCL MyCloud was affected by Server Version DisclosureEPSS 0.3%CVE-2026-56577LOWHCL MyCloud affected by Weak Password PolicyEPSS 0.2%CVE-2026-47419HIGHpraisonai-platform: Agent endpoints accept any agent_id without workspace ownership check, cross-workspace read/update/delete IDOREPSS 0.4%CVE-2026-16439MEDIUMEclipse OpenJ9 : Using -Xtrace to trace method arguments can lead to buffer underflowEPSS 0.2%CVE-2026-47418HIGHpraisonai-platform: Project endpoints accept any project_id without workspace ownership check, cross-workspace read/update/delete IDOREPSS 0.4%CVE-2026-16493HIGHAnsible-core: argument injection in ansible-galaxy collection install via git clone (incomplete fix for cve-2026-11332)EPSS 0.2%CVE-2026-47417HIGHpraisonai-platform: Comment endpoints accept any issue_id without workspace ownership check, cross-workspace comment read and post IDOREPSS 0.4%CVE-2026-47416CRITICALpraisonai-platform: Any workspace member can promote themselves (or any other member) to owner via PATCH /workspaces/{id}/members/{user_id}EPSS 0.4%CVE-2026-47415HIGHpraisonai-platform: Issue endpoints accept any issue_id without workspace ownership check, cross-workspace read/update/delete IDOREPSS 0.4%CVE-2026-47414HIGHpraisonai-platform: Label endpoints accept any label_id and any issue_id without workspace ownership check, cross-workspace label edit/delete and issue-label-link IDOREPSS 0.4%CVE-2026-47413CRITICALpraisonai-platform: Any workspace member can add arbitrary user as owner via POST /workspaces/{id}/membersEPSS 0.4%CVE-2026-47412HIGHpraisonai-platform: Any workspace member can delete the entire workspace via DELETE /workspaces/{id}EPSS 0.5%CVE-2026-47411MEDIUMpraisonai-platform: Any workspace member can rewrite workspace name, description, and settings via PATCH /workspaces/{id}EPSS 0.3%