Busca de CVEs

390.623 resultados
CVE-2026-65052HIGHNinja Forms Calculation and Payment Total Tampering via Fail-Open get_calc_value in ListSelect and ListRadio FieldsEPSS 0.6%CVE-2026-65051MEDIUMNinja Forms Server-Side Validation Bypass via Client-Controlled Field Metadata Merge in AJAX Submission HandlerEPSS 0.5%CVE-2026-65050HIGHNinja Forms Missing Authorization in submissions-table Gutenberg Block Discloses Form Submissions to Unauthenticated VisitorsEPSS 0.4%CVE-2026-65049HIGHNinja Forms Cross-Site Network-Wide Data Deletion on WordPress Multisite via nf_delete_all_data AJAX ActionEPSS 0.4%CVE-2026-59851HIGHLibssh: libssh: authentication bypass via missing gssapi principal checkEPSS 0.3%CVE-2026-65048CRITICALNinja Forms Unauthenticated Stored Cross-Site Scripting via Repeatable Fieldset Submission IndexEPSS 0.5%CVE-2026-59850MEDIUMLibssh: libssh: use-after-free via data callbacks on closed channelsEPSS 0.3%CVE-2026-16448MEDIUMD-Link DNS-1550-04 remote_backup.cgi cgi_check_rsync_rw command injectionEPSS 1.1%CVE-2026-11876MEDIUMMissing Authorization in get_deployed_stack Endpoint in zenml-io/zenmlEPSS 0.3%CVE-2026-59849LOWLibssh: libssh: denial of service via automatic certificate authentication loopEPSS 0.2%CVE-2026-8933HIGHsnap-confine Local Privilege Escalation via Capabilities Misconfiguration or Flaw in Execution Environment SetupEPSS 0.2%CVE-2026-15226HIGHsnapd snap-confine Sandbox Confinement Bypass via Omission of setuid Restriction in Seccomp TemplatesEPSS 0.2%CVE-2026-46681HIGH@nevware21/ts-utils: Prototype Pollution in objDeepCopy/objCopyProps via for...in without hasOwnPropertyEPSS 0.5%CVE-2024-5300MEDIUMAppArmor Base Profile Misconfiguration in snapd Permits Confined Snaps Unauthorized Access to Hashed Passwords via systemd-userdbdEPSS 0.1%CVE-2026-47122MEDIUMSparkle's AppInstaller post-stage-1 XPC listener accepts unvalidated connections, allowing spoofed appcast item data injectionEPSS 0.1%CVE-2026-47121MEDIUMSparkle: Binary delta apply intermediate-symlink traversal in malicious .deltaEPSS 0.3%CVE-2026-16447MEDIUMD-Link DNS-320 multi_uploadify.php unrestricted uploadEPSS 1.6%CVE-2026-9499MEDIUMOut-of-bounds read in QTextCodec::codecForName() in QtEPSS 0.3%CVE-2026-59848MEDIUMLibssh: libssh: denial of service via sftp responses with unknown request idsEPSS 0.3%CVE-2026-59847MEDIUMLibssh: libssh: integrity downgrade via openssl aes-gcm tag verificationEPSS 0.3%