Busca de CVEs
401.023 resultadosCVE-2026-82379HIGHApache Roller: WSSE digest authentication headers can be replayedEPSS 0.4%CVE-2026-82380HIGHApache Roller: CSRF protection bypass via self-generated salt validationEPSS 0.3%CVE-2026-82381MEDIUMApache Roller: Stored cross-site scripting in the authoring UIEPSS 0.2%CVE-2026-82382MEDIUMApache Roller: Reflected cross-site scripting in the frontpage directory parameterEPSS 0.3%CVE-2026-82383HIGHApache Roller: Anonymous setup action allows frontpage configuration tamperingEPSS 0.5%CVE-2026-82384CRITICALApache Roller: Unauthenticated deserialization in the XML-RPC endpointEPSS 0.8%CVE-2026-82375HIGHApache Roller: Server-side request forgery via entry trackback and enclosure URLsEPSS 0.4%CVE-2026-82376HIGHApache Roller: XML external entity processing in trackback response parserEPSS 0.3%CVE-2026-82377CRITICALApache Roller: Missing weblog authorization in XML-RPC Blogger/MetaWeblog handlersEPSS 0.5%CVE-2026-82378CRITICALApache Roller: OAuth authorization endpoint trusts request-supplied identityEPSS 0.4%CVE-2026-101012MEDIUMmathurvishal CloudClassroom-PHP-Project makeresult.php sql injectionEPSS 0.3%CVE-2026-82385MEDIUMApache Roller: Weblog template include escapes the Velocity sandbox and reads classpath filesEPSS 0.3%CVE-2026-82386HIGHApache Roller: XML external entity processing in OPML bookmark importEPSS 0.3%CVE-2026-82348HIGHApache Roller: Cross-weblog resource tampering via unscoped authoring lookupsEPSS 0.4%CVE-2026-82387MEDIUMApache Roller: Stored cross-site scripting via uploaded media content typeEPSS 0.2%CVE-2026-82546MEDIUMApache Roller: Stored cross-site scripting through incoming Trackback linksEPSS 0.3%CVE-2026-91204MEDIUMApache Roller: Stored javascript: URI in HTML commentsEPSS 0.4%CVE-2026-91206MEDIUMApache Roller: Reflected XSS in the optional LDAP comment authenticatorEPSS 0.4%CVE-2026-101011MEDIUMaaPanel BaoTa Domain domainMod.py get_domain_status sql injectionEPSS 0.2%CVE-2026-101010MEDIUMaaPanel BaoTa data.py getData sql injectionEPSS 0.2%