Busca de CVEs
398.576 resultadosCVE-2026-64794MEDIUMJoomla Extension - regularlabs.com - restricted user-data exposure in Users Anywhere and Articles Anywhere extensionsEPSS 0.4%CVE-2026-64797HIGHJoomla Extension - regularlabs.com - IP spoofing vulnerability in IP login extensionEPSS 0.3%CVE-2026-63265HIGHJoomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in various Regular Labs extension AJAX endpointsEPSS 0.2%CVE-2026-63685HIGHJoomla Extension - regularlabs.com - Authorization bypass in DB Replacer extensionEPSS 0.4%CVE-2026-63280HIGHJoomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in Regular Labs conditions managerEPSS 0.2%CVE-2026-64796CRITICALJoomla Extension - regularlabs.com - various code injection vectors in Sourcerer extensionEPSS 0.5%CVE-2026-63683HIGHJoomla Extension - regularlabs.com - Client IP spoofing vulnerability in Regular Labs conditions managerEPSS 0.4%CVE-2026-64798CRITICALJoomla Extension - regularlabs.com - Insecure login URL keys in IP login extensionEPSS 0.4%CVE-2026-64795MEDIUMJoomla Extension - regularlabs.com - XSS vectors in tag-provided inputs in various Regular Labs extensionsEPSS 0.2%CVE-2026-64792HIGHJoomla Extension - regularlabs.com - disclosure of restricted content via search index in various Regular Labs extensionsEPSS 0.4%CVE-2026-63281MEDIUMJoomla Extension - regularlabs.com - XSS vulnerability in Regular Labs conditions managerEPSS 0.2%CVE-2026-64791HIGHJoomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in Regular Labs Extension ManagerEPSS 0.2%CVE-2026-63684HIGHJoomla Extension - regularlabs.com - Inconsistent CSRF token checks / privilege checks in various admin/import/export actions of multiple Regular Labs extensionEPSS 0.2%CVE-2026-13089HIGHOIDC::Lite versions through 0.12.1 for Perl allow ID Token signature verification bypass via a token-controlled algorithm allowlist in verifyEPSS 0.4%CVE-2026-64829CRITICALQuestion2Answer 1.8.8 Session Fixation via Forgot-Password FlowEPSS 0.4%CVE-2026-14881HIGHCompass connection import allows to override OIDC browser open command (usually set through settings), allowing for arbitrary shell commands execution when connecting to cluster using OIDC auth flowEPSS 0.2%CVE-2026-13055HIGHServer crash via aggregation pipeline expression with compound wildcard index specificationEPSS 0.4%CVE-2026-13056HIGHA user with read access can cause a DoS by executing a specifically crafted query to consume a large amount of RAMEPSS 0.4%CVE-2026-13057MEDIUMAuthorization Bypass via Client-Supplied $search.mergingPipeline Leaks Unauthorized Collection Data Through $$SEARCH_METAEPSS 0.3%CVE-2026-13058HIGHTransaction Command Insufficient Input Validation Leading to Process TerminationEPSS 0.4%