Busca de CVEs

398.517 resultados
CVE-2026-100521MEDIUMCotonti through 1.0.0 Reflected XSS via search highlight parameterEPSS 0.2%CVE-2026-100520HIGHLaranode before 1.2.1 Path Traversal in File Manager Upload EndpointEPSS 0.9%CVE-2026-100505MEDIUMGhidra 11.2 through 12.1.4 Heap Out-of-Bounds Read via StringManagerEPSS 0.1%CVE-2026-100504HIGHGhidra through 12.1.4 Stack-based Buffer Overflow via leftshift128EPSS 0.1%CVE-2026-100503MEDIUMGhidra through 12.1.4 Heap Use-After-Free in DecompilerEPSS 0.1%CVE-2026-86066MEDIUMHorilla attendance approval endpoint is vulnerable to cross-site request forgeryEPSS 0.2%CVE-2026-96795HIGHHorilla: Authenticated RCE in Horilla List-View ExportEPSS 0.3%CVE-2026-57449HIGHActual Sync Server: CORS Proxy GitHub API Allowlist Prefix Bypass Leaks Private Repositories Through the Server GitHub TokenEPSS 0.2%CVE-2026-100502MEDIUMFlame through 2.4.0 Admin Token Insufficient Session ExpirationEPSS 0.3%CVE-2026-100501HIGHFlame through 2.4.0 Brute-Force Attack via Login EndpointEPSS 0.3%CVE-2026-100419HIGHgitoxide gix-fs before 0.23.0 Worktree Escape via SymlinkEPSS 0.1%CVE-2026-100418MEDIUMFlame through 2.4.0 Information Exposure via GET /api/configEPSS 0.3%CVE-2026-71483HIGHHorilla: Reflected Cross-Site Scripting (XSS) in Employee Filter ViewEPSS 0.3%CVE-2026-63432MEDIUMHorilla: Server-Side Template Injection (SSTI) in Mail Preview Endpoints Allows Authenticated Users to Disclose Password Hashes and Server MetadataEPSS 0.3%CVE-2026-63431MEDIUMHorilla: Missing Authorization on Payroll Component Views Exposes Employee Salary Structures and Personal Loan Records (IDOR)EPSS 0.2%CVE-2026-88003HIGHInvoicePlane: Failure to Revoke Administrative Privileges After Role DowngradeEPSS 0.3%CVE-2026-92842MEDIUMOOB read / info leak in convert.* stream filters when line-break-chars contains NULEPSS 0.4%CVE-2026-91768MEDIUMIPv6 ACL bypass in FastCGI listen.allowed_clients due to partial address comparison (memcmp 12 bytes)EPSS 0.6%CVE-2026-100383MEDIUMStored i18n XSS in WikiLambda's VisualEditor integrationEPSS 0.3%CVE-2026-100382CRITICALUnauthenticated remote code execution through wikitext in ExternalDataEPSS 0.9%