Busca de CVEs

398.549 resultados
CVE-2026-56733HIGHZammad: Incorrect Authorization and Improper Privilege ManagementEPSS 0.3%CVE-2026-56731HIGHZammad: Cross-Site Scripting in Ticket NotificationsEPSS 0.2%CVE-2026-56735MEDIUMZammad: Improper neutralization of `srcset` attribute in IMG tags in ZammadEPSS 0.4%CVE-2026-56727HIGHZammad: PGP signature spoofing via unvalidated verification returnEPSS 0.2%CVE-2026-56734MEDIUMZammad: Avatar Image URL Server-Side Request ForwardingEPSS 0.4%CVE-2026-56726MEDIUMZammad: Missing authorization check in GitHub + GitLab integration allows cross-ticket data leakEPSS 0.3%CVE-2026-93366MEDIUMBludit CMS 3.22.0 Authorization Bypass via list-images/delete-image AJAX EndpointsEPSS 0.2%CVE-2026-97882MEDIUMmathurvishal CloudClassroom-PHP-Project Faculty Authentication loginlinkfaculty.php sql injectionEPSS 0.5%CVE-2026-93365HIGHBludit CMS 3.22.0 Missing Authorization via content-get-list AJAX EndpointEPSS 0.2%CVE-2026-56729LOWZammad: Titles of knowledge base answers will be shown across all categories via the global searchEPSS 0.4%CVE-2026-93364MEDIUMBludit CMS 3.22.0 Mass Assignment Privilege Escalation via Pages::edit()EPSS 0.2%CVE-2026-93363MEDIUMPayload CMS storage-vercel-blob Adapter Improper Access Control on Upload RouteEPSS 0.2%CVE-2026-56723HIGHZammad: Missing authorization on ticket attachment downloadEPSS 0.3%CVE-2026-100237MEDIUMStored i18n XSS in the Flow integration of ThanksEPSS 0.2%CVE-2026-56724HIGHZammad: Incorrect implementation of permission checks in the knowledge base moduleEPSS 0.3%CVE-2026-97879MEDIUMzhistaredu StarTraining api-docs Endpoint SecurityConfig.java missing authenticationEPSS 0.6%CVE-2026-94445HIGHMalicious user input may lead to RCE in golang.org/x/playgroundEPSS 0.4%CVE-2026-67420LOWRabbitMQ OAuth credential refresh retains revoked runtime tagsEPSS 0.2%CVE-2026-67419HIGHRabbitMQ: Consecutive topic wildcards cause combinatorial routing workEPSS 0.3%CVE-2026-67421MEDIUMRabbitMQ: Stored HTML Injection in RabbitMQ Management OAuth Error HandlingEPSS 0.3%