Busca de CVEs
398.702 resultadosCVE-2026-53493MEDIUMContainerd has image-pull DoS via crafted OCI index graph amplificationEPSS 0.4%CVE-2026-85417MEDIUMIncomplete property masking in the SANnav logging subsystemEPSS 0.2%CVE-2026-51772—A Server-Side Request Forgery (SSRF) vulnerability exists in the Image API (v2) of OpenStack Glance. When the show_multiple_locations configEPSS 0.3%CVE-2026-79153HIGHSeclore FileSecure Desktop Client before 3.25.1.0 contains improper access control vulnerability in the kernel-mode driver component that alEPSS 0.1%CVE-2026-78902MEDIUMCross Site Scripting vulnerability in Netgate pfSense 26.03.1-RELEASE allows an attacker to execute arbitrary code via the pfBlockerNG packaEPSS 0.3%CVE-2026-51773HIGHAn issue in the VMware datastore driver of OpenStack glance_store. When an authenticated attacker provides a maliciously crafted image locatEPSS 0.3%CVE-2026-88421HIGHIncorrect access control in the BlogPage.get_entries() component of APSL puput v1.2.1 through v2.2.0 allows unauthenticated attackers to vieEPSS 0.3%CVE-2025-51457HIGHD-Link DAP-2610 up to 2.06B08r099 contains an authenticated command injection vulnerability within the web interface at the /index.xgi endpoEPSS 1.3%CVE-2026-52622HIGHAn issue in Wellav Technologies Co., Ltd Wellav WES Emergency Broadcast Terminal WES100, WES270, WES280, and WES290 before 08-08-2023 allowsEPSS 0.3%CVE-2026-88420—A reflected cross-site scripting (XSS) vulnerability in the EntryAbstract.save() component of APSL puput v1.2.1 through v2.2.0 allows authenEPSS 0.2%CVE-2026-88389—Espruino 2v29 (commit bffc6d0) contains a NULL pointer dereference vulnerability in jslGetRawString() in src/jslex.c. Crafted raw/binary strEPSS 0.1%CVE-2026-85082HIGHMaple Media Root Browser Classic 3.3.0 - OS command injection through crafted SQLite filenamesEPSS 0.1%CVE-2026-84283MEDIUMFluteCode Secure Folder 1.2 -Plaintext vault files in shared storage bypass the PIN gateEPSS 0.1%CVE-2026-97230CRITICALIO::Socket::SSL::SelfCertificate versions 1.00 for Perl contains malware which executes Python code from an obfuscated URLEPSS 0.2%CVE-2026-87722HIGHRegular Expression Denial of Service (ReDoS) in Search Query Predicates and REST Filter Endpoints in Gerrit Code ReviewEPSS 0.3%CVE-2026-87721HIGHDenial of Service via Exponential Backtracking in ANTLR Search Query Parser in Gerrit Code ReviewEPSS 0.3%CVE-2026-87720HIGHIncorrect Authorization via Stale ProjectCache Eviction and Repeated .git Suffixes in Gerrit Code ReviewEPSS 0.3%CVE-2026-97636MEDIUMApache Airflow HashiCorp provider: HashiCorp Vault secrets backend: team-scope guard bypass via user-controlled keyEPSS 0.4%CVE-2026-85491HIGHCatalyst::Seal versions before 0.03 for Perl allow one request to disable a path or route a later one past an authorization check via a dispatch memo keyed on the request path aloneEPSS 0.4%CVE-2026-14441MEDIUMLogic flaw in SANnav Java cache key handling object comparison handlingEPSS 0.4%