Busca de CVEs

375.173 resultados
CVE-2026-8050HIGHCVE-2026-8050EPSS 0.4%CVE-2026-8049MEDIUMCVE-2026-8049EPSS 0.1%CVE-2026-12530HIGHImproper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages()EPSS 0.3%CVE-2026-50194HIGHSteeltoe vulnerable to management-port isolation bypass via spoofed Host headerEPSS 0.2%CVE-2026-48989HIGHWindows-MCP: HTTP transports expose unauthenticated PowerShell control with wildcard CORSEPSS 0.4%CVE-2026-48988MEDIUMmarkdown-it: Quadratic complexity DoS in smartquotes rule via replaceAt string operationsEPSS 0.4%CVE-2026-48979HIGHPHP Standard Library: HTTP/2 server-side missing content-length validation enables request smugglingEPSS 0.3%CVE-2026-49133HIGHTypemill < 2.24.0 Path Traversal via ControllerApiImage::getPagemedia()EPSS 0.3%CVE-2026-48821MEDIUMShaarli: DOM-based Cross-Site Scripting (XSS) in Thumbnail SynchronizerEPSS 0.1%CVE-2026-11407HIGHPimcore CMS 12.3.8 Twig Sandbox Bypass via SecurityPolicy checkMethodAllowedEPSS 0.6%CVE-2026-48823MEDIUMShaarli has Stored Cross-Site Scripting (XSS) via Tags SearchEPSS 0.1%CVE-2026-32682HIGHNGINX Gateway Fabric vulnerabilityEPSS 0.3%CVE-2026-50107HIGHNGINX Gateway Fabric vulnerabilityEPSS 0.5%CVE-2026-48822MEDIUMShaarli has Stored Cross-Site Scripting (XSS) via Markdown Reference LinksEPSS 0.1%CVE-2026-54388CRITICALTinyproxy - HTTP Request Smuggling via Duplicate Content-Length HeadersEPSS 0.4%CVE-2026-54387CRITICALTinyproxy - HTTP Request Smuggling via CL/TE DesynchronizationEPSS 0.4%CVE-2026-48817MEDIUMStarlette: Arbitrary HTTP method dispatched to `HTTPEndpoint` attributes via `getattr`EPSS 0.2%CVE-2026-48814CRITICALNetwork-AI: Empty default secret still authorizes all requests (Incomplete fix for CVE-2026-46701)EPSS 0.3%CVE-2026-55202HIGHTinyproxy - Stathost Detection Bypass via Host Header ManipulationEPSS 0.4%CVE-2026-55201HIGHEvil-WinRM - Path Traversal in download_dir() FunctionEPSS 0.3%