Busca de CVEs
375.173 resultadosCVE-2026-2467CRITICALHeap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.EPSS 0.2%CVE-2026-6733LOWundici vulnerable to HTTP response queue poisoning via keep-alive socket reuseEPSS 0.2%CVE-2026-20266CRITICALOS Command Injection in the btool Configuration Helper in Splunk AI ToolkitEPSS 0.6%CVE-2026-20265MEDIUMInsecure Default Domain Allowlist in Splunk AI ToolkitEPSS 0.2%CVE-2026-9678MEDIUMundici vulnerable to cross-user information disclosure via shared cache whitespace bypassEPSS 0.4%CVE-2026-47774HIGHEnvoy vulnerable to HTTP/2 memory exhaustion via cookie header size bypass and HPACK amplificationEPSS 1.0%CVE-2026-9679MEDIUMundici vulnerable to HTTP header injection via Set-Cookie percent-decodingEPSS 0.3%CVE-2026-9697HIGHundici vulnerable to TLS certificate validation bypass via dropped requestTls in SOCKS5 ProxyAgentEPSS 0.5%CVE-2026-53805CRITICALNVIDIA SIL GEN3C Unauthenticated RCE via Pickle Deserialization in Inference APIEPSS 0.9%CVE-2026-48591MEDIUMStored XSS via unescaped HTML attribute values in earmarkEPSS 0.1%CVE-2026-6734HIGHundici vulnerable to cross-origin request routing via SOCKS5 proxy pool reuseEPSS 0.3%CVE-2026-20178MEDIUMA vulnerability in the browser-based version of Cisco Webex App could have allowed an unauthenticated, remote attacker to redirect users to EPSS 0.2%CVE-2026-9675HIGHundici WebSocket client vulnerable to denial of service via cumulative fragment bypassEPSS 0.4%CVE-2026-20246MEDIUMCisco Umbrella Virtual Appliance Privilege Escalation VulnerabilityEPSS 0.1%CVE-2026-20220MEDIUMCisco Crosswork Network Controller Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-20190HIGHCisco Identity Services Engine Information Disclosure VulnerabilityEPSS 0.5%CVE-2026-20181CRITICALCisco Identity Services Engine Remote Code Execution VulnerabilityEPSS 0.7%CVE-2026-12151HIGHundici WebSocket client vulnerable to denial of service via fragment count bypassEPSS 0.8%CVE-2026-12515MEDIUMKatello: missing repository authorization in content_uploads exposes cross-product content existenceEPSS 0.2%CVE-2026-32652HIGHDell AIOps Collector versions prior to 1.18.3 contain a "Use of Default Credentials" vulnerability. A low privileged attacker with console aEPSS 0.1%