Busca de CVEs

375.173 resultados
CVE-2026-53841LOWOpenClaw < 2026.5.12 - Cross-Site Scripting via Unsafe Markdown Links in Exported Session HTMLEPSS 0.2%CVE-2026-53840MEDIUMOpenClaw < 2026.5.12 - Custom Header Leakage via MCP Streamable HTTP Cross-Origin RedirectsEPSS 0.2%CVE-2026-50656HIGHMicrosoft Defender Elevation of Privilege VulnerabilityEPSS 10.7%CVE-2024-39575HIGHupdate_disk_psu_baseline.sh requires password in plain textEPSS 0.1%CVE-2026-48775MEDIUMLangGraph Checkpoint: Unsafe JSON deserialization in checkpoint loadingEPSS 0.2%CVE-2026-10748HIGHNexus Repository 3 - Remote Code Execution via License DeserializationEPSS 0.3%CVE-2026-47749HIGHstable-diffusion.cpp: Heap buffer overflow in SHORT_BINUNICODE parsing for PyTorch checkpoint filesEPSS 0.2%CVE-2026-47748MEDIUMstable-diffusion.cpp: Out-of-bounds reads in PyTorch checkpoint pickle opcode parsingEPSS 0.2%CVE-2026-4367MEDIUMLibxpm: libxpm: denial of service via out-of-bounds read in xpm file parsingEPSS 0.1%CVE-2026-47963MEDIUMDNG SDK | Out-of-bounds Read (CWE-125)EPSS 0.2%CVE-2026-47934MEDIUMDNG SDK | Out-of-bounds Read (CWE-125)EPSS 0.2%CVE-2026-47964HIGHDNG SDK | Heap-based Buffer Overflow (CWE-122)EPSS 0.2%CVE-2026-47927MEDIUMDNG SDK | Out-of-bounds Read (CWE-125)EPSS 0.2%CVE-2024-38487HIGHapi-gateway container running with root privilege would allow an attacker to escape the container and access host system to perform unintendEPSS 0.1%CVE-2026-42089HIGHyeoman-environment Vulnerable to Arbitrary Package Installation without User ConfirmationEPSS 0.2%CVE-2026-24228HIGHNVIDIA NeMo Framework for Linux contains a vulnerability where an attacker may cause deserialization of untrusted data. A successful exploitEPSS 0.2%CVE-2026-24155HIGHNVIDIA NeMo Framework for all platforms contains a code injection vulnerability. A successful exploit of this vulnerability might lead to coEPSS 0.2%CVE-2024-30476MEDIUMPowerStore contains a Stored Cross-Site Scripting Vulnerability in the PowerStore Manager. A remote authenticated low-privileged malicious aEPSS 0.2%CVE-2026-10649HIGHPacemaker: pacemaker: denial of service via integer overflow in remote message decompressionEPSS 0.6%CVE-2025-71261HIGHHarvester's SUSE Virtualization Registration Client Vulnerable to MITM and DOSEPSS 0.2%