Busca de CVEs
375.173 resultadosCVE-2026-10635MEDIUMDangling memory-domain pointer (use-after-free) in Xtensa MMU page-table code on memory-domain de-initEPSS 0.2%CVE-2026-50255MEDIUMIncorrect default permissions issue exists in Optical Disc Archive Software for Windows 5.5.3 and earlier. If this vulnerability is exploiteEPSS 0.1%CVE-2026-10780MEDIUMStatic Block <= 2.2 - Insecure Direct Object Reference to Authenticated (Contributor+) Sensitive Information Disclosure via Shortcode 'id' AttributeEPSS 0.2%CVE-2026-6933HIGHPremmerce Dev Tools <= 2.0 - Missing Authorization to Authenticated (Subscriber+) Remote Code Execution via Plugin CreationEPSS 0.8%CVE-2026-9187MEDIUMAbandoned Contact Form 7 <= 2.2 - Missing Authorization to Unauthenticated Arbitrary Post Deletion via 'recover_id' ParameterEPSS 0.2%CVE-2026-6964MEDIUMVideo Conferencing with Zoom <= 4.6.7 - Missing Authorization to Unauthenticated Zoom SDK Credential Exposure via 'get_auth' AJAX ActionEPSS 0.3%CVE-2026-7273HIGHA stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow aEPSS 0.3%CVE-2026-42014MEDIUMGnutls: gnutls: use-after-free in gnutls_pkcs11_token_set_pinEPSS 0.1%CVE-2026-1767MEDIUMLocalsearch: tracker-miners: gnome localsearch mp3 extractor: heap buffer overflow leading to denial of service or information disclosure via malformed mp3 id3 tagsEPSS 0.2%CVE-2026-1766MEDIUMLocalsearch: tracker-miners: gnome localsearch mp3 extractor: denial of service and information disclosure via malformed mp3 files.EPSS 0.2%CVE-2026-1765MEDIUMLocalsearch: tracker-miners: gnome localsearch mp3 extractor: denial of service and potential information disclosure via crafted mp3 filesEPSS 0.1%CVE-2026-1764MEDIUMLocalsearch: tracker-miners: gnome localsearch mp3 extractor: heap buffer overflow leads to denial of service or information disclosure when parsing mp3 filesEPSS 0.2%CVE-2026-46448MEDIUMIn OpenStack Nova before 33.0.2, the server create API does not strip certain hint data. The resulting instance has no Placement allocation.EPSS 0.3%CVE-2026-12162MEDIUMImproper host validation in the social login autofill feature in
Devolutions Remote Desktop Manager 2026.2.8 allows an attacker to
disclosEPSS 0.1%CVE-2026-12161HIGHImproper input validation in the SSH Elevate Shell feature allows an authenticated user
with permission to create or modify a shared SSH enEPSS 0.4%CVE-2026-9262HIGHUse of a non-secure protocol as the default FTP configuration in Canon EOS Network Setting Tool Version 1.5.0 or earlierEPSS 0.3%CVE-2026-9261HIGHUse of weak SSH cryptographic algorithms in Canon EOS Network Setting Tool Version 1.5.0 or earlierEPSS 0.2%CVE-2026-9260MEDIUMUse of hard-coded cryptographic keys in Canon EOS Network Setting Tool Version 1.5.0 or earlierEPSS 0.2%CVE-2026-9259HIGHImproper validation of server certificates in Canon EOS Network Setting Tool Version 1.5.0 or earlierEPSS 0.2%CVE-2026-9258HIGHImproper validation of SSH host keys in Canon EOS Network Setting Tool Version 1.5.0 or earlierEPSS 0.3%