Busca de CVEs

375.176 resultados
CVE-2026-47825HIGHSpring Cloud Gateway Server Forwards Headers from Untrusted Proxies in certain situationsEPSS 0.1%CVE-2026-48518MEDIUMMultiJuicer: Login CSRF allows attacker to force victims into their teamEPSS 0.2%CVE-2026-52718MEDIUMGstreamer1-plugins-bad-free: gstreamer: denial of service via av1 tile_list_obu parser byte/bit confusionEPSS 0.4%CVE-2026-52722HIGHGstreamer1-plugins-bad-free: gstreamer: signed integer overflow in vmnc decoder cursor payload handlingEPSS 0.4%CVE-2026-52720HIGHGstreamer1-plugins-bad-free: gstreamer: heap buffer overflow via crafted vnc server rectangle in librfbEPSS 0.6%CVE-2026-53704HIGHGstreamer1-plugins-ugly-free: gstreamer: out-of-bounds read in realmedia demuxer fileinfo metadata parserEPSS 0.2%CVE-2026-53703HIGHGstreamer1-plugins-ugly-free: gstreamer: out-of-bounds read in realmedia demuxer audio stream header parserEPSS 0.2%CVE-2026-52721MEDIUMGstreamer1-plugins-bad-free: gstreamer: multiple out-of-bounds reads in pcapparse ipv4/tcp header parsingEPSS 0.1%CVE-2026-53705HIGHGstreamer1-plugins-good: gstreamer: heap buffer overflow in wavpack decoder via integer overflowEPSS 0.4%CVE-2026-52719HIGHGstreamer1-plugins-bad-free: gstreamer: out-of-bounds read via jpeg segment length validation in va decoderEPSS 0.3%CVE-2026-41708HIGHSpring Cloud Sleuth instrumentation of Spring TX DoS vulnerabilityEPSS 0.3%CVE-2026-47835HIGHSpring AI vector store metadata filtering to handle special characters in Elasticsearch, OpenSearch, and GemFire Vector StoresEPSS 0.3%CVE-2026-48114CRITICALMetacat has an unauthenticated SQL injection vulnerabilityEPSS 0.4%CVE-2026-49954HIGHDiscuz! X5.0 Local File Inclusion via enable_disable.php Plugin DirectoryEPSS 0.5%CVE-2026-49953MEDIUMDiscuz! X5.0 CAPTCHA Bypass via Predictable Character SetEPSS 0.4%CVE-2026-49952CRITICALDiscuz! X5.0 Authentication Bypass via dbbak.php Encryption OracleEPSS 4.2%CVE-2026-11931MEDIUMInsecure Permissions on Authentication Token Cache File in Kiro IDEEPSS 0.1%CVE-2026-47777HIGHMastodon has a consent-check bypass in its remote CollectionsEPSS 0.2%CVE-2026-49294MEDIUMValhalla has reflected XSS via unsanitized JSONP callback parameterEPSS 0.1%CVE-2026-8358MEDIUMHeap buffer overflow in spreadsheet tracked-changes importEPSS 0.2%