Busca de CVEs

375.176 resultados
CVE-2026-12210MEDIUMuniversal-tool-calling-protocol python-utcp utcp-gql/utcp-websocket server-side request forgeryEPSS 0.2%CVE-2026-12209MEDIUMRubyLouvre avalon Template Filter index.js prototype pollutionEPSS 0.3%CVE-2026-12208MEDIUMjsonata-js jsonata Function Binding Frame System jsonata.js createFrame prototype pollutionEPSS 0.3%CVE-2026-12207MEDIUMmedkey-org medkey HTTP REST API PatientController.php actionGetPatientById resource injectionEPSS 0.2%CVE-2026-12206MEDIUMGrit42 Grit data_table_entity.rb DataTableEntity sql injectionEPSS 0.2%CVE-2026-12204MEDIUMShopXO Scheduled Task Endpoint Crontab.php GoodsGiveIntegral authorizationEPSS 0.3%CVE-2026-12203MEDIUMHKUDS AI-Trader Research Export agents.csv information disclosureEPSS 0.4%CVE-2026-12202MEDIUMIntelliants Subrion CMS Blocks Endpoint cross site scriptingEPSS 0.2%CVE-2026-12201MEDIUMIObit Malware Fighter DLL permissionEPSS 0.1%CVE-2026-12200MEDIUMRitlabs TinyWeb Server Header libeay32.dll.html stack-based overflowEPSS 0.3%CVE-2026-12198MEDIUMMicroweber API Endpoint thumbnail_img userfiles_path path traversalEPSS 0.5%CVE-2026-36521MEDIUMPublicCMS V5.202506.d has a Cross Site Scripting (XSS) vulnerability in the site configuration management module.EPSS 0.2%CVE-2026-50887CRITICALA Server-Side Request Forgery (SSRF) in the automatic short URL title resolution component of shlink v5.0.1 allows attackers to scan internaEPSS 0.3%CVE-2026-50873CRITICALAn arbitrary file upload vulnerability in the attachment handling component of flatnotes v5.5.4 allows attackers to execute arbitrary code vEPSS 0.4%CVE-2025-55642MEDIUMGPAC MP4Box v2.4 was discovered to contain a floating point exception in the avidmx_process function (isomedia/isom_write.c).EPSS 0.5%CVE-2026-50871CRITICALAn OS command injection vulnerability in the media archiving and export pipeline component of kanishka-linux Reminiscence v0.3.0 allows attaEPSS 1.6%CVE-2025-68713HIGHAn issue was discovered in Rakuten Send Anywhere (File Transfer) for Android (com.estmob.android.sendanywhere) 23.2.9. The vulnerability allEPSS 0.3%CVE-2025-55649MEDIUMA NULL pointer dereference in the gf_media_map_esd function (media_tools/isom_tools.c) of GPAC MP4Box v2.4 allows attackers to cause a DeniaEPSS 0.2%CVE-2026-50874HIGHAn OS command injection vulnerability in the /manage/features/media component of kanishka-linux Reminiscence v0.3.0 allows attackers to execEPSS 1.1%CVE-2026-50881HIGHIncorrect access control in the impworks Bonsai v6.0 allows authenticated attackers with Editor privileges to escalate privileges to AdminisEPSS 0.2%