Busca de CVEs

375.176 resultados
CVE-2026-44494HIGHAxios: Full Man-in-the-Middle via Prototype Pollution Gadget in `config.proxy`EPSS 1.0%CVE-2026-44489LOWAxios: Proxy-Authorization Header Injection via Prototype Pollution — Incomplete Null-Prototype FixEPSS 0.2%CVE-2026-44492HIGHAxios: shouldBypassProxy does not recognize IPv4-mapped IPv6 addresses, allowing NO_PROXY bypass (incomplete fix for CVE-2025-62718)EPSS 0.9%CVE-2024-45636MEDIUMIBM Security QRadar EDR Software has a vulnerability where user credentials may be stored in plain text, potentially exposing sensitive information.EPSS 0.1%CVE-2026-3341MEDIUMIBM Langflow Desktop 1.0.0 - 1.9.2 DNS Rebinding Bypasses SSRF Protection Allowing Access to Internal ServicesEPSS 0.1%CVE-2026-53777HIGHPerry < 0.5.1159 Path Traversal via ArtifactReady WebSocketEPSS 0.4%CVE-2026-4096MEDIUMA vulnerability has been identified in IBM DevOps Plan that allows a Host Header Injection attack due to improper handling of the Host header in HTTP requests.EPSS 0.1%CVE-2026-7787HIGHUnauthenticated Session History Access via Public Flow ExecutionEPSS 0.2%CVE-2026-7870HIGHIBM i is Affected by Privilege Escalation []EPSS 0.3%CVE-2026-11839CRITICALArbitrary File Upload in Basarsoft's RotabanEPSS 0.3%CVE-2026-9648CRITICALCVE-2026-9648EPSS 0.2%CVE-2026-10847HIGHLocal Privilege Escalation vulnerability in Check Point Identity Agent Full for Windows OSEPSS 0.1%CVE-2026-6338MEDIUMHTTP request smuggling in Kong Enteprise GatewayEPSS 0.3%CVE-2026-8406HIGHopenSIS Classic 9.3 - Insecure Direct Object Reference in Sent MailEPSS 0.2%CVE-2026-11816HIGHPath Traversal in keras-team/kerasEPSS 0.6%CVE-2026-53661HIGHboruta-server sent sensitive session cookies without the Secure attributeEPSS 0.3%CVE-2026-53723MEDIUMguzzlehttp/guzzle-services' XML Request Serialization Vulnerable to XML Injection via CDATA TerminatorEPSS 0.2%CVE-2026-49214MEDIUMguzzlehttp/psr7 has CRLF Injection via URI Host ComponentEPSS 0.2%CVE-2026-48998MEDIUMguzzlehttp/psr7 has Host Confusion via Authority ReinterpretationEPSS 0.2%CVE-2026-11561CRITICALSSTI in Soagen Informatics' ApinizerEPSS 0.4%