Busca de CVEs

375.176 resultados
CVE-2026-53475CRITICALAssisted-migration-agent: tls verification disabled on all vcenter connectionsEPSS 0.3%CVE-2026-53471CRITICALMigration-planner: agent api ignores jwt source_id claimEPSS 0.3%CVE-2026-53474CRITICALMigration-planner: second-order sql injection via rvtools uploadEPSS 0.3%CVE-2026-53473HIGHMigration-planner-ui-app: stored xss via javascript: url in agent credential linkEPSS 0.2%CVE-2026-53469CRITICALMigration-planner: unprotected delete endpoint wipes all tenant dataEPSS 0.3%CVE-2026-53689HIGHlibnfs through 6.0.2 before 55c18ea does not validate a string size, leading to an integer overflow during a connection to a crafted NFS serEPSS 0.2%CVE-2026-53442MEDIUMJenkins 2.567 and earlier, LTS 2.555.2 and earlier does not encrypt secrets from POST config.xml submissions before storing them in job confEPSS 0.2%CVE-2026-53441MEDIUMJenkins 2.483 through 2.567 (both inclusive), LTS 2.492.1 through 2.555.2 (both inclusive) does not escape the user-provided description of EPSS 0.3%CVE-2026-53440MEDIUMJenkins 2.567 and earlier, LTS 2.555.2 and earlier does not ensure that the "from" parameter in the "Delegate to servlet container" securityEPSS 0.2%CVE-2026-53439MEDIUMMissing permission checks in Jenkins 2.567 and earlier, LTS 2.555.2 and earlier allow attackers with Overall/Read permission to determine otEPSS 0.2%CVE-2026-53438MEDIUMA missing permission check in Jenkins 2.567 and earlier, LTS 2.555.2 and earlier allows attackers with Item/Cancel permission, but lacking IEPSS 0.2%CVE-2026-53437MEDIUMJenkins 2.567 and earlier, LTS 2.555.2 and earlier improperly determines that a redirect URL after login is legitimately pointing to JenkinsEPSS 0.4%CVE-2026-53436MEDIUMJenkins 2.567 and earlier, LTS 2.555.2 and earlier improperly determines that a redirect URL after login is legitimately pointing to JenkinsEPSS 0.3%CVE-2026-53435HIGHIn Jenkins 2.567 and earlier, LTS 2.555.2 and earlier, it is possible for attackers to have Jenkins deserialize arbitrary types defined in JEPSS 19.0%CVE-2025-71329HIGHimage-size 2.0.2 Denial of Service via Infinite Loop in JXL/HEIF ParserEPSS 0.4%CVE-2025-71330HIGHimage-size 2.0.2 Denial of Service via Malformed ICNS Image ParsingEPSS 0.4%CVE-2026-52759MEDIUMGhidra < 12.1.1 - Denial of Service via Uncontrolled Memory Allocation in Mach-O ParserEPSS 0.2%CVE-2026-52758HIGHGhidra < 12.1 - SQL Injection via Unescaped Filter Values in BSim SearchEPSS 0.3%CVE-2026-52757MEDIUMGhidra < 12.1 - Heap-use-after-free in HighVariable::merge() during decompilationEPSS 0.1%CVE-2026-52756MEDIUMGhidra < 12.2 - Unauthenticated Path Traversal in Debugger ISF ServerEPSS 0.5%