Busca de CVEs
400.284 resultadosCVE-2026-101042HIGHParse Server 9.0.0 Authentication Bypass via Unverified Provider IdentityEPSS 0.2%CVE-2026-88775HIGHMemory overflow vulnerability leading to unpredictable or erroneous behavior or Denial of ServiceEPSS 0.4%CVE-2026-88773CRITICALHTTP Request SmugglingEPSS 0.4%CVE-2026-88774HIGHFeature policy bypass due to improper HTTP URL based expression usageEPSS 0.2%CVE-2026-88772CRITICALMemory overflow vulnerability leading to Remote Code Execution or Denial of ServiceEPSS 1.3%KEVCVE-2026-88771CRITICALA remote code execution vulnerability exists due to improper input validation, which can allow an unauthenticated attacker to execute arbitrary commandsEPSS 1.1%KEVCVE-2026-101041MEDIUMVulnerability-Lookup - Race Condition in Account Recovery Token Consumption Allows Password TakeoverEPSS 0.2%CVE-2026-101033MEDIUMKitchenOwl through 0.7.10 IDOR via unchecked category IDEPSS 0.2%CVE-2026-101032HIGHnavi through 2.24.0 OS Command Injection via Cheatsheet VariablesEPSS 0.1%CVE-2026-100872HIGHSylius 2.x before 2.1.16 and 2.2.9 Payment Amount OverwriteEPSS 0.2%CVE-2026-100871HIGHSylius before 1.12.25, 1.13.17, 1.14.20, 2.1.16, and 2.2.9 JWT Audience Confusion Allows Admin API AuthenticationEPSS 0.3%CVE-2026-100870HIGHSylius before 1.12.25, 1.13.17, 1.14.20, 2.1.16, and 2.2.9 Admin Password Reset Poisoning via Host HeaderEPSS 0.3%CVE-2026-100869HIGHSylius 2.x before 2.1.16 and 2.2.9 Arbitrary Payment Action via Shop APIEPSS 0.3%CVE-2026-100868MEDIUMPenpot before 2.18.0 Unauthenticated WebSocket Access via MCP BridgeEPSS 0.3%CVE-2026-100867MEDIUMspaceship-prompt through 4.22.5 Terminal Escape Sequence InjectionEPSS 0.1%CVE-2026-100866MEDIUMonefetch through 2.28.1 Terminal Escape Sequence InjectionEPSS 0.1%CVE-2026-100748MEDIUMJoomla Extension - svenbluege.de - CSRF in various cart actions in Event Gallery extension < 6.5.0EPSS 0.2%CVE-2026-97164HIGHJoomla Extension - svenbluege.de - Path Traversal in Clear Cache task in Event Gallery extension < 6.5.0EPSS 0.3%CVE-2026-100747MEDIUMJoomla Extension - svenbluege.de - CSRF in image upload in Event Gallery extension < 6.5.0EPSS 0.1%CVE-2026-100749MEDIUMJoomla Extension - svenbluege.de - CSRF in backend cleanup actions in Event Gallery extension < 6.5.0EPSS 0.1%