Busca de CVEs

400.296 resultados
CVE-2026-101032HIGHnavi through 2.24.0 OS Command Injection via Cheatsheet VariablesEPSS 0.1%CVE-2026-100872HIGHSylius 2.x before 2.1.16 and 2.2.9 Payment Amount OverwriteEPSS 0.2%CVE-2026-100871HIGHSylius before 1.12.25, 1.13.17, 1.14.20, 2.1.16, and 2.2.9 JWT Audience Confusion Allows Admin API AuthenticationEPSS 0.3%CVE-2026-100870HIGHSylius before 1.12.25, 1.13.17, 1.14.20, 2.1.16, and 2.2.9 Admin Password Reset Poisoning via Host HeaderEPSS 0.3%CVE-2026-100869HIGHSylius 2.x before 2.1.16 and 2.2.9 Arbitrary Payment Action via Shop APIEPSS 0.3%CVE-2026-100868MEDIUMPenpot before 2.18.0 Unauthenticated WebSocket Access via MCP BridgeEPSS 0.3%CVE-2026-100867MEDIUMspaceship-prompt through 4.22.5 Terminal Escape Sequence InjectionEPSS 0.1%CVE-2026-100866MEDIUMonefetch through 2.28.1 Terminal Escape Sequence InjectionEPSS 0.1%CVE-2026-100748MEDIUMJoomla Extension - svenbluege.de - CSRF in various cart actions in Event Gallery extension < 6.5.0EPSS 0.2%CVE-2026-97164HIGHJoomla Extension - svenbluege.de - Path Traversal in Clear Cache task in Event Gallery extension < 6.5.0EPSS 0.3%CVE-2026-100747MEDIUMJoomla Extension - svenbluege.de - CSRF in image upload in Event Gallery extension < 6.5.0EPSS 0.1%CVE-2026-100749MEDIUMJoomla Extension - svenbluege.de - CSRF in backend cleanup actions in Event Gallery extension < 6.5.0EPSS 0.1%CVE-2026-97165MEDIUMJoomla Extension - svenbluege.de - Reflected XSS and open redirect in Event Gallery extension < 6.5.0EPSS 0.2%CVE-2026-15442LOWHeap use-after-free on read during bidirectional (D)TLS shutdownEPSS 0.3%CVE-2026-89102HIGHOCSP stapling v2 multi accepts non-CA chain certificates as issuersEPSS 0.3%CVE-2026-89133MEDIUMNameConstraints not enforced across unconstrained intermediate CAEPSS 0.1%CVE-2026-89134MEDIUMSubject CN name-constraint check bypassed when non-DNS SAN presentEPSS 0.1%CVE-2026-89135MEDIUMFailed X509_verify_cert leaves unverified CA in shared CertManagerEPSS 0.2%CVE-2026-89136HIGHClient accepts unsolicited RawPublicKey server certificate typeEPSS 0.6%CVE-2026-93302HIGHTrusted peer certificate match ignores public key, allowing forged CA clonesEPSS 0.3%