Busca de CVEs
400.325 resultadosCVE-2026-97165MEDIUMJoomla Extension - svenbluege.de - Reflected XSS and open redirect in Event Gallery extension < 6.5.0EPSS 0.2%CVE-2026-15442LOWHeap use-after-free on read during bidirectional (D)TLS shutdownEPSS 0.3%CVE-2026-89102HIGHOCSP stapling v2 multi accepts non-CA chain certificates as issuersEPSS 0.3%CVE-2026-89133MEDIUMNameConstraints not enforced across unconstrained intermediate CAEPSS 0.1%CVE-2026-89134MEDIUMSubject CN name-constraint check bypassed when non-DNS SAN presentEPSS 0.1%CVE-2026-89135MEDIUMFailed X509_verify_cert leaves unverified CA in shared CertManagerEPSS 0.2%CVE-2026-89136HIGHClient accepts unsolicited RawPublicKey server certificate typeEPSS 0.6%CVE-2026-93302HIGHTrusted peer certificate match ignores public key, allowing forged CA clonesEPSS 0.3%CVE-2026-93304MEDIUM(D)TLS 1.2 client accepts early ChangeCipherSpec before ClientKeyExchangeEPSS 0.2%CVE-2026-94417LOWCRL check skipped when OCSP enabled and certificate has no OCSP URLEPSS 0.1%CVE-2026-94418LOWSignature failure masked by date error under WOLFSSL_SMALL_CERT_VERIFYEPSS 0.1%CVE-2026-94419LOWClient session cache reference poisoning allows resumption with wrong serverEPSS 0.1%CVE-2026-100741CRITICALImproper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') in hMailServerEPSS 1.7%CVE-2026-97319MEDIUMPowerPress < 11.17.2 - Contributor+ Stored XSS via Podcast Player BlockEPSS 0.2%CVE-2026-97227MEDIUMNextScripts: Social Networks Auto-Poster < 4.4.8 - Authenticated Social Account Credential Disclosure and Data DeletionEPSS 0.2%CVE-2026-96899MEDIUMOptima Express 8.6.0 - 8.7.5 - Author+ Stored XSS via faq_scriptEPSS 0.2%CVE-2026-96897MEDIUMOptima Express 8.5.0 - 8.7.5 - Unauthenticated Author Account Creation & Application Password Rotation via ihf_clear_cacheEPSS 0.2%CVE-2026-96896HIGHMalcure Malware Shield < 19.9.7 - Multisite Subsite Admin+ Arbitrary File Write and Deletion via wpmr_ajax_requestEPSS 0.4%CVE-2026-96895MEDIUMWP YouTube Lyte < 1.7.31 - Contributor+ Stored XSS via Embed Block AttributesEPSS 0.2%CVE-2026-92995MEDIUMVerge3D <= 4.13.0 - Unauthenticated Product Download Disclosure via v3d_download_fileEPSS 0.2%