Busca de CVEs

375.184 resultados
CVE-2026-10881CRITICALOut of bounds read and write in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escEPSS 0.4%CVE-2026-10875MEDIUMprojectworlds Online Art Gallery Shop Project adminHome.ph sql injectionEPSS 0.3%CVE-2026-10874MEDIUMprojectworlds Online Art Gallery Shop Project adminHome.php sql injectionEPSS 0.3%CVE-2023-5502HIGHOn affected platforms running Arista EOS with 802.1x authentication configured on the access/trunk ports, a malicious supplicant may bypass authentication.EPSS 0.3%CVE-2024-27892HIGHOn affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected (SSL Profiles Enabled).EPSS 0.3%CVE-2026-20245HIGHCisco Catalyst SD-WAN Controller Authenticated Privilege Escalation VulnerabilityEPSS 25.3%KEVCVE-2026-10873HIGHShibby Tomato Web UI rstats rstats_path os command injectionEPSS 2.7%CVE-2024-27890HIGHOn affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected (No SSL Profiles Enabled).EPSS 4.4%CVE-2026-10872HIGHShibby Tomato Web UI rc start_vpnserver os command injectionEPSS 2.6%CVE-2024-27891MEDIUMOn affected platforms running Arista EOS with MACsec and egress ACLs configured on the same interfaces, the ACL policies may not be enforced for packets egressing on those ports.EPSS 0.3%CVE-2026-48579CRITICALMicrosoft Exchange Online Information Disclosure VulnerabilityEPSS 1.0%CVE-2026-47655MEDIUMMicrosoft Graph Information Disclosure VulnerabilityEPSS 0.8%CVE-2026-47644MEDIUMCopilot Chat (Microsoft Edge) Information Disclosure VulnerabilityEPSS 0.7%CVE-2026-45497HIGHMicrosoft M365 Copilot Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-42824MEDIUMM365 Copilot Information Disclosure VulnerabilityEPSS 7.6%CVE-2026-48567CRITICALAzure HorizonDB Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2026-10871HIGHShibby Tomato Web UI rc start_6rd_tunnel os command injectionEPSS 2.2%CVE-2026-11322HIGHHermes WebUI before 0.51.221 Path Traversal via Symlink Workspace BypassEPSS 0.3%CVE-2024-6858MEDIUMIn Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a switch port if there exists an EAPOL capable device in the fallback VLAN.EPSS 0.1%CVE-2026-42547MEDIUMIRIS Alerts Can be Falsely Attributed to CustomersEPSS 0.2%