VulnSea

CWE-179

CVEs classified under CWE-179, newest first.

4 CVEsRSS

CVE-2026-90813Medium· 4.3PoC
1w ago

A vulnerability was detected in cosmicstack-labs mercury-agent up to 1.1.13

A vulnerability was detected in cosmicstack-labs mercury-agent up to 1.1.13. Affected is the function checkShellCommand of the file src/capabilities/permissions.ts of the component Shell Command Execution. The manipulation results in inc…

Twilightcosmicstack-labs · mercury-agentEPSS 0.31%via NVD
CVE-2026-84504High· 8.1
2w ago

fastify versions before 5.12.2 treat the object resolved by a successful Ajv async validator as the value result protocol used by custom validator compilers

fastify versions before 5.12.2 treat the object resolved by a successful Ajv async validator as the value result protocol used by custom validator compilers. If a request that passes its route schema contains a property named value at th…

Twilightfastify · fastifyEPSS 0.40%via NVD
CVE-2026-3832Low· 3.7
4mo ago

A flaw was found in gnutls

A flaw was found in gnutls. A remote attacker could exploit this vulnerability by presenting a specially crafted Online Certificate Status Protocol (OCSP) response during a TLS handshake. Due to a logic error in how gnutls processes mult…

SunlitEPSS 0.74%via NVD
CVE-2026-25223High· 7.5
7mo ago

Fastify is a fast and low overhead web framework, for Node.js

Fastify is a fast and low overhead web framework, for Node.js. Prior to version 5.7.2, a validation bypass vulnerability exists in Fastify where request body validation schemas specified by Content-Type can be completely circumvented. By…

Twilightfastify · fastifyEPSS 0.80%via NVD
CWE-179 vulnerabilities (CVEs) · VulnSea