VulnSea

CWE-200

CVEs classified under CWE-200, newest first.

823 CVEsRSS

CVE-2026-58442Medium· 6.5
2mo ago

Gitea: Repository migration SSRF via multi-answer DNS allow-list bypass

Gitea: Repository migration SSRF via multi-answer DNS allow-list bypass

▾ Sunlitgitea · code.gitea.io/giteaEPSS 0.43%via GHSA
CVE-2026-50105Medium· 4.3
2mo ago

Gitea: RSS/Atom feed handlers bypass API-token scope & public-only confinement (incomplete fix of #37698)

Gitea: RSS/Atom feed handlers bypass API-token scope & public-only confinement (incomplete fix of #37698)

▾ Sunlitgitea · code.gitea.io/giteaEPSS 0.36%via GHSA
CVE-2026-58417Medium
2mo ago

Gitea: REST API exposes organization membership of private organizations to public

Gitea: REST API exposes organization membership of private organizations to public

▾ Sunlitgitea.dev · gitea.devEPSS 0.47%via GHSA
CVE-2026-58434Low
2mo ago

Gitea: Private Repository Metadata Remains Accessible After Access Revocation

Gitea: Private Repository Metadata Remains Accessible After Access Revocation

▾ Sunlitgitea · code.gitea.io/giteaEPSS 0.47%via GHSA
CVE-2026-55982Medium
2mo ago

Gitea: OIDC userinfo Endpoint Returns Identity Claims Without Enforcing API Token Scopes

Gitea: OIDC userinfo Endpoint Returns Identity Claims Without Enforcing API Token Scopes

▾ Sunlitgitea · code.gitea.io/giteaEPSS 0.51%via GHSA
CVE-2026-44231Critical· 9.1
2mo ago

RT is an open source, enterprise-grade issue and ticket tracking system

RT is an open source, enterprise-grade issue and ticket tracking system. Versions prior to 5.0.10, 6.0.0 and above, prior to 6.0.3 contain an information disclosure and privilege escalation vulnerability in the REST 2.0 API. A privileged…

▾ Midnightbestpractical · request_trackerEPSS 0.41%via NVD
GHSA-94pj-82f3-465wMedium· 5.3
2mo ago

Guzzle: Proxy-Authorization headers can be sent to origin servers

Guzzle: Proxy-Authorization headers can be sent to origin servers

▾ Sunlitguzzlehttp · guzzlehttp/guzzlevia GHSA
GHSA-gcfj-64vw-6mp9High
2mo ago

Axios Node HTTP adapter can use an inherited proxy after interceptor config cloning

Axios Node HTTP adapter can use an inherited proxy after interceptor config cloning

▾ Twilightaxios · axiosvia GHSA
CVE-2026-16201Medium· 5.3
2mo ago

A vulnerability was found in zevorn rt-claw up to 0.2.0

A vulnerability was found in zevorn rt-claw up to 0.2.0. Affected is the function claw_net_get/claw_net_post of the file claw/services/tools/net.c of the component http_request. The manipulation results in information disclosure. The att…

▾ SunlitEPSS 0.53%via NVD
CVE-2026-16108Medium· 4.3
2mo ago

A flaw was found in the default-groups REST endpoint and realm representation of Keycloak

A flaw was found in the default-groups REST endpoint and realm representation of Keycloak. This component is responsible for managing groups that are automatically assigned to new users within a realm. The issue allows a delegated admini…

▾ Sunlitredhat · build_of_keycloakEPSS 0.37%via NVD
CVE-2026-44979None
2mo ago

@hapi/wreck is an HTTP client utility

@hapi/wreck is an HTTP client utility. Prior to 18.1.1, when @hapi/wreck follows a 3xx redirect to a different hostname, only the Authorization and Cookie headers are stripped, and the standard credential header Proxy-Authorization is fo…

▾ SunlitEPSS 0.42%via NVD
CVE-2026-53598High· 7.5
2mo ago

Prompty: Arbitrary file read via file reference expansion

Prompty: Arbitrary file read via file reference expansion

▾ Twilightprompty · promptyEPSS 1.3%via GHSA
CVE-2026-35145Low· 3.1
2mo ago

HCL DFXAnalytics is affected by a Missing HTTP Strict-Transport-Security Header vulnerability

HCL DFXAnalytics is affected by a Missing HTTP Strict-Transport-Security Header vulnerability. The application fails to implement the HTTP Strict Transport Security (HSTS) policy within its responses, which could allow a remote attacker …

▾ Sunlithcltech · dfxanalyticsEPSS 0.27%via NVD
GHSA-x8mg-6r4p-87pfHigh
2mo ago

ArcadeDB has cross-database IDOR: /ts/*, /batch/*, Prometheus and Grafana handlers bypass authorization

ArcadeDB has cross-database IDOR: /ts/*, /batch/*, Prometheus and Grafana handlers bypass authorization

▾ Twilightarcadedb · com.arcadedb:arcadedb-servervia GHSA
CVE-2026-45737Medium· 6.3
2mo ago

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. From 3.2.0 until 3.2.12, 3.3.10, and 3.4.2, Argo CD ServerSideDiff can expose Kubernetes Secret values embedded in the kubectl.kubernetes.io/last-applied-configura…

▾ Sunlitargoproj · argo_cdEPSS 0.52%via NVD
CVE-2026-50697High· 7.8
2mo ago

Windows Common Log File System Driver Elevation of Privilege Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.40%via CVEORG
CVE-2026-50350Medium· 5.5
2mo ago

Windows Trusted Runtime Interface Driver Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Trusted Runtime Interface Driver allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 21H2EPSS 0.48%via CVEORG
CVE-2026-49807Medium· 6.2
2mo ago

Windows DirectX Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows DirectX allows an unauthorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1809EPSS 0.51%via CVEORG
CVE-2026-50419Low· 3.3
2mo ago

Windows Kernel Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.46%via CVEORG
CVE-2026-50434Medium· 5.5
2mo ago

Windows Push Notification Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 21H2EPSS 0.48%via CVEORG
CVE-2026-50430Medium· 5.5
2mo ago

Windows Push Notification Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50339Medium· 5.5
2mo ago

Windows Push Notification Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1809EPSS 0.48%via CVEORG
CVE-2026-50416Low· 3.3PoC
2mo ago

Win32k Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose information locally.

▾ TwilightMicrosoft · Windows 11 Version 24H2EPSS 0.46%via CVEORG
CVE-2026-50352Medium· 5.5
2mo ago

Windows Cryptographic Services Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50334Medium· 5.5
2mo ago

Windows Push Notification Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Notification allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50473Medium· 5.5
2mo ago

Windows File Explorer Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50456Medium· 5.5
2mo ago

Windows File Explorer Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50442Medium· 5.5
2mo ago

Windows File Explorer Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50409Medium· 5.5
2mo ago

Windows Overlay Filter Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Overlay Filter allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50389Medium· 5.5
2mo ago

Windows File Explorer Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CWE-200 vulnerabilities (CVEs) — page 20 · VulnSea