VulnSea

CWE-200

CVEs classified under CWE-200, newest first.

814 CVEsRSS

CVE-2026-84583Medium· 5.5
1w ago

A permissions issue was addressed with additional restrictions

A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. A local …

▾ Sunlitapple · ipadosEPSS 0.16%via NVD
CVE-2026-86878Medium· 5.5
1w ago

A permissions issue was addressed with additional restrictions

A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 27 and iPadOS 27. An app may be able to access sensitive user data.

▾ Sunlitapple · ipadosEPSS 0.15%via NVD
CVE-2026-84625Critical· 9.1
1w ago

A permissions issue was addressed with additional sandbox restrictions

A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, visionOS 27, watchOS 27. An app may be able to fingerprint the user.

▾ Midnightapple · ipadosEPSS 0.47%via NVD
CVE-2026-84530Low· 3.3
1w ago

An information disclosure issue was addressed with improved memory management

An information disclosure issue was addressed with improved memory management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be…

▾ Sunlitapple · ipadosEPSS 0.15%via NVD
CVE-2026-86887Low· 3.3
1w ago

A privacy issue was addressed by removing sensitive data

A privacy issue was addressed by removing sensitive data. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, visionOS 27. An app may be able to bypass certain Privacy preferences.

▾ Sunlitapple · ipadosEPSS 0.16%via NVD
CVE-2026-84586Medium· 5.5
1w ago

An information disclosure issue was addressed with improved state management

An information disclosure issue was addressed with improved state management. This issue is fixed in macOS Golden Gate 27, watchOS 27. A malicious application may be able to leak sensitive user information.

▾ Sunlitapple · macosEPSS 0.16%via NVD
CVE-2026-84626Low· 3.3
1w ago

An information disclosure issue was addressed with improved state management

An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchO…

▾ Sunlitapple · ipadosEPSS 0.15%via NVD
CVE-2026-65371Low· 3.3
1w ago

This issue was addressed with improved redaction of sensitive information

This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An app may be able to disclose kern…

▾ Sunlitapple · ipadosEPSS 0.15%via NVD
CVE-2026-64761High· 7.5
1w ago

A privacy issue was addressed with improved handling of user preferences

A privacy issue was addressed with improved handling of user preferences. This issue is fixed in iOS 27 and iPadOS 27. An app may be able to identify what other apps a user has installed.

▾ Twilightapple · ipadosEPSS 0.34%via NVD
CVE-2026-43687Medium· 6.5PoC
1w ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Connecting to a malicious NFS server …

▾ Twilightapple · ipadosEPSS 0.44%via NVD
CVE-2026-43664Medium· 5.5
1w ago

This issue was addressed with improved data protection

This issue was addressed with improved data protection. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, watchOS 27. An app may be able to access …

▾ Sunlitapple · ipadosEPSS 0.16%via NVD
CVE-2026-86895High· 7.5
1w ago

An information disclosure issue was addressed with improved state management

An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 27 and iPadOS 27, tvOS 27, visionOS 27, watchOS 27. A local app may be able to read a persistent account identifier.

▾ Twilightapple · ipadosEPSS 0.47%via NVD
CVE-2026-86883Medium· 5.5
1w ago

A privacy issue was addressed with improved handling of files

A privacy issue was addressed with improved handling of files. This issue is fixed in iOS 27 and iPadOS 27, visionOS 27. An app may be able to access sensitive user data.

▾ Sunlitapple · ipadosEPSS 0.15%via NVD
CVE-2026-90811Low· 3.3PoC
1w ago

A weakness has been identified in cosmicstack-labs mercury-agent up to 1.2.0

A weakness has been identified in cosmicstack-labs mercury-agent up to 1.2.0. This affects the function PermissionManager.checkShellCommand of the file mercury-agent/src/capabilities/permissions.ts of the component Shell Permission Manif…

▾ Twilightcosmicstack-labs · mercury-agentEPSS 0.15%via NVD
CVE-2026-90895High· 8.4
1w ago

Affected versions of MISP’s interactive CLI shell implement access control independently from the normal web application, causing several authorization inconsistencies. The patch shows that CLI access could differ from the web applicat…

Affected versions of MISP’s interactive CLI shell implement access control independently from the normal web application, causing several authorization inconsistencies. The patch shows that CLI access could differ from the web applicat…

▾ TwilightMISP · MISPEPSS 0.15%via NVD
CVE-2026-85188Medium· 6.9
1w ago

Joomla Extension - regularlabs.com - Database data disclosure in Advanced Module Manager (Free, Pro) < 12.1.0, Conditional Content (Free, Pro) < 8.0.0, Content Templater (Pro) < 14.2.0, ReReplacer (Pro) < 16.2.0 for Joomla - The Conditio…

Joomla Extension - regularlabs.com - Database data disclosure in Advanced Module Manager (Free, Pro) < 12.1.0, Conditional Content (Free, Pro) < 8.0.0, Content Templater (Pro) < 14.2.0, ReReplacer (Pro) < 16.2.0 for Joomla - The Conditio…

▾ Sunlitregularlabs.com · plg_system_advancedmodulesEPSS 0.37%via NVD
CVE-2026-90936Medium· 4.3PoC
1w ago

Froxlor before 2.3.7 fails to properly scope sender alias lookups to the current customer in customer_email.php

Froxlor before 2.3.7 fails to properly scope sender alias lookups to the current customer in customer_email.php. Authenticated attackers can enumerate global sender alias IDs and read other customers' allowed sender values by supplying a…

▾ Twilightfroxlor · froxlorEPSS 0.31%via NVD
CVE-2026-73178High· 7.5
1w ago

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Syncope. An administrator with adequate entitlements can get access via REST to the list of existing Access Tokens, including their signed JWT body. Thes…

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Syncope. An administrator with adequate entitlements can get access via REST to the list of existing Access Tokens, including their signed JWT body. Thes…

▾ TwilightApache Software Foundation · org.apache.syncope.core:syncope-core-provisioning-javaEPSS 0.43%via NVD
CVE-2026-84179Medium· 6.5
1w ago

Description getTopologyPageInfo merged the Nimbus daemon configuration with the topology's own configuration and returned the result without redaction in the topology_conf field of TopologyPageInfo

Description getTopologyPageInfo merged the Nimbus daemon configuration with the topology's own configuration and returned the result without redaction in the topology_conf field of TopologyPageInfo. The Storm UI copied that value verb…

▾ SunlitApache Software Foundation · org.apache.storm:storm-serverEPSS 0.43%via NVD
CVE-2026-54529Medium· 5.3
1w ago

SQLAdmin is a flexible Admin interface for SQLAlchemy models

SQLAdmin is a flexible Admin interface for SQLAlchemy models. Prior to 0.27.1, ModelView.sort_query in sqladmin/models.py accepts the attacker-controlled sortBy list-view query parameter without enforcing the configured column_sortable_l…

▾ Sunlitsmithyhq · sqladminEPSS 0.38%via NVD
CVE-2026-54150Medium· 6.9
1w ago

next-video is a library for adding video to Next.js applications

next-video is a library for adding video to Next.js applications. Prior to 2.8.1, the GET endpoint exported by next-video/request-handler and commonly mounted at /api/video accepts an unauthenticated url query parameter, while src/utils/…

▾ Sunlitmuxinc · next-videoEPSS 0.42%via NVD
CVE-2026-56839High· 7.3PoC
1w ago

PraisonAI is a multi-agent teams system

PraisonAI is a multi-agent teams system. Prior to 4.6.59, the CODE_TOOLS wrappers keep _workspace_root as None and pass workspace=None to read_file, search_replace, and apply_diff helpers that enforce path containment only for a truthy w…

▾ MidnightMervinPraison · PraisonAIEPSS 0.38%via NVD
CVE-2026-50157Medium· 6.5
1w ago

Auth0 Symfony is a Symfony SDK for Auth0 Authentication and Management APIs

Auth0 Symfony is a Symfony SDK for Auth0 Authentication and Management APIs. From 5.0.0-BETA0 until 5.9.0, the Authorizer::authenticate() and Authorizer::supports() paths in the Authorizer security authenticator may accept OAuth 2.0 bear…

▾ Sunlitauth0 · symfonyEPSS 0.51%via NVD
CVE-2026-47701High· 7.7
1w ago

The OpenTelemetry Operator is a Kubernetes Operator for the OpenTelemetry Collector

The OpenTelemetry Operator is a Kubernetes Operator for the OpenTelemetry Collector. Prior to 0.152.0, cmd/otel-allocator TargetAllocator instances with targetAllocator.prometheusCR.enabled set to true preserve a selected ServiceMonitor …

▾ Twilightopen-telemetry · opentelemetry-operatorEPSS 0.46%via NVD
CVE-2026-55837Medium· 6.8PoC
1w ago

dbt-mcp is a Model Context Protocol server for interacting with dbt

dbt-mcp is a Model Context Protocol server for interacting with dbt. Prior to 1.20.0, the local OAuth helper in src/dbt_mcp/oauth/fastapi_app.py exposes GET /dbt_platform_context without authentication or Host validation after a user com…

▾ Twilightdbt-labs · dbt-mcpEPSS 0.27%via NVD
CVE-2026-90503Low· 2.3
2w ago

A flaw has been found in Chengdu Qilu Technology Ludashi 6.1026.4715.714

A flaw has been found in Chengdu Qilu Technology Ludashi 6.1026.4715.714. The affected element is the function sub_11008 in the library ComputerZ_x64.sys. Executing a manipulation of the argument PhysicalAddress can lead to information d…

▾ SunlitChengdu Qilu Technology · LudashiEPSS 0.16%via NVD
CVE-2026-88995Medium· 5.3
2w ago

The Bookit — Booking & Appointment Calendar WordPress plugin before 2.6.0.1 does not properly restrict the data returned by an availability-check request, allowing unauthenticated users to retrieve other customers' appointment details, i…

The Bookit — Booking & Appointment Calendar WordPress plugin before 2.6.0.1 does not properly restrict the data returned by an availability-check request, allowing unauthenticated users to retrieve other customers' appointment details, i…

▾ SunlitEPSS 0.34%via NVD
CVE-2026-86407Low· 3.7
2w ago

The User Registration & Membership WordPress plugin before 5.2.8 does not verify that the visitor requesting its membership confirmation page owns the account named in the request, nor that any registration or purchase has taken place, …

The User Registration & Membership WordPress plugin before 5.2.8 does not verify that the visitor requesting its membership confirmation page owns the account named in the request, nor that any registration or purchase has taken place, …

▾ SunlitEPSS 0.28%via NVD
CVE-2026-77773Medium· 5.3
2w ago

The Contact Form to Chat Apps | Click to Chat to Order WordPress plugin before 2.15.8 does not perform any capability, nonce or session check on one of its public AJAX actions, allowing unauthenticated users to read the submitted entrie…

The Contact Form to Chat Apps | Click to Chat to Order WordPress plugin before 2.15.8 does not perform any capability, nonce or session check on one of its public AJAX actions, allowing unauthenticated users to read the submitted entrie…

▾ SunlitEPSS 0.34%via NVD
CVE-2026-90539Medium· 5.3
2w ago

WWBN AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a missing authentication vulnerability in the plugin/TopMenu/menuItems.json.php endpoint that allows unauthenticated attackers to read inactive admin menu items…

WWBN AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a missing authentication vulnerability in the plugin/TopMenu/menuItems.json.php endpoint that allows unauthenticated attackers to read inactive admin menu items…

▾ SunlitWWBN · AVideoEPSS 0.41%via NVD
CWE-200 vulnerabilities (CVEs) — page 8 · VulnSea