VulnSea

CWE-20

CVEs classified under CWE-20, newest first.

655 CVEsRSS

CVE-2026-21552High· 7.5
1mo ago

In modem, there is a possible improper input validation

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

▾ TwilightEPSS 0.71%via NVD
CVE-2026-21551High· 7.5
1mo ago

In modem, there is a possible improper input validation

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

▾ TwilightEPSS 0.71%via NVD
CVE-2026-21550High· 7.5
1mo ago

In modem, there is a possible improper input validation

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

▾ TwilightEPSS 0.71%via NVD
CVE-2026-21549High· 7.5
1mo ago

In modem, there is a possible improper input validation

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

▾ TwilightEPSS 0.71%via NVD
CVE-2026-21548High· 7.5
1mo ago

In nr modem, there is a possible improper input validation

In nr modem, there is a possible improper input validation. This could lead to remote denial of service with System execution privileges needed.

▾ TwilightEPSS 0.71%via NVD
CVE-2026-69198Medium
1mo ago

ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript

ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript. From 10.1.1 until 10.2.2, every special-use classification method is built on isInSubnet, which short-circuits to false whenever the address's ow…

▾ Sunlitip-address · ip-addressEPSS 0.48%via NVD
CVE-2026-69192High· 8.6
1mo ago

ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript

ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript. Prior to 10.3.1, Address4 accepts an octet written with a leading zero and decodes it as decimal, while the WHATWG URL host parser, inet_aton, an…

▾ TwilightRed Hat · Red Hat Enterprise Linux AppStream (v. 8)EPSS 0.66%via NVD
CVE-2026-69185High· 7.5
1mo ago

Socket.IO enables bidirectional and low-latency communication for every platform

Socket.IO enables bidirectional and low-latency communication for every platform. Prior to 4.2.7, 3.4.5, and 3.3.6, a specially crafted Socket.IO packet can make the server wait for a large number of binary attachments and buffer them, w…

▾ Twilightsocket.io-parser · socket.io-parserEPSS 0.63%via NVD
CVE-2026-59650High· 7.4
1mo ago

In Bouncy Castle for Java before 1.85, MTI/A0 DH agreement exponentiates unvalidated peer value

In Bouncy Castle for Java before 1.85, MTI/A0 DH agreement exponentiates unvalidated peer value. This issue also affects Bouncy Castle for Java LTS before 2.73.12.

▾ TwilightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.45%via NVD
CVE-2025-71399High· 8.6
1mo ago

Better Auth relies on better-call, which uses the rou3 router library

Better Auth relies on better-call, which uses the rou3 router library. In affected versions of rou3, paths are normalized by removing empty segments, so /path, //path, and ///path resolve to the same route. In Better Auth versions prior …

▾ TwilightEPSS 0.52%via NVD
CVE-2026-67330Critical· 9.9
1mo ago

@better-auth/scim (a better-auth plugin) versions >= 1.4.0-beta.27 through <= 1.6.21 and >= 1.7.0-beta.0 through <= 1.7.0-beta.9 contain an authorization bypass

@better-auth/scim (a better-auth plugin) versions >= 1.4.0-beta.27 through <= 1.6.21 and >= 1.7.0-beta.0 through <= 1.7.0-beta.9 contain an authorization bypass. SCIM token issuance did not reject provider IDs already used by existing SS…

▾ MidnightEPSS 0.60%via NVD
CVE-2026-67326High· 7.0
1mo ago

GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config

GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config. Attackers can inject newlines to create a forged [core] se…

▾ Twilightgitpython_project · gitpythonEPSS 0.25%via NVD
CVE-2026-67296High· 7.5
1mo ago

FreeRDP before 3.29.0 contains a denial of service vulnerability in the RDPEI server channel handler that fails to validate maximum PDU body length before stream allocation

FreeRDP before 3.29.0 contains a denial of service vulnerability in the RDPEI server channel handler that fails to validate maximum PDU body length before stream allocation. A malicious RDP client can send a header-only RDPEI message wit…

▾ Twilightfreerdp · freerdpEPSS 0.52%via NVD
CVE-2026-18217Low· 3.4
1mo ago

A flaw was found in the SAML protocol implementation of Keycloak, an open-source identity and access management solution

A flaw was found in the SAML protocol implementation of Keycloak, an open-source identity and access management solution. The issue occurs when Keycloak handles SAML authentication requests using the HTTP-Redirect binding. If a client is…

▾ Sunlitredhat · build_of_keycloakEPSS 0.33%via NVD
CVE-2026-18211Medium· 4.2
1mo ago

A flaw was found in the secure-client-uris client policy executor within Keycloak core services

A flaw was found in the secure-client-uris client policy executor within Keycloak core services. This component is responsible for enforcing security requirements on client configurations, such as requiring encrypted connections for redi…

▾ Sunlitredhat · build_of_keycloakEPSS 0.31%via NVD
CVE-2026-18206Low· 3.7
1mo ago

A flaw was found in the keycloak-services component of Keycloak, which provides identity and access management services

A flaw was found in the keycloak-services component of Keycloak, which provides identity and access management services. The issue occurs when a realm administrator uses a wildcard domain (like *.example.com) to restrict which hosts can …

▾ Sunlitredhat · build_of_keycloakEPSS 0.32%via NVD
CVE-2026-54909Medium· 5.3
1mo ago

Pion STUN vulnerable to remote denial of service via panic while parsing a malformed XOR-MAPPED-ADDRESS attribute

Pion STUN vulnerable to remote denial of service via panic while parsing a malformed XOR-MAPPED-ADDRESS attribute

▾ Sunlitpion · github.com/pion/stun/v3EPSS 0.64%via OSV
CVE-2026-53551Medium
1mo ago

free5GC is an open-source implementation of the 5G core network

free5GC is an open-source implementation of the 5G core network. Prior to 1.4.5, the free5GC AUSF (Authentication Server Function) does not validate the supiOrSuci field in UE authentication requests. Null bytes (\x00) and other control …

▾ Sunlitfree5gc · github.com/free5gc/free5gcEPSS 0.74%via NVD
CVE-2026-53503High· 7.5
1mo ago

Thumbor is an open-source photo thumbnail service by globo.com

Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, Thumbor's filters:convolution(<matrix>, <columns>, <should_normalize>) filter passes the user-controlled <columns> value to a C extension (thumbor/ext/filter…

▾ Twilightthumbor · thumborEPSS 0.75%via NVD
CVE-2026-52856High· 7.5
1mo ago

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.13.0, a malformed packet received during the SFTP connection handshake causes a Go panic. This issue is fixed in version 1.13.0.

▾ Twilightpterodactyl · github.com/pterodactyl/wingsEPSS 0.61%via NVD
CVE-2026-65834Medium· 6.8
1mo ago

Capsule: CapsuleConfiguration NodeMetadata regex fields lack webhook validation, allowing MustCompile panic on all Node admission requests

Capsule: CapsuleConfiguration NodeMetadata regex fields lack webhook validation, allowing MustCompile panic on all Node admission requests

▾ Sunlitprojectcapsule · github.com/projectcapsule/capsuleEPSS 0.47%via GHSA
CVE-2026-17713Critical· 9.6
1mo ago

Insufficient validation of untrusted input in Accessibility in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML …

Insufficient validation of untrusted input in Accessibility in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML …

▾ Midnightgoogle · chromeEPSS 0.34%via NVD
CVE-2026-17909Medium· 5.3
1mo ago

Insufficient validation of untrusted input in Isolated Web Apps in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via malicious network traffic

Insufficient validation of untrusted input in Isolated Web Apps in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via malicious network traffic. (Chromium security severity: Low)

▾ Sunlitgoogle · chromeEPSS 0.27%via NVD
CVE-2026-59881Medium· 5.3
1mo ago

aiohttp: AIOHTTP: Denial of Service via unnegotiated WebSocket compression (CVE-2026-59881)

A flaw was found in AIOHTTP. The WebSocket client in AIOHTTP processes compressed data frames even when the compression mechanism, known as permessage-deflate, has not been properly negotiated. A malicious server can exploit this by sendin…

▾ SunlitRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.52%via CSAF
CVE-2026-17690Medium· 6.5
1mo ago

Insufficient validation of untrusted input in PDF in Google Chrome on Android prior to 151.0.7922.72 allowed a local attacker to leak cross-origin data via a crafted HTML page

Insufficient validation of untrusted input in PDF in Google Chrome on Android prior to 151.0.7922.72 allowed a local attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)

▾ Sunlitgoogle · chromeEPSS 0.25%via NVD
CVE-2026-17684Critical· 9.6
1mo ago

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML pag…

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML pag…

▾ Midnightgoogle · chromeEPSS 0.34%via NVD
CVE-2026-17681Critical· 9.6
1mo ago

Insufficient validation of untrusted input in Web Authentication in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted …

Insufficient validation of untrusted input in Web Authentication in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted …

▾ Midnightgoogle · chromeEPSS 0.39%via NVD
CVE-2026-17679Medium· 6.5
1mo ago

Insufficient validation of untrusted input in Print Preview in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page

Insufficient validation of untrusted input in Print Preview in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security …

▾ Sunlitgoogle · chromeEPSS 0.32%via NVD
CVE-2026-17672Critical· 9.6
1mo ago

Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page

Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromiu…

▾ Midnightgoogle · chromeEPSS 0.34%via NVD
CVE-2026-17671Critical· 9.6
1mo ago

Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page

Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium sec…

▾ Midnightgoogle · chromeEPSS 0.34%via NVD
CWE-20 vulnerabilities (CVEs) — page 12 · VulnSea