VulnSea

CWE-20

CVEs classified under CWE-20, newest first.

556 CVEsRSS

CVE-2026-86475Medium· 5.3PoC
5d ago

The Appointment Hour Booking WordPress plugin before 1.5.95 does not check every appointment in a booking submission against the capacity configured for its own slot, allowing unauthenticated visitors to take slots that are already fully…

The Appointment Hour Booking WordPress plugin before 1.5.95 does not check every appointment in a booking submission against the capacity configured for its own slot, allowing unauthenticated visitors to take slots that are already fully…

TwilightEPSS 0.26%via NVD
CVE-2026-91738Critical· 9.6
6d ago

Improper input validation in ANGLE in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page

Improper input validation in ANGLE in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)

Midnightgoogle · chromeEPSS 0.34%via NVD
CVE-2026-19655Medium· 6.5
6d ago

On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay/snooping configured with the information option (Option 82), or with the DHCP server configured with match criteria based on the information o…

On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay/snooping configured with the information option (Option 82), or with the DHCP server configured with match criteria based on the information o…

SunlitArista Networks · EOSEPSS 0.19%via NVD
CVE-2026-87233High· 7.6
6d ago

Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security)

Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.26.0.000. Easily exploitable vulnerability allows high privileged attacker with …

Twilightoracle · hyperion_financial_managementEPSS 0.29%via NVD
CVE-2026-79410High· 8.1PoC
6d ago

Improper validation of the quantity parameter in the add-to-cart path of Webkul Bagisto v2.4.9 allows authenticated attackers to reduce their order total below the legitimate price of shippable goods.

Improper validation of the quantity parameter in the add-to-cart path of Webkul Bagisto v2.4.9 allows authenticated attackers to reduce their order total below the legitimate price of shippable goods.

MidnightEPSS 0.34%via NVD
CVE-2026-58744High· 7.8
6d ago

In multiple locations, there is a possible escalation of privilege due to improper input validation

In multiple locations, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for expl…

Twilightgoogle · androidEPSS 0.07%via NVD
CVE-2026-55317Medium· 6.7
6d ago

In printf of printf.c, there is a possible out-of-bounds write due to improper input validation

In printf of printf.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-0199High· 7.8
6d ago

In gf_ta_test_set_config of gf_ta_test.c, there is a possible out-of-bounds write due to improper input validation

In gf_ta_test_set_config of gf_ta_test.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not …

Twilightgoogle · androidEPSS 0.07%via NVD
CVE-2026-55306High· 7.5
6d ago

In Cellular Modem, there is a possible denial of service due to improper input validation

In Cellular Modem, there is a possible denial of service due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

Twilightgoogle · androidEPSS 0.27%via NVD
CVE-2026-55332Medium· 6.7
6d ago

In multiple locations, there is a possible out-of-bounds write due to improper input validation

In multiple locations, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-56907Medium· 6.7
6d ago

In VPU, there is a possible shared memory overwrite due to improper input validation

In VPU, there is a possible shared memory overwrite due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-56932Medium· 6.7
6d ago

In Trusted Execution Environment, there is a possible memory corruption due to improper input validation

In Trusted Execution Environment, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploi…

Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-56950Medium· 4.4
6d ago

In validate_ns_buf of mbu_class.rs, there is a possible information disclosure due to improper input validation

In validate_ns_buf of mbu_class.rs, there is a possible information disclosure due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for …

Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-56975Medium· 6.5
6d ago

In Cellular Modem, there is a possible denial of service due to improper input validation

In Cellular Modem, there is a possible denial of service due to improper input validation. This could lead to remote (proximal/adjacent) denial of service with no additional execution privileges needed. User interaction is not needed for…

Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56974High· 8.8
6d ago

In Start of AudioRtpPayloadEncoderNode.cpp, there is a possible out-of-bounds write due to improper input validation

In Start of AudioRtpPayloadEncoderNode.cpp, there is a possible out-of-bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for…

Twilightgoogle · androidEPSS 0.28%via NVD
CVE-2026-57008High· 7.5
6d ago

In Modem, there is a possible information disclosure due to improper input validation

In Modem, there is a possible information disclosure due to improper input validation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

Twilightgoogle · androidEPSS 0.26%via NVD
CVE-2026-58683High· 8.8
6d ago

In IP Multimedia Subsystem, there is a possible out-of-bounds write due to improper input validation

In IP Multimedia Subsystem, there is a possible out-of-bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

Twilightgoogle · androidEPSS 0.28%via NVD
CVE-2026-58691High· 8.4
6d ago

In FsmReleaseKey of fsm.c, there is a possible permission bypass due to improper input validation

In FsmReleaseKey of fsm.c, there is a possible permission bypass due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploi…

Twilightgoogle · androidEPSS 0.08%via NVD
CVE-2026-58718Medium· 6.7
6d ago

In smmu_detach_dev_nested of arm-smmu-v3.c, there is a possible escalation of privilege due to improper input validation

In smmu_detach_dev_nested of arm-smmu-v3.c, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not n…

Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2025-66974High· 7.5
6d ago

An issue in Prolink 13A Smart Plug Model Version: DS-3202M-UKv3 Wi-Fi and Application Version mEzee 2.6.7 allows attackers to cause a Denial of Service (DoS) or connection to an attacker-controlled device via supplying a crafted packet d…

An issue in Prolink 13A Smart Plug Model Version: DS-3202M-UKv3 Wi-Fi and Application Version mEzee 2.6.7 allows attackers to cause a Denial of Service (DoS) or connection to an attacker-controlled device via supplying a crafted packet d…

TwilightEPSS 0.37%via NVD
CVE-2026-91932High· 8.5PoC
6d ago

Flowise before 3.1.4 contains a validation bypass vulnerability in MCP server configuration allowing authenticated attackers remote code execution through an unvalidated cwd parameter

Flowise before 3.1.4 contains a validation bypass vulnerability in MCP server configuration allowing authenticated attackers remote code execution through an unvalidated cwd parameter. Attackers can bypass path validation using clean fil…

MidnightFlowiseAI · FlowiseEPSS 0.82%via NVD
CVE-2026-91842Medium· 4.1PoC
6d ago

A vulnerability has been found in OpenBankProject OBP-API up to 1.10.1

A vulnerability has been found in OpenBankProject OBP-API up to 1.10.1. This impacts the function KryoInjection.invert of the file obp-api/src/main/scala/code/api/cache/Redis.scala of the component Kryo Handler. Such manipulation leads t…

TwilightOpenBankProject · OBP-APIEPSS 0.37%via NVD
CVE-2026-91819Medium· 6.9
6d ago

Affected versions of MISP rely on CakePHP request-method override processing in a way that can disable CSRF and form-security validation. CakePHP honors a _method field or X-HTTP-Method-Override header by rewriting the effective request…

Affected versions of MISP rely on CakePHP request-method override processing in a way that can disable CSRF and form-security validation. CakePHP honors a _method field or X-HTTP-Method-Override header by rewriting the effective request…

SunlitMISP · MISPEPSS 0.16%via NVD
CVE-2026-88261Medium· 5.1
6d ago

Improper input validation vulnerability in bizwell xClick allows Stored XSS. This issue affects xClick: R2, R3, and R3.1.

Improper input validation vulnerability in bizwell xClick allows Stored XSS. This issue affects xClick: R2, R3, and R3.1.

Sunlitbizwell · xClickEPSS 0.22%via NVD
CVE-2026-56831Medium· 6.5PoC
6d ago

Shopper is a Headless e-commerce Admin Panel

Shopper is a Headless e-commerce Admin Panel. Prior to 2.9.0, the /cpanel/discounts administrative interface accepts negative fixed_amount discount values, persists them in sh_discounts, and passes them through vendor/shopper/cart/src/Di…

Twilightshopperlabs · shopperEPSS 0.41%via NVD
CVE-2026-54254Medium· 5.9
6d ago

Cyberdrop-DL is a bulk asynchronous downloader for multiple file hosts

Cyberdrop-DL is a bulk asynchronous downloader for multiple file hosts. From 8.5.0 until 9.14.0, the Pixeldrain crawler uses substring host matching instead of requiring the input host to be an exact member of SUPPORTED_DOMAINS, and then…

SunlitCyberdrop-DL · cyberdrop-dlEPSS 0.32%via NVD
CVE-2026-44300High· 8.8
6d ago

OpenCost provides cost monitoring for Kubernetes workloads and cloud costs

OpenCost provides cost monitoring for Kubernetes workloads and cloud costs. Prior to 1.121.0, the POST /serviceKey endpoint in pkg/costmodel/router.go allows a network client to invoke AddServiceKey without mandatory authentication and s…

Twilightopencost · opencostEPSS 0.41%via NVD
CVE-2026-47780Medium· 6.9PoC
6d ago

free5GC is an open-source implementation of the 5G core network

free5GC is an open-source implementation of the 5G core network. In 4.2.3 and earlier, HandleCreateEeSubscriptions and HandleQueryeesubscriptions in free5gc/udr internal/sbi/api_datarepository.go validate the ueId path value with a regul…

Twilightfree5gc · free5gcEPSS 0.40%via NVD
CVE-2026-44778Low· 2.9⚖ disputed
6d ago

Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF

Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF. From 0.28.0 until 0.53.1, the USDT note parser in pkg/uprobetracer/usdt.go can allow an unprivi…

Sunlitinspektor-gadget · inspektor-gadgetEPSS 0.46%via NVD
CVE-2026-86879Medium· 6.5
1w ago

A denial-of-service issue was addressed with improved input validation

A denial-of-service issue was addressed with improved input validation. This issue is fixed in iOS 27 and iPadOS 27. A remote attacker may be able to cause a denial-of-service.

Sunlitapple · ipadosEPSS 0.37%via NVD
CWE-20 vulnerabilities (CVEs) — page 2 · VulnSea