VulnSea

CWE-20

CVEs classified under CWE-20, newest first.

653 CVEsRSS

CVE-2026-58744High· 7.8
1w ago

In multiple locations, there is a possible escalation of privilege due to improper input validation

In multiple locations, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for expl…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-55317Medium· 6.7
1w ago

In printf of printf.c, there is a possible out-of-bounds write due to improper input validation

In printf of printf.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-0199High· 7.8
1w ago

In gf_ta_test_set_config of gf_ta_test.c, there is a possible out-of-bounds write due to improper input validation

In gf_ta_test_set_config of gf_ta_test.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not …

▾ Twilightgoogle · androidEPSS 0.07%via NVD
CVE-2026-55306High· 7.5
1w ago

In Cellular Modem, there is a possible denial of service due to improper input validation

In Cellular Modem, there is a possible denial of service due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.35%via NVD
CVE-2026-55332Medium· 6.7
1w ago

In multiple locations, there is a possible out-of-bounds write due to improper input validation

In multiple locations, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56907Medium· 6.7
1w ago

In VPU, there is a possible shared memory overwrite due to improper input validation

In VPU, there is a possible shared memory overwrite due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56932Medium· 6.7
1w ago

In Trusted Execution Environment, there is a possible memory corruption due to improper input validation

In Trusted Execution Environment, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploi…

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-56950Medium· 4.4
1w ago

In validate_ns_buf of mbu_class.rs, there is a possible information disclosure due to improper input validation

In validate_ns_buf of mbu_class.rs, there is a possible information disclosure due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for …

▾ Sunlitgoogle · androidEPSS 0.09%via NVD
CVE-2026-56975Medium· 6.5
1w ago

In Cellular Modem, there is a possible denial of service due to improper input validation

In Cellular Modem, there is a possible denial of service due to improper input validation. This could lead to remote (proximal/adjacent) denial of service with no additional execution privileges needed. User interaction is not needed for…

▾ Sunlitgoogle · androidEPSS 0.15%via NVD
CVE-2026-56974High· 8.8
1w ago

In Start of AudioRtpPayloadEncoderNode.cpp, there is a possible out-of-bounds write due to improper input validation

In Start of AudioRtpPayloadEncoderNode.cpp, there is a possible out-of-bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for…

▾ Twilightgoogle · androidEPSS 0.37%via NVD
CVE-2026-57008High· 7.5
1w ago

In Modem, there is a possible information disclosure due to improper input validation

In Modem, there is a possible information disclosure due to improper input validation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.33%via NVD
CVE-2026-58683High· 8.8
1w ago

In IP Multimedia Subsystem, there is a possible out-of-bounds write due to improper input validation

In IP Multimedia Subsystem, there is a possible out-of-bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.37%via NVD
CVE-2026-58691High· 8.4
1w ago

In FsmReleaseKey of fsm.c, there is a possible permission bypass due to improper input validation

In FsmReleaseKey of fsm.c, there is a possible permission bypass due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploi…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-58718Medium· 6.7
1w ago

In smmu_detach_dev_nested of arm-smmu-v3.c, there is a possible escalation of privilege due to improper input validation

In smmu_detach_dev_nested of arm-smmu-v3.c, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not n…

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2025-66974High· 7.5
1w ago

An issue in Prolink 13A Smart Plug Model Version: DS-3202M-UKv3 Wi-Fi and Application Version mEzee 2.6.7 allows attackers to cause a Denial of Service (DoS) or connection to an attacker-controlled device via supplying a crafted packet d…

An issue in Prolink 13A Smart Plug Model Version: DS-3202M-UKv3 Wi-Fi and Application Version mEzee 2.6.7 allows attackers to cause a Denial of Service (DoS) or connection to an attacker-controlled device via supplying a crafted packet d…

▾ TwilightEPSS 0.37%via NVD
CVE-2026-91932High· 8.5PoC
1w ago

Flowise before 3.1.4 contains a validation bypass vulnerability in MCP server configuration allowing authenticated attackers remote code execution through an unvalidated cwd parameter

Flowise before 3.1.4 contains a validation bypass vulnerability in MCP server configuration allowing authenticated attackers remote code execution through an unvalidated cwd parameter. Attackers can bypass path validation using clean fil…

▾ MidnightFlowiseAI · FlowiseEPSS 0.73%via NVD
CVE-2026-91842Medium· 4.1PoC
1w ago

A vulnerability has been found in OpenBankProject OBP-API up to 1.10.1

A vulnerability has been found in OpenBankProject OBP-API up to 1.10.1. This impacts the function KryoInjection.invert of the file obp-api/src/main/scala/code/api/cache/Redis.scala of the component Kryo Handler. Such manipulation leads t…

▾ TwilightOpenBankProject · OBP-APIEPSS 0.38%via NVD
CVE-2026-91819Medium· 6.9
1w ago

Affected versions of MISP rely on CakePHP request-method override processing in a way that can disable CSRF and form-security validation. CakePHP honors a _method field or X-HTTP-Method-Override header by rewriting the effective request…

Affected versions of MISP rely on CakePHP request-method override processing in a way that can disable CSRF and form-security validation. CakePHP honors a _method field or X-HTTP-Method-Override header by rewriting the effective request…

▾ SunlitMISP · MISPEPSS 0.20%via NVD
CVE-2026-88261Medium· 5.1
1w ago

Improper input validation vulnerability in bizwell xClick allows Stored XSS. This issue affects xClick: R2, R3, and R3.1.

Improper input validation vulnerability in bizwell xClick allows Stored XSS. This issue affects xClick: R2, R3, and R3.1.

▾ Sunlitbizwell · xClickEPSS 0.38%via NVD
CVE-2026-56831Medium· 6.5PoC
1w ago

Shopper is a Headless e-commerce Admin Panel

Shopper is a Headless e-commerce Admin Panel. Prior to 2.9.0, the /cpanel/discounts administrative interface accepts negative fixed_amount discount values, persists them in sh_discounts, and passes them through vendor/shopper/cart/src/Di…

▾ Twilightshopperlabs · shopperEPSS 0.43%via NVD
CVE-2026-54254Medium· 5.9
1w ago

Cyberdrop-DL is a bulk asynchronous downloader for multiple file hosts

Cyberdrop-DL is a bulk asynchronous downloader for multiple file hosts. From 8.5.0 until 9.14.0, the Pixeldrain crawler uses substring host matching instead of requiring the input host to be an exact member of SUPPORTED_DOMAINS, and then…

▾ SunlitCyberdrop-DL · cyberdrop-dlEPSS 0.53%via NVD
CVE-2026-44300High· 8.8
1w ago

OpenCost provides cost monitoring for Kubernetes workloads and cloud costs

OpenCost provides cost monitoring for Kubernetes workloads and cloud costs. Prior to 1.121.0, the POST /serviceKey endpoint in pkg/costmodel/router.go allows a network client to invoke AddServiceKey without mandatory authentication and s…

▾ Twilightopencost · opencostEPSS 0.75%via NVD
CVE-2026-47780Medium· 6.9PoC
1w ago

free5GC is an open-source implementation of the 5G core network

free5GC is an open-source implementation of the 5G core network. In 4.2.3 and earlier, HandleCreateEeSubscriptions and HandleQueryeesubscriptions in free5gc/udr internal/sbi/api_datarepository.go validate the ueId path value with a regul…

▾ Twilightfree5gc · free5gcEPSS 0.54%via NVD
CVE-2026-44778Low· 2.9⚖ disputed
1w ago

Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF

Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF. From 0.28.0 until 0.53.1, the USDT note parser in pkg/uprobetracer/usdt.go can allow an unprivi…

▾ Sunlitinspektor-gadget · inspektor-gadgetEPSS 0.63%via NVD
CVE-2026-86879Medium· 6.5
1w ago

A denial-of-service issue was addressed with improved input validation

A denial-of-service issue was addressed with improved input validation. This issue is fixed in iOS 27 and iPadOS 27. A remote attacker may be able to cause a denial-of-service.

▾ Sunlitapple · ipadosEPSS 0.39%via NVD
CVE-2026-43692High· 8.8
1w ago

A validation issue was addressed with improved input sanitization

A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A remote user may cause an unexpected app termination or arbitrary code execution.

▾ Twilightapple · macosEPSS 0.70%via NVD
CVE-2026-86885Medium· 6.5
1w ago

An input validation issue was addressed with improved input validation

An input validation issue was addressed with improved input validation. This issue is fixed in iOS 27 and iPadOS 27. An attacker in radio range may be able to cause unexpected system termination.

▾ Sunlitapple · ipadosEPSS 0.25%via NVD
CVE-2026-86924Medium· 5.5
1w ago

A memory corruption issue was addressed with improved input validation

A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Tahoe 26.7. Connecting a malicious accessory may cause unexpected …

▾ Sunlitapple · ipadosEPSS 0.16%via NVD
CVE-2026-84538Medium· 6.5
1w ago

A denial-of-service issue was addressed with improved input validation

A denial-of-service issue was addressed with improved input validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A remote attacker may be able to cause a denial-of-service.

▾ Sunlitapple · macosEPSS 0.50%via NVD
CVE-2026-28960High· 7.5
1w ago

A denial-of-service issue was addressed with improved validation

A denial-of-service issue was addressed with improved validation. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10. A remote attacker may be able to cause a denial-of-service.

▾ Twilightapple · ipadosEPSS 0.51%via NVD
CWE-20 vulnerabilities (CVEs) — page 4 · VulnSea