VulnSea

CWE-269

CVEs classified under CWE-269, newest first.

434 CVEsRSS

CVE-2026-94425High· 8.8
yesterday

A vulnerability was found in Moore Threads MTT S80 Driver Package 340.150

A vulnerability was found in Moore Threads MTT S80 Driver Package 340.150. The affected element is the function sub_140006F0C in the library mtdispkm64.sys of the component IOCTL Handler. The manipulation results in improper privilege ma…

TwilightMoore Threads · MTT S80 Driver Packagevia NVD
CVE-2026-48826High· 8.1
yesterday

HomeBox is a home inventory and organization system

HomeBox is a home inventory and organization system. Prior to 0.26.0, HandleWipeInventory in backend/app/api/handlers/v1/v1_ctrl_actions.go authorizes POST /v1/actions/wipe-inventory through the global ctx.User.IsOwner value instead of t…

Twilightsysadminsmedia · homeboxvia NVD
CVE-2025-71421High· 7.2
yesterday

UVdesk core-framework before 1.1.7 contains an improper privilege management vulnerability in the editAgent endpoint that allows agents with agent-management privilege to escalate their own role to administrator

UVdesk core-framework before 1.1.7 contains an improper privilege management vulnerability in the editAgent endpoint that allows agents with agent-management privilege to escalate their own role to administrator. Attackers can submit the…

Twilightuvdesk · core-frameworkvia NVD
CVE-2026-94381High· 8.7
yesterday

MISP has a security issue that can let a user gain more access than their API key is supposed to allow. A read-only API key should only let someone view information

MISP has a security issue that can let a user gain more access than their API key is supposed to allow. A read-only API key should only let someone view information. However, after logging in with such a key, a specific MISP function co…

TwilightMISP · MISPvia NVD
CVE-2026-94048Medium· 6.6PoC
2d ago

A vulnerability was detected in CodeAstro QR Code Attendance Management System 1.0

A vulnerability was detected in CodeAstro QR Code Attendance Management System 1.0. This affects the function Save of the file app/Controllers/UserController.php. The manipulation of the argument role_id results in improper privilege man…

TwilightCodeAstro · QR Code Attendance Management SystemEPSS 0.23%via NVD
CVE-2026-94047Medium· 6.3
2d ago

A security vulnerability has been detected in samanhappy MCPHub up to 1.0.32

A security vulnerability has been detected in samanhappy MCPHub up to 1.0.32. The impacted element is the function importTemplate of the file src/services/templateService.ts of the component Template Import Endpoint. The manipulation lea…

Sunlitsamanhappy · MCPHubEPSS 0.41%via NVD
CVE-2026-86554Medium· 4.3
2d ago

SmartLife app dynamically generates brand‑new SmartLife application authentication parameters within its runtime process

SmartLife app dynamically generates brand‑new SmartLife application authentication parameters within its runtime process. With the obtained SmartLife application authentication parameters, attackers can directly invoke the backend interf…

SunlitZTE · SmartLifeEPSS 0.20%via NVD
CVE-2026-82842High· 8.1
2d ago

The SAML Single Sign On WordPress plugin before 6.0.0 does not honour the configured criterion for linking an incoming single sign-on identity to a WordPress account, always resolving the identity by login name whatever the site has cho…

The SAML Single Sign On WordPress plugin before 6.0.0 does not honour the configured criterion for linking an incoming single sign-on identity to a WordPress account, always resolving the identity by login name whatever the site has cho…

TwilightEPSS 0.22%via NVD
CVE-2026-93968Low· 3.8
2d ago

A vulnerability was determined in aiyiyi121 SxDevOps 1.0/1.1

A vulnerability was determined in aiyiyi121 SxDevOps 1.0/1.1. This affects the function update of the file backend/rbac/serializers.py of the component UserSerializer. Executing a manipulation can lead to improper privilege management. T…

Sunlitaiyiyi121 · SxDevOpsEPSS 0.26%via NVD
CVE-2026-87068Medium· 6.6
2d ago

The Forminator Forms WordPress plugin before 1.57.2.1 does not apply the role validation it enforces elsewhere when a registration form is nested inside an imported quiz, allowing a user who may import quizzes to publish a live, publicl…

The Forminator Forms WordPress plugin before 1.57.2.1 does not apply the role validation it enforces elsewhere when a registration form is nested inside an imported quiz, allowing a user who may import quizzes to publish a live, publicl…

SunlitEPSS 0.21%via NVD
CVE-2026-92541High· 7.2
2d ago

The Import and export users and customers WordPress plugin before 2.5.2 does not enforce the promote_users capability in its front-end import functionality, allowing users with only the create_users capability to change the role of exist…

The Import and export users and customers WordPress plugin before 2.5.2 does not enforce the promote_users capability in its front-end import functionality, allowing users with only the create_users capability to change the role of exist…

TwilightEPSS 0.26%via NVD
CVE-2026-92540High· 7.2
2d ago

The Import and export users and customers WordPress plugin before 2.5.2 does not correctly enforce the promote_users capability when assigning roles during a CSV import, allowing users with only the create_users capability to create new …

The Import and export users and customers WordPress plugin before 2.5.2 does not correctly enforce the promote_users capability when assigning roles during a CSV import, allowing users with only the create_users capability to create new …

TwilightEPSS 0.26%via NVD
CVE-2026-86553High· 8.8
2d ago

SmartLife app dynamically generates fresh SmartLife application authentication parameters inside its runtime process

SmartLife app dynamically generates fresh SmartLife application authentication parameters inside its runtime process. Using the acquired SmartLife application authentication parameters, an attacker can directly call the backend interface…

TwilightZTE · SmartLifeEPSS 0.45%via NVD
CVE-2026-86552Medium· 5.4PoC
2d ago

SmartLife app dynamically generates brand‑new SmartLife application authentication parameters at runtime

SmartLife app dynamically generates brand‑new SmartLife application authentication parameters at runtime. With the acquired SmartLife application authentication credentials, an attacker can directly complete registration using any arbitr…

TwilightZTE · SmartLifeEPSS 0.26%via NVD
CVE-2026-76554High· 7.2
3d ago

The WP Import Export Lite WordPress plugin before 3.9.35 does not verify that the user running an import is permitted to create or modify user accounts and assign roles, allowing users granted a delegated WP Import Export Lite WordPress …

The WP Import Export Lite WordPress plugin before 3.9.35 does not verify that the user running an import is permitted to create or modify user accounts and assign roles, allowing users granted a delegated WP Import Export Lite WordPress …

TwilightEPSS 0.26%via NVD
CVE-2026-86814High· 8.1
3d ago

The UsersWP WordPress plugin before 1.5.10 does not verify that a social login provider has confirmed ownership of an email address before using it to resolve an existing account, allowing unauthenticated attackers to log in as any user…

The UsersWP WordPress plugin before 1.5.10 does not verify that a social login provider has confirmed ownership of an email address before using it to resolve an existing account, allowing unauthenticated attackers to log in as any user…

TwilightEPSS 0.23%via NVD
CVE-2026-84089High· 7.8
4d ago

IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.

IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.

TwilightIBM · Guardium Data ProtectionEPSS 0.11%via NVD
CVE-2026-84083High· 7.8
4d ago

IBM Guardium Data Protection 12.2 is vulnerable to local privilege escalation via the SUID-root nmap_wrapper binary on the Collector appliance

IBM Guardium Data Protection 12.2 is vulnerable to local privilege escalation via the SUID-root nmap_wrapper binary on the Collector appliance. A local attacker with low-privileged access to the Collector can exploit insufficient argumen…

TwilightIBM · Guardium Data ProtectionEPSS 0.11%via NVD
CVE-2026-82893High· 7.8
4d ago

IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.

IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.

TwilightIBM · Guardium Data ProtectionEPSS 0.11%via NVD
CVE-2026-61781Critical· 9.9
4d ago

pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID

pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, create_partition_time() reads the writable part_config.time_encoder text value and interpolates it without identifier quoting into a dyna…

Midnightpgpartman · pg_partmanEPSS 0.57%via NVD
CVE-2026-63349High· 7.0
4d ago

AnyIO is a high level asynchronous concurrency and networking framework that works on top of either Trio or asyncio

AnyIO is a high level asynchronous concurrency and networking framework that works on top of either Trio or asyncio. In 4.14.0, AnyIO accepts the POSIX extra_groups argument in anyio.run_process() and anyio.open_process(), but open_proce…

Twilightanyio · anyioEPSS 0.11%via NVD
CVE-2026-92619High· 7.2
4d ago

The Booking Calendar plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 11.8.2 via the `wpbc_ajax_option_save` AJAX action

The Booking Calendar plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 11.8.2 via the `wpbc_ajax_option_save` AJAX action. The vulnerability exists because the `handle_ajax_save()` function …

Twilightwpdevelop · Booking CalendarEPSS 0.37%via NVD
CVE-2026-81810High· 7.2
4d ago

The All-in-One WP Migration and Backup WordPress plugin before 7.111 does not perform any capability check on several of its AJAX actions, gating them only on an installation-wide secret which it discloses to any user permitted to export…

The All-in-One WP Migration and Backup WordPress plugin before 7.111 does not perform any capability check on several of its AJAX actions, gating them only on an installation-wide secret which it discloses to any user permitted to export…

TwilightEPSS 0.32%via NVD
CVE-2026-81445High· 7.2
5d ago

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper Privilege Management vulnerability

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper Privilege Management vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation o…

TwilightDell · OpenManage Server Administrator Managed Node (Patch) for WindowsEPSS 0.46%via NVD
CVE-2026-92958High· 8.5PoC
5d ago

vm2 through 3.11.6 contains a builtin-module denylist bypass in NodeVM

vm2 through 3.11.6 contains a builtin-module denylist bypass in NodeVM. When the embedder uses the builtin wildcard together with negative entries (e.g. require: { builtin: ['*', '-fs', '-child_process'] }), negative entries are matched …

Midnightpatriksimek · vm2EPSS 0.28%via NVD
CVE-2026-92957Critical· 9.9PoC
5d ago

vm2 through 3.11.6 does not normalize `node:`-prefixed builtin specifiers when evaluating user-supplied negative (deny) entries in a NodeVM wildcard require policy

vm2 through 3.11.6 does not normalize `node:`-prefixed builtin specifiers when evaluating user-supplied negative (deny) entries in a NodeVM wildcard require policy. Although NodeVM strips the `node:` prefix during require() resolution, n…

Abyssalpatriksimek · vm2EPSS 0.49%via NVD
CVE-2026-81442High· 8.1
5d ago

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper Privilege Management vulnerability

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper Privilege Management vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information …

TwilightDell · OpenManage Server Administrator Managed Node (Patch) for WindowsEPSS 0.38%via NVD
CVE-2026-85128High· 7.5
5d ago

The Choose User Role at Registration WordPress plugin before 1.3.3 does not validate the role requested at registration against the roles an administrator chose to offer, allowing unauthenticated users to request any role, including admi…

The Choose User Role at Registration WordPress plugin before 1.3.3 does not validate the role requested at registration against the roles an administrator chose to offer, allowing unauthenticated users to request any role, including admi…

TwilightEPSS 0.19%via NVD
CVE-2026-88904High· 8.8
5d ago

The PuppyFW WordPress plugin through 0.4.4 does not have proper authorisation on one of its REST routes, which tests the caller against a capability taken from the request itself, allowing any authenticated user, including subscribers, t…

The PuppyFW WordPress plugin through 0.4.4 does not have proper authorisation on one of its REST routes, which tests the caller against a capability taken from the request itself, allowing any authenticated user, including subscribers, t…

TwilightEPSS 0.23%via NVD
CVE-2026-20287Medium· 6.5
6d ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) engineering teams have conducted a comprehensive internal securi…

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) engineering teams have conducted a comprehensive internal securi…

SunlitCisco · Cisco Identity Services Engine SoftwareEPSS 0.21%via NVD
CWE-269 vulnerabilities (CVEs) · VulnSea