VulnSea

CWE-284

CVEs classified under CWE-284, newest first.

1095 CVEsRSS

CVE-2026-86812Medium· 6.5
2w ago

The WPCafe WordPress plugin before 3.0.18 does not correctly restrict access to a set of order-management REST endpoints because their permission callbacks return an incorrect type on failure, allowing unauthenticated users to disclose …

The WPCafe WordPress plugin before 3.0.18 does not correctly restrict access to a set of order-management REST endpoints because their permission callbacks return an incorrect type on failure, allowing unauthenticated users to disclose …

▾ SunlitEPSS 0.27%via NVD
CVE-2026-47839Critical· 9.2
2w ago

A vulnerability allows users authenticating through a federated OIDC provider to obtain the uaa.admin scope despite operators restricting that provider through externalGroupsWhitelist configuration

A vulnerability allows users authenticating through a federated OIDC provider to obtain the uaa.admin scope despite operators restricting that provider through externalGroupsWhitelist configuration. The issue occurs specifically when an …

▾ MidnightCloud Foundry Foundation · UAAEPSS 0.31%via NVD
CVE-2026-81941High· 8.8
2w ago

IBM Langflow OSS 1.0.0 through 1.11.5 allows an authenticated non-administrative user could execute arbitrary operating system commands on the server at the privilege level of the application process by constructing a flow with an MCP To…

IBM Langflow OSS 1.0.0 through 1.11.5 allows an authenticated non-administrative user could execute arbitrary operating system commands on the server at the privilege level of the application process by constructing a flow with an MCP To…

▾ Twilightlangflow · langflowEPSS 0.63%via NVD
CVE-2026-79725Medium· 6.5
2w ago

IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to read arbitrary files due to improper access control.

IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to read arbitrary files due to improper access control.

▾ Sunlitlangflow · langflowEPSS 0.41%via NVD
CVE-2026-81046Critical· 9.4
2w ago

Dell ThinOS 10, versions prior to 2605_10.2616, contain a Protection Mechanism Failure vulnerability

Dell ThinOS 10, versions prior to 2605_10.2616, contain a Protection Mechanism Failure vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Arbitrary Code Execution within…

▾ Midnightdell · thinosEPSS 0.55%via NVD
CVE-2026-78084Medium· 6.9
2w ago

Joomla Extension - joomshaper.com - Missing Access Control in Gallery Image Management in SP Property < 4.1.4

Joomla Extension - joomshaper.com - Missing Access Control in Gallery Image Management in SP Property < 4.1.4 - The gallery management controller tasks lacked authorization checks and CSRF token validation.. Users could invoke file remo…

▾ Sunlitjoomshaper.com · SP Property extension for JoomlaEPSS 0.33%via CVEORG
CVE-2026-88864Critical· 9.1PoC
2w ago

Capgo (capgo.app) fails to restrict direct write access to the public.sso_providers table exposed through Supabase PostgREST

Capgo (capgo.app) fails to restrict direct write access to the public.sso_providers table exposed through Supabase PostgREST. A holder of an ordinary Capgo full API key can insert a row with status='active' and enforce_sso=true, bypassin…

▾ AbyssalCap-go · capgo.appEPSS 0.37%via NVD
CVE-2026-85545High· 7.1
2w ago

There is an Vulnerability in some HikCentral Access Control versions

There is an Vulnerability in some HikCentral Access Control versions. Authenticated low-privilege users can invoke API interfaces that their role is not authorized to access.

▾ TwilightHikvision · HikCentral Access ControlEPSS 0.29%via NVD
CVE-2026-19436High· 7.5
2w ago

The Ultimate Gift Cards for WooCommerce WordPress plugin before 3.2.10 does not reconcile the value of the gift card coupon it issues against the amount actually collected at checkout, allowing unauthenticated users to obtain store credi…

The Ultimate Gift Cards for WooCommerce WordPress plugin before 3.2.10 does not reconcile the value of the gift card coupon it issues against the amount actually collected at checkout, allowing unauthenticated users to obtain store credi…

▾ TwilightEPSS 0.21%via NVD
CVE-2026-50165High· 7.1
2w ago

alf.io has Improper Access Control for Organization Owners that Exposes System Secrets

alf.io is an open source ticket reservation system for conferences, trade shows, workshops, and meetups. An Improper Access Control issue in versions prior to 2.0-M5-2605 allows an organization owner to read system-level configuration se…

▾ Twilightalfio-event · alf.ioEPSS 0.35%via CVEORG
CVE-2026-21100Medium· 6.9
2w ago

Improper access control in SystemUI prior to SMR Sep-2026 Release 1 allows local attackers to launch arbitrary activity.

Improper access control in SystemUI prior to SMR Sep-2026 Release 1 allows local attackers to launch arbitrary activity.

▾ SunlitSamsung Mobile · Samsung Mobile DevicesEPSS 0.09%via CVEORG
CVE-2026-86774Medium· 6.3
2w ago

Snipe-IT versions before 8.7.0 contain a broken access control vulnerability in AssetModelPolicy where the files() method cascades from assets.files permission, allowing authenticated users to upload and delete file attachments on Asset …

Snipe-IT versions before 8.7.0 contain a broken access control vulnerability in AssetModelPolicy where the files() method cascades from assets.files permission, allowing authenticated users to upload and delete file attachments on Asset …

▾ Sunlitsnipeitapp · snipe-itEPSS 0.29%via NVD
CVE-2026-21109Low· 2.1
2w ago

Improper access control in Watch Plugin prior to Android Watch 17 allows local attackers to access sensitive information.

Improper access control in Watch Plugin prior to Android Watch 17 allows local attackers to access sensitive information.

▾ SunlitSamsung Mobile · Watch PluginEPSS 0.10%via NVD
CVE-2026-71807Medium· 4.3
2w ago

In RuoYi-Cloud-Plus <= 2.6.2 in the ruoyi-workflow module, multiple core task APIs in FlwTaskController lack permission annotations, and the Service layer does not verify whether the current user is the task handler/related user

In RuoYi-Cloud-Plus <= 2.6.2 in the ruoyi-workflow module, multiple core task APIs in FlwTaskController lack permission annotations, and the Service layer does not verify whether the current user is the task handler/related user. Authent…

▾ SunlitEPSS 0.42%via NVD
CVE-2026-73789Medium· 5.3
2w ago

A vulnerability in the web-based management interface of CPPM guest account management services could allow an unauthenticated remote attacker to manipulate account settings

A vulnerability in the web-based management interface of CPPM guest account management services could allow an unauthenticated remote attacker to manipulate account settings. Successful exploitation could allow an attacker to extend netw…

▾ SunlitHewlett Packard Enterprise (HPE) · ClearPass Policy Manager (CPPM)EPSS 0.40%via NVD
CVE-2026-13144Low· 3.7
2w ago

The WP Travel WordPress plugin before 12.0.2 does not properly verify that the requester is authorized to modify the targeted booking on one branch of its bank-deposit handler, allowing an unauthenticated attacker who knows the target c…

The WP Travel WordPress plugin before 12.0.2 does not properly verify that the requester is authorized to modify the targeted booking on one branch of its bank-deposit handler, allowing an unauthenticated attacker who knows the target c…

▾ SunlitEPSS 0.19%via NVD
CVE-2026-21105Medium· 5.5
2w ago

Improper access control in Collection prior to version 1.0.1.14 in Android 15 and 2.0.02.7 in Android 16 allows local attackers to access sensitive information.

Improper access control in Collection prior to version 1.0.1.14 in Android 15 and 2.0.02.7 in Android 16 allows local attackers to access sensitive information.

▾ Sunlitsamsung · collectionEPSS 0.09%via NVD
CVE-2026-21098Medium· 6.9
2w ago

Improper access control in Link to Windows prior to SMR Sep-2026 Release 1 allows local attackers to establish a connection with the PC without proper user interaction.

Improper access control in Link to Windows prior to SMR Sep-2026 Release 1 allows local attackers to establish a connection with the PC without proper user interaction.

▾ SunlitSamsung Mobile · Samsung Mobile DevicesEPSS 0.10%via NVD
CVE-2026-19625Medium· 5.3⚖ disputed
2w ago

When a Quarkus application has multiple endpoints secured by individual OIDC provider tenants, such as "/oidc-provider1" that is secured by the OIDC Provider 1 and "/oidc-provider2" that is secured by the OIDC Provider 2, and an optional…

When a Quarkus application has multiple endpoints secured by individual OIDC provider tenants, such as "/oidc-provider1" that is secured by the OIDC Provider 1 and "/oidc-provider2" that is secured by the OIDC Provider 2, and an optional…

▾ SunlitIBM · Enterprise Build of QuarkusEPSS 0.23%via NVD
CVE-2026-75998High· 7.5
2w ago

ColdFusion is affected by an Improper Access Control vulnerability that could lead to arbitrary file system read

ColdFusion is affected by an Improper Access Control vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. E…

▾ Twilightadobe · coldfusionEPSS 0.82%via NVD
CVE-2026-28602High· 7.8
2w ago

In setClipboardAccessNotificationsEnabledForUser of ClipboardService.java, there is a possible mult-iuser isolation due to a logic error in the code

In setClipboardAccessNotificationsEnabledForUser of ClipboardService.java, there is a possible mult-iuser isolation due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privilege…

▾ Twilightgoogle · androidEPSS 0.09%via NVD
CVE-2026-86672Medium· 5.3PoC
2w ago

A vulnerability has been found in ningzichun Student Management System up to 98760f5711cf6dc8b4adca53a9e207ca49b02ebf

A vulnerability has been found in ningzichun Student Management System up to 98760f5711cf6dc8b4adca53a9e207ca49b02ebf. Affected is an unknown function of the file example.7z of the component Backup Handler. The manipulation leads to info…

▾ Twilightningzichun · Student Management SystemEPSS 0.48%via NVD
CVE-2026-81963High· 7.8CISA KEV0dayPoC
2w ago

Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.

Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.

▾ Abyssalmicrosoft · windows_11_23h2EPSS 0.39%via NVD
CVE-2026-77487High· 8.8
2w ago

Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.

Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.

▾ Twilightmicrosoft · sql_server_2017EPSS 0.78%via NVD
CVE-2026-73028High· 8.8
2w ago

Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.

Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.

▾ Twilightmicrosoft · sql_server_2017EPSS 0.78%via NVD
CVE-2026-69282High· 8.8
2w ago

Improper access control in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Improper access control in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

▾ Twilightmicrosoft · sharepoint_serverEPSS 0.78%via NVD
CVE-2026-69273High· 8.8
2w ago

Improper access control in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Improper access control in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

▾ Twilightmicrosoft · sharepoint_serverEPSS 0.78%via NVD
CVE-2026-69268High· 8.8
2w ago

Improper access control in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Improper access control in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

▾ Twilightmicrosoft · sharepoint_serverEPSS 0.78%via NVD
CVE-2026-84385Medium· 5.4
2w ago

A improper access control vulnerability in Fortinet FortiSOAR PaaS 7.6.0 through 7.6.6, FortiSOAR PaaS 7.5.0 through 7.5.3, FortiSOAR PaaS 7.4 all versions, FortiSOAR PaaS 7.3 all versions, FortiSOAR on-premise 7.6.0 through 7.6.6, Forti…

A improper access control vulnerability in Fortinet FortiSOAR PaaS 7.6.0 through 7.6.6, FortiSOAR PaaS 7.5.0 through 7.5.3, FortiSOAR PaaS 7.4 all versions, FortiSOAR PaaS 7.3 all versions, FortiSOAR on-premise 7.6.0 through 7.6.6, Forti…

▾ SunlitFortinet · FortiSOAR on-premiseEPSS 0.23%via NVD
CVE-2026-22575Medium· 4.9
2w ago

An improper access control vulnerability in Fortinet FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.10, FortiManager 7.2 all versions, FortiManager Cloud 7.6.2 through 7.6.4, FortiManager Cloud 7.4.1 through 7.4.10, For…

An improper access control vulnerability in Fortinet FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.10, FortiManager 7.2 all versions, FortiManager Cloud 7.6.2 through 7.6.4, FortiManager Cloud 7.4.1 through 7.4.10, For…

▾ SunlitFortinet · FortiManagerEPSS 0.24%via NVD
CWE-284 vulnerabilities (CVEs) — page 17 · VulnSea