VulnSea

CWE-284

CVEs classified under CWE-284, newest first.

1096 CVEsRSS

CVE-2026-84651Medium· 6.3
3w ago

In Jenkins 2.579 and earlier, LTS 2.568.2 and earlier, the REST API and CLI endpoints for updating agent configuration do not prevent a submitted configuration from overwriting a different agent by specifying that agent's name in the sub…

In Jenkins 2.579 and earlier, LTS 2.568.2 and earlier, the REST API and CLI endpoints for updating agent configuration do not prevent a submitted configuration from overwriting a different agent by specifying that agent's name in the sub…

▾ Sunlitjenkins · jenkinsEPSS 0.31%via NVD
CVE-2026-20279Critical· 9.8
3w ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases tha…

▾ MidnightCisco · Cisco IOS XR SoftwareEPSS 0.30%via NVD
CVE-2026-53682Medium· 5.3
3w ago

An unauthenticated client can query the Security Domain hosts inventory via GET /ca/rest/securityDomain/hosts and receive a structured response enumerating internal PKI/CA hosts and roles (security domain topology and participating subsy…

An unauthenticated client can query the Security Domain hosts inventory via GET /ca/rest/securityDomain/hosts and receive a structured response enumerating internal PKI/CA hosts and roles (security domain topology and participating subsy…

▾ SunlitRed Hat · pki-coreEPSS 0.21%via NVD
CVE-2026-73749Critical· 9.8
3w ago

Multiple vulnerabilities exist in a daemon of AOS-CX that may allow for improper processing of malformed input

Multiple vulnerabilities exist in a daemon of AOS-CX that may allow for improper processing of malformed input. An unauthenticated remote attacker could exploit these vulnerabilities by sending specially crafted packets to the affected s…

▾ Midnighthpe · arubaos-cxEPSS 0.82%via NVD
CVE-2026-73750High· 8.8
3w ago

Vulnerabilities exist in the authentication module that may improperly process malformed or truncated input

Vulnerabilities exist in the authentication module that may improperly process malformed or truncated input. An authenticated remote attacker could exploit these vulnerabilities by providing specially crafted input from a compromised or …

▾ Twilighthpe · arubaos-cxEPSS 0.80%via NVD
CVE-2026-84187High· 8.2
3w ago

AVideo contains a missing authentication vulnerability in plugin/Live/on_publish.php that allows unauthenticated attackers to mark arbitrary scheduled broadcasts as failed by sending crafted POST requests with schedule identifiers

AVideo contains a missing authentication vulnerability in plugin/Live/on_publish.php that allows unauthenticated attackers to mark arbitrary scheduled broadcasts as failed by sending crafted POST requests with schedule identifiers. Attac…

▾ TwilightEPSS 0.51%via NVD
CVE-2026-52111Critical· 9.8
3w ago

An issue in fast-note-sync-service <=2.13.7 allows a remote attacker to escalate privileges via the admin configuration endpoint exposes authTokenKey

An issue in fast-note-sync-service <=2.13.7 allows a remote attacker to escalate privileges via the admin configuration endpoint exposes authTokenKey

▾ MidnightEPSS 0.61%via NVD
CVE-2026-84200Critical· 9.0
3w ago

Kyverno versions v1.9.0 through v1.12.7 contain a policy exception handling flaw

Kyverno versions v1.9.0 through v1.12.7 contain a policy exception handling flaw. When a policy in enforce mode is combined with two PolicyExceptions, the less restrictive exception takes precedence, allowing an attacker to bypass the po…

▾ Midnightkyverno · github.com/kyverno/kyvernoEPSS 0.27%via NVD
CVE-2026-82859Critical· 9.8
3w ago

hulumi versions before v1.3.2 contain a deployment SCP template that allows tag-on-create bypasses for hulumi:iac-role protections

hulumi versions before v1.3.2 contain a deployment SCP template that allows tag-on-create bypasses for hulumi:iac-role protections. Attackers can bypass intended IAM boundary restrictions by exploiting the weakened SCP template in downst…

▾ MidnightEPSS 0.54%via NVD
CVE-2026-78074High· 8.8
3w ago

Joomla Extension - miniorgange.com - Unauthenticated arbitrary extension deinstallation via various miniOrange extensions - a missing authentication check allows unauthenticated actors to delete arbitrary installed extensions

Joomla Extension - miniorgange.com - Unauthenticated arbitrary extension deinstallation via various miniOrange extensions - a missing authentication check allows unauthenticated actors to delete arbitrary installed extensions. Only the f…

▾ Twilightminiorgange.com · miniOrange Oauth Client (free) extension for JoomlaEPSS 0.54%via NVD
CVE-2026-82548Medium· 5.3
4w ago

A vulnerability was determined in Linux Foundation Magma 1.9.0

A vulnerability was determined in Linux Foundation Magma 1.9.0. The impacted element is an unknown function of the component InitialUEMessage Handler. This manipulation causes information disclosure. The attack may be initiated remotely.…

▾ SunlitEPSS 0.53%via NVD
CVE-2026-82486Medium· 5.0
4w ago

A vulnerability was found in SiteServer SSCMS 7.4.0

A vulnerability was found in SiteServer SSCMS 7.4.0. Affected by this issue is some unknown functionality of the component Agent Installation Workflow. Performing a manipulation of the argument SecurityKey results in improper access cont…

▾ SunlitEPSS 0.33%via NVD
CVE-2026-81026Medium· 4.8
4w ago

The MasterStudy LMS WordPress Plugin WordPress plugin before 3.7.40 does not verify the amount, receiver, currency or status of a payment notification before marking the corresponding order completed, allowing unauthenticated users to c…

The MasterStudy LMS WordPress Plugin WordPress plugin before 3.7.40 does not verify the amount, receiver, currency or status of a payment notification before marking the corresponding order completed, allowing unauthenticated users to c…

▾ SunlitEPSS 0.22%via NVD
CVE-2026-77010Medium· 6.5
4w ago

The HEL Online Classroom: AI-powered Online Classrooms WordPress plugin through 1.0.3 does not perform authorisation checks on its REST API routes and does not consistently enforce the per-class access code, allowing unauthenticated user…

The HEL Online Classroom: AI-powered Online Classrooms WordPress plugin through 1.0.3 does not perform authorisation checks on its REST API routes and does not consistently enforce the per-class access code, allowing unauthenticated user…

▾ SunlitEPSS 0.27%via NVD
CVE-2026-77008Medium· 6.5
4w ago

The HEL Online Classroom: AI-powered Online Classrooms WordPress plugin through 1.0.3 does not have any authorisation or authentication check when saving its settings, allowing unauthenticated users to overwrite them and repoint every on…

The HEL Online Classroom: AI-powered Online Classrooms WordPress plugin through 1.0.3 does not have any authorisation or authentication check when saving its settings, allowing unauthenticated users to overwrite them and repoint every on…

▾ SunlitEPSS 0.43%via NVD
CVE-2026-76586High· 7.5
4w ago

The Appointment Booking Calendar Plugin and Scheduling Plugin WordPress plugin before 1.6.3 does not verify the amount actually paid against the server-side price staged for a booking when confirming an online payment, allowing unauthen…

The Appointment Booking Calendar Plugin and Scheduling Plugin WordPress plugin before 1.6.3 does not verify the amount actually paid against the server-side price staged for a booking when confirming an online payment, allowing unauthen…

▾ TwilightEPSS 0.36%via NVD
CVE-2026-54745Critical· 10.0
1mo ago

Kubeflow Pipelines enables users to build and deploy portable, scalable machine learning workflows

Kubeflow Pipelines enables users to build and deploy portable, scalable machine learning workflows. Prior to 2.17.0, the Kubeflow Pipelines frontend exposes an unauthenticated server-side request forgery vulnerability through the /_proxy…

▾ MidnightEPSS 0.62%via NVD
CVE-2026-55678Medium
1mo ago

Arc is an open, SQL-native time-series database for telemetry

Arc is an open, SQL-native time-series database for telemetry. From 26.02.1 until 26.06.2, Arc Enterprise clustering accepts cluster join requests without authentication when cluster.enabled is true but cluster.shared_secret is not confi…

▾ Sunlitbasekick-labs · github.com/basekick-labs/arcEPSS 0.66%via NVD
CVE-2026-37067Medium· 5.3PoC
1mo ago

Incorrect access control in /vfm-admin/admin-panel/view/save-cvs.php in Veno File Manager Project 4.4.9 allows an unauthenticated attacker to extract all application logs from a desired date forwards via a specially crafted POST request.

Incorrect access control in /vfm-admin/admin-panel/view/save-cvs.php in Veno File Manager Project 4.4.9 allows an unauthenticated attacker to extract all application logs from a desired date forwards via a specially crafted POST request.

▾ TwilightEPSS 0.34%via NVD
CVE-2026-18886None
1mo ago

ServiceNow has remediated an improper access control vulnerability that was identified in the ServiceNow AI platform

ServiceNow has remediated an improper access control vulnerability that was identified in the ServiceNow AI platform. This vulnerability could enable an unauthenticated user, in certain circumstances, to create or modify instance data be…

▾ SunlitEPSS 5.0%via NVD
CVE-2026-61790Medium· 4.4
1mo ago

Weblate is a web-based continuous localization platform used to manage software translations

Weblate is a web-based continuous localization platform used to manage software translations. In versions prior to 2026.7, a team can require its members to configure two-factor authentication before receiving the team's permissions, but…

▾ SunlitEPSS 0.40%via NVD
CVE-2026-75338Critical· 9.8
1mo ago

disconf (Distributed Configuration Management Platform) 2.6.36 is vulnerable to Incorrect Access Control

disconf (Distributed Configuration Management Platform) 2.6.36 is vulnerable to Incorrect Access Control. The config-fetching APIs /api/config/item, /api/config/file, /api/config/list and /api/config/simple/list are exposed without authe…

▾ MidnightEPSS 0.61%via NVD
CVE-2025-70340Medium· 6.5
1mo ago

A Broken Access Control vulnerability exists in ThingsBoard Professional Edition (PE) 4.21 and below, within the Alarms comments functionality

A Broken Access Control vulnerability exists in ThingsBoard Professional Edition (PE) 4.21 and below, within the Alarms comments functionality. An authenticated customer user can manipulate the respective API request parameters to create…

▾ SunlitEPSS 0.22%via NVD
CVE-2026-18664Critical· 9.1
1mo ago

When ranges are used for access control (i.e

When ranges are used for access control (i.e. of the form 1.2.3.4-1.2.3.25), because NSD wrongly compares the IP address with the range on little endian systems, IPs that were meant to be allowed may be denied, and, IPs that were meant t…

▾ Midnightnlnetlabs · nsdEPSS 0.26%via NVD
CVE-2023-42179Critical· 9.8
1mo ago

Bird Home Automation GmbH D1101V-F 000140 is vulnerable to Incorrect Access Control via the Key derivation process, password validation process.

Bird Home Automation GmbH D1101V-F 000140 is vulnerable to Incorrect Access Control via the Key derivation process, password validation process.

▾ MidnightEPSS 0.36%via NVD
CVE-2026-54256Medium· 5.4
1mo ago

Winter CMS is a content management system built on the Laravel PHP framework

Winter CMS is a content management system built on the Laravel PHP framework. In versions up to and including 1.2.12, the backend FileUpload form widget trusted an attacker-controlled file_id POST parameter when resolving the attachment …

▾ Sunlitwinter · winter/wn-backend-moduleEPSS 0.24%via NVD
CVE-2026-77997None
1mo ago

Joomla Extension - yootheme.com - Authenticated, privileged information disclosure in YOOtheme Pro 1.0.0-5.0.41 - A missing access check allowed users with com_template editing permissions to access information about arbitrary modules wi…

Joomla Extension - yootheme.com - Authenticated, privileged information disclosure in YOOtheme Pro 1.0.0-5.0.41 - A missing access check allowed users with com_template editing permissions to access information about arbitrary modules wi…

▾ SunlitEPSS 0.39%via NVD
CVE-2026-79201Medium· 4.3
1mo ago

Improper access control in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page

Improper access control in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)

▾ SunlitGoogle · ChromeEPSS 0.27%via CVEORG
CVE-2026-75465High· 7.5
1mo ago

The /api.php/user/get_list endpoint in Maccms v10 v2026.1000.4055 is vulnerable to an Incorrect Access Control issue

The /api.php/user/get_list endpoint in Maccms v10 v2026.1000.4055 is vulnerable to an Incorrect Access Control issue. The interface fails to perform any authentication or authorization checks. An unauthenticated remote attacker can send …

▾ TwilightEPSS 0.75%via NVD
CVE-2026-55536Critical· 9.1
1mo ago

PraisonAI has a Browser Server WebSocket origin validation bypass via unanchored regex (patch bypass of CVE-2026-40289 / GHSA-8x8f-54wf-v…

PraisonAI has a Browser Server WebSocket origin validation bypass via unanchored regex (patch bypass of CVE-2026-40289 / GHSA-8x8f-54wf-vv92)

▾ Midnightpraisonai · praisonaiEPSS 0.52%via OSV
CWE-284 vulnerabilities (CVEs) — page 19 · VulnSea