VulnSea

CWE-284

CVEs classified under CWE-284, newest first.

1097 CVEsRSS

CVE-2026-58545Medium· 5.5
2mo ago

Windows Kernel Security Feature Bypass Vulnerability

Improper access control in Windows Kernel allows an authorized attacker to bypass a security feature locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.35%via CVEORG
CVE-2026-57088High· 7.8
2mo ago

Improper access control in Extensible Storage Engine (ESENT) allows an authorized attacker to elevate privileges locally.

Improper access control in Extensible Storage Engine (ESENT) allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1809EPSS 0.30%via NVD
CVE-2026-50311High· 7.8
2mo ago

Improper access control in Windows Server allows an authorized attacker to elevate privileges locally.

Improper access control in Windows Server allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_10_1607EPSS 0.30%via NVD
GHSA-7xw9-549r-8jrcHigh· 8.5
2mo ago

DIRAC: SQL injection and lack of access control in PilotManager service

DIRAC: SQL injection and lack of access control in PilotManager service

▾ TwilightDIRAC · DIRACvia GHSA
CVE-2026-15539Medium· 4.7
2mo ago

A security vulnerability has been detected in SourceCodester Online Book Store System 1.0

A security vulnerability has been detected in SourceCodester Online Book Store System 1.0. Impacted is an unknown function of the file /admin/index.php?page=books of the component Book Image Upload Feature. Such manipulation leads to unr…

▾ SunlitEPSS 0.40%via NVD
CVE-2026-15530Medium· 5.3
2mo ago

A flaw has been found in WuzhiCMS up to 4.1.0

A flaw has been found in WuzhiCMS up to 4.1.0. Affected by this vulnerability is the function config/listimage of the file /index.php?m=attachment&f=index&v=upload of the component Attachment API. Executing a manipulation can lead to inf…

▾ SunlitEPSS 0.53%via NVD
CVE-2026-15518Medium· 4.7
2mo ago

A vulnerability has been found in AREA 17 Twill CMS up to 3.6.0

A vulnerability has been found in AREA 17 Twill CMS up to 3.6.0. The impacted element is the function FileLibraryController::storeFile of the file src/Http/Controllers/Admin/FileLibraryController.php of the component Media Library Insert…

▾ SunlitEPSS 0.38%via NVD
CVE-2026-15488High· 7.3
2mo ago

A vulnerability was determined in hcr707305003 shiroiAdmin 1.1/1.3

A vulnerability was determined in hcr707305003 shiroiAdmin 1.1/1.3. Affected is the function FileController::upload of the file app/common/controller/FileController.php. Executing a manipulation of the argument File can lead to unrestric…

▾ TwilightEPSS 0.50%via NVD
CVE-2026-15476Medium· 5.3
2mo ago

A security vulnerability has been detected in QILING Disk Master 6.0.0.0

A security vulnerability has been detected in QILING Disk Master 6.0.0.0. The impacted element is an unknown function in the library diskbckp.sys of the component Kernel Driver. Such manipulation leads to improper access controls. The at…

▾ SunlitEPSS 0.15%via NVD
CVE-2026-15475Medium· 5.3
2mo ago

A weakness has been identified in MiniTool Partition Wizard up to 13.6

A weakness has been identified in MiniTool Partition Wizard up to 13.6. The affected element is an unknown function in the library pwdrvio.sys of the component Signed Kernel Driver. This manipulation causes improper access controls. The …

▾ SunlitEPSS 0.15%via NVD
CVE-2026-20744Critical· 9.8
2mo ago

The charging station websocket endpoint accepts connections without proper authentication, which could lead to privilege escalation.

The charging station websocket endpoint accepts connections without proper authentication, which could lead to privilege escalation.

▾ MidnightEPSS 0.76%via NVD
GHSA-382c-vx95-w3p5Medium· 6.5
2mo ago

Gittensory: Missing contributor-scoped access control on profile endpoint and MCP tool leaks miner financial data

Gittensory: Missing contributor-scoped access control on profile endpoint and MCP tool leaks miner financial data

▾ Sunlitjsonbored · @jsonbored/gittensory-mcpvia GHSA
CVE-2026-58525High· 8.2
2mo ago

Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability

Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network.

▾ TwilightMicrosoft · Microsoft Edge (Chromium-based)EPSS 0.51%via CVEORG
GHSA-7jvp-hj45-2f2mHigh
2mo ago

Scriban: Template Writes to Arbitrary CLR Properties via `TypedObjectAccessor` (Mass Assignment + `private` / `init` / `internal` Setter Bypass)

Scriban: Template Writes to Arbitrary CLR Properties via `TypedObjectAccessor` (Mass Assignment + `private` / `init` / `internal` Setter Bypass)

▾ TwilightScriban · Scribanvia GHSA
CVE-2025-71380High· 8.8
2mo ago

The Execute Command node in n8n allows authenticated users to execute arbitrary commands on the host system where n8n runs

The Execute Command node in n8n allows authenticated users to execute arbitrary commands on the host system where n8n runs. Attackers with user access or compromised credentials can exploit this node to run malicious commands, potentiall…

▾ TwilightEPSS 0.57%via NVD
CVE-2026-58286High· 8.1
2mo ago

Microsoft Edge (Chromium-based) Spoofing Vulnerability

Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

▾ TwilightMicrosoft · Microsoft Edge (Chromium-based)EPSS 0.42%via CVEORG
CVE-2026-58282High· 8.1
2mo ago

Microsoft Edge (Chromium-based) Spoofing Vulnerability

Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

▾ TwilightMicrosoft · Microsoft Edge (Chromium-based)EPSS 0.42%via CVEORG
CVE-2026-58523Medium· 6.5
2mo ago

Improper access control in Microsoft Edge for Android allows an unauthorized attacker to bypass a security feature over a network.

Improper access control in Microsoft Edge for Android allows an unauthorized attacker to bypass a security feature over a network.

▾ SunlitMicrosoft · Microsoft Edge (Chromium-based)EPSS 0.88%via NVD
CVE-2026-27779None
2mo ago

Gitea versions before 1.25.5 accept malformed or injected forwarded-proto values when detecting public URLs, allowing spoofed canonical URL generation.

Gitea versions before 1.25.5 accept malformed or injected forwarded-proto values when detecting public URLs, allowing spoofed canonical URL generation.

▾ SunlitEPSS 0.58%via NVD
CVE-2026-27660None
2mo ago

Gitea versions before 1.25.5 allow draft release data or attachments to be accessed without the required write permission.

Gitea versions before 1.25.5 allow draft release data or attachments to be accessed without the required write permission.

▾ SunlitEPSS 0.45%via NVD
CVE-2026-26292None
2mo ago

Gitea versions before 1.25.5 do not use the migration HTTP transport for LFS push and sync mirror operations, bypassing the configured migration transport protections for those LFS requests.

Gitea versions before 1.25.5 do not use the migration HTTP transport for LFS push and sync mirror operations, bypassing the configured migration transport protections for those LFS requests.

▾ SunlitEPSS 0.65%via NVD
CVE-2026-26247None
2mo ago

Gitea versions before 1.25.5 do not persist the OAuth2 PKCE S256 challenge method correctly during authorization, allowing token exchange without the expected verifier check.

Gitea versions before 1.25.5 do not persist the OAuth2 PKCE S256 challenge method correctly during authorization, allowing token exchange without the expected verifier check.

▾ SunlitEPSS 0.50%via NVD
CVE-2026-25712None
2mo ago

Gitea versions before 1.25.5 have insufficient visibility checks in organization permission APIs for hidden members and private organizations.

Gitea versions before 1.25.5 have insufficient visibility checks in organization permission APIs for hidden members and private organizations.

▾ SunlitEPSS 0.48%via NVD
CVE-2026-24690None
2mo ago

Gitea versions before 1.25.5 have insufficient permission checks for updating or rebasing pull request branches.

Gitea versions before 1.25.5 have insufficient permission checks for updating or rebasing pull request branches.

▾ SunlitEPSS 0.45%via NVD
CVE-2026-24451None
2mo ago

Gitea 1.26.2 allows fork synchronization to continue after a parent repository changes from public to private, exposing data to a fork that should no longer be authorized.

Gitea 1.26.2 allows fork synchronization to continue after a parent repository changes from public to private, exposing data to a fork that should no longer be authorized.

▾ SunlitEPSS 0.48%via NVD
CVE-2026-20909None
2mo ago

Gitea versions before 1.25.5 have insufficient permission checks when listing tracked time entries.

Gitea versions before 1.25.5 have insufficient permission checks when listing tracked time entries.

▾ SunlitEPSS 0.29%via NVD
CVE-2026-20896Critical· 9.8PoC
2mo ago

Gitea Docker image versions up to and including 1.26.2 use REVERSE_PROXY_TRUSTED_PROXIES=* by default, allowing any source IP to impersonate a user when reverse-proxy authentication headers such as X-WEBAUTH-USER are enabled.

Gitea Docker image versions up to and including 1.26.2 use REVERSE_PROXY_TRUSTED_PROXIES=* by default, allowing any source IP to impersonate a user when reverse-proxy authentication headers such as X-WEBAUTH-USER are enabled.

▾ AbyssalEPSS 2.8%via NVD
CVE-2026-41123Medium· 4.3
2mo ago

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an improper acce…

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an improper acce…

▾ SunlitEPSS 0.25%via NVD
CVE-2026-26145Medium· 4.8
2mo ago

Microsoft Azure Synapse Elevation of Privilege Vulnerability

Improper access control in Azure Synapse allows an authorized attacker to elevate privileges over a network.

▾ SunlitMicrosoft · Azure SynapseEPSS 0.70%via CVEORG
CVE-2026-50280Medium
2mo ago

Craft CMS: Authorization bypass in `entries/move-to-section` via missing target-section save check

Craft CMS: Authorization bypass in `entries/move-to-section` via missing target-section save check

▾ Sunlitcraftcms · craftcms/cmsEPSS 0.40%via GHSA
CWE-284 vulnerabilities (CVEs) — page 31 · VulnSea