VulnSea

CWE-285

CVEs classified under CWE-285, newest first.

208 CVEsRSS

CVE-2026-45048High· 8.5
6d ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, SessionRequestHandler in the session management endpoint does not enforce ownership or privilege checks when a low-privileged authenticated user queries s…

TwilightOpenIdentityPlatform · OpenAMEPSS 0.25%via NVD
CVE-2026-45052Critical· 9.3
6d ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, the Liberty Web Services SOAP receiver permits unauthenticated remote requests to write persistent entries through SOAPReceiver and DiscoveryService into …

MidnightOpenIdentityPlatform · OpenAMEPSS 0.33%via NVD
CVE-2026-55775Low· 2.3⚖ disputed
6d ago

OpenBao is an open source identity-based secrets management system

OpenBao is an open source identity-based secrets management system. Prior to 2.5.5, OpenBao users granted capabilities on /sys/namespaces/root within a non-root namespace could exploit special handling of the literal root path in namespa…

Sunlitopenbao · openbaoEPSS 0.36%via NVD
CVE-2026-65353Medium· 5.5
1w ago

An authorization issue was addressed with improved state management

An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6. An app may be able to access sensitive user data.

Sunlitapple · ipadosEPSS 0.11%via NVD
CVE-2026-84556Medium· 5.5
1w ago

An authorization issue was addressed with improved access control

An authorization issue was addressed with improved access control. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to access sensitive user data.

Sunlitapple · macosEPSS 0.12%via NVD
CVE-2026-43695Medium· 5.5
1w ago

An authorization issue was addressed with improved state management

An authorization issue was addressed with improved state management. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to access …

Sunlitapple · ipadosEPSS 0.11%via NVD
CVE-2026-86891Low· 3.5
1w ago

An authorization issue was addressed with improved state management

An authorization issue was addressed with improved state management. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, watchOS 27. An app may be able to access Bluetooth device information.

Sunlitapple · macosEPSS 0.16%via NVD
CVE-2026-84615Medium· 5.5
1w ago

An authorization issue was addressed with improved state management

An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, tvOS 27, visionOS 27. An app may be able to access sensitive user data.

Sunlitapple · ipadosEPSS 0.11%via NVD
CVE-2026-84600Medium· 5.4PoC
1w ago

An authorization issue was addressed with improved state management

An authorization issue was addressed with improved state management. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. A malicious shortcut may be able to send messages without user conf…

Twilightapple · ipadosEPSS 0.21%via NVD
CVE-2026-84636Medium· 5.5
1w ago

An authorization issue was addressed with improved state management

An authorization issue was addressed with improved state management. This issue is fixed in iOS 27 and iPadOS 27, tvOS 27, visionOS 27, watchOS 27. An app may be able to access sensitive user data.

Sunlitapple · ipadosEPSS 0.11%via NVD
CVE-2026-84621Medium· 5.5
1w ago

An authorization issue was addressed with improved access control

An authorization issue was addressed with improved access control. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to access sensitive …

SunlitApple · iOS and iPadOSEPSS 0.13%via NVD
CVE-2026-75792Medium· 4.3
1w ago

IBM Sterling Secure Proxy 6.2.0.0 through 6.2.1.2 could allow a remote authenticated attacker to view administrative user interface components due to client-side authorization bypass.

IBM Sterling Secure Proxy 6.2.0.0 through 6.2.1.2 could allow a remote authenticated attacker to view administrative user interface components due to client-side authorization bypass.

SunlitIBM · Sterling Secure ProxyEPSS 0.28%via NVD
CVE-2026-90810Medium· 6.3PoC
1w ago

A security flaw has been discovered in cosmicstack-labs mercury-agent up to 1.1.13

A security flaw has been discovered in cosmicstack-labs mercury-agent up to 1.1.13. The impacted element is the function PermissionManager.checkShellCommand of the file mercury-agent/src/capabilities/permissions.ts of the component Shell…

Twilightcosmicstack-labs · mercury-agentEPSS 0.21%via NVD
CVE-2026-90697Medium· 4.3PoC
1w ago

A vulnerability was identified in SourceCodester Inventory Management System 1.0

A vulnerability was identified in SourceCodester Inventory Management System 1.0. This affects an unknown part of the file invoice.php. The manipulation of the argument ID leads to authorization bypass. It is possible to initiate the att…

TwilightSourceCodester · Inventory Management SystemEPSS 0.24%via NVD
CVE-2026-90935Medium· 4.3PoC
1w ago

Froxlor before 2.3.7 fails to validate the mysql_server parameter against a customer's allowed_mysqlserver allowlist in the Mysqls.add API command

Froxlor before 2.3.7 fails to validate the mysql_server parameter against a customer's allowed_mysqlserver allowlist in the Mysqls.add API command. Attackers can supply a disallowed server index to create MySQL databases and users on for…

Twilightfroxlor · froxlorEPSS 0.21%via NVD
CVE-2026-54178High· 8.1
1w ago

backpack/crud provides Create, Read, Update & Delete (CRUD) functions for Backpack, a collection of Laravel packages that help users build custom administration panels

backpack/crud provides Create, Read, Update & Delete (CRUD) functions for Backpack, a collection of Laravel packages that help users build custom administration panels. Prior to 6.8.12 and 7.0.35, HasUploadFields::uploadMultipleFilesToDi…

TwilightLaravel-Backpack · CRUDEPSS 0.36%via NVD
CVE-2026-55236Medium· 5.9
1w ago

langgraph-api implements the LangGraph API for rapid development and testing

langgraph-api implements the LangGraph API for rapid development and testing. Prior to 0.10.0, the langgraph-api run-creation path authorizes the assistant attached to a run by dispatching assistants.search with an incomplete value inste…

Sunlitlangchain-ai · langgraph-apiEPSS 0.16%via NVD
CVE-2026-90499Medium· 5.4PoC
1w ago

A security flaw has been discovered in lenve vhr 1.0-SNAPSHOT

A security flaw has been discovered in lenve vhr 1.0-SNAPSHOT. This affects the function HrInfoController.updatePass of the file /hr/pass of the component Password Update Handler. The manipulation of the argument hrid results in improper…

Twilightlenve · vhrEPSS 0.28%via NVD
CVE-2026-90521Medium· 6.3PoC
1w ago

A vulnerability was found in jaychouchannel Tourism-Management-System up to 8122bf020d91199eddfff3ee02d1632a70a9a132

A vulnerability was found in jaychouchannel Tourism-Management-System up to 8122bf020d91199eddfff3ee02d1632a70a9a132. This issue affects some unknown processing of the file MenpiaodingdanController.java of the component CRUD. The manipul…

Twilightjaychouchannel · Tourism-Management-SystemEPSS 0.39%via NVD
CVE-2026-90520Medium· 6.3PoC
1w ago

A vulnerability has been found in jaychouchannel Tourism-Management-System up to 84d8ec384f669df3985293dab293bb7b477efa64

A vulnerability has been found in jaychouchannel Tourism-Management-System up to 84d8ec384f669df3985293dab293bb7b477efa64. This vulnerability affects unknown code of the file AuthorizationInterceptor.java of the component Authorization I…

Twilightjaychouchannel · Tourism-Management-SystemEPSS 0.37%via NVD
CVE-2026-90517Medium· 5.3PoC
1w ago

A vulnerability was identified in PHPGurukul Bank Locker Management System 1.0

A vulnerability was identified in PHPGurukul Bank Locker Management System 1.0. This affects an unknown function of the file /blms/view-assign-locker.php. The manipulation of the argument ltid leads to authorization bypass. The attack ma…

TwilightPHPGurukul · Bank Locker Management SystemEPSS 0.33%via NVD
CVE-2026-90566High· 7.3PoC
1w ago

A weakness has been identified in Rizwan17 inventory-management-system up to bfe78a330d01bb26b9daec5dc9ecd5c77900e03f

A weakness has been identified in Rizwan17 inventory-management-system up to bfe78a330d01bb26b9daec5dc9ecd5c77900e03f. Affected by this vulnerability is the function createUserAccount of the file register.php of the component Registratio…

MidnightRizwan17 · inventory-management-systemEPSS 0.45%via NVD
CVE-2026-90598Medium· 6.3PoC
1w ago

A vulnerability was detected in jaygajera17 E-commerce-project-springBoot up to 5e74a46b4b70623d0e4a0c9c4aee3bd1777185d2

A vulnerability was detected in jaygajera17 E-commerce-project-springBoot up to 5e74a46b4b70623d0e4a0c9c4aee3bd1777185d2. The impacted element is the function UserController.updateUser of the file UserController.java. Performing a manipu…

Twilightjaygajera17 · E-commerce-project-springBootEPSS 0.22%via NVD
CVE-2026-44715High· 8.7
1w ago

OpenMRS is an open source electronic medical record system platform

OpenMRS is an open source electronic medical record system platform. Prior to versions 1.23.0 and 2.10.0, an authenticated user can trigger administrative DWR services. Specifically, the `startHl7ArchiveMigration` method is accessible, w…

Twilightopenmrs · org.openmrs.module:legacyui-apiEPSS 0.24%via NVD
CVE-2026-53952Critical· 9.8
1w ago

GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that CMS

GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that CMS. A logic flaw in GetSimple CMS (v3.4.0a and below) and GetSimpleCMS-CE (v3.3.22 and below) allows unauthenticated attackers to …

MidnightGetSimpleCMS-CE · GetSimpleCMS-CEEPSS 0.33%via NVD
CVE-2026-56828High· 8.8
1w ago

Shopper: privilege escalation via improper Livewire admin component authorization

Shopper: privilege escalation via improper Livewire admin component authorization

Twilightshopper · shopper/frameworkvia GHSA
CVE-2026-49463Medium· 6.5
1w ago

NL Portal: Missing per-user authorization on document and decision GraphQL queries in nl-portal-backend-libraries

NL Portal Backend Libraries provide backend components for Dutch government portals that interact with residents, customers, suppliers, and partner organizations. The `nl.nl-portal:documenten-api` package through version 3.0.0 and the `n…

Sunlitnl-portal · nl.nl-portal:besluitenEPSS 0.32%via CVEORG
CVE-2026-80378High· 8.5
1w ago

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to cause a denial of service due to improper authorization.

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to cause a denial of service due to improper authorization.

Twilightibm · datastage_on_cloud_pak_for_dataEPSS 0.27%via NVD
CVE-2026-80436High· 8.5
1w ago

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to cause a denial of service by deleting arbitrary RabbitMQ queues or exchanges due to improper authorization.

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to cause a denial of service by deleting arbitrary RabbitMQ queues or exchanges due to improper authorization.

Twilightibm · datastage_on_cloud_pak_for_dataEPSS 0.27%via NVD
CVE-2026-85543Medium· 4.3PoC
1w ago

Some Wi-Fi series camera products have insufficient permission validation on certain interfaces, allowing authenticated low-privileged users to obtain device Wi-Fi configuration information through these interfaces.

Some Wi-Fi series camera products have insufficient permission validation on certain interfaces, allowing authenticated low-privileged users to obtain device Wi-Fi configuration information through these interfaces.

TwilightHikvision · Wi-Fi series cameraEPSS 0.20%via NVD
CWE-285 vulnerabilities (CVEs) — page 2 · VulnSea