VulnSea

CWE-306

CVEs classified under CWE-306, newest first.

631 CVEsRSS

CVE-2026-63722Critical· 9.8
1mo ago

ICEcoder 8.1 contains an unauthenticated remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary OS commands by chaining an authentication bypass, CSRF validation bypass, and unsanitized command exe…

ICEcoder 8.1 contains an unauthenticated remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary OS commands by chaining an authentication bypass, CSRF validation bypass, and unsanitized command exe…

▾ MidnightEPSS 1.3%via NVD
CVE-2026-75854Critical· 9.8
1mo ago

ArcadeDB versions before 26.8.1 contain a missing authentication vulnerability in the Redis wire-protocol plugin that allows unauthenticated attackers to read, write, and delete data

ArcadeDB versions before 26.8.1 contain a missing authentication vulnerability in the Redis wire-protocol plugin that allows unauthenticated attackers to read, write, and delete data. Attackers can connect to the Redis port and execute a…

▾ MidnightEPSS 0.89%via NVD
CVE-2026-71067High· 8.8
1mo ago

Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client)

Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client). The supported version that is affected is 3.6. Easily exploitable vulnerability allows low privileged attacker with network ac…

▾ TwilightEPSS 0.43%via NVD
CVE-2026-71015Critical· 9.1
1mo ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Endeca Application Controller)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Endeca Application Controller). The supported version that is affected is 11.4.0. Easily exploitable vulnera…

▾ MidnightEPSS 0.43%via NVD
CVE-2026-70979Critical· 9.1
1mo ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Content Acquisition System)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Content Acquisition System). The supported version that is affected is 11.4.0. Easily exploitable vulnerabil…

▾ MidnightEPSS 0.45%via NVD
CVE-2026-70977Critical· 9.1
1mo ago

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Content Acquisition System)

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Content Acquisition System). The supported version that is affected is 11.4.0. Easily exploitable vulnerabil…

▾ MidnightEPSS 0.45%via NVD
CVE-2026-70973High· 7.5
1mo ago

Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration)

Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows l…

▾ TwilightEPSS 0.33%via NVD
CVE-2026-70956High· 8.8
1mo ago

Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration)

Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low…

▾ TwilightEPSS 0.43%via NVD
CVE-2026-70954Critical· 9.8
1mo ago

Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (component: Dynamo Application Framework)

Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (component: Dynamo Application Framework). The supported version that is affected is 11.4.0. Easily exploitable vulnerability allows unauthenticated attacker with…

▾ MidnightEPSS 0.51%via NVD
CVE-2026-70953Critical· 9.8
1mo ago

Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (component: Dynamo Application Framework)

Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (component: Dynamo Application Framework). The supported version that is affected is 11.4.0. Easily exploitable vulnerability allows unauthenticated attacker with…

▾ MidnightEPSS 0.51%via NVD
CVE-2026-70940High· 8.8
1mo ago

Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security)

Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low privileged attacker with n…

▾ TwilightEPSS 0.43%via NVD
CVE-2026-70930High· 7.5
1mo ago

Vulnerability in the Oracle Order Management product of Oracle E-Business Suite (component: Product Diagnostic Tools)

Vulnerability in the Oracle Order Management product of Oracle E-Business Suite (component: Product Diagnostic Tools). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged att…

▾ TwilightEPSS 0.33%via NVD
CVE-2026-70926Critical· 9.8
1mo ago

Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer)

Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker…

▾ MidnightEPSS 0.51%via NVD
CVE-2026-70924High· 8.1
1mo ago

Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Services Security)

Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Services Security). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows unau…

▾ Twilightoracle · web_services_managerEPSS 0.39%via NVD
CVE-2026-70918High· 8.8
1mo ago

Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (component: Outbound Data)

Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (component: Outbound Data). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network…

▾ TwilightEPSS 0.43%via NVD
CVE-2026-60769High· 7.5
1mo ago

Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations)

Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker w…

▾ TwilightEPSS 0.33%via NVD
CVE-2026-60720Critical· 9.9
1mo ago

Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI)

Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows low privileged att…

▾ Midnightoracle · identity_managerEPSS 0.43%via NVD
CVE-2026-60696Critical· 9.8
1mo ago

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core)

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unau…

▾ Midnightoracle · weblogic_serverEPSS 0.51%via NVD
CVE-2026-60682Medium· 6.5
1mo ago

Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Repository)

Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Repository). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with…

▾ Sunlitoracle · hyperion_financial_managementEPSS 0.27%via NVD
CVE-2026-60672Critical· 9.8
1mo ago

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core)

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unau…

▾ Midnightoracle · weblogic_serverEPSS 0.51%via NVD
CVE-2026-75479High· 7.5PoC
1mo ago

JimuReport contains an authentication bypass vulnerability in the report folder template listing endpoint that allows unauthenticated attackers to enumerate all reports and retrieve share tokens

JimuReport contains an authentication bypass vulnerability in the report folder template listing endpoint that allows unauthenticated attackers to enumerate all reports and retrieve share tokens. Attackers can use disclosed share tokens …

▾ Midnightjeecgboot · jimureportEPSS 0.46%via NVD
CVE-2026-75060High· 8.4
1mo ago

In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthenticated Jupyter MCP tools

In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthenticated Jupyter MCP tools

▾ Twilightjetbrains · pycharmEPSS 0.18%via NVD
CVE-2026-56677High· 8.6
1mo ago

9Router is an AI router & token saver

9Router is an AI router & token saver. In 0.5.4 and earlier, the POST /api/auth/oidc/test endpoint in src/app/api/auth/oidc/test/route.js passes the user-controlled issuerUrl parameter to fetchOidcDiscovery() in src/lib/auth/oidc.js with…

▾ Twilight9router · 9routerEPSS 0.38%via NVD
CVE-2026-73673High· 8.8PoC
1mo ago

Netis NC63 router firmware V3.0.0.3327 contains an unauthenticated firmware update vulnerability that allows unauthenticated attackers to submit unsigned firmware images by exploiting a missing authentication enforcement flaw in the Boa …

Netis NC63 router firmware V3.0.0.3327 contains an unauthenticated firmware update vulnerability that allows unauthenticated attackers to submit unsigned firmware images by exploiting a missing authentication enforcement flaw in the Boa …

▾ MidnightEPSS 0.54%via NVD
CVE-2026-73849Critical· 9.8
1mo ago

Emlog is an open source website building system

Emlog is an open source website building system. In 2.6.26 and earlier, install.php accepts action=reinstall without authentication and deliberately skips the already-installed check because the guard runs only when $act != 'reinstall'. …

▾ MidnightEPSS 0.73%via NVD
CVE-2026-50027Critical· 9.8
1mo ago

mcp-memory-service is a semantic memory layer for AI applications

mcp-memory-service is a semantic memory layer for AI applications. Prior to 10.67.1, all HTTP routes under /api/documents/* in mcp-memory-service are served without any authentication dependency, even when the server is configured with a…

▾ Midnightmcp-memory-service · mcp-memory-serviceEPSS 0.96%via NVD
CVE-2026-72776Critical· 9.8PoC
1mo ago

AgenticSeek (commit fc242c7) contains an unauthenticated remote code execution vulnerability that allows any network-adjacent attacker to execute arbitrary commands by submitting crafted queries to the unprotected POST /query API endpoin…

AgenticSeek (commit fc242c7) contains an unauthenticated remote code execution vulnerability that allows any network-adjacent attacker to execute arbitrary commands by submitting crafted queries to the unprotected POST /query API endpoin…

▾ AbyssalFosowl · AgenticSeekEPSS 1.1%via NVD
CVE-2026-49827Critical· 9.8
1mo ago

WebErpMesv2 is a Resource Management and Manufacturing execution system Web for industry

WebErpMesv2 is a Resource Management and Manufacturing execution system Web for industry. Versions 1.19 and prior allow any self-registered user to upload arbitrary PHP files through the HR Expense scan_file parameter, leading to Remote …

▾ MidnightEPSS 0.86%via NVD
CVE-2026-49819Critical· 9.8PoC
1mo ago

UpSnap is a wake on lan web app

UpSnap is a wake on lan web app. Versions 4.4.1 through 5.3.5 are vulnerable to a missing-authentication / privilege-escalation chain in `pb.HandlerInitSuperuser` (`backend/pb/handlers.go:249`), reachable as `POST /api/upsnap/init-superu…

▾ Abyssalseriousm4x · UpSnapEPSS 1.1%via NVD
CVE-2026-73666High· 8.2
1mo ago

OpenChoreo is a developer platform for Kubernetes

OpenChoreo is a developer platform for Kubernetes. Prior to 1.0.4, 1.1.4, and 1.2.1, the OpenChoreo Backstage backend hardcoded backend.auth.dangerouslyDisableDefaultAuthPolicy and auth.providers.guest.dangerouslyAllowOutsideDevelopment …

▾ TwilightEPSS 0.68%via NVD
CWE-306 vulnerabilities (CVEs) — page 12 · VulnSea