VulnSea

CWE-306

CVEs classified under CWE-306, newest first.

632 CVEsRSS

CVE-2026-60396High· 7.2
2mo ago

Vulnerability in Oracle GoldenGate (component: Distribution Server executable)

Vulnerability in Oracle GoldenGate (component: Distribution Server executable). Supported versions that are affected are 21.3-21.21 and 23.4-23.26.1. Easily exploitable vulnerability allows high privileged attacker with network access …

▾ Twilightoracle · goldengateEPSS 0.49%via NVD
CVE-2026-60389Critical· 10.0
2mo ago

Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler)

Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthentica…

▾ Midnightoracle · service_delivery_platformEPSS 0.51%via NVD
CVE-2026-60365Critical· 10.0
2mo ago

Vulnerability in the Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: WebLogic Server Proxy Plug-In for Third-Party Web Servers)

Vulnerability in the Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: WebLogic Server Proxy Plug-In for Third-Party Web Servers). The supported version that is affected is 15.1.1.0.0. Easily exploita…

▾ MidnightEPSS 0.43%via NVD
CVE-2026-60329Critical· 9.8
2mo ago

Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI)

Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated at…

▾ Midnightoracle · identity_managerEPSS 0.51%via NVD
CVE-2026-47019High· 8.1
2mo ago

Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (component: Item Catalog)

Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (component: Item Catalog). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network …

▾ Twilightoracle · product_hubEPSS 0.36%via NVD
CVE-2026-46992High· 8.8
2mo ago

Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Enterprise Config Management)

Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Enterprise Config Management). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allow…

▾ Twilightoracle · enterprise_manager_base_platformEPSS 0.43%via NVD
CVE-2026-60549High· 8.8
2mo ago

Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Middleware (component: MFT Runtime Server)

Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Middleware (component: MFT Runtime Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low priv…

▾ TwilightEPSS 0.43%via NVD
CVE-2026-60545High· 8.8
2mo ago

Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Middleware (component: MFT Runtime Server)

Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Middleware (component: MFT Runtime Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low priv…

▾ TwilightEPSS 0.43%via NVD
CVE-2026-60544High· 8.2
2mo ago

Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middleware (component: B2B Engine)

Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middleware (component: B2B Engine). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker wit…

▾ TwilightEPSS 0.44%via NVD
CVE-2026-16242Critical· 9.4
2mo ago

A flaw was found in the Konnectivity proxy-server configuration for hosted control planes

A flaw was found in the Konnectivity proxy-server configuration for hosted control planes. The agent-facing listener was started without --cluster-ca-cert (and without token-based agent authentication), so client certificates were not va…

▾ MidnightRed Hat · multicluster-engine/hypershift-rhel9-operatorEPSS 0.92%via NVD
CVE-2026-16210High· 7.3
2mo ago

A vulnerability was found in newpanjing simpleui 2026.01.13

A vulnerability was found in newpanjing simpleui 2026.01.13. This affects the function self.get_action of the file simpleui/admin.py of the component AjaxAdmin AJAX Endpoint. Performing a manipulation results in missing authentication. R…

▾ TwilightEPSS 0.69%via NVD
CVE-2026-16209High· 7.3
2mo ago

A vulnerability has been found in Gerapy up to 0.9.13

A vulnerability has been found in Gerapy up to 0.9.13. The impacted element is an unknown function of the file gerapy/server/core/views.py of the component Project Upload Endpoint. Such manipulation leads to missing authentication. The a…

▾ TwilightEPSS 0.71%via NVD
CVE-2026-62241Critical· 9.1
2mo ago

clawvet self-hosted API server (apps/api) before 0.7.5 hard-codes a fallback JWT secret ('clawvet-dev-secret-change-me') in auth.ts and ships it as the default in .env.example

clawvet self-hosted API server (apps/api) before 0.7.5 hard-codes a fallback JWT secret ('clawvet-dev-secret-change-me') in auth.ts and ships it as the default in .env.example. Because GET /api/v1/scans returns scan records containing us…

▾ Midnightmohibshaikh · clawvetEPSS 0.67%via NVD
CVE-2026-9202Critical· 9.8
2mo ago

IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to create unlimited user accounts on any Langflow instance; when NEW_USER_IS_ACTIVE=true (documented deployment option), newly created accounts are immediately active…

IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to create unlimited user accounts on any Langflow instance; when NEW_USER_IS_ACTIVE=true (documented deployment option), newly created accounts are immediately active…

▾ MidnightEPSS 0.50%via NVD
CVE-2026-49174Medium· 6.1
2mo ago

DNS Client Tampering Vulnerability

Missing authentication for critical function in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.

▾ SunlitMicrosoft · Windows 10 Version 1809EPSS 0.27%via CVEORG
CVE-2026-57969High· 8.8
2mo ago

Azure CycleCloud Elevation of Privilege Vulnerability

Missing authentication for critical function in Azure CycleCloud allows an authorized attacker to elevate privileges over a network.

▾ TwilightMicrosoft · Azure CycleCloud 8.9.1EPSS 0.78%via CVEORG
CVE-2026-56164Medium· 5.3CISA KEV0dayPoC
2mo ago

Microsoft SharePoint Server Elevation of Privilege Vulnerability

Missing authentication for critical function in Microsoft Office SharePoint allows an unauthorized attacker to elevate privileges over a network.

▾ MidnightMicrosoft · Microsoft SharePoint Enterprise Server 2016EPSS 1.0%via CVEORG
CVE-2026-50333High· 7.8
2mo ago

Windows Spaceport.sys Elevation of Privilege Vulnerability

Missing authentication for critical function in Windows Spaceport.sys allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.30%via CVEORG
CVE-2026-50451High· 7.1
2mo ago

Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability

Missing authentication for critical function in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.31%via CVEORG
CVE-2026-50444High· 8.8
2mo ago

Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability

Missing authentication for critical function in Windows Server Update Service allows an authorized attacker to elevate privileges over a network.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.78%via CVEORG
CVE-2026-48252High· 8.6
2mo ago

Adobe Experience Manager is affected by a Missing Authentication for Critical Function vulnerability that could result in a Security feature bypass

Adobe Experience Manager is affected by a Missing Authentication for Critical Function vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unaut…

▾ Twilightadobe · experience_managerEPSS 0.89%via NVD
CVE-2026-15491High· 7.3
2mo ago

A weakness has been identified in RafyMrX TOKO-ONLINE-ROTI up to ddfe1cd587be0a0b5135d8b6e85cce2ec3aece99

A weakness has been identified in RafyMrX TOKO-ONLINE-ROTI up to ddfe1cd587be0a0b5135d8b6e85cce2ec3aece99. This affects an unknown part. This manipulation causes missing authentication. The attack is possible to be carried out remotely. …

▾ TwilightEPSS 0.65%via NVD
CVE-2026-38059High· 7.5
2mo ago

ST Engineering iDirect iQ-Series Terminals Missing authentication for critical function

The iDirect iQ200 exposes the /api/identity and /api/ REST API endpoints without authentication. An unauthenticated attacker with network access can retrieve sensitive device information including the serial number, Device ID (DID), Term…

▾ TwilightST Engineering iDirect · Evolution iQ‑Series terminalsEPSS 0.59%via CVEORG
CVE-2026-57476Medium· 4.8
2mo ago

Deloitte AI Assist for Customer exposed unauthenticated API endpoints that allowed an attacker with knowledge of additional parameters to read from or inject content into the retrieval-augmented generation (RAG) corpus

Deloitte AI Assist for Customer exposed unauthenticated API endpoints that allowed an attacker with knowledge of additional parameters to read from or inject content into the retrieval-augmented generation (RAG) corpus. On 2026-03-25, AI…

▾ Sunlitdeloitte · ai_assist_for_customerEPSS 0.44%via NVD
CVE-2026-57475Medium· 5.3
2mo ago

Deloitte AI Assist for Customer accepted unauthenticated POST requests through public-facing API endpoints that allowed a remote attacker to make limited additions to the configuration

Deloitte AI Assist for Customer accepted unauthenticated POST requests through public-facing API endpoints that allowed a remote attacker to make limited additions to the configuration. These additions were not used by the system. On 202…

▾ Sunlitdeloitte · ai_assist_for_customerEPSS 0.60%via NVD
GHSA-h4g2-xfmw-q2c9High
2mo ago

Clauster: Non-loopback deployments can serve the dashboard unauthenticated when auth.enabled is unset

Clauster: Non-loopback deployments can serve the dashboard unauthenticated when auth.enabled is unset

▾ Twilightclauster · claustervia GHSA
CVE-2026-54068Medium· 5.9
2mo ago

SiYuan: Unauthenticated SQLite Data Exfiltration via Template Injection in /api/icon/getDynamicIcon

SiYuan: Unauthenticated SQLite Data Exfiltration via Template Injection in /api/icon/getDynamicIcon

▾ Sunlitsiyuan-note · github.com/siyuan-note/siyuan/kernelEPSS 0.38%via GHSA
CVE-2026-54088CriticalPoC
2mo ago

File Browser: Command Injection via Authentication Hook Shell Substitution (Pre-Authentication RCE)

File Browser: Command Injection via Authentication Hook Shell Substitution (Pre-Authentication RCE)

▾ Abyssalfilebrowser · github.com/filebrowser/filebrowser/v2EPSS 0.76%via GHSA
CVE-2026-59148High· 8.8PoC
2mo ago

Mockoon provides way to design and run mock APIs

Mockoon provides way to design and run mock APIs. Prior to 9.7.0, Mockoon's admin API in commons-server/src/libs/server/admin-api.ts is mounted on the same Express listener as user-defined mock routes, enabled by default in shipped runti…

▾ Midnightmockoon · mockoonEPSS 0.26%via NVD
CVE-2026-15192Medium· 6.5
2mo ago

A vulnerability has been found in mettle sendportal up to 3.0.1

A vulnerability has been found in mettle sendportal up to 3.0.1. This issue affects the function sendgrid/postmark/postal/mailjet of the component APIv1 Webhooks. The manipulation leads to missing authentication. The attack is possible t…

▾ SunlitEPSS 0.76%via NVD
CWE-306 vulnerabilities (CVEs) — page 16 · VulnSea