VulnSea

CWE-306

CVEs classified under CWE-306, newest first.

630 CVEsRSS

CVE-2026-49363High· 7.5⚖ disputed
2w ago

An unauthenticated remote attacker connecting with the CORE protocol can discover cluster node details by sending a SUBSCRIBE_TOPOLOGY request prior to authentication. This issue affects Apache Artemis: from 2.50.0 through 2.56.0; Apa…

An unauthenticated remote attacker connecting with the CORE protocol can discover cluster node details by sending a SUBSCRIBE_TOPOLOGY request prior to authentication. This issue affects Apache Artemis: from 2.50.0 through 2.56.0; Apa…

▾ Twilightapache · artemisEPSS 0.80%via NVD
CVE-2026-57967Critical· 9.8⚖ disputed
2w ago

An unauthenticated remote attacker can craft a CORE protocol SESSION_REATTACH packet to steal an existing session and assume ongoing execution of the previously authenticated session. This issue affects Apache Artemis: from 2.50.0 thr…

An unauthenticated remote attacker can craft a CORE protocol SESSION_REATTACH packet to steal an existing session and assume ongoing execution of the previously authenticated session. This issue affects Apache Artemis: from 2.50.0 thr…

▾ Midnightapache · artemisEPSS 1.1%via NVD
CVE-2026-9336Medium· 6.5
2w ago

IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to a denial of service, caused by sending a specially-crafted HTTP request to an administrative endpoint

IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to a denial of service, caused by sending a specially-crafted HTTP request to an administrative endpoint. A remote attacker could exploit this vulnerability to cause the server …

▾ Sunlitibm · websphere_application_serverEPSS 0.77%via NVD
CVE-2026-49364Critical· 9.1
2w ago

An unauthenticated network-adjacent attacker can leverage discovery to capture cluster administrative credentials during the initial cluster connection handshake. This issue affects Apache Artemis: from 2.50.0 through 2.56.0; Apache Act…

An unauthenticated network-adjacent attacker can leverage discovery to capture cluster administrative credentials during the initial cluster connection handshake. This issue affects Apache Artemis: from 2.50.0 through 2.56.0; Apache Act…

▾ Midnightapache · artemisEPSS 0.57%via NVD
CVE-2026-88285Critical· 9.4
2w ago

GeoVision GV-LPC2211 V1.13 exposes a network-accessible PTZ control service without authentication, allowing remote clients to retrieve PTZ information and issue PTZ or raw serial commands.

GeoVision GV-LPC2211 V1.13 exposes a network-accessible PTZ control service without authentication, allowing remote clients to retrieve PTZ information and issue PTZ or raw serial commands.

▾ MidnightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.51%via NVD
CVE-2026-87924Medium· 6.5PoC
2w ago

A security vulnerability has been detected in Rizwan17 inventory-management-system up to bfe78a330d01bb26b9daec5dc9ecd5c77900e03f

A security vulnerability has been detected in Rizwan17 inventory-management-system up to bfe78a330d01bb26b9daec5dc9ecd5c77900e03f. This affects an unknown part of the file includes/invoice_bill.php of the component Invoice Generation. Su…

▾ TwilightRizwan17 · inventory-management-systemEPSS 0.76%via NVD
CVE-2026-87922High· 7.3PoC
2w ago

A security flaw has been discovered in Rizwan17 inventory-management-system up to bfe78a330d01bb26b9daec5dc9ecd5c77900e03f

A security flaw has been discovered in Rizwan17 inventory-management-system up to bfe78a330d01bb26b9daec5dc9ecd5c77900e03f. Affected by this vulnerability is the function DBOperation.addCategory of the file includes/process.php of the co…

▾ MidnightRizwan17 · inventory-management-systemEPSS 0.69%via NVD
CVE-2026-79961Medium· 5.3
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Missing Authentication for Critical Function vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could po…

▾ Sunlitdell · secure_connect_gatewayEPSS 0.40%via NVD
CVE-2026-77974High· 8.0
2w ago

After spoofing the device and obtaining one user confirmation, an attacker may be able to cause the application to transmit firmware through an unauthenticated and unsigned update channel.

After spoofing the device and obtaining one user confirmation, an attacker may be able to cause the application to transmit firmware through an unauthenticated and unsigned update channel.

▾ TwilightSoftish · EarVision Android applicationEPSS 0.27%via NVD
CVE-2026-11838Medium· 4.3
2w ago

Missing authentication for critical function vulnerability in Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc

Missing authentication for critical function vulnerability in Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc. Library Reservation System allows Input Data Manipulation. This issue affec…

▾ SunlitYordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc. · Library Reservation SystemEPSS 0.18%via NVD
CVE-2026-85981Medium· 6.7
2w ago

The administrative panel of the Auth0 AD/LDAP Connector (versions 6.5.0 and earlier) listens on the local loopback interface without requiring authentication

The administrative panel of the Auth0 AD/LDAP Connector (versions 6.5.0 and earlier) listens on the local loopback interface without requiring authentication. This allows a local, low-privileged user or process on the host system to acce…

▾ SunlitAuth0 · Auth0 AD/LDAP ConnectorEPSS 0.18%via NVD
CVE-2026-86808High· 7.3PoC
2w ago

A security vulnerability has been detected in moltis-org moltis up to 20260818.10

A security vulnerability has been detected in moltis-org moltis up to 20260818.10. The affected element is the function vault_unlock_handler/vault_recovery_handler of the file vault.rs. Such manipulation leads to missing authentication. …

▾ Midnightmoltis-org · moltisEPSS 0.84%via NVD
CVE-2026-86464Critical· 9.9
2w ago

In the current development version of Eclipse aeriOS, for which no official release has yet been published, the Identity Manager (IdM) deployment included insecure default configurations and credentials for security-sensitive services. …

In the current development version of Eclipse aeriOS, for which no official release has yet been published, the Identity Manager (IdM) deployment included insecure default configurations and credentials for security-sensitive services. …

▾ MidnightEclipse Foundation · Eclipse aeriOSEPSS 0.55%via NVD
CVE-2026-83991Medium· 5.5PoC
2w ago

Missing authentication for critical function in Windows Cloud Files Mini Filter Driver allows an authorized attacker to perform tampering locally.

Missing authentication for critical function in Windows Cloud Files Mini Filter Driver allows an authorized attacker to perform tampering locally.

▾ Twilightmicrosoft · windows_10_1809EPSS 0.30%via NVD
CVE-2026-73004Medium· 5.5
2w ago

Missing authentication for critical function in Windows Autopilot allows an authorized attacker to perform tampering locally.

Missing authentication for critical function in Windows Autopilot allows an authorized attacker to perform tampering locally.

▾ Sunlitmicrosoft · windows_10_21h2EPSS 0.30%via NVD
CVE-2026-72964Medium· 5.5
2w ago

Missing authentication for critical function in Windows Internet Connection Sharing (ICS) allows an authorized attacker to perform tampering locally.

Missing authentication for critical function in Windows Internet Connection Sharing (ICS) allows an authorized attacker to perform tampering locally.

▾ Sunlitmicrosoft · windows_10_1607EPSS 0.30%via NVD
CVE-2026-69674Medium· 5.5
2w ago

Missing authentication for critical function in Windows Modern Device Management (MDM) allows an authorized attacker to bypass a security feature locally.

Missing authentication for critical function in Windows Modern Device Management (MDM) allows an authorized attacker to bypass a security feature locally.

▾ Sunlitmicrosoft · windows_10_1809EPSS 0.30%via NVD
CVE-2026-69554Medium· 5.5
2w ago

Missing authentication for critical function in Microsoft Windows Search Component allows an authorized attacker to perform tampering locally.

Missing authentication for critical function in Microsoft Windows Search Component allows an authorized attacker to perform tampering locally.

▾ Sunlitmicrosoft · windows_10_1607EPSS 0.30%via NVD
CVE-2026-69528High· 7.8
2w ago

Missing authentication for critical function in Windows Shell allows an authorized attacker to elevate privileges locally.

Missing authentication for critical function in Windows Shell allows an authorized attacker to elevate privileges locally.

▾ Twilightmicrosoft · windows_11_23h2EPSS 0.30%via NVD
CVE-2026-69415Medium· 6.8
2w ago

Missing authentication for critical function in Windows DHCP Server allows an authorized attacker to elevate privileges over a network.

Missing authentication for critical function in Windows DHCP Server allows an authorized attacker to elevate privileges over a network.

▾ Sunlitmicrosoft · windows_10_1607EPSS 0.73%via NVD
CVE-2026-69321Medium· 5.5
2w ago

Missing authentication for critical function in Windows Power Dependency Coordinator allows an authorized attacker to perform tampering locally.

Missing authentication for critical function in Windows Power Dependency Coordinator allows an authorized attacker to perform tampering locally.

▾ Sunlitmicrosoft · windows_10_1607EPSS 0.30%via NVD
CVE-2026-86728High· 7.5
2w ago

AVideo through 29.0 contains an authentication bypass vulnerability in plugin/PlayLists/epg.json.php that exposes live-stream keys and private EPG schedules to unauthenticated users

AVideo through 29.0 contains an authentication bypass vulnerability in plugin/PlayLists/epg.json.php that exposes live-stream keys and private EPG schedules to unauthenticated users. Attackers can request the endpoint with sequential use…

▾ TwilightWWBN · AVideoEPSS 0.55%via NVD
CVE-2026-86727High· 7.5PoC
2w ago

AVideo through 29.0 contains an information disclosure vulnerability in plugin/Live/stats.json.php that allows unauthenticated attackers to retrieve stream keys and m3u8 URLs by accessing the endpoint without authentication

AVideo through 29.0 contains an information disclosure vulnerability in plugin/Live/stats.json.php that allows unauthenticated attackers to retrieve stream keys and m3u8 URLs by accessing the endpoint without authentication. Attackers ca…

▾ MidnightWWBN · AVideoEPSS 0.53%via NVD
CVE-2026-77097High· 8.2
2w ago

Private Metrics Server contained a missing authentication condition affecting metrics upload functionality and service availability

Private Metrics Server contained a missing authentication condition affecting metrics upload functionality and service availability. Software customers upgrade to resolved maintenance release. Update Private Metrics Server.

▾ Twilightcommvault · commvaultEPSS 0.47%via NVD
CVE-2026-62645Critical· 9.8
2w ago

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70)

A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Information is exposed through the web interface that can be used to calculate the current and past session ID numbers. This could allow an attacker to bypass t…

▾ MidnightSiemens · Reyrolle 7SR5EPSS 0.65%via NVD
CVE-2026-19397High· 7.7
2w ago

Missing authentication for a critical function in ASUS Control Center Express Agent allows an unauthenticated nearby user to control the host via a direct connection to the agent when the host has an active login session. Refer to the ' …

Missing authentication for a critical function in ASUS Control Center Express Agent allows an unauthenticated nearby user to control the host via a direct connection to the agent when the host has an active login session. Refer to the ' …

▾ TwilightASUS · Control Center Express AgentEPSS 0.20%via NVD
CVE-2026-86543Critical· 9.8
2w ago

knowns versions before 0.30.0 serve the management API without authentication on all network interfaces by default, with no password required on fresh installations

knowns versions before 0.30.0 serve the management API without authentication on all network interfaces by default, with no password required on fresh installations. Attackers can access the unauthenticated /api/tunnel/start endpoint to …

▾ Midnightknowns-dev · knownsEPSS 0.86%via NVD
CVE-2026-86506Medium· 5.9
2w ago

In JetBrains GoLand before 2026.2.2.1 missing authentication on the GoLand profiler's injected pprof server exposed profiling data

In JetBrains GoLand before 2026.2.2.1 missing authentication on the GoLand profiler's injected pprof server exposed profiling data

▾ SunlitJetBrains · GoLandEPSS 0.38%via NVD
CVE-2026-86502High· 8.4
2w ago

In JetBrains IntelliJ IDEA before 2026.2.2 missing TLS and authentication on the IJent gRPC server allowed local code execution on Remote Development hosts

In JetBrains IntelliJ IDEA before 2026.2.2 missing TLS and authentication on the IJent gRPC server allowed local code execution on Remote Development hosts

▾ TwilightJetBrains · IntelliJ IDEAEPSS 0.21%via NVD
CVE-2026-86439High· 8.8
2w ago

knowns versions before 0.30.0 fail to validate filesystem paths in MCP tool arguments, allowing attackers to read, create, overwrite and delete files outside the project directory

knowns versions before 0.30.0 fail to validate filesystem paths in MCP tool arguments, allowing attackers to read, create, overwrite and delete files outside the project directory. Attackers can supply path arguments containing directory…

▾ Twilightknowns-dev · knownsEPSS 1.1%via NVD
CWE-306 vulnerabilities (CVEs) — page 8 · VulnSea