VulnSea

CWE-358

CVEs classified under CWE-358, newest first.

15 CVEsRSS

CVE-2026-92959High· 7.1PoC
5d ago

vm2 before 3.11.8 does not fully enforce the allowAsync: false option in VM and NodeVM

vm2 before 3.11.8 does not fully enforce the allowAsync: false option in VM and NodeVM. While localPromise.prototype.then is replaced with a handler that throws 'Async not available', the sandbox's Promise static methods (Promise.resolve…

Midnightpatriksimek · vm2EPSS 0.26%via NVD
CVE-2026-91949Critical· 9.3
1w ago

FreeRDP server versions before 3.31.0 contain a protocol negotiation bypass vulnerability that allows unauthenticated attackers to establish RDSTLS connections despite server policy disabling them

FreeRDP server versions before 3.31.0 contain a protocol negotiation bypass vulnerability that allows unauthenticated attackers to establish RDSTLS connections despite server policy disabling them. Attackers can send incompatible protoco…

MidnightFreeRDP · FreeRDPEPSS 0.45%via NVD
CVE-2026-92039Medium· 6.3
1w ago

Mitigation bypass in the DOM: Notifications component

Mitigation bypass in the DOM: Notifications component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

SunlitMozilla · FirefoxEPSS 0.16%via NVD
CVE-2026-89448High· 7.0⚖ disputed
1w ago

kernel: iommu/vt-d: Force requesting ACS when tboot is enabled (CVE-2026-89448)

A flaw was found in the Linux kernel's IOMMU (Input/Output Memory Management Unit) component. When tboot (Trusted Boot) is enabled, the system may fail to correctly request Access Control Services (ACS). This misconfiguration could potenti…

TwilightRed Hat · Red Hat Enterprise Linux 9EPSS 0.14%via CSAF
CVE-2026-49783High· 7.8
2mo ago

Secure Boot Security Feature Bypass Vulnerability

Improperly implemented security check for standard in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-12064High· 7.5PoC
2mo ago

When a user invokes curl using a schemeless URL combined with `--proto-default` sftp (or scp), a disconnect occurs between the tool layer and libcurl

When a user invokes curl using a schemeless URL combined with `--proto-default` sftp (or scp), a disconnect occurs between the tool layer and libcurl. The tool layer incorrectly infers the URL scheme, which erroneously bypasses the initi…

Midnighthaxx · curlEPSS 0.40%via NVD
CVE-2026-48797Critical
2mo ago

Backpropagate: backprop ui --auth and backprop ui --share do not enforce authentication

Backpropagate: backprop ui --auth and backprop ui --share do not enforce authentication

Midnightbackpropagate · backpropagateEPSS 0.32%via OSV
CVE-2026-50628Critical· 9.8
3mo ago

A logic error in OAuthRequestFilter rejects legitimate requests originating from the bound IP address, while blindly allowing requests from any other IP address

A logic error in OAuthRequestFilter rejects legitimate requests originating from the bound IP address, while blindly allowing requests from any other IP address. Enabling this security feature inadvertently creates an inverse security c…

Midnightapache · cxfEPSS 0.68%via NVD
CVE-2026-39833Medium· 5.5⚖ disputed
4mo ago

golang.org/x/crypto/ssh/agent: golang.org/x/crypto/ssh/agent: Security bypass due to unenforced key confirmation (CVE-2026-39833)

A flaw was found in golang.org/x/crypto/ssh/agent. The NewKeyring() function, which creates an in-memory keyring, failed to enforce the ConfirmBeforeUse constraint on keys. This allowed keys configured to require user confirmation before u…

SunlitRed Hat · Red Hat OpenShift Container Platform 4EPSS 0.41%via CSAF
CVE-2026-44513High· 8.8
4mo ago

Diffusers is the a library for pretrained diffusion models

Diffusers is the a library for pretrained diffusion models. Prior to 0.38.0, a trust_remote_code bypass in DiffusionPipeline.from_pretrained allows arbitrary remote code execution despite the user passing trust_remote_code=False (or omi…

Twilighthuggingface · diffusersEPSS 1.1%via NVD
CVE-2026-45109High· 7.5
4mo ago

Next.js is a React framework for building full-stack web applications

Next.js is a React framework for building full-stack web applications. From 15.2.0 to before 15.5.18 and 16.2.6, it was found that the fix addressing CVE-2026-44575 did not apply to middleware.ts with Turbopack. This vulnerability is fix…

Twilightvercel · next.jsEPSS 0.57%via NVD
CVE-2026-28914Medium· 5.5
4mo ago

A logic issue was addressed with improved file handling

A logic issue was addressed with improved file handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.5. A maliciously crafted ZIP archive may bypass Gatekeeper checks.

Sunlitapple · macosEPSS 0.20%via NVD
CVE-2026-5894Medium· 4.3
5mo ago

Inappropriate implementation in PDF in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page

Inappropriate implementation in PDF in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low)

Sunlitgoogle · chromeEPSS 0.16%via NVD
CVE-2026-1486High· 8.8
7mo ago

A flaw was found in Keycloak

A flaw was found in Keycloak. A vulnerability exists in the jwt-authorization-grant flow where the server fails to verify if an Identity Provider (IdP) is enabled before issuing tokens. The issuer lookup mechanism (lookupIdentityProvider…

TwilightEPSS 0.46%via NVD
CVE-2023-4501Critical· 9.8
3y ago

User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (including product variants such as Enterprise Test Server), vers…

User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (including product variants such as Enterprise Test Server), vers…

Midnightmicrofocus · cobol_serverEPSS 0.75%via NVD
CWE-358 vulnerabilities (CVEs) · VulnSea