VulnSea

CWE-379

CVEs classified under CWE-379, newest first.

6 CVEsRSS

CVE-2026-86836High· 8.4
1w ago

In Eclipse Ankaios versions 0.1.0 through 1.0.2, the agent creates workload files and Control Interface named pipes (FIFOs) under a predictable path derived from the agent name and a hash of the workload's runtime configuration

In Eclipse Ankaios versions 0.1.0 through 1.0.2, the agent creates workload files and Control Interface named pipes (FIFOs) under a predictable path derived from the agent name and a hash of the workload's runtime configuration. If a dir…

TwilightEclipse Foundation · Eclipse AnkaiosEPSS 0.09%via NVD
CVE-2026-69482High· 7.1
2w ago

Creation of temporary file in directory with insecure permissions in Windows Error Reporting allows an authorized attacker to perform tampering locally.

Creation of temporary file in directory with insecure permissions in Windows Error Reporting allows an authorized attacker to perform tampering locally.

TwilightMicrosoft · Windows 10 Version 1607EPSS 0.32%via NVD
CVE-2026-85028High· 7.8
2w ago

Creation of a temporary file in a directory with insecure permissions in the FPGA management tool installation component in AWS FPGA Development Kit (aws-fpga) before 2.3.4 might allow local users to execute arbitrary code with root priv…

Creation of a temporary file in a directory with insecure permissions in the FPGA management tool installation component in AWS FPGA Development Kit (aws-fpga) before 2.3.4 might allow local users to execute arbitrary code with root priv…

TwilightEPSS 0.12%via NVD
CVE-2026-50544Medium· 6.3
1mo ago

NortheBridge/luminalshine is a Sunshine-compatible game stream host for Moonlight

NortheBridge/luminalshine is a Sunshine-compatible game stream host for Moonlight. Prior to version 26.05.0-rc4, a latent gap exists on a default install, the file at `src/platform/windows/misc.cpp` lives at `C:\ProgramData\LuminalShine\…

SunlitNortheBridge · luminalshineEPSS 0.09%via NVD
CVE-2026-46388Medium· 4.4
2mo ago

osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework

osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, an unprivileged attacker can read the contents of an osquery file carve until the carve completes and the temporary files ar…

SunlitEPSS 0.13%via NVD
CVE-2026-54328High· 7.3
3mo ago

Pi Agent: Predictable temporary extension install paths allow local privilege escalation on shared Linux hosts

Pi Agent: Predictable temporary extension install paths allow local privilege escalation on shared Linux hosts

Twilightearendil-works · @earendil-works/pi-coding-agentEPSS 0.16%via GHSA
CWE-379 vulnerabilities (CVEs) · VulnSea