VulnSea

CWE-427

CVEs classified under CWE-427, newest first.

36 CVEsRSS

CVE-2026-54916High· 8.8
5d ago

NetBox Device Type Library is a collection of community-sourced device type definitions for import into NetBox

NetBox Device Type Library is a collection of community-sourced device type definitions for import into NetBox. The absence of tests/init.py and the lack of --import-mode=importlib cause pytest prepend import mode to place the tests dire…

Twilightnetbox-community · devicetype-libraryEPSS 0.41%via NVD
CVE-2026-56795High· 8.2
5d ago

Dell Server Update Utility, versions prior to 26.07.01, contains an Uncontrolled Search Path Element vulnerability

Dell Server Update Utility, versions prior to 26.07.01, contains an Uncontrolled Search Path Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.

TwilightDell · Driver Pack For Windows OSEPSS 0.13%via NVD
CVE-2026-92838High· 7.8
5d ago

A DLL hijacking vulnerability exists in the GeoVision GV-Remote E-Map desktop application

A DLL hijacking vulnerability exists in the GeoVision GV-Remote E-Map desktop application. The application loads one or more dynamic-link libraries (DLLs) from an unsafe search path, allowing a local attacker to place a malicious DLL in …

TwilightGeoVision Inc. · GV-Remote E-mapEPSS 0.14%via NVD
CVE-2026-92180High· 7.80day
1w ago

pdfforge PDF Architect activation-service Update Service Uncontrolled Search Path Element Local Privilege Escalation Vulnerability

pdfforge PDF Architect activation-service Update Service Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of pdfforge PD…

Abyssalpdfforge · PDF ArchitectEPSS 0.14%via NVD
CVE-2026-68955High· 7.8
1w ago

The installer for Rakuten Kobo Desktop Application (Windows version) insecurely loads Dynamic Link Libraries

The installer for Rakuten Kobo Desktop Application (Windows version) insecurely loads Dynamic Link Libraries. If there is a crafted DLL at the same directory when invoking the affected installer, arbitrary code may be executed with the p…

TwilightRakuten Kobo Inc. · The installer for Rakuten Kobo Desktop Application (Windows version)EPSS 0.18%via NVD
CVE-2026-87530High· 8.1
1w ago

Uncontrolled search path element in CredentialProvider in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program

Uncontrolled search path element in CredentialProvider in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Medium)

Twilightgoogle · chromeEPSS 0.14%via NVD
CVE-2026-76199High· 8.6
2w ago

Photoshop Desktop is affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user

Photoshop Desktop is affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. …

Twilightadobe · photoshopEPSS 0.21%via NVD
CVE-2026-72980Medium· 4.4
2w ago

Uncontrolled search path element in Windows Hello allows an authorized attacker to bypass a security feature locally.

Uncontrolled search path element in Windows Hello allows an authorized attacker to bypass a security feature locally.

Sunlitmicrosoft · windows_10_1607EPSS 0.39%via NVD
CVE-2026-6958High· 7.8PoC
2w ago

Acunetix 25.11.251107123 for Windows contains a local privilege escalation vulnerability in the Web Vulnerability Scanning Engine (wvsc.exe) that allows low-privileged local attackers to execute arbitrary code as SYSTEM by exploiting a m…

Acunetix 25.11.251107123 for Windows contains a local privilege escalation vulnerability in the Web Vulnerability Scanning Engine (wvsc.exe) that allows low-privileged local attackers to execute arbitrary code as SYSTEM by exploiting a m…

MidnightInvicti Security Corp. · AcunetixEPSS 0.14%via NVD
CVE-2026-45221High· 7.8
3w ago

Konga before 2.1.0 contains a privilege escalation vulnerability that allows low-privileged local attackers to execute arbitrary code by planting attacker-controlled OpenSSL configuration or library files in a hardcoded filesystem path a…

Konga before 2.1.0 contains a privilege escalation vulnerability that allows low-privileged local attackers to execute arbitrary code by planting attacker-controlled OpenSSL configuration or library files in a hardcoded filesystem path a…

TwilightEPSS 0.13%via NVD
CVE-2026-78680High· 7.8
3w ago

NLTK: Uncontrolled search path when invoking the Graphviz 'dot' binary

NLTK: Uncontrolled search path when invoking the Graphviz 'dot' binary

Twilightnltk · nltkEPSS 0.12%via OSV
CVE-2026-82649None
3w ago

SiYuan Windows installer before version 3.8.1 (affected versions >= 2.0.14) contains an uncontrolled search path element vulnerability in its NSIS installer, which invokes system executables such as TASKKILL by name rather than by absolu…

SiYuan Windows installer before version 3.8.1 (affected versions >= 2.0.14) contains an uncontrolled search path element vulnerability in its NSIS installer, which invokes system executables such as TASKKILL by name rather than by absolu…

SunlitEPSS 0.12%via NVD
CVE-2026-55015Medium· 5.5
1mo ago

Microsoft Remote Help Denial of Service Vulnerability

Uncontrolled search path element in Windows Remote Help allows an authorized attacker to deny service locally.

SunlitMicrosoft · Windows Remote HelpEPSS 0.49%via CVEORG
CVE-2026-55013High· 7.1
1mo ago

Windows Remote Help Defense Spoofing Vulnerability

Uncontrolled search path element in Windows Remote Help Defense allows an authorized attacker to perform spoofing locally.

TwilightMicrosoft · Windows Remote HelpEPSS 0.23%via CVEORG
CVE-2026-0294High· 7.8
1mo ago

A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma® Access Agent app on Windows and macOS devices enables a local user to execute code with elevated privileges

A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma® Access Agent app on Windows and macOS devices enables a local user to execute code with elevated privileges. The Prisma Access Agent on Linux, iOS, Android, an…

Twilightpaloaltonetworks · prisma_access_agentEPSS 0.11%via NVD
CVE-2026-54672High· 7.8
2mo ago

electron-updater: Uncontrolled search path elements within `AppImage` built by `app-builder-lib`

electron-updater: Uncontrolled search path elements within `AppImage` built by `app-builder-lib`

Twilightapp-builder-lib · app-builder-libEPSS 0.19%via GHSA
CVE-2026-5674High· 8.8
2mo ago

A flaw was found in PipeWire, a multimedia server

A flaw was found in PipeWire, a multimedia server. This vulnerability allows an attacker to escape sandboxed applications, such as Flatpak, by exploiting PipeWire's PulseAudio compatibility layer. An attacker with minimal permissions wit…

TwilightEPSS 0.21%via NVD
CVE-2026-15515High· 7.0
2mo ago

A security vulnerability has been detected in Tencent PC Manager 18.1.30242.301

A security vulnerability has been detected in Tencent PC Manager 18.1.30242.301. This issue affects some unknown processing in the library qmudisk64.sys of the component QMUDisk Driver. The manipulation leads to uncontrolled search path.…

TwilightEPSS 0.16%via NVD
CVE-2026-53813High· 7.8
2mo ago

OpenClaw: Fake package roots could influence memory-core artifact loading

OpenClaw: Fake package roots could influence memory-core artifact loading

Twilightopenclaw · openclawEPSS 0.11%via GHSA
CVE-2026-12003High· 7.8
3mo ago

To allow builds of Python to be run from an in-tree layout (rather than an installed file layout), the VPATH variable is defined at build time and used to locate certain landmarks - specifically, Modules/setup.local

To allow builds of Python to be run from an in-tree layout (rather than an installed file layout), the VPATH variable is defined at build time and used to locate certain landmarks - specifically, Modules/setup.local. When this landmark i…

TwilightRed Hat · Red Hat Hardened ImagesEPSS 0.15%via NVD
CVE-2026-47937High· 7.7
3mo ago

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user. An attacker with high priv…

TwilightEPSS 0.15%via NVD
CVE-2026-41567High· 7.2PoC
3mo ago

Moby is an open source container framework

Moby is an open source container framework. In versions prior to 29.5.1 and in moby/moby v2 prior to v2.0.0-beta.14, when a compressed archive is uploaded to a container via `PUT /containers/{id}/archive` or piped through `docker cp -`, …

Midnightmoby · moby/v2/daemonEPSS 0.16%via NVD
CVE-2025-14575None
4mo ago

An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate …

An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate …

SunlitEPSS 0.09%via NVD
CVE-2026-20772Medium· 6.7
4mo ago

Uncontrolled search path for some Intel(R) Connectivity Performance Suite software installers before version 50.25.1121.193 within Ring 3: User Applications may allow an escalation of privilege

Uncontrolled search path for some Intel(R) Connectivity Performance Suite software installers before version 50.25.1121.193 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an au…

Sunlitintel · connectivity_performance_suiteEPSS 0.09%via NVD
CVE-2026-4134High· 7.3
5mo ago

During an internal security assessment, a potential vulnerability was discovered in Lenovo Software Fix, that during installation could allow a local authenticated user to execute code with elevated privileges.

During an internal security assessment, a potential vulnerability was discovered in Lenovo Software Fix, that during installation could allow a local authenticated user to execute code with elevated privileges.

Twilightlenovo · software_fixEPSS 0.11%via NVD
CVE-2026-1636Medium· 6.7
5mo ago

A potential DLL hijacking vulnerability was reported in Lenovo Service Bridge that, under certain conditions, could allow a local authenticated user to execute code with elevated privileges.

A potential DLL hijacking vulnerability was reported in Lenovo Service Bridge that, under certain conditions, could allow a local authenticated user to execute code with elevated privileges.

Sunlitlenovo · service_bridgeEPSS 0.13%via NVD
CVE-2026-34632High· 8.2
5mo ago

Adobe Photoshop Installer was affected by an Uncontrolled Search Path Element vulnerability that could have resulted in arbitrary code execution in the context of the current user

Adobe Photoshop Installer was affected by an Uncontrolled Search Path Element vulnerability that could have resulted in arbitrary code execution in the context of the current user. A low-privileged local attacker could have exploited thi…

Twilightadobe · photoshop_set-up.exeEPSS 0.27%via NVD
CVE-2025-14821High· 7.8
5mo ago

A flaw was found in libssh

A flaw was found in libssh. This vulnerability allows local man-in-the-middle attacks, security downgrades of SSH (Secure Shell) connections, and manipulation of trusted host information, posing a significant risk to the confidentiality,…

TwilightEPSS 0.13%via NVD
CVE-2026-22561High· 7.8
5mo ago

Uncontrolled search path elements in Anthropic Claude for Windows installer (Claude Setup.exe) versions prior to 1.1.3363 allow local privilege escalation via DLL search-order hijacking

Uncontrolled search path elements in Anthropic Claude for Windows installer (Claude Setup.exe) versions prior to 1.1.3363 allow local privilege escalation via DLL search-order hijacking. The installer loads DLLs (e.g., profapi.dll) from …

Twilightanthropic · claudeEPSS 0.18%via NVD
CVE-2025-10939Low· 3.7
10mo ago

A flaw was found in Keycloak

A flaw was found in Keycloak. The Keycloak guides recommend to not expose /admin path to the outside in case the installation is using a proxy. The issue occurs at least via ha-proxy, as it can be tricked to using relative/non-normalized…

SunlitEPSS 0.38%via NVD
CWE-427 vulnerabilities (CVEs) · VulnSea