VulnSea

CWE-693

CVEs classified under CWE-693, newest first.

276 CVEsRSS

CVE-2026-79638Medium· 5.3
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Alternate XSS Syntax vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Alternate XSS Syntax vulnerability. An unauthenticated attacker with remote access coul…

▾ Sunlitdell · secure_connect_gatewayEPSS 0.34%via NVD
CVE-2026-78552Medium· 6.0
2w ago

The Okta Access Gateway does not apply its Lua directive restriction to the application-level custom configuration field

The Okta Access Gateway does not apply its Lua directive restriction to the application-level custom configuration field. The field is interpolated directly into the nginx server block without inspection, resulting in execution of inject…

▾ Sunlitokta · access_gatewayEPSS 0.27%via NVD
CVE-2026-0084High· 7.8
2w ago

In multiple functions of HostEmulationManager.java, there is a possible background activity launch due to a logic error in the code

In multiple functions of HostEmulationManager.java, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User in…

▾ Twilightgoogle · androidEPSS 0.08%via NVD
CVE-2026-28612High· 7.8
2w ago

In resolveActivity of ActivityStarter.java, there is a possible way to perform Intent Redirection attacks due to a logic error in the code

In resolveActivity of ActivityStarter.java, there is a possible way to perform Intent Redirection attacks due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. …

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-28599High· 7.8
2w ago

In addCreatorToken of ActivityManagerService.java, there is a possible Intent Redirection Bypass due to a logic error in the code

In addCreatorToken of ActivityManagerService.java, there is a possible Intent Redirection Bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User inte…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-28594High· 7.8
2w ago

In multiple locations, there is a possible use after free due to a logic error in the code

In multiple locations, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-28584Medium· 5.5
2w ago

In createSessionInternal of PackageInstallerService.java, there is a possible way to permanently DoS the device due to a logic error in the code

In createSessionInternal of PackageInstallerService.java, there is a possible way to permanently DoS the device due to a logic error in the code. This could lead to local denial of service with no additional execution privileges needed. …

▾ Sunlitgoogle · androidEPSS 0.09%via NVD
CVE-2026-28583High· 7.8
2w ago

In validate_camera_metadata_structure of camera_metadata.c, there is a possible out of bounds write due to a logical error in the code

In validate_camera_metadata_structure of camera_metadata.c, there is a possible out of bounds write due to a logical error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-0065High· 7.8
2w ago

In areBackgroundActivityStartsAllowed of BackgroundLaunchProcessController.java, there is a possible unintended way to launch activities in the background due to a logic error in the code

In areBackgroundActivityStartsAllowed of BackgroundLaunchProcessController.java, there is a possible unintended way to launch activities in the background due to a logic error in the code. This could lead to local escalation of privilege…

▾ Twilightgoogle · androidEPSS 0.08%via NVD
CVE-2026-28660Low· 3.3
2w ago

In getAllSessions of multiple files, there is a possible confused deputy due to a logic error in the code

In getAllSessions of multiple files, there is a possible confused deputy due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for…

▾ Sunlitgoogle · androidEPSS 0.09%via NVD
CVE-2026-28658High· 7.8
2w ago

In findMetaAuthUid of AccountsDb.java, there is a possible frp bypass due to a logic error in the code

In findMetaAuthUid of AccountsDb.java, there is a possible frp bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for e…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-28655High· 7.8
2w ago

In multiple functions of RemoteViews.java, there is a possible background activity launch bypass due to a logic error in the code

In multiple functions of RemoteViews.java, there is a possible background activity launch bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User inte…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-28650High· 7.8
2w ago

In setHiddenWhileSuspended of WindowState.java, there is a possible overlay bypass due to a logic error in the code

In setHiddenWhileSuspended of WindowState.java, there is a possible overlay bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-28642High· 7.8
2w ago

In executeRequest of ActivityStarter.java, there is a possible background activity launch due to a logic error in the code

In executeRequest of ActivityStarter.java, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-28639High· 7.8
2w ago

In rw_mfc_handle_read_op of rw_mfc.cc, there is a possible out of bounds write due to a logic error in the code

In rw_mfc_handle_read_op of rw_mfc.cc, there is a possible out of bounds write due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not nee…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-28634High· 7.8
2w ago

In handleUssdRequest of PhoneInterfaceManager.java, there is a possible way to send a USSD request without permission due to a logic error in the code

In handleUssdRequest of PhoneInterfaceManager.java, there is a possible way to send a USSD request without permission due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privile…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-28627Medium· 4.3
2w ago

In btm_sec_encrypt_change of btm_sec.cc, there is a possible downgrade attack due to a logic error in the code

In btm_sec_encrypt_change of btm_sec.cc, there is a possible downgrade attack due to a logic error in the code. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not need…

▾ Sunlitgoogle · androidEPSS 0.27%via NVD
CVE-2026-49881High· 7.8PoC
2w ago

In serviceClassExists of InCallController.java, there is a possible arbitrary code execution due to a logic error in the code

In serviceClassExists of InCallController.java, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interact…

▾ Midnightgoogle · androidEPSS 0.10%via NVD
CVE-2026-45521Low· 3.3
2w ago

In openFile of AppFuseBridge.java, there is a possible information disclosure due to a missing permission check

In openFile of AppFuseBridge.java, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not need…

▾ Sunlitgoogle · androidEPSS 0.09%via NVD
CVE-2026-28668High· 7.8
2w ago

In LimitRealloc of malloc_limit.cpp, there is a possible use after free due to a logic error in the code

In LimitRealloc of malloc_limit.cpp, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-28664High· 7.8
2w ago

In WriteImageToDisk of runtime_image.cc, there is a possible file tampering due to a logic error in the code

In WriteImageToDisk of runtime_image.cc, there is a possible file tampering due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-81376Critical· 9.6
2w ago

Incomplete comparison with missing factors in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

Incomplete comparison with missing factors in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

▾ Midnightmicrosoft · visual_studio_codeEPSS 0.82%via NVD
CVE-2026-77892Medium· 6.8
2w ago

No cwe for this issue in Windows Boot Manager allows an unauthorized attacker to elevate privileges with a physical attack.

No cwe for this issue in Windows Boot Manager allows an unauthorized attacker to elevate privileges with a physical attack.

▾ Sunlitmicrosoft · windows_10_1607EPSS 0.44%via NVD
CVE-2026-79657Critical
2w ago

NLTK: Allowlisted pickle loaders still permit code execution in current source

NLTK: Allowlisted pickle loaders still permit code execution in current source

▾ Midnightnltk · nltkEPSS 1.3%via OSV
CVE-2026-84809Medium· 6.5PoC
3w ago

Tencent AI-Infra-Guard's skill-scan component excludes compiled Python bytecode files from analysis by hardcoding __pycache__ directories and .pyc/.pyo/.pyd extensions into skip lists across multiple scanning surfaces

Tencent AI-Infra-Guard's skill-scan component excludes compiled Python bytecode files from analysis by hardcoding __pycache__ directories and .pyc/.pyo/.pyd extensions into skip lists across multiple scanning surfaces. Attackers can dist…

▾ TwilightTencent · AI-Infra-GuardEPSS 0.57%via NVD
CVE-2026-84811Medium· 6.5
3w ago

agentverus-scanner fails to analyze compiled Python bytecode files in companion code directories, allowing attackers to bypass security scanning by shipping malicious __pycache__ entries alongside benign source files

agentverus-scanner fails to analyze compiled Python bytecode files in companion code directories, allowing attackers to bypass security scanning by shipping malicious __pycache__ entries alongside benign source files. Attackers can execu…

▾ Sunlitagentverus · agentverus-scannerEPSS 0.52%via NVD
CVE-2026-84810Medium· 6.5PoC
3w ago

claude-skill-antivirus fails to analyze executable files when scanning local skill directories, reading only SKILL.md while ignoring Python source, bytecode, and other artifacts in the scripts directory

claude-skill-antivirus fails to analyze executable files when scanning local skill directories, reading only SKILL.md while ignoring Python source, bytecode, and other artifacts in the scripts directory. Attackers can distribute skills w…

▾ Twilightclaude-world · claude-skill-antivirusEPSS 0.32%via NVD
CVE-2026-20277High· 8.2
3w ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases tha…

▾ TwilightCisco · Cisco IOS XR SoftwareEPSS 0.23%via NVD
CVE-2026-79684High· 8.8
3w ago

Dell PowerStore contains a Protection Mechanism Failure vulnerability

Dell PowerStore contains a Protection Mechanism Failure vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to bypass access restrictions and gain escalated privileges.

▾ TwilightEPSS 0.51%via NVD
CVE-2026-53508Medium
3w ago

oasdiff is a command-line and Go package that compares and detects breaking changes in OpenAPI specs

oasdiff is a command-line and Go package that compares and detects breaking changes in OpenAPI specs. From version 1.13.2 through version 1.18.0, oasdiff did not enforce --allow-external-refs=false (library: openapi3.Loader.IsExternalRef…

▾ Sunlitoasdiff · github.com/oasdiff/oasdiffEPSS 0.50%via NVD
CWE-693 vulnerabilities (CVEs) — page 4 · VulnSea