VulnSea

CWE-693

CVEs classified under CWE-693, newest first.

276 CVEsRSS

CVE-2026-70601High· 7.5
1mo ago

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.9, 40.9.2, 41.2.2, and 42.0.0-beta.5, apps that expose Promise-returning functions to web content via contextBridge may…

▾ Twilightelectron · electronEPSS 0.30%via NVD
CVE-2026-53949Medium· 5.3
1mo ago

Ghost Content API filter bypass reveals private fields

Ghost Content API filter bypass reveals private fields

▾ Sunlitghost · ghostEPSS 0.36%via GHSA
CVE-2026-17677High· 8.8
1mo ago

Inappropriate implementation in ANGLE in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page

Inappropriate implementation in ANGLE in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

▾ Twilightgoogle · chromeEPSS 0.34%via NVD
CVE-2026-17676Critical· 9.6
1mo ago

Inappropriate implementation in ANGLE in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page

Inappropriate implementation in ANGLE in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium securi…

▾ Midnightgoogle · chromeEPSS 0.34%via NVD
CVE-2026-17669Critical· 9.6
1mo ago

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

▾ Midnightgoogle · chromeEPSS 0.34%via NVD
CVE-2026-17764Medium· 6.5
1mo ago

Inappropriate implementation in FedCM in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass same origin policy via a crafted HTML page

Inappropriate implementation in FedCM in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: Medium)

▾ SunlitEPSS 0.30%via NVD
CVE-2026-67427High· 8.6
1mo ago

Flyto2 Core: ${env.VAR} interpolation reads any env secret despite env.get being denylisted

Flyto2 Core: ${env.VAR} interpolation reads any env secret despite env.get being denylisted

▾ Twilightflyto-core · flyto-coreEPSS 0.59%via GHSA
GHSA-xvg2-cgv6-6h7vHigh
2mo ago

netfoil: Incorrect block responses could lead to localhost traffic

netfoil: Incorrect block responses could lead to localhost traffic

▾ Twilighttinfoil-factory · github.com/tinfoil-factory/netfoilvia GHSA
GHSA-qqc3-94qv-7fw3Medium
2mo ago

Hubuum client library (Rust): Configured custom transports may be bypassed, exposing credentials and network traffic

Hubuum client library (Rust): Configured custom transports may be bypassed, exposing credentials and network traffic

▾ Sunlithubuum_client · hubuum_clientvia GHSA
CVE-2026-59223Medium· 4.3
2mo ago

Open WebUI: `WEB_FETCH_FILTER_LIST` host allow/block filter bypassable via URL path and non-label-boundary matching

Open WebUI: `WEB_FETCH_FILTER_LIST` host allow/block filter bypassable via URL path and non-label-boundary matching

▾ Sunlitopen-webui · open-webuiEPSS 0.38%via GHSA
CVE-2026-59207High
2mo ago

n8n: "Allowed HTTP Request Domains" Restriction Bypass via AI Agents MCP Connector

n8n: "Allowed HTTP Request Domains" Restriction Bypass via AI Agents MCP Connector

▾ Twilightn8n · n8nEPSS 0.45%via GHSA
GHSA-c2j3-45gr-mqc4Low
2mo ago

DOMPurify: `CUSTOM_ELEMENT_HANDLING` bypasses `afterSanitizeElements` for allowed custom elements.

DOMPurify: `CUSTOM_ELEMENT_HANDLING` bypasses `afterSanitizeElements` for allowed custom elements.

▾ Sunlitdompurify · dompurifyvia GHSA
CVE-2026-50646High· 7.8
2mo ago

.NET Framework Remote Code Execution Vulnerability

Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · .NET 8.0EPSS 4.0%via CVEORG
CVE-2026-50661Medium· 6.1
2mo ago

Windows BitLocker Security Feature Bypass Vulnerability

Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-47305High· 7.8
2mo ago

Visual Studio Remote Code Execution Vulnerability

Protection mechanism failure in Visual Studio allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Microsoft Visual Studio 2022 version 17.12EPSS 0.47%via CVEORG
CVE-2026-34348Medium· 6.5PoC
2mo ago

Protection mechanism failure in Windows Event Logging Service allows an authorized attacker to disclose information over a network.

Protection mechanism failure in Windows Event Logging Service allows an authorized attacker to disclose information over a network.

▾ Twilightmicrosoft · windows_10_1809EPSS 1.00%via NVD
CVE-2026-15528Low· 3.3
2mo ago

A vulnerability was found in lamaalrajih kicad-mcp up to 3.3.1

A vulnerability was found in lamaalrajih kicad-mcp up to 3.3.1. This issue affects some unknown processing of the file kicad_mcp/utils/path_validator.py. Performing a manipulation of the argument project_path/schematic_path results in pr…

▾ SunlitEPSS 0.16%via NVD
GHSA-xrmc-c5cg-rv7xHigh· 8.8
2mo ago

SafeInstall agent guard shell parsing can miss raw package execution

SafeInstall agent guard shell parsing can miss raw package execution

▾ Twilightsafeinstall-cli · safeinstall-clivia GHSA
CVE-2026-59854Medium· 4.9
2mo ago

SiYuan is an open-source personal knowledge management system

SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, POST /api/file/globalCopyFiles accepts attacker-supplied absolute source paths and relies on util.IsSensitivePath in kernel/util/path.go, whose denylist misse…

▾ SunlitEPSS 0.48%via NVD
CVE-2026-0278None
2mo ago

Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls. The Prisma Access Agent on macOS is not affected.

Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls. The Prisma Access Agent on macOS is not affected.

▾ SunlitEPSS 0.15%via NVD
GHSA-59qp-cfj3-rp64Medium
2mo ago

netfoil has a domain name filter bypass via multiple questions

netfoil has a domain name filter bypass via multiple questions

▾ Sunlittinfoil-factory · github.com/tinfoil-factory/netfoilvia GHSA
GHSA-fqf6-gxhh-2xhwHigh
2mo ago

uutils coreutils: cp/install/mv/ln --suffix alone does not enable backup mode (silent data loss vs GNU)

uutils coreutils: cp/install/mv/ln --suffix alone does not enable backup mode (silent data loss vs GNU)

▾ Twilightuucore · uucorevia GHSA
CVE-2026-35349Medium· 6.7
2mo ago

rm: --preserve-root bypassed via a symlink to / (string check instead of dev/inode)

rm: --preserve-root bypassed via a symlink to / (string check instead of dev/inode)

▾ Sunlituu_rm · uu_rmEPSS 0.21%via GHSA
CVE-2026-35363Medium· 5.6
2mo ago

rm: 'rm -rf ./' (and ./// variants) silently deletes current directory contents, bypassing dot protection

rm: 'rm -rf ./' (and ./// variants) silently deletes current directory contents, bypassing dot protection

▾ Sunlituu_rm · uu_rmEPSS 0.17%via GHSA
CVE-2026-14535High· 8.8
2mo ago

In Trail of Bits fickling versions up to and including 0.1.11, the UnsafeImportsML analysis pass unconditionally calls AnalysisContext.shorten_code(node) on every import node it inspects, regardless of whether the import is flagged as un…

In Trail of Bits fickling versions up to and including 0.1.11, the UnsafeImportsML analysis pass unconditionally calls AnalysisContext.shorten_code(node) on every import node it inspects, regardless of whether the import is flagged as un…

▾ TwilightEPSS 0.56%via NVD
CVE-2026-14625Medium· 6.3
2mo ago

A security flaw has been discovered in NousResearch hermes-agent up to 0.15.2

A security flaw has been discovered in NousResearch hermes-agent up to 0.15.2. The affected element is the function shell.exec of the file tui_gateway/server.py. The manipulation results in protection mechanism failure. It is possible to…

▾ SunlitEPSS 0.38%via NVD
CVE-2025-71373High· 8.1
2mo ago

picklescan before 0.0.33 fails to detect operator.methodcaller function calls in pickle files, allowing attackers to bypass security checks

picklescan before 0.0.33 fails to detect operator.methodcaller function calls in pickle files, allowing attackers to bypass security checks. Remote attackers can craft malicious pickle payloads using operator.methodcaller that execute ar…

▾ TwilightEPSS 0.64%via NVD
CVE-2026-14409High· 7.5
2mo ago

Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code inside a sandbox via a crafted HTML page

Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium sec…

▾ Twilightgoogle · chromeEPSS 0.36%via NVD
CVE-2026-49981High
2mo ago

Twig: Sandbox filter, tag and function allow-list bypass when sandbox state changes between renders for a cached `Template`

Twig: Sandbox filter, tag and function allow-list bypass when sandbox state changes between renders for a cached `Template`

▾ Twilighttwig · twig/twigEPSS 0.36%via GHSA
CVE-2026-13951High· 8.3
2mo ago

Insufficient policy enforcement in USB in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page

Insufficient policy enforcement in USB in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severit…

▾ Twilightgoogle · chromeEPSS 0.30%via NVD
CWE-693 vulnerabilities (CVEs) — page 6 · VulnSea