VulnSea

CWE-732

CVEs classified under CWE-732, newest first.

71 CVEsRSS

CVE-2026-60659High· 7.1
2mo ago

Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystems)

Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystems). The supported version that is affected is 11.4. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure wh…

Twilightoracle · solarisEPSS 0.13%via NVD
CVE-2026-58432Medium· 5.9
2mo ago

Gitea: draft release attachment disclosure via missing web authorization

Gitea: draft release attachment disclosure via missing web authorization

Sunlitgitea · code.gitea.io/giteaEPSS 0.27%via GHSA
CVE-2026-58424High· 8.9PoC
2mo ago

Gitea: Permanent Fork PR Workflow Approval Gate Bypass

Gitea: Permanent Fork PR Workflow Approval Gate Bypass

Midnightgitea · code.gitea.io/giteaEPSS 0.37%via GHSA
CVE-2026-59946Medium· 6.1
2mo ago

Composer: Path traversal in package bin field lets dependencies chmod arbitrary host files

Composer: Path traversal in package bin field lets dependencies chmod arbitrary host files

Sunlitcomposer · composer/composerEPSS 0.17%via GHSA
CVE-2026-59148High· 8.8PoC
2mo ago

Mockoon provides way to design and run mock APIs

Mockoon provides way to design and run mock APIs. Prior to 9.7.0, Mockoon's admin API in commons-server/src/libs/server/admin-api.ts is mounted on the same Express listener as user-defined mock routes, enabled by default in shipped runti…

Midnightmockoon · mockoonEPSS 0.26%via NVD
CVE-2026-35341High· 7.1
2mo ago

mkfifo: permissions of an existing file are changed after FIFO creation fails

mkfifo: permissions of an existing file are changed after FIFO creation fails

Twilightuu_mkfifo · uu_mkfifoEPSS 0.17%via GHSA
CVE-2026-35361Low· 3.4
2mo ago

mknod: Device nodes created mislabeled on SELinux, with broken cleanup (remove_dir on a node)

mknod: Device nodes created mislabeled on SELinux, with broken cleanup (remove_dir on a node)

Sunlituu_mknod · uu_mknodEPSS 0.14%via GHSA
CVE-2026-35353Low· 3.3
2mo ago

mkdir: -m exposes directory with umask perms before chmod (race window)

mkdir: -m exposes directory with umask perms before chmod (race window)

Sunlituu_mkdir · uu_mkdirEPSS 0.10%via GHSA
CVE-2026-53486Critical· 9.1
2mo ago

Decompress: Archive extraction can create files and links outside of the target directory

Decompress: Archive extraction can create files and links outside of the target directory

Midnightxhmikosr · @xhmikosr/decompressEPSS 0.75%via GHSA
CVE-2026-44268Medium· 4.4
2mo ago

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an incorrect per…

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an incorrect per…

SunlitEPSS 0.15%via NVD
CVE-2026-50267Medium· 4.7
2mo ago

Steeltoe: TLS private keys written to /tmp with default permissions, never deleted

Steeltoe: TLS private keys written to /tmp with default permissions, never deleted

SunlitSteeltoe · Steeltoe.Configuration.AbstractionsEPSS 0.07%via GHSA
GHSA-p2fh-f5fc-44hrMedium· 6.5
2mo ago

OpenClaw: memory-wiki ingest could read local files with operator.write scope

OpenClaw: memory-wiki ingest could read local files with operator.write scope

Sunlitopenclaw · openclawvia GHSA
GHSA-55f6-4pr5-c7m5High
2mo ago

Kahi has privilege-drop and socket/log permission issues

Kahi has privilege-drop and socket/log permission issues

Twilightkahiteam · github.com/kahiteam/kahivia GHSA
CVE-2026-49340High· 8.1
2mo ago

gonic has arbitrary file write in createPlaylist: any authenticated user can write playlist M3U content to attacker-controlled path on the host

gonic has arbitrary file write in createPlaylist: any authenticated user can write playlist M3U content to attacker-controlled path on the host

Twilightgonic · go.senan.xyz/gonicEPSS 0.43%via GHSA
CVE-2026-55441High· 8.6
3mo ago

Mise vulnerable to arbitrary command execution via task-include files in an untrusted, config-less repository

Mise vulnerable to arbitrary command execution via task-include files in an untrusted, config-less repository

Twilightmise · miseEPSS 0.18%via GHSA
CVE-2026-32315Medium· 5.5
3mo ago

motionEye's World-Readable Configuration File Exposes Admin Password Hash

motionEye's World-Readable Configuration File Exposes Admin Password Hash

Sunlitmotioneye · motioneyeEPSS 2.9%via GHSA
CVE-2026-54327Low· 2.2
3mo ago

Pi Agent: Race condition in Pi auth.json writes could expose stored credentials

Pi Agent: Race condition in Pi auth.json writes could expose stored credentials

Sunlitmariozechner · @mariozechner/pi-coding-agentEPSS 0.09%via GHSA
GHSA-vqj9-vhg4-27mgMedium· 5.5
3mo ago

Duplicate Advisory: Config recovery could restore openclaw.json with broad file permissions

Duplicate Advisory: Config recovery could restore openclaw.json with broad file permissions

Sunlitopenclaw · openclawvia GHSA
CVE-2026-0271High· 7.8
3mo ago

A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma Access Agent app on Linux devices enables a local user to execute code with elevated privileges. This does not impact Prisma Access Agent on Windows, macOS, iO…

A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma Access Agent app on Linux devices enables a local user to execute code with elevated privileges. This does not impact Prisma Access Agent on Windows, macOS, iO…

Twilightpaloaltonetworks · prisma_access_agentEPSS 0.11%via NVD
CVE-2026-10840High· 7.1
3mo ago

A flaw was found in the OpenShift Pipelines operator

A flaw was found in the OpenShift Pipelines operator. The tekton-scheduler-rolebinding ClusterRoleBinding grants the system:authenticated group write access to Kueue and cert-manager custom resources via the tekton-scheduler-role Cluster…

TwilightEPSS 0.22%via NVD
CVE-2026-8070High· 7.3
3mo ago

Incorrect permission assignment for a critical resource in Armoury Crate allows a local user to bypass the driver’s validation mechanism, resulting in unauthorized read and write access to physical memory.Refer to the '  Security Update …

Incorrect permission assignment for a critical resource in Armoury Crate allows a local user to bypass the driver’s validation mechanism, resulting in unauthorized read and write access to physical memory.Refer to the '  Security Update …

TwilightASUS · Armoury CrateEPSS 0.09%via NVD
CVE-2026-41217High· 7.9
4mo ago

A vulnerability exists in an undisclosed BIG-IP TMOS Shell (tmsh) command that may allow an authenticated attacker with resource administrator or administrator role to execute arbitrary system commands with higher privileges

A vulnerability exists in an undisclosed BIG-IP TMOS Shell (tmsh) command that may allow an authenticated attacker with resource administrator or administrator role to execute arbitrary system commands with higher privileges. In Applianc…

TwilightEPSS 0.11%via NVD
CVE-2026-8069High· 7.8PoC
4mo ago

PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a custom protocol to invoke internal functions

PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a custom protocol to invoke internal functions. However, this Named Pipe is misconfigu…

Midnightacer · nitrosenseEPSS 0.12%via NVD
CVE-2026-6842Low· 2.5
5mo ago

A flaw was found in nano

A flaw was found in nano. In environments with permissive umask settings, a local attacker can exploit incorrect directory permissions (0777 instead of 0700) for the `~/.local` directory. This allows the attacker to inject a malicious `.…

SunlitEPSS 0.08%via NVD
CVE-2026-21727Low· 3.3
5mo ago

A cross-tenant isolation vulnerability was found in Grafana’s Correlations feature affecting legacy correlation records

A cross-tenant isolation vulnerability was found in Grafana’s Correlations feature affecting legacy correlation records. Due to a backward compatibility condition allowing org_id = 0 records to be returned across organizations, a user wi…

Sunlitgrafana · grafanaEPSS 0.20%via NVD
CVE-2025-41118Critical· 9.1
5mo ago

Pyroscope is an open-source continuous profiling database

Pyroscope is an open-source continuous profiling database. The database supports various storage backends, including Tencent Cloud Object Storage (COS). If the database is configured to use Tencent COS as the storage backend, an attacke…

Midnightgrafana · pyroscopeEPSS 0.41%via NVD
CVE-2026-21715Low· 3.3
5mo ago

A flaw in Node.js Permission Model filesystem enforcement leaves `fs.realpathSync.native()` without the required read permission checks, while all comparable filesystem functions correctly enforce them. As a result, code running under…

A flaw in Node.js Permission Model filesystem enforcement leaves `fs.realpathSync.native()` without the required read permission checks, while all comparable filesystem functions correctly enforce them. As a result, code running under…

Sunlitnodejs · node.jsEPSS 0.16%via NVD
CVE-2025-12801Medium· 6.5
6mo ago

A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time

A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particular, it allows th…

SunlitEPSS 0.46%via NVD
CVE-2026-0775High· 7.00day
8mo ago

npm cli Incorrect Permission Assignment Local Privilege Escalation Vulnerability

npm cli Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of npm cli. An attacker must first obtain the ability to execute…

AbyssalEPSS 0.30%via NVD
CVE-2026-24049High· 7.1PoC
8mo ago

wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427

wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427. In versions 0.40.0 through 0.46.1, the unpack function is vulnerable to file permission modification through mishandling of file permissions after e…

Midnightwheel_project · wheelEPSS 0.36%via NVD
CWE-732 vulnerabilities (CVEs) — page 2 · VulnSea