VulnSea

CWE-749

CVEs classified under CWE-749, newest first.

25 CVEsRSS

CVE-2026-89139High· 8.7
today

Temporal Server compiles a Worker Controller Instance module into its Worker Service, and that module registers a compute provider named subprocess whose function is to launch a worker by running a command on the machine hosting the Work…

Temporal Server compiles a Worker Controller Instance module into its Worker Service, and that module registers a compute provider named subprocess whose function is to launch a worker by running a command on the machine hosting the Work…

TwilightTemporal Technologies, Inc. · go.temporal.io/servervia NVD
CVE-2026-92612Low· 1.0PoC
today

In Eclipse iceoryx2 versions greater than v0.8.0, the StaticString exposes its contents as mutable bytes through safe APIs, while String::as_str() converts those bytes into a Rust string slice without validating UTF-8

In Eclipse iceoryx2 versions greater than v0.8.0, the StaticString exposes its contents as mutable bytes through safe APIs, while String::as_str() converts those bytes into a Rust string slice without validating UTF-8. An application can…

TwilightEclipse Foundation · Eclipse iceoryx™via NVD
CVE-2026-68928High· 8.6PoC
3d ago

Acode is a powerful text and code editor for Android

Acode is a powerful text and code editor for Android. From 1.11.6 until 1.12.7, com.foxdebug.acode.rk.exec.terminal.TerminalService is declared as an exported service in src/plugins/terminal/plugin.xml without a binding permission, and s…

MidnightAcode-Foundation · AcodeEPSS 0.13%via NVD
CVE-2026-61793Medium· 6.9PoC
4d ago

Nuxt OG Image generates OG Images with Vue templates in Nuxt

Nuxt OG Image generates OG Images with Vue templates in Nuxt. From 6.0.2 until 6.7.0, nuxt-og-image exposes the unauthenticated /_og/d/** route when the documented defaults security.strict = false and security.secret = "" are used, and b…

Twilightnuxt-modules · og-imageEPSS 0.46%via NVD
CVE-2026-20293High· 7.1
1w ago

A vulnerability in the Unified Extensible Firmware Interface (UEFI) Shell implementation of Cisco UCS Servers and UCS-based appliances could allow an authenticated attacker with valid credentials for a user account with the role of user …

A vulnerability in the Unified Extensible Firmware Interface (UEFI) Shell implementation of Cisco UCS Servers and UCS-based appliances could allow an authenticated attacker with valid credentials for a user account with the role of user …

TwilightCisco · Cisco Enterprise NFV Infrastructure SoftwareEPSS 0.13%via NVD
CVE-2026-86711High· 7.4
1w ago

electerm before 5.3.15 exposes 40+ main-process functions through an unvalidated Electron IPC handler with no function-name allowlist or sender validation

electerm before 5.3.15 exposes 40+ main-process functions through an unvalidated Electron IPC handler with no function-name allowlist or sender validation. Renderer-side script execution can invoke openFileWithEditor and other functions …

Twilightelecterm · electermEPSS 0.14%via NVD
CVE-2026-75810Medium· 5.7
1w ago

Exposed Dangerous Method or Function in ASUS Armoury Crate allow a local user to cause a brief system stall by bypassing driver authentication and sending requests to trigger system management interrupts (SMIs)

Exposed Dangerous Method or Function in ASUS Armoury Crate allow a local user to cause a brief system stall by bypassing driver authentication and sending requests to trigger system management interrupts (SMIs). Repeatedly triggering SMI…

SunlitASUS · Armoury CrateEPSS 0.11%via NVD
GHSA-9w56-46f6-3qhxMedium· 5.5
1mo ago

asteval Sandbox Escape: arbitrary native memory read/write via numpy ctypes in default asteval Interpreter

asteval Sandbox Escape: arbitrary native memory read/write via numpy ctypes in default asteval Interpreter

Sunlitasteval · astevalvia OSV
CVE-2024-45747High· 7.2
1mo ago

GeoServer has a Server-Side Template Injection (SSTI) vulnerability in processing FreeMarker templates

GeoServer has a Server-Side Template Injection (SSTI) vulnerability in processing FreeMarker templates

Twilightgeoserver · org.geoserver:gs-mainvia GHSA
CVE-2026-52877High· 8.3
1mo ago

Streambert is a cross-platform Electron Desktop App to stream and download video content

Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to version 2.6.0, the open-external IPC handler in src/ipc/downloads.js passes a renderer-supplied url directly to Electron's shell.openExter…

TwilightEPSS 0.37%via NVD
CVE-2026-48056Critical· 10.0
1mo ago

Streambert is a cross-platform Electron Desktop App to stream and download video content

Streambert is a cross-platform Electron Desktop App to stream and download video content. Versions prior to 2.5.0 improperly validate executable paths supplied to the  run-download  IPC handler, allowing a compromised renderer process t…

MidnightEPSS 0.48%via NVD
CVE-2026-68823Critical· 9.1
1mo ago

Azure Confidential Ledger Remote Code Execution Vulnerability

Exposed dangerous method or function in Azure Confidential Ledger allows an authorized attacker to execute code over a network.

MidnightMicrosoft · Azure Confidential LedgerEPSS 0.60%via CVEORG
CVE-2026-20467None
1mo ago

In apusys, there is a possible escalation of privilege due to a missing bounds check

In apusys, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exp…

SunlitEPSS 0.12%via NVD
CVE-2026-54753Medium· 5.9
1mo ago

`nx graph` dev server permissive CORS policy

`nx graph` dev server permissive CORS policy

Sunlitnx · nxEPSS 1.2%via GHSA
CVE-2026-45489Medium· 6.5
2mo ago

Microsoft Edge (Chromium-based) Spoofing Vulnerability

Microsoft Edge (Chromium-based) Spoofing Vulnerability

SunlitMicrosoft · Microsoft Edge (Chromium-based)EPSS 0.88%via NVD
CVE-2026-14620Medium· 4.7PoC
2mo ago

webpack-dev-server versions 5.2.5 and earlier expose two internal developer endpoints, /webpack-dev-server/open-editor and /webpack-dev-server/invalidate, that perform state-changing actions on any GET request without verifying that the …

webpack-dev-server versions 5.2.5 and earlier expose two internal developer endpoints, /webpack-dev-server/open-editor and /webpack-dev-server/invalidate, that perform state-changing actions on any GET request without verifying that the …

TwilightEPSS 0.52%via NVD
CVE-2026-49993Medium
3mo ago

@nuxt/webpack-builder and @nuxt/rspack-builder dev server same-origin check bypassed when Sec-Fetch-Site, Origin, and Referer are all absent (incomplete fix for GHSA-6m52-m754-pw2g)

@nuxt/webpack-builder and @nuxt/rspack-builder dev server same-origin check bypassed when Sec-Fetch-Site, Origin, and Referer are all absent (incomplete fix for GHSA-6m52-m754-pw2g)

Sunlitnuxt · @nuxt/webpack-builderEPSS 0.28%via GHSA
CVE-2026-53633Critical· 9.8
3mo ago

Vitest Browser: Exposed Browser Mode API Can Proxy CDP and Overwrite Config Files, Leading to RCE

Vitest Browser: Exposed Browser Mode API Can Proxy CDP and Overwrite Config Files, Leading to RCE

Midnightvitest · @vitest/browserEPSS 0.90%via GHSA
CVE-2026-8108High· 7.8
4mo ago

The installation of Fuji Tellus adds a driver to the kernel which grants all users read and write permissions.

The installation of Fuji Tellus adds a driver to the kernel which grants all users read and write permissions.

Twilightfujielectric · tellusEPSS 0.15%via NVD
CVE-2025-9611None
8mo ago

Microsoft Playwright MCP Server versions prior to 0.0.40 fails to validate the Origin header on incoming connections

Microsoft Playwright MCP Server versions prior to 0.0.40 fails to validate the Origin header on incoming connections. This allows an attacker to perform a DNS rebinding attack via a victim’s web browser and send unauthorized requests to …

SunlitEPSS 1.2%via NVD
CVE-2025-43955Low· 2.2
1y ago

TwsCachedXPathAPI in Convertigo versions before 8.3.11 did not restrict commons-jxpath functions, which could allow expression injection in contexts where an attacker can influence an evaluated XPath expression

TwsCachedXPathAPI in Convertigo versions before 8.3.11 did not restrict commons-jxpath functions, which could allow expression injection in contexts where an attacker can influence an evaluated XPath expression. Convertigo 8.3.11 fixes t…

Sunlitconvertigo · convertigoEPSS 0.35%via NVD
CVE-2024-25675Critical· 9.8
2y ago

An issue was discovered in MISP before 2.4.184

An issue was discovered in MISP before 2.4.184. A client does not need to use POST to start an export generation process. This is related to app/Controller/JobsController.php and app/View/Events/export.ctp.

Midnightmisp-project · mispEPSS 0.82%via NVD
CVE-2018-19322High· 7.8CISA KEV
7y ago

The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 expose functionality to read/write data from/to IO ports

The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 expose functionality to read/write data from/to IO ports. This …

Abyssalgigabyte · aorus_graphics_engineEPSS 1.8%via NVD
CVE-2010-1428High· 7.5CISA KEVPoC
16y ago

The Web Console (aka web-console) in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allow…

The Web Console (aka web-console) in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allow…

Abyssalredhat · jboss_enterprise_application_platformEPSS 62%via NVD
CVE-2010-0738Medium· 5.3CISA KEVPoC
16y ago

The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allows …

The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allows …

Midnightredhat · jboss_enterprise_application_platformEPSS 79%via NVD
CWE-749 vulnerabilities (CVEs) · VulnSea