VulnSea

CWE-862

CVEs classified under CWE-862, newest first.

1332 CVEsRSS

CVE-2025-2902High· 8.3
3mo ago

Improper Authorization Vulnerability of Maintenance Utility in Hitachi Virtual Storage Platform. This issue affects Hitachi Virtual Storage Platform E390, E590, E790, E990, E1090, E390H, E590H, E790H, E1090H: before DKCMAIN Ver

Improper Authorization Vulnerability of Maintenance Utility in Hitachi Virtual Storage Platform. This issue affects Hitachi Virtual Storage Platform E390, E590, E790, E990, E1090, E390H, E590H, E790H, E1090H: before DKCMAIN Ver. 93-07-2…

▾ TwilightEPSS 0.35%via NVD
CVE-2026-13537Medium· 4.3
3mo ago

A vulnerability was found in CodeAstro Human Resource Management System 1.0

A vulnerability was found in CodeAstro Human Resource Management System 1.0. Impacted is an unknown function. The manipulation results in cross-site request forgery. The attack may be launched remotely. The exploit has been made public a…

▾ SunlitEPSS 0.23%via NVD
CVE-2026-12411High· 8.4
3mo ago

Broken Access Control in the devLXDInstancePatchHandler component of Canonical LXD allows an untrusted guest to mount, read, and overwrite another guest's custom storage volume via a crafted device PATCH request over /dev/lxd when securi…

Broken Access Control in the devLXDInstancePatchHandler component of Canonical LXD allows an untrusted guest to mount, read, and overwrite another guest's custom storage volume via a crafted device PATCH request over /dev/lxd when securi…

▾ Twilightcanonical · lxdEPSS 0.29%via NVD
CVE-2026-49991High· 8.6
3mo ago

RustFS is a distributed object storage system built in Rust

RustFS is a distributed object storage system built in Rust. In 1.0.0-beta.4, authenticated users with only PutObject permission on their own bucket can exploit a path traversal vulnerability in the Snowball auto-extract feature to write…

▾ TwilightEPSS 0.41%via NVD
CVE-2026-48797Critical
3mo ago

Backpropagate: backprop ui --auth and backprop ui --share do not enforce authentication

Backpropagate: backprop ui --auth and backprop ui --share do not enforce authentication

▾ Midnightbackpropagate · backpropagateEPSS 0.57%via OSV
CVE-2026-49291High· 8.1
3mo ago

mcp-memory-service: OAuth read-only clients can write and delete memories through MCP tools/call

mcp-memory-service: OAuth read-only clients can write and delete memories through MCP tools/call

▾ Twilightmcp-memory-service · mcp-memory-serviceEPSS 0.49%via GHSA
GHSA-rp72-5v5q-2446Low
3mo ago

@cardano402/mcp-server missing spending limits, LAN-exposed HTTP transport, and SSRF via catalog.server.url

@cardano402/mcp-server missing spending limits, LAN-exposed HTTP transport, and SSRF via catalog.server.url

▾ Sunlitcardano402 · @cardano402/mcp-servervia GHSA
CVE-2026-49258High· 8.8
3mo ago

Nebula Mesh: Web UI lacks ownership checks, enabling cross-operator access to hosts and networks (read, block, delete)

Nebula Mesh: Web UI lacks ownership checks, enabling cross-operator access to hosts and networks (read, block, delete)

▾ Twilightjuev · github.com/juev/nebula-meshEPSS 0.48%via GHSA
CVE-2026-49357High
3mo ago

Streamable HTTP mode exposes LINE Desktop read/send tools without MCP authentication

Streamable HTTP mode exposes LINE Desktop read/send tools without MCP authentication

▾ Twilightline-desktop-mcp · line-desktop-mcpEPSS 0.56%via GHSA
CVE-2026-49288Medium· 4.3
3mo ago

Statamic CMS: Missing authorization on Control Panel fieldtype endpoints allows disclosure of restricted resources

Statamic CMS: Missing authorization on Control Panel fieldtype endpoints allows disclosure of restricted resources

▾ Sunlitstatamic · statamic/cmsEPSS 0.27%via GHSA
GHSA-7vfx-4246-jcfhHigh
3mo ago

SolidInvoice: IDOR in LiveComponent allows same-company cross-user access to API tokens and notification transport settings

SolidInvoice: IDOR in LiveComponent allows same-company cross-user access to API tokens and notification transport settings

▾ Twilightsolidinvoice · solidinvoice/solidinvoicevia GHSA
GHSA-q6xx-5vr8-p898Critical· 9.9
3mo ago

Nezha vulnerable to cross-tenant terminal/file-manager session hijack via WebSocket stream UUID without ownership check

Nezha vulnerable to cross-tenant terminal/file-manager session hijack via WebSocket stream UUID without ownership check

▾ Midnightnezhahq · github.com/nezhahq/nezhavia GHSA
CVE-2026-48941Medium· 6.5
3mo ago

The K2 frontend `item.checkin` task accepts an unauthenticated `sigProFolder` query parameter and uses it directly to address a `JFolder::delete()` call under `/media/k2/galleries/`

The K2 frontend `item.checkin` task accepts an unauthenticated `sigProFolder` query parameter and uses it directly to address a `JFolder::delete()` call under `/media/k2/galleries/`

▾ SunlitEPSS 0.27%via NVD
CVE-2026-57300Medium· 4.3
3mo ago

Jenkins MCP Server Plugin missing a permission check

Jenkins MCP Server Plugin missing a permission check

▾ Sunlitjenkins · io.jenkins.plugins:mcp-serverEPSS 0.28%via GHSA
CVE-2026-57304Medium· 5.4
3mo ago

Jenkins Assembla Plugin has a missing permission check

Jenkins Assembla Plugin has a missing permission check

▾ Sunlitjenkins-ci · org.jenkins-ci.plugins:assemblaEPSS 0.25%via GHSA
CVE-2026-57307Medium· 4.2
3mo ago

Jenkins Zowe zDevOps Plugin has a missing permission check

Jenkins Zowe zDevOps Plugin has a missing permission check

▾ Sunlitjenkins · io.jenkins.plugins:zdevopsEPSS 0.21%via GHSA
CVE-2026-57294Medium· 5.4
3mo ago

Jenkins EC2 Fleet Plugin has a missing permission check

Jenkins EC2 Fleet Plugin has a missing permission check

▾ Sunlitamazon · com.amazon.jenkins.fleet:ec2-fleetEPSS 0.25%via GHSA
CVE-2026-57293Medium· 4.3
3mo ago

Jenkins Gitee Plugin has an incorrect permission check that allows enumerating credentials IDs

Jenkins Gitee Plugin has an incorrect permission check that allows enumerating credentials IDs

▾ Sunlitjenkins-ci · org.jenkins-ci.plugins:giteeEPSS 0.27%via GHSA
CVE-2026-57291Medium· 5.4
3mo ago

Jenkins Gitee Plugin missing permission checks

Jenkins Gitee Plugin missing permission checks

▾ Sunlitjenkins-ci · org.jenkins-ci.plugins:giteeEPSS 0.23%via GHSA
CVE-2026-57286Medium· 4.3
3mo ago

Jenkins Git Parameter Plugin has a missing permission check that allows listing SCM branch and tag names

Jenkins Git Parameter Plugin has a missing permission check that allows listing SCM branch and tag names

▾ Sunlitjenkins-ci · org.jenkins-ci.tools:git-parameterEPSS 0.28%via GHSA
CVE-2026-57285Medium· 4.3
3mo ago

Jenkins GitHub Branch Source Plugin has missing permission check that allows enumerating GitHub Enterprise server URLs

Jenkins GitHub Branch Source Plugin has missing permission check that allows enumerating GitHub Enterprise server URLs

▾ Sunlitjenkins-ci · org.jenkins-ci.plugins:github-branch-sourceEPSS 0.28%via GHSA
CVE-2026-57299Medium· 4.3
3mo ago

Missing permission checks in Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier allow attackers with Overall/Read permission to enumerate the names of configured Contrast metadata.

Missing permission checks in Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier allow attackers with Overall/Read permission to enumerate the names of configured Contrast metadata.

▾ Sunlitjenkins · contrast_continuous_application_securityEPSS 0.25%via NVD
CVE-2026-57297Medium· 4.3
3mo ago

A missing permission check in Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using an attacker-specified username, API key, a…

A missing permission check in Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using an attacker-specified username, API key, a…

▾ Sunlitjenkins · contrast_continuous_application_securityEPSS 0.25%via NVD
CVE-2026-48709Low· 3.7
3mo ago

OliveTin: ValidateArgumentType API Endpoint's Missing Authentication Allows Action and Argument Enumeration

OliveTin: ValidateArgumentType API Endpoint's Missing Authentication Allows Action and Argument Enumeration

▾ SunlitOliveTin · github.com/OliveTin/OliveTinEPSS 0.42%via GHSA
CVE-2026-10609Medium· 6.8
3mo ago

OpenShift Cluster Logging Operator missing authorization flaw

OpenShift Cluster Logging Operator missing authorization flaw

▾ Sunlitopenshift · github.com/openshift/cluster-logging-operatorEPSS 0.38%via OSV
CVE-2026-56402Medium· 6.5PoC
3mo ago

NanoClaw before 2.1.17 contains a privilege escalation vulnerability in the handleApprovalsResponse function that fails to verify responder role authorization

NanoClaw before 2.1.17 contains a privilege escalation vulnerability in the handleApprovalsResponse function that fails to verify responder role authorization. Attackers with a valid questionId can approve or reject privileged actions li…

▾ Twilightnanocoai · nanoclawEPSS 0.38%via NVD
CVE-2026-11807Critical· 9.6
3mo ago

A missing authorization vulnerability was found in the Event-Driven Ansible (EDA) websocket API

A missing authorization vulnerability was found in the Event-Driven Ansible (EDA) websocket API. The /api/eda/ws/ansible-rulebook endpoint does not verify user permissions when processing Worker messages. Any authenticated user can send …

▾ MidnightEPSS 0.53%via NVD
CVE-2026-56115High· 8.8
3mo ago

Bootimus through 0.1.70 contains a broken access control vulnerability that allows authenticated low-privileged users to perform administrative actions by exploiting missing role enforcement in the JWTMiddleware function in internal/auth…

Bootimus through 0.1.70 contains a broken access control vulnerability that allows authenticated low-privileged users to perform administrative actions by exploiting missing role enforcement in the JWTMiddleware function in internal/auth…

▾ TwilightEPSS 0.45%via NVD
CVE-2026-52812High
3mo ago

Gogs: LFS dedupe path leaks private repo content across tenants

Gogs: LFS dedupe path leaks private repo content across tenants

▾ Twilightgogs · gogs.io/gogsEPSS 0.24%via GHSA
CVE-2026-48492Medium
3mo ago

Snipe-IT's selectlist visibility is too permissive

Snipe-IT's selectlist visibility is too permissive

▾ Sunlitsnipe · snipe/snipe-itEPSS 0.39%via GHSA
CWE-862 vulnerabilities (CVEs) — page 38 · VulnSea