VulnSea

Tagged “cve.org”

CVEs tagged cve.org, newest first.

15818 CVEsRSS

CVE-2026-93435High· 7.5
1w ago

redis-parser through 3.0.0 contains a denial of service vulnerability in the RESP protocol parser that allows malicious Redis endpoints to crash the client process through unbounded recursion on nested arrays

redis-parser through 3.0.0 contains a denial of service vulnerability in the RESP protocol parser that allows malicious Redis endpoints to crash the client process through unbounded recursion on nested arrays. Attackers can send crafted …

▾ TwilightNodeRedis · redis-parserEPSS 0.63%via NVD
CVE-2026-93307Medium· 4.3PoC
1w ago

A vulnerability has been found in O-RAN-SC SMO OAM 2025-06-10

A vulnerability has been found in O-RAN-SC SMO OAM 2025-06-10. Affected is an unknown function of the component VES Collector. Such manipulation of the argument additionalFields.padding leads to uncontrolled memory allocation. The attack…

▾ TwilightO-RAN-SC · SMO OAMEPSS 0.53%via NVD
CVE-2026-86688High· 7.4
1w ago

Session Fixation vulnerability in team-alembic ash_authentication allows an attacker who can plant a session identifier in a victim's browser to hold an authenticated session once that victim signs in. AshAuthentication.Plug.Helpers.sto…

Session Fixation vulnerability in team-alembic ash_authentication allows an attacker who can plant a session identifier in a victim's browser to hold an authenticated session once that victim signs in. AshAuthentication.Plug.Helpers.sto…

▾ Twilightteam-alembic · ash_authenticationEPSS 0.74%via NVD
CVE-2026-76949Critical· 9.1
1w ago

Authentication Bypass by Spoofing vulnerability in team-alembic ash_authentication allows an attacker who can plant a remember-me cookie in a victim's browser to replace that victim's authenticated session with one for the attacker's own…

Authentication Bypass by Spoofing vulnerability in team-alembic ash_authentication allows an attacker who can plant a remember-me cookie in a victim's browser to replace that victim's authenticated session with one for the attacker's own…

▾ Midnightteam-alembic · ash_authenticationEPSS 0.77%via NVD
CVE-2026-54767Critical· 9.1PoC
1w ago

WeGIA is a web manager for charitable institutions

WeGIA is a web manager for charitable institutions. Prior to 3.8.5, web/html/socio/sistema/controller/deletar_socios.php exposes an unauthenticated GET endpoint whose chave parameter is checked only against a hardcoded chave_correta valu…

▾ AbyssalLabRedesCefetRJ · WeGIAEPSS 0.78%via NVD
CVE-2026-54734Critical· 10.0
1w ago

Prebid Server Java is the Java version of Prebid Server

Prebid Server Java is the Java version of Prebid Server. Prior to 3.43.0, certain bidder adapters interpolate user-supplied parameters into outbound request URLs without using HttpUtil to validate the resulting domain or path segment. A …

▾ Midnightprebid · prebid-server-javaEPSS 0.62%via NVD
CVE-2026-54671High· 8.8PoC
1w ago

WeGIA is a web manager for charitable institutions

WeGIA is a web manager for charitable institutions. Prior to 3.8.5, WeGIA maps InternoControle to an empty resource array in web/controle/control.php, and verificarPermissao in web/dao/MiddlewareDAO.php treats that empty array as uncondi…

▾ MidnightLabRedesCefetRJ · WeGIAEPSS 0.57%via NVD
CVE-2026-54670Critical· 9.1PoC
1w ago

WeGIA is a web manager for charitable institutions

WeGIA is a web manager for charitable institutions. Prior to 3.8.5, the contribution request dispatcher in web/html/contribuicao/controller/control.php accepts attacker-controlled nomeClasse and metodo values without a complete controlle…

▾ AbyssalLabRedesCefetRJ · WeGIAEPSS 0.69%via NVD
CVE-2026-54648Medium· 6.5PoC
1w ago

CubeCart is an ecommerce software solution

CubeCart is an ecommerce software solution. Prior to 6.7.5, the GDPR tools in admin/sources/customers.gdpr.inc.php rely on page-level CC_PERM_READ access and do not require CC_PERM_DELETE for the purge, no_order_purge, or delete_guests c…

▾ Twilightcubecart · v6EPSS 0.59%via NVD
CVE-2026-54647High· 7.2PoC
1w ago

CubeCart is an ecommerce software solution

CubeCart is an ecommerce software solution. Prior to 6.7.5, admin/sources/settings.index.inc.php directly concatenates the administrator-controlled download_expire POST parameter into a raw UPDATE statement for CubeCart_downloads without…

▾ Midnightcubecart · v6EPSS 1.4%via NVD
CVE-2026-54646High· 7.2PoC
1w ago

CubeCart is an ecommerce software solution

CubeCart is an ecommerce software solution. Prior to 6.7.5, admin/sources/maintenance.index.inc.php places administrator-controlled tablename values into ALTER TABLE, CHECK TABLE, and ANALYZE TABLE statements without validating the ident…

▾ Midnightcubecart · v6EPSS 1.4%via NVD
CVE-2026-54645Medium· 4.8PoC
1w ago

CubeCart is an ecommerce software solution

CubeCart is an ecommerce software solution. Prior to 6.7.5, admin/sources/products.index.inc.php reads the description, description_short, and spec_copy rich-text fields from $GLOBALS['RAW']['POST'] and removes only script elements befor…

▾ Twilightcubecart · v6EPSS 1.1%via NVD
CVE-2026-54644Medium· 6.1PoC
1w ago

CubeCart is an ecommerce software solution

CubeCart is an ecommerce software solution. Prior to 6.7.5, the _errorMessage method in classes/gui.class.php uses strip_tags to permit anchor elements in error, information, and warning messages while retaining unsafe href values and on…

▾ Twilightcubecart · v6EPSS 0.90%via NVD
CVE-2026-54643Medium· 5.4PoC
1w ago

CubeCart is an ecommerce software solution

CubeCart is an ecommerce software solution. Prior to 6.7.5, the delete-note handler in admin/sources/orders.index.inc.php verifies only the presence of order_id and delete-note parameters before deleting records from CubeCart_order_notes…

▾ Twilightcubecart · v6EPSS 0.38%via NVD
CVE-2026-54642Medium· 5.3
1w ago

CubeCart is an ecommerce software solution

CubeCart is an ecommerce software solution. Prior to 6.7.5, the reset_id download-counter action and delete_card stored-payment-card action in admin/sources/orders.index.inc.php use state-changing GET requests and are omitted from the pr…

▾ Sunlitcubecart · v6EPSS 0.33%via NVD
CVE-2026-54634High· 7.3
1w ago

Hamlib is a ham radio control library for radios, rotators, and amplifiers

Hamlib is a ham radio control library for radios, rotators, and amplifiers. Prior to 4.7.2, the unauthenticated rigctld send_raw command on TCP port 4532 reaches rigctl_send_raw() in tests/rigctl_parse.c, which writes a NUL byte at buf[b…

▾ TwilightHamlib · HamlibEPSS 0.44%via NVD
CVE-2026-54633Medium· 6.9
1w ago

PoDoFo is a C++17 PDF manipulation library

PoDoFo is a C++17 PDF manipulation library. From version 1.0.0 until 1.1.1, processing a crafted PDF with an Indexed color-space image can cause a heap out-of-bounds read in PdfColorSpaceFilterIndexed::FetchScanLine in src/podofo/main/Pd…

▾ Sunlitpodofo · podofoEPSS 0.18%via NVD
CVE-2026-54613Medium· 5.4PoC
1w ago

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to 1.0.8.5, getThemeFolder() in admin/controller/editor/revisions.php returns the attacker-controlled theme parameter without s…

▾ Twilightgivanz · VvvebEPSS 0.34%via NVD
CVE-2026-54612High· 8.8
1w ago

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. From 1.0.0 until 1.0.8.5, saveGlobalElements() in admin/controller/editor/global-trait.php concatenates the attacker-controlled file …

▾ Twilightgivanz · VvvebEPSS 0.76%via NVD
CVE-2026-54608High· 7.1PoC
1w ago

MythicalDash is a Pterodactyl client area

MythicalDash is a Pterodactyl client area. In 3.5.4-aurora and earlier, GET /api/stripe/process in backend/app/Api/System/Gateways/Stripe.php creates a pending row in mythicaldash_stripe_payments before Stripe checkout succeeds and embed…

▾ MidnightMythicalLTD · MythicalDashEPSS 0.20%via NVD
CVE-2026-54520High· 8.1PoC
1w ago

AI Agent Automation is a modular AI agent workflow automation platform with schedulers, tools, and observability

AI Agent Automation is a modular AI agent workflow automation platform with schedulers, tools, and observability. Prior to 0.9.1, the executeStep file-step implementation in backend/src/agents/executor.js passes the user-controlled step.…

▾ MidnightvmDeshpande · ai-agent-automationEPSS 0.49%via NVD
CVE-2026-54519High· 8.8PoC
1w ago

AI Agent Automation is a modular AI agent workflow automation platform with schedulers, tools, and observability

AI Agent Automation is a modular AI agent workflow automation platform with schedulers, tools, and observability. Prior to 0.9.1, backend/src/controllers/memory.controller.js authenticates requests but listMemories, deleteMemory, and cle…

▾ MidnightvmDeshpande · ai-agent-automationEPSS 0.52%via NVD
CVE-2026-54507High· 8.4
1w ago

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to 1.0.8.5, the oEmbedProxy() handler in admin/controller/editor/editor.php accepts an attacker-controlled url parameter and pa…

▾ Twilightgivanz · VvvebEPSS 0.45%via NVD
CVE-2026-54506High· 7.6PoC
1w ago

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to 1.0.8.5, app/controller/user/profile.php accepts the user[bio] field and passes stored content through sanitizeHTML() in sys…

▾ Midnightgivanz · VvvebEPSS 0.31%via NVD
CVE-2026-54343High· 8.7
1w ago

Frappe Learning Management System (LMS) is a learning system that helps users structure their content

Frappe Learning Management System (LMS) is a learning system that helps users structure their content. Prior to version 2.52.1, a remote attacker can request a traversal path handled by SCORMRenderer.render in lms/page_renderers.py. The …

▾ Twilightfrappe · lmsEPSS 0.68%via NVD
CVE-2026-53557High· 7.7
1w ago

SQLBot is an intelligent Text-to-SQL system based on large language models and RAG

SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, an authenticated user can supply a crafted sheet["tableName"] value in the Excel datasource configuration submitted through POST /api/v1/…

▾ Twilightdataease · SQLBotEPSS 0.34%via NVD
CVE-2026-53556Medium· 6.0PoC
1w ago

SQLBot is an intelligent Text-to-SQL system based on large language models and RAG

SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, the POST /api/v1/datasource/previewData endpoint in backend/apps/datasource/crud/datasource.py incorporates the client-controlled table_n…

▾ Twilightdataease · SQLBotEPSS 0.48%via NVD
CVE-2026-53555Medium· 5.1PoC
1w ago

SQLBot is an intelligent Text-to-SQL system based on large language models and RAG

SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, an authenticated uploader can submit an image/svg+xml assistant UI logo through PATCH /api/v1/system/assistant/ui, and SQLBot stores the …

▾ Twilightdataease · SQLBotEPSS 0.48%via NVD
CVE-2026-53554High· 7.3PoC
1w ago

SQLBot is an intelligent Text-to-SQL system based on large language models and RAG

SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, the POST /api/v1/datasource/parseExcel endpoint in backend/apps/datasource/api/datasource.py uses attacker-controlled multipart filename …

▾ Midnightdataease · SQLBotEPSS 0.41%via NVD
CVE-2026-53534High· 7.5
1w ago

JabRef is a desktop application for managing BibTeX and BibLaTeX libraries

JabRef is a desktop application for managing BibTeX and BibLaTeX libraries. Prior to 6.0-alpha.6, when jabsrv or JabRef's built-in HTTP server is enabled, the GET /better-bibtex/cayw endpoint accepts an external command query parameter a…

▾ TwilightJabRef · jabrefEPSS 0.45%via NVD
CVEs tagged “cve.org” — page 131 · VulnSea