VulnSea

Tagged “cve.org”

CVEs tagged cve.org, newest first.

15872 CVEsRSS

CVE-2026-85717Medium· 6.8
1w ago

The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses

The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. From 2.14.5 to 2.16.0 and from 3.0.9 to 3.0.11, a client configured with a client-wide Realm and redire…

▾ SunlitAsyncHttpClient · async-http-clientEPSS 0.53%via NVD
CVE-2026-85715High· 7.5PoC
1w ago

ExifReader is a JavaScript Exif information parser

ExifReader is a JavaScript Exif information parser. Prior to 4.41.1, ExifReader parses attacker-controlled HEIC or AVIF ISO-BMFF files in getItems() within src/image-header-iso-bmff-iloc.js and trusts iloc itemCount and extentCount value…

▾ Midnightmattiasw · ExifReaderEPSS 0.61%via NVD
CVE-2026-81868Medium· 6.5
1w ago

Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications

Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications. Prior to 4.3.0, Steeltoe.Security.Authorization.Certificate deployments using AddOrgAndSpacePolicies() and UseCe…

▾ SunlitSteeltoeOSS · security-advisoriesEPSS 0.25%via NVD
CVE-2026-81516High· 7.5
1w ago

Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications

Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications. From 4.0.0 until 4.3.0, ConsulDiscoveryClient constructs ConsulServiceInstance objects by parsing each registrat…

▾ TwilightSteeltoeOSS · security-advisoriesEPSS 0.61%via NVD
CVE-2026-81515High· 7.5
1w ago

Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications

Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications. From 4.0.0 until 4.3.0, EurekaDiscoveryClient deserializes the registry response as one unit, and an unrecognize…

▾ TwilightSteeltoeOSS · security-advisoriesEPSS 0.61%via NVD
CVE-2026-76834High· 8.1
1w ago

b2evolution CMS versions 6.7.8 through 7.2.5 contain an incomplete fix for CVE-2016-8901 where the serialized-array object check in param_check_serialized_array() fails to reject payloads with negative integer array keys

b2evolution CMS versions 6.7.8 through 7.2.5 contain an incomplete fix for CVE-2016-8901 where the serialized-array object check in param_check_serialized_array() fails to reject payloads with negative integer array keys. Unauthenticated…

▾ Twilightb2evolution · b2evolution CMSEPSS 0.85%via NVD
CVE-2026-76781Medium· 5.5
1w ago

A flaw was found in libxml2

A flaw was found in libxml2. A local user or an attacker providing a specially crafted XML catalog can trigger a NULL pointer dereference during XML catalog parsing. This occurs when a `nextCatalog` element lacks its mandatory `catalog` …

▾ SunlitRed Hat · libxml2-mainEPSS 0.17%via NVD
CVE-2026-75588Low· 2.6
1w ago

Mattermost Desktop App versions <=6.2 6.2.2.0 fail to validate the URL scheme when checking whether a target URL is internal to the connected server, which allows a network-positioned attacker to load a plugin popout window over an insec…

Mattermost Desktop App versions <=6.2 6.2.2.0 fail to validate the URL scheme when checking whether a target URL is internal to the connected server, which allows a network-positioned attacker to load a plugin popout window over an insec…

▾ SunlitMattermost · MattermostEPSS 0.22%via NVD
CVE-2026-75523Medium· 5.9
1w ago

Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications

Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications. Prior to 4.3.0, the Steeltoe.Management.Endpoint /actuator/httpexchanges endpoint passes recorded request URIs t…

▾ SunlitSteeltoe · Steeltoe.Management.EndpointEPSS 0.44%via NVD
CVE-2026-69197High· 8.7
1w ago

Umbraco is an ASP.NET CMS

Umbraco is an ASP.NET CMS. Prior to 13.15.1, 17.5.3, and 18.0.2, the Content Delivery API applies member and Public Access checks to the directly requested node but not to referenced nodes serialized through Content Picker or Multi-Node …

▾ Twilightumbraco · Umbraco-CMSEPSS 0.66%via NVD
CVE-2026-61700Low· 3.7
1w ago

MariaDB Connector/J is used to connect applications developed in Java to MariaDB and MySQL databases

MariaDB Connector/J is used to connect applications developed in Java to MariaDB and MySQL databases. Prior to 2.7.14, 3.3.5, 3.4.3, and 3.5.9, ClientMessage.readPacket processes a server-initiated LOCAL INFILE protocol packet 0xfb witho…

▾ Sunlitmariadb-corporation · mariadb-connector-jEPSS 0.37%via NVD
CVE-2026-56795High· 8.2
1w ago

Dell Server Update Utility, versions prior to 26.07.01, contains an Uncontrolled Search Path Element vulnerability

Dell Server Update Utility, versions prior to 26.07.01, contains an Uncontrolled Search Path Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.

▾ TwilightDell · Driver Pack For Windows OSEPSS 0.19%via NVD
CVE-2026-12284Low· 3.7
1w ago

Mattermost Desktop App versions <=6.2 6.2.2.0 fails to validate the IPC sender in the leaveCall handler which allows a malicious or compromised Mattermost server (or a user with script access to a connected server view) to disconnect an …

Mattermost Desktop App versions <=6.2 6.2.2.0 fails to validate the IPC sender in the leaveCall handler which allows a malicious or compromised Mattermost server (or a user with script access to a connected server view) to disconnect an …

▾ SunlitMattermost · MattermostEPSS 0.13%via NVD
CVE-2026-92987High· 7.5
1w ago

roxmltree through 0.21.1 performs quadratic-time attribute and namespace validation during XML parsing without limits on attribute count

roxmltree through 0.21.1 performs quadratic-time attribute and namespace validation during XML parsing without limits on attribute count. Attackers can craft XML documents with tens of thousands of attributes on a single element to consu…

▾ TwilightRazrFalcon · roxmltreeEPSS 0.63%via NVD
CVE-2026-92986High· 8.8
1w ago

SiYuan before 3.8.4 renders document titles as HTML in the backlink dock tree without escaping markup characters

SiYuan before 3.8.4 renders document titles as HTML in the backlink dock tree without escaping markup characters. Attackers can set malicious titles through the rename API or crafted notebooks to execute scripts in the Electron renderer …

▾ Twilightsiyuan-note · siyuanEPSS 0.82%via NVD
CVE-2026-92985High· 8.8PoC
1w ago

SiYuan versions before 3.8.4 fail to escape bookmark labels imported from notebook files when rendering them in the dock tree

SiYuan versions before 3.8.4 fail to escape bookmark labels imported from notebook files when rendering them in the dock tree. Attackers can craft malicious .sy notebook files with unescaped HTML in bookmark attributes that execute scrip…

▾ Midnightsiyuan-note · siyuanEPSS 0.82%via NVD
CVE-2026-92984High· 8.1
1w ago

HUBzero CMS through 2.2.32 accepts session identifiers from query strings and request variables instead of cookies alone, allowing unauthenticated attackers to fixate victim sessions

HUBzero CMS through 2.2.32 accepts session identifiers from query strings and request variables instead of cookies alone, allowing unauthenticated attackers to fixate victim sessions. Attackers can obtain a valid session identifier, send…

▾ Twilighthubzero · hubzero-cmsEPSS 0.46%via NVD
CVE-2026-92983High· 7.5PoC
1w ago

InternLM LMDeploy through 0.17.0 in DistServe prefill/decode disaggregation mode fails to release scheduler sessions because the proxy uses user-facing session IDs instead of internal scheduler keys

InternLM LMDeploy through 0.17.0 in DistServe prefill/decode disaggregation mode fails to release scheduler sessions because the proxy uses user-facing session IDs instead of internal scheduler keys. Unauthenticated attackers can send co…

▾ MidnightInternLM · lmdeployEPSS 0.66%via NVD
CVE-2026-92880Medium· 6.3
1w ago

A weakness has been identified in vgmstream up to r2117

A weakness has been identified in vgmstream up to r2117. Impacted is the function vadpcm_read_coefs_be of the file src/coding/vadpcm_decoder.c of the component EA SCHl parser. This manipulation of the argument entry/entries causes out-of…

▾ SunlitEPSS 0.43%via NVD
CVE-2026-88952Critical· 9.1
1w ago

Improper Authentication vulnerability in team-alembic AshAuthentication allows an attacker to be signed in as another user by linking an OAuth2 identity to an account that is not theirs. AshAuthentication.Strategy.OAuth2.UserResolver.re…

Improper Authentication vulnerability in team-alembic AshAuthentication allows an attacker to be signed in as another user by linking an OAuth2 identity to an account that is not theirs. AshAuthentication.Strategy.OAuth2.UserResolver.re…

▾ Midnightteam-alembic · ash_authenticationEPSS 0.75%via NVD
CVE-2026-87742High· 7.5
1w ago

A flaw was found in quarkus-websockets-next

A flaw was found in quarkus-websockets-next. This vulnerability allows a remote attacker to cause a Denial of Service (DoS) by streaming messages over a single connection faster than the application can process them. Due to unbounded mes…

▾ TwilightRed Hat · exploit-intelligence/agent-client-rhel9EPSS 0.76%via NVD
CVE-2026-85078Medium· 6.5
1w ago

Sanic is an opensource python web server/framework

Sanic is an opensource python web server/framework. In version 25.12.0, Sanic's core HTTP/1.1 chunked-body handling does not fully consume the trailer-part after the terminating zero chunk before reusing the keep-alive connection buffer.…

▾ Sunlitsanic-org · sanicEPSS 0.51%via NVD
CVE-2026-85077High· 8.2
1w ago

Sanic is an opensource python web server/framework

Sanic is an opensource python web server/framework. Prior to version 24.12.1, and in version 25.12.0, the HTTP/1.1 response pipeline in sanic/response/types.py serializes response header names and values without rejecting carriage-return…

▾ Twilightsanic-org · sanicEPSS 0.48%via NVD
CVE-2026-81447Medium· 6.8
1w ago

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper Certificate Validation vulnerability

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading t…

▾ SunlitDell · OpenManage Server Administrator Managed Node (Patch) for WindowsEPSS 0.13%via NVD
CVE-2026-81446High· 7.4
1w ago

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Server-Side Request Forgery (SSRF) vulnerability

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Server-Side Request Forgery (SSRF) vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Server…

▾ TwilightDell · OpenManage Server Administrator Managed Node (Patch) for WindowsEPSS 0.37%via NVD
CVE-2026-81445High· 7.2
1w ago

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper Privilege Management vulnerability

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper Privilege Management vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation o…

▾ TwilightDell · OpenManage Server Administrator Managed Node (Patch) for WindowsEPSS 0.46%via NVD
CVE-2026-80356High· 7.3
1w ago

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Exposure of Sensitive Information to an Unauthorized Actor vulnerability

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Exposure of Sensitive Information to an Unauthorized Actor vulnerability. A low privileged attacker with local access could potentially exploit this vulnerabil…

▾ TwilightDell · OpenManage Server Administrator Managed Node (Patch) for WindowsEPSS 0.14%via NVD
CVE-2026-79752Critical· 9.2PoC
1w ago

CakePHP is a rapid development framework for PHP

CakePHP is a rapid development framework for PHP. Prior to 4.5.12, 4.6.5, 5.1.9, 5.2.14, and 5.3.7, FunctionsBuilder::cast, FunctionsBuilder::extract, FunctionsBuilder::datePart, and FunctionsBuilder::dateAdd in src/Database/FunctionsBui…

▾ Abyssalcakephp · cakephpEPSS 0.62%via NVD
CVE-2026-77614High· 8.8PoC
1w ago

Opencast is a free, open-source platform to support the management of educational audio and video content

Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to versions 19.7 and 20.2, the default security configuration in etc/security/mh_default_org.xml accepts a client-selected J…

▾ Midnightopencast · opencastEPSS 0.55%via NVD
CVE-2026-71538High· 8.5
1w ago

@cyclonedx/cyclonedx-npm creates CycloneDX Software Bill of Materials from npm projects

@cyclonedx/cyclonedx-npm creates CycloneDX Software Bill of Materials from npm projects. Prior to version 6.0.0, the Windows fallback path in src/npmRunner.ts, used when npm_execpath does not provide the npm CLI path, can construct a she…

▾ TwilightCycloneDX · cyclonedx-node-npmEPSS 0.21%via NVD
CVEs tagged “cve.org” — page 158 · VulnSea