VulnSea

Tagged “cve.org”

CVEs tagged cve.org, newest first.

15880 CVEsRSS

CVE-2026-91099Critical· 9.8⚖ disputed
1w ago

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, inf…

▾ Midnighthp · linux_imaging_and_printingEPSS 0.98%via NVD
CVE-2026-91098Critical· 9.8
1w ago

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, inf…

▾ Midnighthp · linux_imaging_and_printingEPSS 1.0%via NVD
CVE-2026-92472Low· 3.3PoC
1w ago

A vulnerability was determined in GPAC 26.08-DEV

A vulnerability was determined in GPAC 26.08-DEV. The affected element is the function gf_node_deactivate_ex of the file src/scenegraph/base_scenegraph.c of the component MP4Box. Executing a manipulation can lead to use after free. The a…

▾ TwilightEPSS 0.17%via NVD
CVE-2026-81875High· 7.5PoC
1w ago

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to version 6.9.12, SHCParser in org.hl7.fhir.r5/src/main/java/org/hl7/fhir/r5/elementmodel/SHCParser.java can consume attacker…

▾ Midnighthapifhir · org.hl7.fhir.coreEPSS 0.63%via NVD
CVE-2026-73443Medium· 4.7
1w ago

On affected platforms running Arista EOS with VRRPv2 IP-AH authentication configured, an unauthenticated attacker within the same layer 2 network segment on which VRRP is running can capture a legitimate authenticated VRRP advertisement …

On affected platforms running Arista EOS with VRRPv2 IP-AH authentication configured, an unauthenticated attacker within the same layer 2 network segment on which VRRP is running can capture a legitimate authenticated VRRP advertisement …

▾ SunlitArista Networks · EOSEPSS 0.27%via NVD
CVE-2026-91100Critical· 9.8⚖ disputed
1w ago

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, inf…

▾ Midnighthp · linux_imaging_and_printingEPSS 0.72%via NVD
CVE-2026-81876High· 7.5
1w ago

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to version 6.9.12, SHCParser in org.hl7.fhir.r5/src/main/java/org/hl7/fhir/r5/elementmodel/SHCParser.java can enter an infinit…

▾ Twilighthapifhir · org.hl7.fhir.coreEPSS 0.63%via NVD
CVE-2026-73442Low· 3.0
1w ago

On affected platforms running Arista EOS with VRRP enabled, the peer device VRRP authentication credentials are logged in cleartext on the switch, allowing an authenticated user with sufficient privileges to view agent trace logs (or a s…

On affected platforms running Arista EOS with VRRP enabled, the peer device VRRP authentication credentials are logged in cleartext on the switch, allowing an authenticated user with sufficient privileges to view agent trace logs (or a s…

▾ SunlitArista Networks · EOSEPSS 0.21%via NVD
CVE-2026-91101Critical· 9.8⚖ disputed
1w ago

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, inf…

▾ Midnighthp · linux_imaging_and_printingEPSS 0.97%via NVD
CVE-2026-86043High· 7.5PoC
1w ago

Skipper is an HTTP router and reverse proxy for service composition

Skipper is an HTTP router and reverse proxy for service composition. Prior to version 0.27.37, the opaAuthorizeRequestWithBody filter can authorize an oversized request after Skipper truncates the body presented to Open Policy Agent beca…

▾ Midnightzalando · skipperEPSS 0.45%via NVD
CVE-2026-91102Critical· 9.8⚖ disputed
1w ago

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, inf…

▾ Midnighthp · linux_imaging_and_printingEPSS 0.79%via NVD
CVE-2026-79298High· 8.4PoC
1w ago

An issue in Howyar Technologies Inc SysReturn Versions prior to 11.3.034 and fixed in v.11.3.0.34 allows a local attcker to execute arbitrary code via the BOOTia32.efi and a crafted cloak32.dat file on the ESP.

An issue in Howyar Technologies Inc SysReturn Versions prior to 11.3.034 and fixed in v.11.3.0.34 allows a local attcker to execute arbitrary code via the BOOTia32.efi and a crafted cloak32.dat file on the ESP.

▾ MidnightEPSS 0.19%via NVD
CVE-2026-73456Critical· 10.0
1w ago

Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI) enabled, an unauthenticated gNPSI client can craft a malicious request to allow arbitrary code execution, granting a…

Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI) enabled, an unauthenticated gNPSI client can craft a malicious request to allow arbitrary code execution, granting a…

▾ MidnightArista Networks · EOSEPSS 0.69%via NVD
CVE-2026-91105Critical· 9.8
1w ago

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, inf…

▾ Midnighthp · linux_imaging_and_printingEPSS 1.0%via NVD
CVE-2026-91104Critical· 9.8
1w ago

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, inf…

▾ Midnighthp · linux_imaging_and_printingEPSS 1.1%via NVD
CVE-2026-91103Critical· 9.8⚖ disputed
1w ago

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, inf…

▾ Midnighthp · linux_imaging_and_printingEPSS 0.97%via NVD
CVE-2026-91106Critical· 9.8
1w ago

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, inf…

▾ Midnighthp · linux_imaging_and_printingEPSS 1.0%via NVD
CVE-2026-73457Medium· 5.3
1w ago

Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI) enabled, the gNPSI client credentials might be logged in clear text in local or remote accounting logs to authentica…

Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI) enabled, the gNPSI client credentials might be logged in clear text in local or remote accounting logs to authentica…

▾ SunlitArista Networks · EOSEPSS 0.32%via NVD
CVE-2026-85387High· 7.1⚖ disputed
1w ago

Concrete CMS before 9.5.4 re-authorized OAuth REST API requests from the bearer token alone and did not re-check the state of the account the token had been issued to

Concrete CMS before 9.5.4 re-authorized OAuth REST API requests from the bearer token alone and did not re-check the state of the account the token had been issued to. The resource server's authorization validator confirmed only that a t…

▾ Twilightconcretecms · concrete_cmsEPSS 0.25%via NVD
CVE-2026-18120Medium· 5.9
1w ago

Concrete CMS before 9.5.3 exposed a legacy Express entry search endpoint that returned entry result JSON without invoking the canViewExpressEntries() permission check applied by the normal dashboard and CSV Export flow

Concrete CMS before 9.5.3 exposed a legacy Express entry search endpoint that returned entry result JSON without invoking the canViewExpressEntries() permission check applied by the normal dashboard and CSV Export flow. An unauthenticate…

▾ Sunlitconcretecms · concrete_cmsEPSS 0.27%via NVD
CVE-2026-92716Critical· 9.6PoC
1w ago

Shuffle through 2.2.1 contains a cross-tenant privilege escalation vulnerability in the HandleApiGeneration endpoint that allows administrators to reset and read API keys of non-administrator users in other organizations

Shuffle through 2.2.1 contains a cross-tenant privilege escalation vulnerability in the HandleApiGeneration endpoint that allows administrators to reset and read API keys of non-administrator users in other organizations. Attackers with …

▾ AbyssalShuffle · ShuffleEPSS 0.43%via NVD
CVE-2026-92605Medium· 6.5
1w ago

IRIS through 2.4.29 fails to properly validate case authorization in comment listing endpoints for notes, tasks, IOCs, assets, and evidence items

IRIS through 2.4.29 fails to properly validate case authorization in comment listing endpoints for notes, tasks, IOCs, assets, and evidence items. Attackers with access to any single case can enumerate sequential object identifiers and r…

▾ Sunlitdfir-iris · iris-webEPSS 0.41%via NVD
CVE-2026-92718High· 7.3PoC
1w ago

Nuclei versions before 3.11.1 cache template signature verification based only on file modification time without content checksums

Nuclei versions before 3.11.1 cache template signature verification based only on file modification time without content checksums. Attackers can replace verified templates with unsigned malicious content and restore the original modific…

▾ Midnightprojectdiscovery · nucleiEPSS 0.12%via NVD
CVE-2026-92717Critical· 9.1PoC
1w ago

Covenant through 0.6 registers the CovenantHub SignalR hub without an Authorize attribute, allowing unauthenticated callers to invoke CreateHttpListener and receive a signed JWT token

Covenant through 0.6 registers the CovenantHub SignalR hub without an Authorize attribute, allowing unauthenticated callers to invoke CreateHttpListener and receive a signed JWT token. Attackers can use the obtained token to authenticate…

▾ Abyssalcobbr · CovenantEPSS 0.50%via NVD
CVE-2026-92413Medium· 4.3PoC
1w ago

A flaw has been found in Artifex MuPDF up to b6d17493700c621c0e70036980a6ebd06d2202c9

A flaw has been found in Artifex MuPDF up to b6d17493700c621c0e70036980a6ebd06d2202c9. Affected by this vulnerability is the function pdf_open_filter of the file pdf-stream.c of the component PDF Xref Loading. Executing a manipulation ca…

▾ TwilightArtifex · MuPDFEPSS 0.59%via NVD
CVE-2026-92720Critical· 9.1
1w ago

Kubero through 3.1.1 fails to apply authentication guards to the notifications API endpoints, allowing unauthenticated attackers to read webhook secrets and service URLs

Kubero through 3.1.1 fails to apply authentication guards to the notifications API endpoints, allowing unauthenticated attackers to read webhook secrets and service URLs. Attackers can retrieve stored credentials and register malicious w…

▾ Midnightkubero-dev · kuberoEPSS 0.63%via NVD
CVE-2026-51990Critical· 9.8PoC
1w ago

An issue in Sogou Sogou Input Method < 16.3.0.3498 (fixed in 16.3.0.3498) allows a remote attacker to execute arbitrary code via the biz_helper.exe component

An issue in Sogou Sogou Input Method < 16.3.0.3498 (fixed in 16.3.0.3498) allows a remote attacker to execute arbitrary code via the biz_helper.exe component

▾ AbyssalEPSS 0.93%via NVD
CVE-2026-47094High· 8.8PoC
1w ago

SIMAC MyPHR 1.1 contains an insecure direct object reference (IDOR) vulnerability that allows authenticated attackers to access and modify arbitrary employee records due to missing server-side ownership validation

SIMAC MyPHR 1.1 contains an insecure direct object reference (IDOR) vulnerability that allows authenticated attackers to access and modify arbitrary employee records due to missing server-side ownership validation. Attackers can send a P…

▾ MidnightSIMAC · MyPHREPSS 0.51%via NVD
CVE-2026-92416Medium· 4.3PoC
1w ago

A vulnerability has been found in Open5GS up to 2.8.0

A vulnerability has been found in Open5GS up to 2.8.0. Affected by this issue is the function smf_n4_handle_session_report_request of the file src/smf/n4-handler.c of the component PFCP Session Report Request Handler. The manipulation le…

▾ TwilightEPSS 0.53%via NVD
CVE-2026-92719High· 7.5PoC
1w ago

Quickwit through 0.9.0 fails to validate the host and scheme of the queue_url parameter in SQS file sources, allowing attackers to make the node issue requests to arbitrary internal addresses

Quickwit through 0.9.0 fails to validate the host and scheme of the queue_url parameter in SQS file sources, allowing attackers to make the node issue requests to arbitrary internal addresses. Attackers can supply a malicious queue_url t…

▾ Midnightquickwit-oss · quickwitEPSS 0.48%via NVD
CVEs tagged “cve.org” — page 171 · VulnSea