VulnSea

Tagged “cve.org”

CVEs tagged cve.org, newest first.

18347 CVEsRSS

CVE-2026-92056High· 8.8⚖ disputed
2w ago

Use-after-free in the Graphics: Text component

Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.25%via NVD
CVE-2026-92055High· 8.8⚖ disputed
2w ago

Privilege escalation in the DevTools component

Privilege escalation in the DevTools component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.24%via NVD
CVE-2026-92053High· 8.8⚖ disputed
2w ago

Privilege escalation in the Graphics: CanvasWebGL component

Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.26%via NVD
CVE-2026-92059Critical· 9.3⚖ disputed
2w ago

Incorrect boundary conditions in the DOM: Editor component

Incorrect boundary conditions in the DOM: Editor component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ MidnightMozilla · FirefoxEPSS 0.12%via NVD
CVE-2026-92058High· 8.8⚖ disputed
2w ago

Use-after-free in the Graphics component

Use-after-free in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.25%via NVD
CVE-2026-92057Critical· 9.1⚖ disputed
2w ago

Mitigation bypass in the Enterprise Policies component

Mitigation bypass in the Enterprise Policies component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ MidnightMozilla · FirefoxEPSS 0.28%via NVD
CVE-2026-92063Medium· 6.5⚖ disputed
2w ago

Denial-of-service in the Audio/Video component

Denial-of-service in the Audio/Video component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

▾ SunlitMozilla · FirefoxEPSS 0.41%via NVD
CVE-2026-92062High· 8.8⚖ disputed
2w ago

Privilege escalation in the Session Restore component

Privilege escalation in the Session Restore component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.24%via NVD
CVE-2026-92060High· 8.8⚖ disputed
2w ago

Use-after-free in the Internationalization component

Use-after-free in the Internationalization component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.25%via NVD
CVE-2026-92066Critical· 9.8⚖ disputed
2w ago

Sandbox escape in the Profile Backup component

Sandbox escape in the Profile Backup component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

▾ MidnightMozilla · FirefoxEPSS 0.59%via NVD
CVE-2026-92061Critical· 9.8⚖ disputed
2w ago

Incorrect boundary conditions in the Security: Process Sandboxing component

Incorrect boundary conditions in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.

▾ MidnightMozilla · FirefoxEPSS 0.59%via NVD
CVE-2026-92070Medium· 4.3
2w ago

Information disclosure in the Networking component

Information disclosure in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ SunlitMozilla · FirefoxEPSS 0.20%via NVD
CVE-2026-92069Medium· 5.4⚖ disputed
2w ago

Spoofing issue in the DOM: Navigation component

Spoofing issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ SunlitMozilla · FirefoxEPSS 0.19%via NVD
CVE-2026-92067High· 8.8⚖ disputed
2w ago

Use-after-free in the Widget: Gtk component

Use-after-free in the Widget: Gtk component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.25%via NVD
CVE-2026-92071Critical· 9.6⚖ disputed
2w ago

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ MidnightMozilla · FirefoxEPSS 0.26%via NVD
CVE-2026-92068Medium· 5.4⚖ disputed
2w ago

Site isolation issue in the Reader Mode component

Site isolation issue in the Reader Mode component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ SunlitMozilla · FirefoxEPSS 0.11%via NVD
CVE-2026-92064High· 8.8⚖ disputed
2w ago

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.11%via NVD
CVE-2026-92073High· 8.8⚖ disputed
2w ago

Privilege escalation in the Enterprise Policies component

Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.24%via NVD
CVE-2026-92072High· 8.0⚖ disputed
2w ago

Incorrect boundary conditions in the Safe Browsing component

Incorrect boundary conditions in the Safe Browsing component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.24%via NVD
CVE-2026-92065High· 8.8⚖ disputed
2w ago

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.

▾ TwilightMozilla · FirefoxEPSS 0.11%via NVD
CVE-2026-92003Medium· 6.9
2w ago

Affected versions of MISP do not consistently apply the existing authentication-failure logging throttle. Two API authentication failure branches wrote directly to the Log model:  - API requests with no authentication key;  - requests…

Affected versions of MISP do not consistently apply the existing authentication-failure logging throttle. Two API authentication failure branches wrote directly to the Log model:  - API requests with no authentication key;  - requests…

▾ SunlitMISP · MISPEPSS 0.57%via NVD
CVE-2026-91998Critical· 9.9PoC
2w ago

Casdoor through 4.4.0 contains an authorization bypass vulnerability in the /api/mcp endpoint that allows attackers with any application's clientId and clientSecret to gain unrestricted access to user administration across all organizati…

Casdoor through 4.4.0 contains an authorization bypass vulnerability in the /api/mcp endpoint that allows attackers with any application's clientId and clientSecret to gain unrestricted access to user administration across all organizati…

▾ Abyssalcasdoor · casdoorEPSS 0.59%via NVD
CVE-2026-91997Medium· 5.3PoC
2w ago

evolution-api through 2.3.7 contains an incorrect array comparison in the metricsIPWhitelist middleware that always evaluates to false, allowing unauthenticated access to the /metrics endpoint

evolution-api through 2.3.7 contains an incorrect array comparison in the metricsIPWhitelist middleware that always evaluates to false, allowing unauthenticated access to the /metrics endpoint. Attackers can bypass IP whitelist restricti…

▾ Twilightevolution-foundation · evolution-apiEPSS 0.45%via NVD
CVE-2026-91996High· 7.5PoC
2w ago

lamp-cloud through 5.10.0 whitelists the path pattern /*/anno/** for anonymous access, allowing unauthenticated attackers to read the server's full JVM system property map

lamp-cloud through 5.10.0 whitelists the path pattern /*/anno/** for anonymous access, allowing unauthenticated attackers to read the server's full JVM system property map. Attackers can send POST requests to /defGenProject/anno/getPrope…

▾ Midnightdromara · lamp-cloudEPSS 0.50%via NVD
CVE-2026-91995Critical· 9.1
2w ago

pig before 4.1.0 contains an authentication bypass vulnerability in the /register/password endpoint where password verification results are discarded, allowing any value as the current password

pig before 4.1.0 contains an authentication bypass vulnerability in the /register/password endpoint where password verification results are discarded, allowing any value as the current password. Remote attackers can submit a username wit…

▾ Midnightpig-mesh · pigEPSS 0.88%via NVD
CVE-2026-91994Medium· 6.5PoC
2w ago

Semaphore UI through 2.19.12 exempts GET and HEAD requests from project resource permission checks in GetMustCanMiddleware

Semaphore UI through 2.19.12 exempts GET and HEAD requests from project resource permission checks in GetMustCanMiddleware. Attackers with guest or task_runner roles can read all project environments including plaintext secrets, credenti…

▾ Twilightsemaphoreui · semaphoreEPSS 0.41%via NVD
CVE-2026-91993Medium· 4.3PoC
2w ago

Jpom through 2.11.12 fails to validate workspace ownership when resolving repositoryId on the /build/branch-list endpoint, allowing authenticated users to access repositories from other workspaces

Jpom through 2.11.12 fails to validate workspace ownership when resolving repositoryId on the /build/branch-list endpoint, allowing authenticated users to access repositories from other workspaces. Attackers can submit repository identif…

▾ Twilightdromara · JpomEPSS 0.34%via NVD
CVE-2026-91926Low· 3.7
2w ago

A flaw was found in gss-ntlmssp

A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM target-info parser when a crafted NTLM CHALLENGE message contains duplicated string-valued AV_PAIR entries. The parser allocates memory for each string value but does not …

▾ SunlitRed Hat · gssntlmsspEPSS 0.37%via NVD
CVE-2026-89308Critical· 9.3
2w ago

An unauthenticated OS command injection vulnerability exists in the ping.php endpoint, allowing remote attackers to execute arbitrary commands on the underlying operating system and achieve remote code execution.

An unauthenticated OS command injection vulnerability exists in the ping.php endpoint, allowing remote attackers to execute arbitrary commands on the underlying operating system and achieve remote code execution.

▾ MidnightTREXOM · TrxTimeATTENDANCEEPSS 2.1%via NVD
CVE-2026-92002Medium· 5.1
2w ago

Affected versions of MISP use Redis to throttle repeated authentication-failure log entries

Affected versions of MISP use Redis to throttle repeated authentication-failure log entries. The intent is to avoid excessive duplicate logs while still recording failed authentication activity. However, User->setupRedis() returns fals…

▾ SunlitMISP · MISPEPSS 0.53%via NVD
CVEs tagged “cve.org” — page 302 · VulnSea