VulnSea

Tagged “cve.org”

CVEs tagged cve.org, newest first.

18347 CVEsRSS

CVE-2026-91781Low· 3.3PoC
2w ago

A security vulnerability has been detected in GNU Binutils 2.47

A security vulnerability has been detected in GNU Binutils 2.47. Affected is the function elf_x86_64_common_section_index of the file bfd/elf64-x86-64.c of the component ELF Section Handler. The manipulation leads to null pointer derefer…

▾ Twilightgnu · binutilsEPSS 0.18%via NVD
CVE-2026-91780Low· 3.3PoC
2w ago

A weakness has been identified in GNU Binutils 2.47

A weakness has been identified in GNU Binutils 2.47. This impacts the function elf_link_add_object_symbols of the file bfd/elflink.c. Executing a manipulation can lead to null pointer dereference. The attack needs to be launched locally.…

▾ Twilightgnu · binutilsEPSS 0.17%via NVD
CVE-2026-80217High· 8.8
2w ago

Hidden functionality issue exists in FF-RFI079I4 and FF-RFI078I4, which may allow a user who can log in via SSH and access the enable mode on the product to execute arbitrary OS commands.

Hidden functionality issue exists in FF-RFI079I4 and FF-RFI078I4, which may allow a user who can log in via SSH and access the enable mode on the product to execute arbitrary OS commands.

▾ TwilightLITE-ON Technology Corporation · FF-RFI079I4EPSS 0.51%via NVD
CVE-2026-77853High· 8.8
2w ago

Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in FF-RFI079I4 and FF-RFI078I4

Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in FF-RFI079I4 and FF-RFI078I4. A user who can log in to the product's M-Plane (NETCONF) may execute arbitrary OS commands.

▾ TwilightLITE-ON Technology Corporation · FF-RFI079I4EPSS 1.9%via NVD
CVE-2026-76159High· 7.0
2w ago

Incorrect Permission Assignment for Critical Resource in the configuration loader of Duplicati for Windows versions before v2.4.0.0 allows a local low-privileged attacker to escalate privileges to NT AUTHORITY\SYSTEM via an attack…

Incorrect Permission Assignment for Critical Resource in the configuration loader of Duplicati for Windows versions before v2.4.0.0 allows a local low-privileged attacker to escalate privileges to NT AUTHORITY\SYSTEM via an attack…

▾ TwilightDuplicati · DuplicatiEPSS 0.13%via NVD
CVE-2026-91825High· 7.1
2w ago

Affected versions of MISP fail to authorize a submitted sharing group in a specific event-edit path. The vulnerable logic checked whether the acting user could use a sharing_group_id only when the request explicitly supplied distributi…

Affected versions of MISP fail to authorize a submitted sharing group in a specific event-edit path. The vulnerable logic checked whether the acting user could use a sharing_group_id only when the request explicitly supplied distributi…

▾ TwilightMISP · MISPEPSS 0.39%via NVD
CVE-2026-91779Low· 3.3PoC
2w ago

A security flaw has been discovered in GNU Binutils 2.47

A security flaw has been discovered in GNU Binutils 2.47. This affects the function _bfd_elf_eh_frame_section_offset of the file bfd/elf-eh-frame.c of the component Eh Frame Handler. Performing a manipulation results in null pointer dere…

▾ Twilightgnu · binutilsEPSS 0.17%via NVD
CVE-2026-75092High· 7.3
2w ago

A privilege escalation flaw was found in the scan_mysql actor of leapp-upgrade-el9toel10 (provided by leapp-repository)

A privilege escalation flaw was found in the scan_mysql actor of leapp-upgrade-el9toel10 (provided by leapp-repository). During RHEL 9 to RHEL 10 upgrades, the actor runs: mysqld --validate-config --log-error-verbosity=2 directly as root…

▾ TwilightRed Hat · leapp-repositoryEPSS 0.13%via NVD
CVE-2026-91819Medium· 6.9
2w ago

Affected versions of MISP rely on CakePHP request-method override processing in a way that can disable CSRF and form-security validation. CakePHP honors a _method field or X-HTTP-Method-Override header by rewriting the effective request…

Affected versions of MISP rely on CakePHP request-method override processing in a way that can disable CSRF and form-security validation. CakePHP honors a _method field or X-HTTP-Method-Override header by rewriting the effective request…

▾ SunlitMISP · MISPEPSS 0.20%via NVD
CVE-2026-91091Medium· 4.3PoC
2w ago

A vulnerability was identified in GPAC up to f1219cde

A vulnerability was identified in GPAC up to f1219cde. The impacted element is the function gf_node_list_insert_child of the file scenegraph/base_scenegraph.c of the component Node Insertion. Such manipulation leads to memory corruption.…

▾ TwilightEPSS 0.69%via NVD
CVE-2026-91090Low· 3.9
2w ago

A vulnerability was determined in GPAC up to f1219cde

A vulnerability was determined in GPAC up to f1219cde. The affected element is the function gf_node_activate_ex of the file scenegraph/base_scenegraph.c. This manipulation causes stack-based buffer overflow. It is possible to launch the …

▾ SunlitEPSS 0.17%via NVD
CVE-2026-91778High· 7.2
2w ago

In affected versions of Octopus Server, users with certain scoped permission sets could execute arbitrary scripts on a worker (including the Octopus Server built-in worker)

In affected versions of Octopus Server, users with certain scoped permission sets could execute arbitrary scripts on a worker (including the Octopus Server built-in worker). Incorrect permission validation during script execution would a…

▾ TwilightOctopus Deploy · Octopus ServerEPSS 0.43%via NVD
CVE-2026-91089Medium· 6.3
2w ago

A vulnerability was found in GPAC up to f1219cde

A vulnerability was found in GPAC up to f1219cde. Impacted is the function gf_node_get_name_and_id of the file scenegraph/base_scenegraph.c. The manipulation results in use after free. It is possible to launch the attack remotely. The ex…

▾ SunlitEPSS 0.51%via NVD
CVE-2026-91088Medium· 4.8PoC
2w ago

A vulnerability has been found in GPAC up to f1219cde

A vulnerability has been found in GPAC up to f1219cde. This issue affects the function gf_url_concatenate_ex of the file utils/url.c of the component URL Handler. The manipulation leads to heap-based buffer overflow. An attack has to be …

▾ TwilightEPSS 0.16%via NVD
CVE-2026-91087High· 7.3PoC
2w ago

A flaw has been found in GPAC up to f1219cde

A flaw has been found in GPAC up to f1219cde. This vulnerability affects the function gf_mo_get_od_id of the file compositor/media_object.c of the component Compositor. Executing a manipulation can lead to use after free. The attack may …

▾ MidnightEPSS 0.64%via NVD
CVE-2026-91086Medium· 6.3PoC
2w ago

A security vulnerability has been detected in GPAC up to f1219cde

A security vulnerability has been detected in GPAC up to f1219cde. Affected by this issue is the function mpgviddmx_process of the file filters/reframe_mpgvid.c of the component MPEG Video Reframer. Such manipulation leads to heap-based …

▾ TwilightEPSS 0.55%via NVD
CVE-2026-91005Medium· 6.3
2w ago

A vulnerability was found in SourceCodester Online Faculty Clearance System 1.0

A vulnerability was found in SourceCodester Online Faculty Clearance System 1.0. This affects the function move_uploaded_file of the file production/edit_picture.php of the component Profile Picture Upload. Performing a manipulation of t…

▾ SunlitSourceCodester · Online Faculty Clearance SystemEPSS 0.37%via NVD
CVE-2026-90711Critical· 9.1
2w ago

proxy-addr is a Node.js module that determines a request's client address behind trusted reverse proxies, and it backs Express req.ip and req.ips

proxy-addr is a Node.js module that determines a request's client address behind trusted reverse proxies, and it backs Express req.ip and req.ips. In versions 1.1.0 through 2.0.7, a trust subnet written in IPv4-mapped IPv6 notation with …

▾ Midnightproxy-addr · proxy-addrEPSS 0.33%via NVD
CVE-2026-89141Medium· 6.5
2w ago

The AI Engine – The Chatbot, AI Framework & MCP for WordPress plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 3.7.7 via the 'mediaId' parameter due to missing validation on a u…

The AI Engine – The Chatbot, AI Framework & MCP for WordPress plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 3.7.7 via the 'mediaId' parameter due to missing validation on a u…

▾ Sunlittigroumeow · AI Engine – The Chatbot, AI Framework & MCP for WordPressEPSS 0.45%via NVD
CVE-2026-75983High· 7.5
2w ago

The Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 4.1.23

The Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 4.1.23. This is due to the `PermissionManager::manage_permissions…

▾ Twilightarraytics · Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerceEPSS 0.70%via NVD
CVE-2026-18063Medium· 6.4
2w ago

The Job Postings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'position_button' parameter in all versions up to, and including, 2.8.1 due to insufficient input sanitization and output escaping

The Job Postings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'position_button' parameter in all versions up to, and including, 2.8.1 due to insufficient input sanitization and output escaping. This makes it …

▾ Sunlitblueglassch · Job PostingsEPSS 0.20%via NVD
CVE-2026-15402Medium· 6.4
2w ago

The Eventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'etn_shedule_objective' schedule_slot Parameter in all versions up to, and including, …

The Eventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'etn_shedule_objective' schedule_slot Parameter in all versions up to, and including, …

▾ Sunlitarraytics · Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerceEPSS 0.25%via NVD
CVE-2026-91004High· 7.3PoC
2w ago

A vulnerability has been found in SourceCodester Online Faculty Clearance System 1.0

A vulnerability has been found in SourceCodester Online Faculty Clearance System 1.0. The impacted element is an unknown function of the file /delete_faculty1.php. Such manipulation of the argument ID leads to sql injection. The attack c…

▾ MidnightSourceCodester · Online Faculty Clearance SystemEPSS 0.43%via NVD
CVE-2026-91003Critical· 9.1PoC
2w ago

A flaw has been found in D-Link DI-8300 16.07

A flaw has been found in D-Link DI-8300 16.07. The affected element is the function rzgl_asp of the file /rzgl.asp of the component CGI Service. This manipulation of the argument redirct_url causes stack-based buffer overflow. Remote exp…

▾ AbyssalD-Link · DI-8300EPSS 0.98%via NVD
CVE-2026-91002Medium· 5.3PoC
2w ago

A weakness has been identified in stamparm maltrail up to 3.0.1

A weakness has been identified in stamparm maltrail up to 3.0.1. This vulnerability affects the function _blacklist of the file core/httpd.py of the component Blacklist Endpoint. Executing a manipulation can lead to missing authenticatio…

▾ Twilightstamparm · maltrailEPSS 0.77%via NVD
CVE-2026-91001Critical· 9.9PoC
2w ago

A security flaw has been discovered in D-Link DI-8400 16.07

A security flaw has been discovered in D-Link DI-8400 16.07. This affects the function ddns_asp of the file /ddns.asp of the component DDNS Configuration. Performing a manipulation of the argument serv/user/host/wild/mx/bmx/cust/ip resul…

▾ AbyssalD-Link · DI-8400EPSS 0.93%via NVD
CVE-2026-86701Low· 2.5
2w ago

Android application "ManabiPocket for Parents" contains an improper access control vulnerability in one of its components

Android application "ManabiPocket for Parents" contains an improper access control vulnerability in one of its components. A malicious application installed on the user's Android device may exploit the affected component via an Intent, p…

▾ SunlitNTT DOCOMO BUSINESS, Inc. · ManabiPocket for ParentsEPSS 0.14%via NVD
CVE-2026-81320Medium· 5.5
2w ago

A flaw was found in hawtio-operator

A flaw was found in hawtio-operator. When a custom Route TLS secret is configured and the operator runs at debug log level 1 or higher, the entire Route object — including the TLS private key in PEM format — is serialized to JSON and wri…

▾ SunlitRed Hat · rhbac-4/hawtio-rhel9EPSS 0.19%via NVD
CVE-2026-81303Medium· 6.3
2w ago

A flaw was found in hawtio-operator

A flaw was found in hawtio-operator. The operator holds routes/custom-host:create permission cluster-wide and writes the tenant-supplied spec.routeHostName value from the Hawtio custom resource directly into the Route spec without valida…

▾ SunlitRed Hat · rhbac-4/hawtio-operator-bundleEPSS 0.49%via NVD
CVE-2026-18232Medium· 5.3
2w ago

The WP Directory Kit WordPress plugin through 1.5.7 does not check the status or ownership of a listing before returning its content through one of its public AJAX actions, allowing unauthenticated attackers to read draft and unapproved …

The WP Directory Kit WordPress plugin through 1.5.7 does not check the status or ownership of a listing before returning its content through one of its public AJAX actions, allowing unauthenticated attackers to read draft and unapproved …

▾ SunlitEPSS 0.21%via NVD
CVEs tagged “cve.org” — page 304 · VulnSea