VulnSea

Tagged “cve.org”

CVEs tagged cve.org, newest first.

15585 CVEsRSS

CVE-2026-81208High· 7.7
5d ago

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow an authenticated user to access sensitive information due to improper handling of encrypted credentials

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow an authenticated user to access sensitive information due to improper handling of encrypted credentials. An attacker could exploit this vulnerability to obtain credentials intended …

▾ TwilightIBM · DataStage on Cloud Pak for DataEPSS 0.23%via NVD
CVE-2026-80423High· 8.8
5d ago

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to the exposure of namespace-wide secrets via accessible file mounts.

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to the exposure of namespace-wide secrets via accessible file mounts.

▾ TwilightIBM · DataStage on Cloud Pak for DataEPSS 0.33%via NVD
CVE-2026-96601High· 7.3PoC
5d ago

A vulnerability was detected in Abdurrab5 online-makeup-store

A vulnerability was detected in Abdurrab5 online-makeup-store. This affects an unknown function of the file index.php of the component Admin Login Handler. The manipulation of the argument id/password results in sql injection. The attack…

▾ MidnightAbdurrab5 · online-makeup-storeEPSS 0.25%via NVD
CVE-2026-96602High· 7.3
5d ago

A flaw has been found in Abdurrab5 online-makeup-store

A flaw has been found in Abdurrab5 online-makeup-store. This impacts an unknown function of the file customerSignin.php of the component Customer Login Handler. This manipulation of the argument username/password causes sql injection. Th…

▾ TwilightAbdurrab5 · online-makeup-storeEPSS 0.25%via NVD
CVE-2026-75887High· 7.5
5d ago

A flaw was found in the OpenShift console

A flaw was found in the OpenShift console. An unauthenticated attacker can exploit a path traversal vulnerability by manipulating the `lng` and `ns` query parameters in the `/locales/resource.json` endpoint. This allows the attacker to r…

▾ TwilightRed Hat · openshift4/ose-consoleEPSS 0.36%via NVD
CVE-2026-86583High· 8.8
5d ago

The Import and export users and customers plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.4.17 via the plugin's own export and re-import workflow

The Import and export users and customers plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.4.17 via the plugin's own export and re-import workflow. The vulnerability exists because the ex…

▾ Twilightcarazo · Import and export users and customersEPSS 0.33%via NVD
CVE-2026-19125High· 8.1PoC
5d ago

The EthPress – Web3 Login plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 2.3.5

The EthPress – Web3 Login plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 2.3.5. This is due to the verify_login() function in app/Login.php containing a missing return statement in the s…

▾ Midnightlynn999 · EthPress – Web3 LoginEPSS 0.64%via NVD
CVE-2026-82369High· 8.6
5d ago

Insufficient input sanitization of shell metacharacters in the Brocade SANnav CLI scripting component permits authenticated users to break out of restricted execution contexts on managed switches

Insufficient input sanitization of shell metacharacters in the Brocade SANnav CLI scripting component permits authenticated users to break out of restricted execution contexts on managed switches. An attacker with command execution permi…

▾ TwilightBrocade · SANnavEPSS 0.51%via NVD
CVE-2026-80425High· 8.8
5d ago

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

▾ TwilightIBM · DataStage on Cloud Pak for DataEPSS 0.94%via NVD
CVE-2026-80412High· 8.8
5d ago

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to improper escaping of connector property values during OSH script generation.

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to improper escaping of connector property values during OSH script generation.

▾ TwilightIBM · DataStage on Cloud Pak for DataEPSS 0.54%via NVD
CVE-2026-80379High· 8.8
5d ago

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

▾ TwilightIBM · DataStage on Cloud Pak for DataEPSS 0.94%via NVD
CVE-2026-75886High· 7.2
5d ago

A flaw was found in openshift/console

A flaw was found in openshift/console. An unauthenticated remote attacker can exploit a misconfiguration in the CatalogdHandler, which lacks proper authentication, and the forwarding of the `openshift-session-token` cookie. This allows t…

▾ TwilightRed Hat · openshift4/ose-consoleEPSS 0.25%via NVD
CVE-2026-6935High· 7.8
5d ago

IBM Concert 1.0.0 through 3.0.0 invokes operating system commands without fully qualifying executable paths or adequately restricting search path resolution

IBM Concert 1.0.0 through 3.0.0 invokes operating system commands without fully qualifying executable paths or adequately restricting search path resolution. As a result, an attacker with local system access can manipulate the search pat…

▾ TwilightIBM · ConcertEPSS 0.12%via NVD
CVE-2026-6928Critical· 9.8
5d ago

IBM Concert 1.0.0 through 3.0.0 references or accesses memory after it has been freed

IBM Concert 1.0.0 through 3.0.0 references or accesses memory after it has been freed. This allows an attacker who can influence program execution or input may exploit this condition to corrupt memory, cause application crashes, or execu…

▾ MidnightIBM · ConcertEPSS 0.45%via NVD
CVE-2026-6925Medium· 5.3
5d ago

IBM Concert 1.0.0 through 3.0.0 could allow a remote attacker to traverse directories on the system

IBM Concert 1.0.0 through 3.0.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot " sequences ( /.. /) to view arbitrary files on the system.

▾ SunlitIBM · ConcertEPSS 0.33%via NVD
CVE-2026-6794High· 7.8
5d ago

IBM Concert 1.0.0 through 3.0.0 has a double free vulnerability that exists due to incorrect memory management

IBM Concert 1.0.0 through 3.0.0 has a double free vulnerability that exists due to incorrect memory management. A local attacker can exploit this flaw to corrupt heap memory and execute arbitrary code in the context of the affected process.

▾ TwilightIBM · ConcertEPSS 0.11%via NVD
CVE-2026-6730Critical· 9.8
5d ago

IBM Concert 1.0.0 through 3.0.0 is vulnerable to a buffer overflow, caused by improper bounds checking

IBM Concert 1.0.0 through 3.0.0 is vulnerable to a buffer overflow, caused by improper bounds checking. A local user could overflow the buffer and execute arbitrary code on the system.

▾ MidnightIBM · ConcertEPSS 0.44%via NVD
CVE-2026-67405Medium· 5.3⚖ disputed
5d ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, Neither the Web-MQTT handler (deps/rabbitmq_web_mqtt/src/rabbit_web_mqtt_handler.erl:104) nor the Web-STOMP handler (deps/rabbitmq…

▾ Sunlitrabbitmq · rabbitmq-serverEPSS 0.13%via NVD
CVE-2026-6721Critical· 9.8
5d ago

IBM Concert 1.0.0 through 3.0.0 allows an unauthenticated remote attacker can supply specially crafted input that is incorporated into OS commands, resulting in arbitrary command execution on the underlying system

IBM Concert 1.0.0 through 3.0.0 allows an unauthenticated remote attacker can supply specially crafted input that is incorporated into OS commands, resulting in arbitrary command execution on the underlying system. Successful exploitatio…

▾ MidnightIBM · ConcertEPSS 1.4%via NVD
CVE-2026-6718Medium· 6.2
5d ago

IBM Concert 1.0.0 through 3.0.0 is vulnerable to improper access control which allows unauthorized modification of application files.

IBM Concert 1.0.0 through 3.0.0 is vulnerable to improper access control which allows unauthorized modification of application files.

▾ SunlitIBM · ConcertEPSS 0.10%via NVD
CVE-2026-67235High· 7.1
5d ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to versions 4.3.0, 4.2.6, 4.1.11, 4.0.20, and 3.13.15, The content-header BodySize (a uint64) was stored without validation against max_message_size. The size check ran only when assemb…

▾ Twilightrabbitmq · rabbitmq-serverEPSS 0.26%via NVD
CVE-2026-67232High· 8.2
5d ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, The cowboy WebSocket options at line 117 set compress => true, enabling RFC 7692 permessage-deflate negotiation. The handler does …

▾ Twilightrabbitmq · rabbitmq-serverEPSS 0.37%via NVD
CVE-2026-67231Critical· 9.1
5d ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, The trust-store plugin installs a verify_fun that overrides {bad_cert, unknown_ca} / {bad_cert, selfsigned_peer} when the presente…

▾ Midnightrabbitmq · rabbitmq-serverEPSS 0.25%via NVD
CVE-2026-67229Medium· 6.9PoC⚖ disputed
5d ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, add_vhost/2 calls rabbit_data_coercion:atomize_keys/1 (the unsafe variant using binary_to_atom) on the vhost metadata map. The 20 …

▾ Twilightrabbitmq · rabbitmq-serverEPSS 0.28%via NVD
CVE-2026-67228Medium· 6.9⚖ disputed
5d ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to versions 4.2.7 and 4.3.1, The runtime-parameters lookup path coerces the URL :component segment to an atom with rabbit_data_coercion:to_atom/1 in lookup_component/1 (deps/rabbit/src/…

▾ Sunlitrabbitmq · rabbitmq-serverEPSS 0.28%via NVD
CVE-2026-67221Medium· 5.9
5d ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, The AMQP 0-9-1 shovel calls amqp_uri:remove_credentials before storing its connection URI, but the AMQP 1.0 shovel stores the raw …

▾ Sunlitrabbitmq · rabbitmq-serverEPSS 0.20%via NVD
CVE-2026-67219Medium· 6.0
5d ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, add_binding/3 parses the routing key as an integer weight N and computes ring positions with lists:seq(NextN0, NextN0 + N - 1). va…

▾ Sunlitrabbitmq · rabbitmq-serverEPSS 0.26%via NVD
CVE-2026-67218Low· 2.1⚖ disputed
5d ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to versions 4.0.22, 4.1.11, 4.2.6, and 4.3.0, accept_content/2 at line 56 calls rabbit_stream_manager:create_super_stream/... directly after is_authorized (which only checks the managem…

▾ Sunlitrabbitmq · rabbitmq-serverEPSS 0.34%via NVD
CVE-2026-66075Low· 2.3⚖ disputed
5d ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.1, is_authorized/2 for the /federation-links/.../restart route uses is_authorized_monitor (accepts the monitoring tag), while allowed…

▾ Sunlitrabbitmq · rabbitmq-serverEPSS 0.24%via NVD
CVE-2026-66074Medium· 6.0
5d ago

RabbitMQ is a messaging and streaming broker

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, match_value/3 passes the user-supplied ?name= regular expression to re:run with no match_limit option, and executes it once per re…

▾ Sunlitrabbitmq · rabbitmq-serverEPSS 0.33%via NVD
CVEs tagged “cve.org” — page 59 · VulnSea