VulnSea

Tagged “cve.org”

CVEs tagged cve.org, newest first.

15598 CVEsRSS

CVE-2026-87022High· 7.5
5d ago

Improper handling of length parameter inconsistency vulnerability in Apache Tomcat allows WebSocket message smuggling when per-message-deflate is used. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.25, from 10.1.0-M1 t…

Improper handling of length parameter inconsistency vulnerability in Apache Tomcat allows WebSocket message smuggling when per-message-deflate is used. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.25, from 10.1.0-M1 t…

▾ TwilightApache Software Foundation · Apache TomcatEPSS 0.42%via NVD
CVE-2026-86350Critical· 9.1PoC
5d ago

Inconsistent interpretation of HTTP/2 requests ('HTTP Request/Response smuggling') vulnerability in Apache Tomcat caused by a regression in fix for CVE-2026-41293 can trigger request header mix-up. This issue affects Apache Tomcat: fr…

Inconsistent interpretation of HTTP/2 requests ('HTTP Request/Response smuggling') vulnerability in Apache Tomcat caused by a regression in fix for CVE-2026-41293 can trigger request header mix-up. This issue affects Apache Tomcat: fr…

▾ AbyssalApache Software Foundation · Apache TomcatEPSS 0.31%via NVD
CVE-2026-86248Critical· 9.8
5d ago

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M14 through 11.0.25, from 10.1.22 through 10.1.59, from 9…

CLIENT_CERT authentication does not fail as expected for some scenarios when soft fail is disabled vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M14 through 11.0.25, from 10.1.22 through 10.1.59, from 9…

▾ MidnightApache Software Foundation · Apache TomcatEPSS 0.39%via NVD
CVE-2026-84791High· 7.1
5d ago

ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to a Broken Access Control vulnerability that allowed an authenticated low-privilege user to modify Change Management report schedule confi…

ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to a Broken Access Control vulnerability that allowed an authenticated low-privilege user to modify Change Management report schedule confi…

▾ TwilightZohocorp · ManageEngine OpManagerEPSS 0.60%via NVD
CVE-2026-84789High· 7.1
5d ago

ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to a Broken Access Control vulnerability that allowed an authenticated low-privilege user to create alert notifications for firewalls outsi…

ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to a Broken Access Control vulnerability that allowed an authenticated low-privilege user to create alert notifications for firewalls outsi…

▾ TwilightZohocorp · ManageEngine OpManagerEPSS 0.60%via NVD
CVE-2026-84787High· 8.1
5d ago

ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to a Privilege Escalation vulnerability that allowed an authenticated low-privilege user to gain Administrator privileges through Report Pr…

ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to a Privilege Escalation vulnerability that allowed an authenticated low-privilege user to gain Administrator privileges through Report Pr…

▾ TwilightZohocorp · ManageEngine OpManagerEPSS 0.85%via NVD
CVE-2026-80444Medium· 5.4
5d ago

URL redirection to untrusted site ('open redirect') vulnerability in Abis Technology Ltd

URL redirection to untrusted site ('open redirect') vulnerability in Abis Technology Ltd. Co. AVESİS allows Input Data Manipulation. This issue affects AVESİS: from 202608201331 before 202608240351.

▾ SunlitAbis Technology Ltd. Co. · AVESİSEPSS 0.14%via NVD
CVE-2026-79677High· 7.5
5d ago

Missing release of resource after effective lifetime, Comparison using wrong factors vulnerability in Apache Tomcat allows a denial of service as a result of lost time outs for asynchronous WebSocket writes. This issue affects Apache …

Missing release of resource after effective lifetime, Comparison using wrong factors vulnerability in Apache Tomcat allows a denial of service as a result of lost time outs for asynchronous WebSocket writes. This issue affects Apache …

▾ TwilightApache Software Foundation · Apache TomcatEPSS 0.32%via NVD
CVE-2026-78437High· 7.3
5d ago

Incomplete cleanup vulnerability in Apache Tomcat allows a malformed request to potentially (depends on timing) cause one request from another user to fail. This issue affects Apache Tomcat: from 11.0.19 through 11.0.25, from 10.1.53 …

Incomplete cleanup vulnerability in Apache Tomcat allows a malformed request to potentially (depends on timing) cause one request from another user to fail. This issue affects Apache Tomcat: from 11.0.19 through 11.0.25, from 10.1.53 …

▾ TwilightApache Software Foundation · Apache TomcatEPSS 0.26%via NVD
CVE-2026-78383High· 7.5
5d ago

Allocation of resources without limits or throttling vulnerability in Apache Tomcat allows an unauthenticated AJP request to pin an AJP processing thread leading to denial of service. This issue affects Apache Tomcat: from 11.0.0-M1 t…

Allocation of resources without limits or throttling vulnerability in Apache Tomcat allows an unauthenticated AJP request to pin an AJP processing thread leading to denial of service. This issue affects Apache Tomcat: from 11.0.0-M1 t…

▾ TwilightApache Software Foundation · Apache TomcatEPSS 0.38%via NVD
CVE-2026-78253Low· 2.3⚖ disputed
5d ago

Uncontrolled recursion in QXmlStreamReader::readElementText() in Qt Group Qt allows attackers to cause a denial of service (application crash via stack exhaustion) via a crafted XML document.

Uncontrolled recursion in QXmlStreamReader::readElementText() in Qt Group Qt allows attackers to cause a denial of service (application crash via stack exhaustion) via a crafted XML document.

▾ Sunlitqt · qtEPSS 0.25%via NVD
CVE-2026-77791High· 7.5
5d ago

Uncontrolled Resource Consumption vulnerability in Apache Tomcat during sending of WebSocket close message enabled a DoS attack. This issue affects Apache Tomcat: from 11.0.0-M5 through 11.0.25, from 10.1.8 through 10.1.59, from 9.0.7…

Uncontrolled Resource Consumption vulnerability in Apache Tomcat during sending of WebSocket close message enabled a DoS attack. This issue affects Apache Tomcat: from 11.0.0-M5 through 11.0.25, from 10.1.8 through 10.1.59, from 9.0.7…

▾ TwilightApache Software Foundation · Apache TomcatEPSS 0.53%via NVD
CVE-2026-15358High· 7.5
5d ago

ZohoCorp ManageEngine OpManager and Network Configuration Manager versions before 12.8.671 were vulnerable to an unauthorized Path Traversal vulnerability.

ZohoCorp ManageEngine OpManager and Network Configuration Manager versions before 12.8.671 were vulnerable to an unauthorized Path Traversal vulnerability.

▾ TwilightZohocorp · ManageEngine OpManagerEPSS 1.1%via NVD
CVE-2026-14913High· 8.8
5d ago

ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.669 and below were vulnerable to an SQL Injection vulnerability in Rule Management Search Reports.

ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.669 and below were vulnerable to an SQL Injection vulnerability in Rule Management Search Reports.

▾ TwilightZohocorp · ManageEngine OpManagerEPSS 0.97%via NVD
CVE-2026-96446Medium· 4.2
5d ago

A flaw was found in the Pushed Authorization Request PAR implementation of Keycloak

A flaw was found in the Pushed Authorization Request PAR implementation of Keycloak. The issue occurs when the silent authentication path prompt=none is used, which allows the authorization process to skip certain steps if a user is alre…

▾ SunlitRed Hat · keycloak-servicesEPSS 0.18%via NVD
CVE-2026-96445Medium· 6.8
5d ago

A flaw was found in the Conditional OTP authenticator of Keycloak, an identity and access management solution

A flaw was found in the Conditional OTP authenticator of Keycloak, an identity and access management solution. The issue occurs when the system evaluates specific HTTP headers to determine if a one-time password (OTP) should be skipped, …

▾ SunlitRed Hat · keycloak-servicesEPSS 0.24%via NVD
CVE-2026-75973High· 7.3
5d ago

Improper Authentication vulnerability in Apache Tomcat

Improper Authentication vulnerability in Apache Tomcat. When Jakarta Authentication was configured with SimpleAuthConfigProvider as the default provider and multiple web application used that provider, the realm for the first web applica…

▾ TwilightApache Software Foundation · Apache TomcatEPSS 0.24%via NVD
CVE-2026-76183Critical· 9.8
5d ago

Authentication Bypass by Alternate Name vulnerability in Apache Tomcat allowed the security constraints for any WebSocket endpoint to be bypassed. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.25, from 10.1.0-M1 throug…

Authentication Bypass by Alternate Name vulnerability in Apache Tomcat allowed the security constraints for any WebSocket endpoint to be bypassed. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.25, from 10.1.0-M1 throug…

▾ MidnightApache Software Foundation · Apache TomcatEPSS 0.39%via NVD
CVE-2026-73581Medium· 6.5
5d ago

Improper Check for Certificate Revocation vulnerability in Apache Tomcat

Improper Check for Certificate Revocation vulnerability in Apache Tomcat. Both the OpenSSL and OpenSSL-FFM TLS implementations ignore CRLs when certificate uses a keystore. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0…

▾ SunlitApache Software Foundation · Apache TomcatEPSS 0.12%via NVD
CVE-2026-77762High· 8.1
5d ago

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in Apache Tomcat allows an attacker to inject trailer fields into another HTTP/2 request. This issue affects Apache Tomcat: from…

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in Apache Tomcat allows an attacker to inject trailer fields into another HTTP/2 request. This issue affects Apache Tomcat: from…

▾ TwilightApache Software Foundation · Apache TomcatEPSS 0.36%via NVD
CVE-2026-77756Low· 3.7
5d ago

Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in Apache Tomcat caused by processing the transfer-encoding header for an HTTP/1.0 request may allow an attacker to cause one request from ano…

Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in Apache Tomcat caused by processing the transfer-encoding header for an HTTP/1.0 request may allow an attacker to cause one request from ano…

▾ SunlitApache Software Foundation · Apache TomcatEPSS 0.26%via NVD
CVE-2026-12370High· 7.6
5d ago

ZohoCorp ManageEngine OpManager, NetFlow Analyzer, and Network Configuration Manager versions 12.8.667 and below were vulnerable to a Server-Side Template Injection vulnerability in Configlet processing, which could lead to Remote Code E…

ZohoCorp ManageEngine OpManager, NetFlow Analyzer, and Network Configuration Manager versions 12.8.667 and below were vulnerable to a Server-Side Template Injection vulnerability in Configlet processing, which could lead to Remote Code E…

▾ TwilightZohocorp · ManageEngine OpManagerEPSS 1.5%via NVD
CVE-2026-5696Medium· 5.9
5d ago

Reflected Cross-Site Scripting (XSS) in Microweber

Reflected Cross-Site Scripting (XSS) in Microweber. The vulnerability lies in the ‘group’ parameter of the ‘/admin/settings’ endpoint in the administration panel. A successful exploit allows an attacker to trick an authenticated user int…

▾ SunlitMicroweber · Administration panelEPSS 0.31%via NVD
CVE-2026-5695High· 8.4
5d ago

Arbitrary file upload vulnerability due to a lack of proper validation in upload forms

Arbitrary file upload vulnerability due to a lack of proper validation in upload forms. This allows authenticated users to upload files to the server without restrictions. An attacker could exploit this flaw to execute malicious code rem…

▾ TwilightMicroweber · Administration panelEPSS 0.30%via NVD
CVE-2026-96455High· 8.8
5d ago

The Reachy Mini daemon exposes an HTTP API for managing the robot

The Reachy Mini daemon exposes an HTTP API for managing the robot. Its app installation endpoint, POST /apps/install in src/reachy_mini/daemon/app/routers/apps.py, has no authentication. The handler's only dependency is Depends(get_app_m…

▾ TwilightPollen Robotics · reachy_miniEPSS 0.17%via NVD
CVE-2026-87070Medium· 5.3
5d ago

The Forminator Forms WordPress plugin before 1.57.2.1 does not verify that a request came from a trusted proxy before preferring client-supplied forwarding headers over the connecting address, and it uses that value both to enforce its p…

The Forminator Forms WordPress plugin before 1.57.2.1 does not verify that a request came from a trusted proxy before preferring client-supplied forwarding headers over the connecting address, and it uses that value both to enforce its p…

▾ SunlitEPSS 0.12%via NVD
CVE-2026-96456Medium· 6.3
5d ago

The Reachy Mini Bluetooth service asks a connecting device for a PIN before it will accept commands

The Reachy Mini Bluetooth service asks a connecting device for a PIN before it will accept commands. The check protects the session but not the caller, so an attacker in Bluetooth range can ride along on someone else's successful authent…

▾ SunlitPollen Robotics · reachy_miniEPSS 0.16%via NVD
CVE-2026-96442High· 7.8
5d ago

A code execution flaw was found in Emacs, affecting versions prior to 31.2

A code execution flaw was found in Emacs, affecting versions prior to 31.2. The Flymake mode using language backends other than Lisp would execute arbitrary code from the edited file while performing syntax checking. Viewing or editing u…

▾ TwilightGNU Emacs · emacsEPSS 0.17%via NVD
CVE-2026-86604Medium· 4.8
5d ago

The GTranslate WordPress plugin before 5.0.1 does not remove shortcodes from the content of outgoing emails before expanding them which, in a non-default configuration, allows unauthenticated users to have arbitrary shortcodes registered…

The GTranslate WordPress plugin before 5.0.1 does not remove shortcodes from the content of outgoing emails before expanding them which, in a non-default configuration, allows unauthenticated users to have arbitrary shortcodes registered…

▾ SunlitEPSS 0.15%via NVD
CVE-2026-87848Low· 3.7
5d ago

The MPCX Lightbox WordPress plugin 1.2.2 through 1.2.5 does not have any authorisation or authentication on one of its AJAX actions available to unauthenticated users, nor does it check the status of the requested post, allowing unauthen…

The MPCX Lightbox WordPress plugin 1.2.2 through 1.2.5 does not have any authorisation or authentication on one of its AJAX actions available to unauthenticated users, nor does it check the status of the requested post, allowing unauthen…

▾ SunlitEPSS 0.20%via NVD
CVEs tagged “cve.org” — page 69 · VulnSea