VulnSea

Tagged “cve.org”

CVEs tagged cve.org, newest first.

15684 CVEsRSS

CVE-2026-62247Medium· 6.5
1w ago

Supabase Realtime provides Broadcast, Presence, and Postgres Changes via WebSockets

Supabase Realtime provides Broadcast, Presence, and Postgres Changes via WebSockets. Prior to 2.111.2, Realtime authorization does not correctly honor the per-extension presence.read row-level security policy when a private-channel clien…

▾ Sunlitsupabase · realtimeEPSS 0.45%via NVD
CVE-2026-52835High· 7.0PoC
1w ago

Tautulli is a Python based monitoring and tracking tool for Plex Media Server

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to 2.17.2, the import_config handler and the database_file branch of import_database in plexpy/webserve.py join the attacker-controlled config_file.file…

▾ MidnightTautulli · TautulliEPSS 0.59%via NVD
CVE-2026-54915Medium· 5.4PoC
1w ago

Tautulli is a Python based monitoring and tracking tool for Plex Media Server

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to 2.17.2, the unauthenticated /auth/redirect endpoint in plexpy/webauth.py removes forward slashes from the user-controlled redirect_uri parameter but …

▾ TwilightTautulli · TautulliEPSS 0.26%via NVD
CVE-2026-49995Medium· 4.8PoC
1w ago

Tautulli is a Python based monitoring and tracking tool for Plex Media Server

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to 2.17.2, the newsletter cron field stored in the newsletters table is inserted by data/interfaces/default/newsletter_config.html into a JavaScript str…

▾ TwilightTautulli · TautulliEPSS 0.60%via NVD
CVE-2026-45381Medium· 5.1
1w ago

Tautulli is a Python based monitoring and tracking tool for Plex Media Server

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to 2.17.2, the /search endpoint inserts its user-controlled query parameter into a JavaScript string in data/interfaces/default/search.html using manual…

▾ SunlitTautulli · TautulliEPSS 0.59%via NVD
CVE-2026-81469High· 7.8
1w ago

Dell Inventory Collector Client, versions prior to 15.0.0, contain an Unquoted Search Path or Element vulnerability

Dell Inventory Collector Client, versions prior to 15.0.0, contain an Unquoted Search Path or Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution and …

▾ TwilightDell · Inventory Collector ClientEPSS 0.19%via NVD
CVE-2026-55897High· 8.8PoC
1w ago

luci-app-advanced-reboot is a LuCI (web interface) application for OpenWrt that provides a way to reboot your router into an alternative firmware partition or perform reboot operations directly from the web UI

luci-app-advanced-reboot is a LuCI (web interface) application for OpenWrt that provides a way to reboot your router into an alternative firmware partition or perform reboot operations directly from the web UI. Prior to 1.1.2-6, the lu…

▾ Midnightopenwrt · luciEPSS 0.65%via NVD
CVE-2026-55159High· 8.8
1w ago

luci-app-adblock-fast a WebUI for fast, lightweight DNS-based ad-blocker for OpenWrt that works with dnsmasq, smartdns, or unbound

luci-app-adblock-fast a WebUI for fast, lightweight DNS-based ad-blocker for OpenWrt that works with dnsmasq, smartdns, or unbound. Prior to 1.2.4-2, the luci.adblock-fast.setCronEntry RPC method accepts an entry argument containing carr…

▾ Twilightopenwrt · luci-app-adblock-fastEPSS 0.49%via NVD
CVE-2026-73548High· 7.5PoC
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy forwards data for a configured non-WebSocket HTTP upgrade before the upstream accepts the upgrade.…

▾ Midnightenvoyproxy · envoyEPSS 0.48%via NVD
CVE-2026-50572Medium· 5.9
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's HTTP external-authorization client can retain a stale request callback after a request is reject…

▾ Sunlitenvoyproxy · envoyEPSS 0.68%via NVD
CVE-2026-73552High· 7.5
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy HTTP RBAC accepts RFC-valid opaque header bytes but evaluates safe_regex values with RE2's UTF-8 s…

▾ Twilightenvoyproxy · envoyEPSS 0.66%via NVD
CVE-2026-49811High· 8.4
1w ago

Dell Command | Monitor (DCM), versions prior to 10.13.2, contain an Incorrect Permission Assignment for Critical Resource vulnerability

Dell Command | Monitor (DCM), versions prior to 10.13.2, contain an Incorrect Permission Assignment for Critical Resource vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to…

▾ TwilightDell · Command | Monitor (DCM)EPSS 0.14%via NVD
CVE-2026-85219Low· 3.7
1w ago

Denial-of-Service in Redis module in Thinkst Canary's OpenCanary 0.9.9 allows an unauthenticated remote attacker cause unconstrained memory usage.

Denial-of-Service in Redis module in Thinkst Canary's OpenCanary 0.9.9 allows an unauthenticated remote attacker cause unconstrained memory usage.

▾ SunlitThinkst Applied Research · opencanaryEPSS 0.41%via NVD
CVE-2026-73513High· 7.5
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's optional oghttp2 upstream HTTP/2 codec accepts a response trailer HEADERS frame without END_STRE…

▾ Twilightenvoyproxy · envoyEPSS 0.72%via NVD
CVE-2026-79320Medium· 6.1
1w ago

Stencil core 4.43.5 contains a DOM-based cross-site scripting (XSS) vulnerability in the component runtime

Stencil core 4.43.5 contains a DOM-based cross-site scripting (XSS) vulnerability in the component runtime. When a downstream application enables the experimental slot fixes option and uses scoped components, assigning a string to the te…

▾ SunlitEPSS 0.15%via NVD
CVE-2026-73549Medium· 5.3
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's Utility::copyInternetAddressAndPort and QUIC client-address paths reconstruct scoped IPv6 addres…

▾ Sunlitenvoyproxy · envoyEPSS 0.60%via NVD
CVE-2026-48521Medium· 5.9PoC
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's ProdClusterManagerFactory::allocateConnPool dereferences transport_socket_options while selectin…

▾ Twilightenvoyproxy · envoyEPSS 0.70%via NVD
CVE-2026-73547High· 7.5
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's ext_authz filter assumes that a request contains a :path pseudoheader when applying query_parame…

▾ Twilightenvoyproxy · envoyEPSS 0.83%via NVD
CVE-2026-73550High· 7.5
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy copies every decoded HTTP/2 Host header value before discarding it when :authority is already pres…

▾ Twilightenvoyproxy · envoyEPSS 0.88%via NVD
CVE-2026-58271Medium· 6.8PoC
1w ago

Sync-in Server is an open-source platform for file storage, sharing, collaboration, and syncing

Sync-in Server is an open-source platform for file storage, sharing, collaboration, and syncing. Prior to version 2.4.0, `POST /api/app/sync/register` accepts credentials and a TOTP code to register a desktop sync client. On a failed TOT…

▾ TwilightSync-in · serverEPSS 0.22%via NVD
CVE-2026-91167Medium· 6.0
1w ago

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux. Prior to 0.28.4, PUT /@warpgate/admin/api/users/:id/roles/:role_id reaches api_update_user_role in warpgate-admin/src/api/users.rs through AdminContext but does not …

▾ Sunlitwarp-tech · warpgateEPSS 0.41%via NVD
CVE-2026-91166Medium· 5.7PoC
1w ago

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux. From 0.25.0 until 0.27.6, the browser SSH path in warpgate-web-ssh/src/manager.rs handles RCEvent::HostKeyUnknown without the presenting hop identity and instead pas…

▾ Twilightwarp-tech · warpgateEPSS 0.22%via NVD
CVE-2026-91165Low· 2.4
1w ago

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux. Prior to 0.27.6, the response_mode=form_post SSO return path in warpgate-protocol-http/src/api/sso_provider_list.rs uses serde_json::to_string inside ReturnToSsoPost…

▾ Sunlitwarp-tech · warpgateEPSS 0.40%via NVD
CVE-2026-91164Medium· 4.3
1w ago

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux. From 0.23.0 until 0.27.3, HTTP API token authentication resolves ConfigProvider::validate_api_token into RequestAuthorization::UserToken without enforcing the owning…

▾ Sunlitwarp-tech · warpgateEPSS 0.42%via NVD
CVE-2026-63330High· 7.7PoC
1w ago

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux. Prior to 0.25.6, api_get_recording_stream in warpgate-admin/src/api/recordings_detail.rs protects /@warpgate/admin/api/recordings/{uuid}/stream only with session aut…

▾ Midnightwarp-tech · warpgateEPSS 0.45%via NVD
CVE-2026-63329Medium· 4.9
1w ago

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux. Prior to 0.25.6, copy_server_request in warpgate-protocol-http/src/proxy.rs forwards a client-supplied x-warpgate-username header before inject_own_headers appends t…

▾ Sunlitwarp-tech · warpgateEPSS 0.31%via NVD
CVE-2026-61748Medium· 4.3
1w ago

InvenTree is an Open Source Inventory Management System

InvenTree is an Open Source Inventory Management System. Prior to 1.4.0, ReportPrint at POST /api/report/print/ and LabelPrint at POST /api/report/label/print/ require authentication but do not call users.permissions.check_user_permissio…

▾ Sunlitinventree · InvenTreeEPSS 0.42%via NVD
CVE-2026-61747Medium· 4.3
1w ago

InvenTree is an Open Source Inventory Management System

InvenTree is an Open Source Inventory Management System. Prior to 1.4.0, the /api/importer/row/ and /api/importer/mapping/ endpoints do not scope DataImportRow and DataImportColumnMap querysets to the owner of the associated DataImportSe…

▾ Sunlitinventree · InvenTreeEPSS 0.34%via NVD
CVE-2026-61746Medium· 5.3PoC
1w ago

InvenTree is an Open Source Inventory Management System

InvenTree is an Open Source Inventory Management System. Prior to 1.4.0, PluginSettingList, PluginAllSettingList, and PluginSettingDetail set GlobalSettingsPermissions without the IsAuthenticated permission used by the project default an…

▾ Twilightinventree · InvenTreeEPSS 0.40%via NVD
CVE-2026-61744Medium· 6.5
1w ago

InvenTree is an Open Source Inventory Management System

InvenTree is an Open Source Inventory Management System. Prior to 1.4.0, POST /api/barcode/ accepts an attacker-synthesized internal JSON barcode containing a lowercase model label and integer primary key, while BarcodeView uses IsAuthen…

▾ Sunlitinventree · InvenTreeEPSS 0.51%via NVD
CVEs tagged “cve.org” — page 95 · VulnSea