VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

25452 CVEsRSS

CVE-2026-57222Medium· 5.3
1w ago

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.17 and 8.0.6, crafted IPv4 and IPv6 address pairs can collide in the IPPair hash because src/ippair.c did …

▾ SunlitOISF · suricataEPSS 0.44%via NVD
CVE-2026-52745Medium· 5.3
1w ago

CordysCRM is an open source AI-powered customer relationship management system that supports private deployment

CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. Prior to 1.7.0, the POST /account-pool/page endpoint allows an authenticated caller with MODULE_SETTING:UPDATE to place a cr…

▾ Sunlit1Panel-dev · CordysCRMEPSS 0.34%via NVD
CVE-2026-75895High· 7.5
1w ago

In libsmpp35 from 0.1.0 through 1.8.0 out of bound read issue was found in the at smpp34_unpack() function via attacker controlled SMPP PDUs, leading to memory corruption.

In libsmpp35 from 0.1.0 through 1.8.0 out of bound read issue was found in the at smpp34_unpack() function via attacker controlled SMPP PDUs, leading to memory corruption.

▾ TwilightOsmocom · libsmpp34EPSS 0.42%via NVD
CVE-2017-20284High· 7.5PoC
1w ago

Caucho Resin contains a path traversal vulnerability in the documentation webapp (resin-doc) that allows remote unauthenticated attackers to read arbitrary files by supplying a relative path through the inputFile request parameter of the…

Caucho Resin contains a path traversal vulnerability in the documentation webapp (resin-doc) that allows remote unauthenticated attackers to read arbitrary files by supplying a relative path through the inputFile request parameter of the…

▾ MidnightCaucho Technology, Inc. · ResinEPSS 0.96%via NVD
CVE-2026-11545Low· 3.7
1w ago

IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to obtain sensitive information from the administrative console due to missing authorization checks.

IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to obtain sensitive information from the administrative console due to missing authorization checks.

▾ SunlitIBM · WebSphere Application ServerEPSS 0.26%via NVD
CVE-2026-11540Medium· 5.3
1w ago

IBM WebSphere Application Server 9.0 and 8.5 could allow a remote attacker to obtain sensitive information about the file system through the FileTransfer servlet.

IBM WebSphere Application Server 9.0 and 8.5 could allow a remote attacker to obtain sensitive information about the file system through the FileTransfer servlet.

▾ SunlitIBM · WebSphere Application ServerEPSS 0.30%via NVD
CVE-2026-11539Medium· 5.3
1w ago

IBM WebSphere Application Server 9.0 and 8.5 is affected by an authentication bypass vulnerability in the SOAP/JMX connector.

IBM WebSphere Application Server 9.0 and 8.5 is affected by an authentication bypass vulnerability in the SOAP/JMX connector.

▾ SunlitIBM · WebSphere Application ServerEPSS 0.30%via NVD
CVE-2026-93841Low· 3.7
1w ago

vLLM through 0.29.0 contains a memory corruption vulnerability in the Triton _bincount_kernel where prompt token IDs index the penalty prompt-presence bitset without bounds checking against vocabulary size

vLLM through 0.29.0 contains a memory corruption vulnerability in the Triton _bincount_kernel where prompt token IDs index the penalty prompt-presence bitset without bounds checking against vocabulary size. Attackers can submit multimoda…

▾ Sunlitvllm · vllmvia NVD
CVE-2026-93838Medium· 5.9PoC
1w ago

SGLang versions through 0.5.20 contain an unbounded memory allocation vulnerability in handle_staging_req() that fails to validate chunk_idx from ZMQ STAGING_REQ frames in prefill/decode disaggregation deployments

SGLang versions through 0.5.20 contain an unbounded memory allocation vulnerability in handle_staging_req() that fails to validate chunk_idx from ZMQ STAGING_REQ frames in prefill/decode disaggregation deployments. Attackers with access …

▾ Twilightsgl-project · sglangEPSS 0.65%via NVD
CVE-2026-11548Medium· 4.8
1w ago

IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by an HTTP request smuggling vulnerability.

IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by an HTTP request smuggling vulnerability.

▾ SunlitIBM · CICS TX AdvancedEPSS 0.18%via NVD
CVE-2026-93840Low· 3.7
1w ago

vLLM before 0.29.0 validates allowed_token_ids against tokenizer length instead of model output logits width in SamplingParams._validate_allowed_token_ids()

vLLM before 0.29.0 validates allowed_token_ids against tokenizer length instead of model output logits width in SamplingParams._validate_allowed_token_ids(). Attackers can supply token IDs above the output vocabulary that pass validation…

▾ Sunlitvllm · vllmvia NVD
CVE-2026-93839Critical· 9.8PoC
1w ago

LightLLM through 1.2.0 contains an authentication bypass vulnerability in the /pd_register WebSocket endpoint that allows unauthenticated attackers to register arbitrary nodes by supplying crafted JSON without peer address validation

LightLLM through 1.2.0 contains an authentication bypass vulnerability in the /pd_register WebSocket endpoint that allows unauthenticated attackers to register arbitrary nodes by supplying crafted JSON without peer address validation. At…

▾ AbyssalModelTC · LightLLMEPSS 0.76%via NVD
CVE-2026-11711Medium· 6.5
1w ago

IBM WebSphere Application Server 9.0 and 8.5 is affected by a deserialization vulnerability in the Name Service component.

IBM WebSphere Application Server 9.0 and 8.5 is affected by a deserialization vulnerability in the Name Service component.

▾ SunlitIBM · WebSphere Application ServerEPSS 0.38%via NVD
CVE-2026-11710Medium· 6.5
1w ago

IBM WebSphere Application Server 8.5 is affected by an HTTP request smuggling vulnerability due to improper handling of Content-Length headers.

IBM WebSphere Application Server 8.5 is affected by an HTTP request smuggling vulnerability due to improper handling of Content-Length headers.

▾ SunlitIBM · WebSphere Application ServerEPSS 0.23%via NVD
CVE-2026-11722Medium· 4.8
1w ago

IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by an HTTP request smuggling vulnerability.

IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by an HTTP request smuggling vulnerability.

▾ SunlitIBM · CICS TX AdvancedEPSS 0.18%via NVD
CVE-2026-11716High· 7.5
1w ago

IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code during queue manager startup due to improper validation of cluster migration data.

IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code during queue manager startup due to improper validation of cluster migration data.

▾ TwilightIBM · MQ for HPE NonStopEPSS 0.33%via NVD
CVE-2026-91205Medium· 6.0
1w ago

A flaw was found in cockpit-files

A flaw was found in cockpit-files. A local unprivileged attacker can exploit a race condition during directory creation with owner assignment. By controlling a writable parent directory, the attacker can replace a newly created directory…

▾ SunlitRed Hat · cockpit-filesEPSS 0.10%via NVD
CVE-2026-11726High· 8.1
1w ago

IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attacker to obtain sensitive information or cause a denial of service due to improper validation of message header offset values.

IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attacker to obtain sensitive information or cause a denial of service due to improper validation of message header offset values.

▾ TwilightIBM · MQ for HPE NonStopEPSS 0.33%via NVD
CVE-2026-11727High· 8.1
1w ago

IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 IBM MQ C client could allow a remote attacker to cause a denial of service or potentially execute arbitrary code due to improper validation of queue manager responses when requesting AMS poli…

IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 IBM MQ C client could allow a remote attacker to cause a denial of service or potentially execute arbitrary code due to improper validation of queue manager responses when requesting AMS poli…

▾ TwilightIBM · MQ for HPE NonStopEPSS 0.44%via NVD
CVE-2026-91203Medium· 6.0PoC
1w ago

A flaw was found in cockpit-files

A flaw was found in cockpit-files. This vulnerability allows a local attacker to exploit a timing issue, known as a symlink race condition, during privileged file operations such as changing file ownership or permissions. By manipulating…

▾ TwilightRed Hat · cockpit-filesEPSS 0.10%via NVD
CVE-2026-17619High· 8.6
1w ago

IBM Platform RTM is vulnerable to SQL injection

IBM Platform RTM is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.

▾ TwilightIBM · spectrum-lsf : IBM Platform RTMEPSS 0.30%via NVD
CVE-2026-17262Medium· 5.4
1w ago

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to cause a denial of service due to improper validation of FTP authentication commands.

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to cause a denial of service due to improper validation of FTP authentication commands.

▾ SunlitIBM · iEPSS 0.19%via NVD
CVE-2026-91202Medium· 6.1
1w ago

A flaw was found in cockpit-files

A flaw was found in cockpit-files. A low-privileged local user can exploit this vulnerability by crafting a directory containing a symbolic link (symlink) and then using the privileged "Paste as owner" function. This allows for arbitrary…

▾ SunlitRed Hat · cockpit-filesEPSS 0.16%via NVD
CVE-2026-80441Critical· 9.8
1w ago

IBM Guardium Data Protection 12.2 is vulnerable to an unauthenticated second-order SQL injection vulnerability in the generateInsertQuery functionality of change-tracker-data.sql

IBM Guardium Data Protection 12.2 is vulnerable to an unauthenticated second-order SQL injection vulnerability in the generateInsertQuery functionality of change-tracker-data.sql. A remote attacker could inject malicious SQL that is subs…

▾ MidnightIBM · Guardium Data ProtectionEPSS 0.56%via NVD
CVE-2026-75878Critical· 9.1
1w ago

IBM Sterling File Gateway could allow a remote attacker to bypass authentication and obtain a fully authenticated session due to improper authentication via an unvalidated SSO header.

IBM Sterling File Gateway could allow a remote attacker to bypass authentication and obtain a fully authenticated session due to improper authentication via an unvalidated SSO header.

▾ MidnightIBM · Sterling File GatewayEPSS 0.64%via NVD
CVE-2026-81656High· 8.8
1w ago

IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the New Query Builder REST Processor

IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the New Query Builder REST Processor. A low-privileged authenticated user can inject SQL statements through the newQueryBuilder REST endpoint, potentiall…

▾ TwilightIBM · Guardium Data ProtectionEPSS 0.43%via NVD
CVE-2026-81623Medium· 6.3
1w ago

IBM Guardium Data Protection 12.2 could allow an authenticated user to execute arbitrary commands with low user privileges on the system due to improper validation of user supplied input.

IBM Guardium Data Protection 12.2 could allow an authenticated user to execute arbitrary commands with low user privileges on the system due to improper validation of user supplied input.

▾ SunlitIBM · Guardium Data ProtectionEPSS 0.36%via NVD
CVE-2026-80442Critical· 9.9
1w ago

IBM Guardium Data Protection 12.2 is vulnerable to an authenticated OS command injection vulnerability in the exportCertificate functionality

IBM Guardium Data Protection 12.2 is vulnerable to an authenticated OS command injection vulnerability in the exportCertificate functionality. Successful exploitation could allow an attacker to execute unauthorized commands and impact th…

▾ MidnightIBM · Guardium Data ProtectionEPSS 0.63%via NVD
CVE-2026-82887High· 8.8
1w ago

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

▾ TwilightIBM · Guardium Data ProtectionEPSS 0.78%via NVD
CVE-2026-81657Critical· 9.8
1w ago

IBM Guardium Data Protection 12.2 could allow a remote unauthenticated attacker to execute arbitrary code on the system due to the deserialization of untrusted data.

IBM Guardium Data Protection 12.2 could allow a remote unauthenticated attacker to execute arbitrary code on the system due to the deserialization of untrusted data.

▾ MidnightIBM · Guardium Data ProtectionEPSS 0.85%via NVD
CVEs tagged “nvd” — page 115 · VulnSea