VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

29021 CVEsRSS

CVE-2026-58744High· 7.8
2w ago

In multiple locations, there is a possible escalation of privilege due to improper input validation

In multiple locations, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for expl…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-58739Medium· 6.7
2w ago

In platform_msg_handler_init of default_msg_handlers.c, there is a possible confused deputy due to a confused deputy

In platform_msg_handler_init of default_msg_handlers.c, there is a possible confused deputy due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not neede…

▾ Sunlitgoogle · androidEPSS 0.09%via NVD
CVE-2026-58734High· 7.0
2w ago

In google_mba_recv_msg of google_mba_poll.c, there is a possible out-of-bounds write due to a race condition

In google_mba_recv_msg of google_mba_poll.c, there is a possible out-of-bounds write due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed…

▾ Twilightgoogle · androidEPSS 0.07%via NVD
CVE-2026-58731Medium· 6.2
2w ago

In multiple functions of physmem_extmem_linux.c, there is a possible out-of-bounds read due to uninitialized data

In multiple functions of physmem_extmem_linux.c, there is a possible out-of-bounds read due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not ne…

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-58728High· 7.0
2w ago

In ARM64_TLBI of mmu.h, there is a possible memory corruption due to a race condition

In ARM64_TLBI of mmu.h, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.07%via NVD
CVE-2026-58726Medium· 6.7
2w ago

In FsmReleaseKey of fsm.c, there is a possible permission bypass due to a missing permission check

In FsmReleaseKey of fsm.c, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.10%via NVD
CVE-2026-58724High· 7.0
2w ago

In multiple locations, there is a possible use-after-free due to a race condition

In multiple locations, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.07%via NVD
CVE-2026-18421Low· 2.1
2w ago

Concrete CMS 9 through 9.5.2 does not perform an authorization check in three actions of the Boards data source dashboard controller (update, update_data_source, and delete_data_source), which resolve a ConfiguredDataSource directly from…

Concrete CMS 9 through 9.5.2 does not perform an authorization check in three actions of the Boards data source dashboard controller (update, update_data_source, and delete_data_source), which resolve a ConfiguredDataSource directly from…

▾ SunlitConcrete CMS · Concrete CMSEPSS 0.27%via NVD
CVE-2026-19774High· 7.10day
2w ago

BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability

BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of BlueZ. An attacker must first obtain the ability to p…

▾ AbyssalBlueZ · BlueZEPSS 0.27%via NVD
CVE-2026-19773Critical· 9.80day
2w ago

libwebsockets HTTP/2 HPACK Path Header Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

libwebsockets HTTP/2 HPACK Path Header Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of libwebsockets. Authentication is no…

▾ Hadallibwebsockets · libwebsocketsEPSS 0.65%via NVD
CVE-2026-19504Medium· 4.00day
2w ago

Fabric.js loadFromJSON Server-Side Request Forgery Vulnerability

Fabric.js loadFromJSON Server-Side Request Forgery Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Fabric.js. Interaction with this library is required to exploit t…

▾ MidnightFabric.js · Fabric.jsEPSS 0.12%via NVD
CVE-2026-19886High· 7.80day
2w ago

OriginLab Origin Viewer OGM File Parsing Memory Corruption Remote Code Execution Vulnerability

OriginLab Origin Viewer OGM File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab Origin Viewer. User interaction i…

▾ AbyssalOriginLab · Origin ViewerEPSS 0.17%via NVD
CVE-2026-19885High· 7.80day
2w ago

OriginLab Origin Viewer OGWU File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

OriginLab Origin Viewer OGWU File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab Origin Viewer. User interactio…

▾ AbyssalOriginLab · Origin ViewerEPSS 0.17%via NVD
CVE-2026-19781High· 7.80day
2w ago

Ashlar-Vellum Cobalt VS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

Ashlar-Vellum Cobalt VS File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction…

▾ AbyssalAshlar-Vellum · CobaltEPSS 0.17%via NVD
CVE-2026-92180High· 7.80day
2w ago

pdfforge PDF Architect activation-service Update Service Uncontrolled Search Path Element Local Privilege Escalation Vulnerability

pdfforge PDF Architect activation-service Update Service Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of pdfforge PD…

▾ Abyssalpdfforge · PDF ArchitectEPSS 0.19%via NVD
CVE-2026-92179High· 7.80day
2w ago

pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction i…

▾ Abyssalpdfforge · PDF ArchitectEPSS 0.23%via NVD
CVE-2026-92178High· 7.80day
2w ago

pdfforge PDF Architect PDF File Parsing Memory Corruption Remote Code Execution Vulnerability

pdfforge PDF Architect PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction is …

▾ Abyssalpdfforge · PDF ArchitectEPSS 0.23%via NVD
CVE-2026-92177High· 7.80day
2w ago

pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction i…

▾ Abyssalpdfforge · PDF ArchitectEPSS 0.23%via NVD
CVE-2026-92176High· 7.80day
2w ago

pdfforge PDF Architect App Object Out-Of-Bounds Read Remote Code Execution Vulnerability

pdfforge PDF Architect App Object Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction is requi…

▾ Abyssalpdfforge · PDF ArchitectEPSS 0.23%via NVD
CVE-2026-73451Medium· 4.8
2w ago

On affected platforms running Arista EOS with dual switch cards and with ingress Security ACLs configured on Switched Virtual Interfaces (SVI) in shared mode, restarting of the secondary switchcard forwarding agent or insertion of second…

On affected platforms running Arista EOS with dual switch cards and with ingress Security ACLs configured on Switched Virtual Interfaces (SVI) in shared mode, restarting of the secondary switchcard forwarding agent or insertion of second…

▾ SunlitArista Networks · EOSEPSS 0.23%via NVD
CVE-2026-19641Medium· 5.3
2w ago

On affected platforms running Arista EOS with password authentication configured, a specially crafted password can create orphan authentication sessions

On affected platforms running Arista EOS with password authentication configured, a specially crafted password can create orphan authentication sessions. Repeated exploitation of this issue can exhaust available authentication resources,…

▾ SunlitArista Networks · EOSEPSS 0.34%via NVD
CVE-2026-81919Medium· 4.3⚖ disputed
2w ago

Concrete CMS below 9.5.3 did not validate an anti-CSRF token on the block-arrangement backend endpoint (the arrange() action of Concrete\Controller\Backend\Page\ArrangeBlocks)

Concrete CMS below 9.5.3 did not validate an anti-CSRF token on the block-arrangement backend endpoint (the arrange() action of Concrete\Controller\Backend\Page\ArrangeBlocks). The action enforced page-edit authorization but performed no…

▾ Sunlitconcretecms · concrete_cmsEPSS 0.15%via NVD
CVE-2026-68534Low· 2.3
2w ago

Concrete CMS before 9.5.3 rendered Express entry labels as raw HTML when displaying associated entries, resulting in stored cross-site scripting

Concrete CMS before 9.5.3 rendered Express entry labels as raw HTML when displaying associated entries, resulting in stored cross-site scripting. An unauthenticated attacker could submit a payload through a public Express Form; it then e…

▾ SunlitConcrete CMS · Concrete CMSEPSS 0.56%via NVD
CVE-2026-68533Low· 2.3
2w ago

Concrete CMS below 9.5.3 conversation attachment uploaded endpoint imported files into the file manager before evaluating the "Add Message Attachments" permission, which was only checked after the file had been stored

Concrete CMS below 9.5.3 conversation attachment uploaded endpoint imported files into the file manager before evaluating the "Add Message Attachments" permission, which was only checked after the file had been stored. A user denied that…

▾ SunlitConcrete CMS · Concrete CMSEPSS 0.39%via NVD
CVE-2026-0171High· 8.8
2w ago

In multiple locations, there is a possible out-of-bounds write due to a logic error in the code

In multiple locations, there is a possible out-of-bounds write due to a logic error in the code. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.29%via NVD
CVE-2026-0170High· 8.8
2w ago

In Vp9DecodeFrameTag of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check

In Vp9DecodeFrameTag of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not n…

▾ Twilightgoogle · androidEPSS 0.28%via NVD
CVE-2026-0159High· 8.8
2w ago

In Cellular Modem, there is a possible out-of-bounds write due to a missing bounds check

In Cellular Modem, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

▾ Twilightgoogle · androidEPSS 0.28%via NVD
CVE-2026-0183Medium· 4.4
2w ago

In CPM, there is a possible information disclosure due to a confused deputy

In CPM, there is a possible information disclosure due to a confused deputy. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-0179Medium· 6.7
2w ago

In Bootloader, there is a possible permission bypass due to a missing permission check

In Bootloader, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

▾ Sunlitgoogle · androidEPSS 0.07%via NVD
CVE-2026-0177Medium· 4.4
2w ago

In do_sss_aes_gcm_256_op of crypto-aes.c, there is a possible out-of-bounds read due to a missing bounds check

In do_sss_aes_gcm_256_op of crypto-aes.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for e…

▾ Sunlitgoogle · androidEPSS 0.07%via NVD
CVEs tagged “nvd” — page 273 · VulnSea