VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

29934 CVEsRSS

CVE-2026-61667Critical· 9.9
2w ago

DIRAC is an interware, meaning a software framework for distributed computing

DIRAC is an interware, meaning a software framework for distributed computing. Prior to versions 8.0.79, 9.0.22, and 9.1.10, DataManagementSystem/Service/FileCatalogHandler.py checkDataset forwards an authenticated caller-controlled data…

▾ MidnightDIRACGrid · DIRACEPSS 1.2%via NVD
CVE-2026-61668High· 8.1
2w ago

DIRAC is an interware, meaning a software framework for distributed computing

DIRAC is an interware, meaning a software framework for distributed computing. Prior to versions 8.0.79, 9.0.22, and 9.1.10, WorkloadManagementSystem/Utilities/PilotWrapper.py pilotWrapperScript uses ssl._create_unverified_context to dow…

▾ TwilightDIRACGrid · DIRACEPSS 0.40%via NVD
CVE-2026-53954Medium· 4.3
2w ago

Bugsink is a self-hosted error tracking tool

Bugsink is a self-hosted error tracking tool. Prior to version 2.2.2, Bugsink stores every set of custom tags supplied with an incoming event, allowing a caller with a valid project DSN to submit an unusually large tag set and force exce…

▾ Sunlitbugsink · bugsinkEPSS 0.56%via NVD
CVE-2026-45579Critical· 9.9
2w ago

DIRAC is an interware, meaning a software framework for distributed computing

DIRAC is an interware, meaning a software framework for distributed computing. Prior to versions 8.0.79, 9.0.22, and 9.1.10, the RequestManagementSystem/Service/ReqManagerHandler.py export_getRequestCountersWeb function passes an authent…

▾ MidnightDIRACGrid · DIRACEPSS 0.86%via NVD
CVE-2026-48737Medium· 4.9PoC
2w ago

pyLoad is a free and open-source download manager written in Python

pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev101, is_global_address in src/pyload/core/utils/web/check.py relies on Python's global-address classification without examining IPv4 destinations em…

▾ Twilightpyload · pyloadEPSS 0.29%via NVD
CVE-2026-48987Medium· 6.5PoC
2w ago

pyLoad is a free and open-source download manager written in Python

pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev101, EventManager in src/pyload/core/managers/event_manager.py appends a Client object to the clients list for each unique uuid submitted to the aut…

▾ Twilightpyload · pyloadEPSS 0.44%via NVD
CVE-2026-47780Medium· 6.9PoC
2w ago

free5GC is an open-source implementation of the 5G core network

free5GC is an open-source implementation of the 5G core network. In 4.2.3 and earlier, HandleCreateEeSubscriptions and HandleQueryeesubscriptions in free5gc/udr internal/sbi/api_datarepository.go validate the ueId path value with a regul…

▾ Twilightfree5gc · free5gcEPSS 0.54%via NVD
CVE-2026-55630Low· 0.0
2w ago

Kiwi TCMS is an open source test management system

Kiwi TCMS is an open source test management system. Prior to 16.1, TestCase.extra_link and TestPlan.extra_link accepted unsanitized user input and rendered stored values verbatim, creating an opportunity for cross-site scripting. Officia…

▾ Sunlitkiwitcms · KiwiEPSS 0.42%via NVD
CVE-2026-54724Medium· 6.1
2w ago

Kiwi TCMS is an open source test management system

Kiwi TCMS is an open source test management system. Prior to 16.1, the account confirmation endpoint accepted an unvalidated next parameter, allowing an unauthenticated attacker to create a URL on a trusted Kiwi TCMS hostname that redire…

▾ Sunlitkiwitcms · KiwiEPSS 0.35%via NVD
CVE-2026-54637Medium· 5.5PoC
2w ago

Dragonfly is an open source P2P-based file distribution and image acceleration system

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.4.4-rc.3, the scheduler's default unauthenticated v1 gRPC flow accepts attacker-controlled PeerHost.Ip and PeerHost.DownPort values through…

▾ Twilightdragonflyoss · dragonflyEPSS 0.80%via NVD
CVE-2026-49254Low· 2.9
2w ago

Dragonfly is an open source P2P-based file distribution and image acceleration system

Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.4.4, manager/router/router.go registers GET /api/v1/oauth and GET /api/v1/oauth/:id without jwt.MiddlewareFunc() or RBAC(), while manager/h…

▾ Sunlitdragonflyoss · dragonflyEPSS 0.48%via NVD
CVE-2026-47424High· 7.5
2w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, GroovySandboxValueFilter permits an authenticated server-side script author to escape the scripting sandbox despite the default class allow and deny lists…

▾ TwilightOpenIdentityPlatform · OpenAMEPSS 0.48%via NVD
CVE-2026-47426High· 7.6
2w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, the private_key_jwt client authentication path uses ClientJwksResolverCache without reliably binding a cached jwks_uri resolver and verified assertion to …

▾ TwilightOpenIdentityPlatform · OpenAMEPSS 0.55%via NVD
CVE-2026-48717Critical· 9.1
2w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, AuthorizationCodeGrantTypeHandler requires a code_verifier only when the realm-wide codeVerifierEnforced setting is enabled, even when an authorization co…

▾ MidnightOpenIdentityPlatform · OpenAMEPSS 0.53%via NVD
CVE-2026-55636Medium· 5.7
2w ago

Capsule is a multi-tenancy and policy-based framework for Kubernetes

Capsule is a multi-tenancy and policy-based framework for Kubernetes. From 0.13.0 until 0.13.6, charts/capsule/templates/configuration.yaml configures the validating webhook with namespace/finalize instead of the Kubernetes resource name…

▾ Sunlitprojectcapsule · capsuleEPSS 0.39%via NVD
CVE-2026-55225High· 8.0
2w ago

Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations

Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. In Strimzi 1.0.0 and earlier, an attacker who can create a Kafka custom resource can set Kafka.spec.entityOperator wat…

▾ Twilightstrimzi · strimzi-kafka-operatorEPSS 0.29%via NVD
CVE-2026-55226Medium· 5.4
2w ago

Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations

Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. In Strimzi 1.0.0 and earlier, deploying only the Topic Operator or only the User Operator through the Kafka custom res…

▾ Sunlitstrimzi · strimzi-kafka-operatorEPSS 0.25%via NVD
CVE-2026-55887High· 8.7
2w ago

MCP Gateway allows easy and secure running and deployment of MCP servers

MCP Gateway allows easy and secure running and deployment of MCP servers. From 0.21.0 until 0.42.2, Docker MCP Gateway YAML-unmarshalled the attacker-controlled io.docker.server.metadata OCI image label into the broad catalog.Server stru…

▾ Twilightdocker · mcp-gatewayEPSS 0.22%via NVD
CVE-2026-55617Medium· 6.9
2w ago

Hydro is a next-generation high-performance online judge platform

Hydro is a next-generation high-performance online judge platform. From 4.10.4 until 5.0.2, the session recreation logic in packages/hydrooj/src/service/layers/base.ts creates a replacement session token without deleting the previous tok…

▾ Sunlithydro-dev · HydroEPSS 0.47%via NVD
CVE-2026-41573High· 7.1
2w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, IdentityResourceV1.queryCollection() passes the _queryId parameter from /json/{realm}/users to CrestQuery with escapeQueryId disabled, bypassing protectio…

▾ TwilightOpenIdentityPlatform · OpenAMEPSS 0.50%via NVD
CVE-2026-44202Medium· 5.3
2w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, the /sessionservice addSessionListener operation allows an authenticated user to register an arbitrary notification URL without requiring an administrativ…

▾ SunlitOpenIdentityPlatform · OpenAMEPSS 0.41%via NVD
CVE-2026-44203High· 8.3
2w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, the OAuth 2.0 and OpenID Connect authorization endpoint does not sufficiently encode user-supplied parameters before FormPostResponse.ftl and checkSession…

▾ TwilightOpenIdentityPlatform · OpenAMEPSS 0.59%via NVD
CVE-2026-44778Low· 2.9⚖ disputed
2w ago

Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF

Inspektor Gadget is a set of tools and framework for data collection and system inspection on Kubernetes clusters and Linux hosts using eBPF. From 0.28.0 until 0.53.1, the USDT note parser in pkg/uprobetracer/usdt.go can allow an unprivi…

▾ Sunlitinspektor-gadget · inspektor-gadgetEPSS 0.63%via NVD
CVE-2026-44793High· 7.0
2w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, certain federation endpoints in a non-default clustered configuration inconsistently encode user-supplied parameters rendered into HTML in the SAML2 clust…

▾ TwilightOpenIdentityPlatform · OpenAMEPSS 0.59%via NVD
CVE-2026-46488Critical· 9.1PoC
2w ago

motionEye (mEye) is an online interface for a piece of software called "motion," which is a video surveillance program with motion detection

motionEye (mEye) is an online interface for a piece of software called "motion," which is a video surveillance program with motion detection. Prior to 0.44.0, motionEye accepts the client-controlled meye_username and meye_password_hash c…

▾ Abyssalmotioneye-project · motioneyeEPSS 0.46%via NVD
CVE-2026-46495Critical· 9.2
2w ago

OpenDJ is an LDAPv3 compliant directory service

OpenDJ is an LDAPv3 compliant directory service. Prior to 5.1.1, the JMX RMI connector in opendj-server-legacy/src/main/java/org/opends/server/protocols/jmx/RmiConnector.java processes attacker-controlled credential objects before authen…

▾ MidnightOpenIdentityPlatform · OpenDJEPSS 1.1%via NVD
CVE-2026-45048High· 8.5
2w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, SessionRequestHandler in the session management endpoint does not enforce ownership or privilege checks when a low-privileged authenticated user queries s…

▾ TwilightOpenIdentityPlatform · OpenAMEPSS 0.43%via NVD
CVE-2026-55863Medium· 5.3PoC
2w ago

motionEye (mEye) is an online interface for a piece of software called "motion," which is a video surveillance program with motion detection

motionEye (mEye) is an online interface for a piece of software called "motion," which is a video surveillance program with motion detection. Prior to 0.44.0, the ActionHandler.post() method in motioneye/handlers/action.py lacks the Base…

▾ Twilightmotioneye-project · motioneyeEPSS 0.50%via NVD
CVE-2026-44163Medium· 5.3
2w ago

fluent-plugin-opentelemetry is a Fluentd input and output plugin for forwarding OpenTelemetry Protocol data

fluent-plugin-opentelemetry is a Fluentd input and output plugin for forwarding OpenTelemetry Protocol data. Prior to 0.5.3, the in_opentelemetry HTTP input read the entire incoming request body and decompressed payloads into memory with…

▾ Sunlitfluent-plugins-nursery · fluent-plugin-opentelemetryEPSS 0.42%via NVD
CVE-2026-46619Critical· 9.3
2w ago

Open Access Management (OpenAM) is an access management solution

Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, MSISDNValidation in the MSISDN authentication module concatenates the request-supplied MSISDN value into an LDAP search filter without escaping, while the…

▾ MidnightOpenIdentityPlatform · OpenAMEPSS 0.99%via NVD
CVEs tagged “nvd” — page 311 · VulnSea