VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

29934 CVEsRSS

CVE-2026-90829Medium· 5.3PoC
2w ago

A weakness has been identified in GNU Binutils 2.47

A weakness has been identified in GNU Binutils 2.47. This issue affects the function bfd_elf_set_group_contents of the file bfd/elf.c of the component SHT_GROUP Section Handler. Executing a manipulation can lead to null pointer dereferen…

▾ Twilightgnu · binutilsEPSS 0.17%via NVD
CVE-2026-75944Low· 2.6
2w ago

A race condition during supplicant re-authentication may leave a stale ACL entry that persists in the system

A race condition during supplicant re-authentication may leave a stale ACL entry that persists in the system. If the AclAgent subsequently restarts, this stale entry may be applied to new supplicants, resulting in incorrect access contro…

▾ SunlitArista Networks · EOSEPSS 0.22%via NVD
CVE-2026-90830Medium· 5.3PoC
2w ago

A security vulnerability has been detected in GNU Binutils 2.47

A security vulnerability has been detected in GNU Binutils 2.47. Impacted is the function _bfd_write_merged_section of the file bfd/merge.c of the component Section Merge. The manipulation leads to null pointer dereference. The attack ne…

▾ Twilightgnu · binutilsEPSS 0.17%via NVD
CVE-2026-75945Low· 2.6
2w ago

A race condition may cause a supplicant to remain in an authorized state after a clear dot1x host all command is issued.

A race condition may cause a supplicant to remain in an authorized state after a clear dot1x host all command is issued.

▾ SunlitArista Networks · EOSEPSS 0.20%via NVD
CVE-2026-90831Medium· 5.3
2w ago

A vulnerability was detected in GNU Binutils 2.47

A vulnerability was detected in GNU Binutils 2.47. The affected element is the function _bfd_elf_strtab_delref of the file bfd/elf-strtab.c of the component ELF String Table. The manipulation results in memory corruption. The attack requ…

▾ Sunlitgnu · binutilsEPSS 0.17%via NVD
CVE-2026-90835Low· 3.5PoC
2w ago

A flaw has been found in michaelliao itranswarp up to 2.19

A flaw has been found in michaelliao itranswarp up to 2.19. The impacted element is the function Markdown.toHtml of the file Markdown.java of the component Page Content Rendering. This manipulation causes cross site scripting. The attack…

▾ Twilightmichaelliao · itranswarpEPSS 0.35%via NVD
CVE-2026-91181Medium· 6.5
2w ago

Mattermost versions 11.9.x <= 11.9.0, 11.8.x <= 11.8.4, 11.7.x <= 11.7.7, 10.11.x <= 10.11.22 Fail to sanitize Team objects returned by the data retention teams endpoint which allows an authenticated user holding only the read-only Data …

Mattermost versions 11.9.x <= 11.9.0, 11.8.x <= 11.8.4, 11.7.x <= 11.7.7, 10.11.x <= 10.11.22 Fail to sanitize Team objects returned by the data retention teams endpoint which allows an authenticated user holding only the read-only Data …

▾ SunlitMattermost · MattermostEPSS 0.39%via NVD
CVE-2026-90825Low· 3.3PoC
2w ago

A vulnerability was found in GPAC 26.07.0

A vulnerability was found in GPAC 26.07.0. Affected by this vulnerability is the function gf_node_unregister of the file scenegraph/base_scenegraph.c of the component MP4Box. The manipulation results in use after free. The attack is only…

▾ TwilightEPSS 0.17%via NVD
CVE-2026-13265Medium· 6.8
2w ago

IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43 LTS, 9.3.0.0 through 9.3.0.41 LTS, 9.3.0.0 through 9.3.5.1 CD, 9.4.0.0 through 9.4.0.25 LTS, 9.4.0.0 through 9.4.5.1 CD, and 10.0.0.0 could allow an authenticated attacker wit…

IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43 LTS, 9.3.0.0 through 9.3.0.41 LTS, 9.3.0.0 through 9.3.5.1 CD, 9.4.0.0 through 9.4.0.25 LTS, 9.4.0.0 through 9.4.5.1 CD, and 10.0.0.0 could allow an authenticated attacker wit…

▾ SunlitIBM · MQEPSS 0.22%via NVD
CVE-2026-90826Low· 2.8PoC
2w ago

A vulnerability was determined in GPAC 26.07.0

A vulnerability was determined in GPAC 26.07.0. Affected by this issue is the function gf_node_del of the file scenegraph/base_scenegraph.c of the component MP4Box. This manipulation causes out-of-bounds read. The attack is restricted to…

▾ TwilightEPSS 0.16%via NVD
CVE-2026-18117Medium· 5.4
2w ago

Concrete CMS 9.0.0 through 9.5.3 is vulnerable to stored XSS via the custom page alias name (customAliasName) because the Edit Alias dialog applied only trim() to the submitted value and performed no input neutralization

Concrete CMS 9.0.0 through 9.5.3 is vulnerable to stored XSS via the custom page alias name (customAliasName) because the Edit Alias dialog applied only trim() to the submitted value and performed no input neutralization. An authenticate…

▾ Sunlitconcretecms · concrete_cmsEPSS 0.14%via NVD
CVE-2026-12759Medium· 6.5
2w ago

IBM Cloud Pak for Business Automation could allow an authenticated user to cause a denial of service due to uncontrolled resource consumption.

IBM Cloud Pak for Business Automation could allow an authenticated user to cause a denial of service due to uncontrolled resource consumption.

▾ SunlitIBM · Cloud Pak for Business AutomationEPSS 0.22%via NVD
CVE-2026-12758Medium· 5.4
2w ago

IBM Cloud Pak for Business Automation could allow a remote attacker to bypass authorization and invoke restricted endpoints due to improper validation of HTTP headers.

IBM Cloud Pak for Business Automation could allow a remote attacker to bypass authorization and invoke restricted endpoints due to improper validation of HTTP headers.

▾ SunlitIBM · Cloud Pak for Business AutomationEPSS 0.18%via NVD
CVE-2026-12756High· 7.1
2w ago

IBM Business Automation Workflow containers and traditional is vulnerable to an XML external entity injection (XXE) attack when processing XML data

IBM Business Automation Workflow containers and traditional is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or co…

▾ TwilightIBM · Business Automation Workflow containers and traditionalEPSS 0.29%via NVD
CVE-2026-91143High· 7.2PoC
2w ago

goproxy through 15.3 fails to apply HTTP proxy basic authentication to CONNECT tunnel requests, allowing unauthenticated clients to bypass credential requirements

goproxy through 15.3 fails to apply HTTP proxy basic authentication to CONNECT tunnel requests, allowing unauthenticated clients to bypass credential requirements. Attackers can issue CONNECT requests to establish tunnels through the aut…

▾ Midnightsnail007 · goproxyEPSS 0.47%via NVD
CVE-2026-90827Low· 3.3PoC
2w ago

A vulnerability was identified in GPAC 26.07.0

A vulnerability was identified in GPAC 26.07.0. This affects the function gf_node_deactivate_ex of the file scenegraph/base_scenegraph.c of the component MP4Box. Such manipulation leads to use after free. The attack must be carried out l…

▾ TwilightEPSS 0.17%via NVD
CVE-2026-91145High· 7.1PoC
2w ago

Activiti through 7.1.0.M6 fails to validate hash-brace deferred expressions in process variables, allowing attackers to bypass expression filtering

Activiti through 7.1.0.M6 fails to validate hash-brace deferred expressions in process variables, allowing attackers to bypass expression filtering. Attackers can inject expressions beginning with #{ that are stored and later evaluated i…

▾ MidnightActiviti · ActivitiEPSS 0.42%via NVD
CVE-2026-91144High· 7.5
2w ago

ZFile through 5.0.5 fails to validate requested file paths against a share link's allowed entries on the download endpoint

ZFile through 5.0.5 fails to validate requested file paths against a share link's allowed entries on the download endpoint. Attackers holding a share link can supply arbitrary file paths as query parameters to download any file under the…

▾ Twilightzfile-dev · zfileEPSS 0.51%via NVD
CVE-2026-73449Medium· 5.9
2w ago

On affected platforms running Arista EOS with both 802.1X port authentication and the RADIUS proxy feature configured with dynamic authorization, a low-privileged attacker on an adjacent network segment who induces a RADIUS packet throug…

On affected platforms running Arista EOS with both 802.1X port authentication and the RADIUS proxy feature configured with dynamic authorization, a low-privileged attacker on an adjacent network segment who induces a RADIUS packet throug…

▾ SunlitArista Networks · EOSEPSS 0.24%via NVD
CVE-2026-91146Medium· 6.1
2w ago

Takahe through 0.11.0 fails to restrict URL schemes in link hrefs within federated post content and profile summaries, allowing remote actors to inject javascript: links

Takahe through 0.11.0 fails to restrict URL schemes in link hrefs within federated post content and profile summaries, allowing remote actors to inject javascript: links. Attackers can deliver federated content with malicious javascript:…

▾ Sunlitjointakahe · takaheEPSS 0.34%via NVD
CVE-2026-12944Critical· 9.6PoC
2w ago

IBM Langflow OSS 1.0.0 through 1.10.0 can allow attackers to execute arbitrary Python code with root privileges (UID=0) on the Langflow server by submitting components containing socket or urllib imports

IBM Langflow OSS 1.0.0 through 1.10.0 can allow attackers to execute arbitrary Python code with root privileges (UID=0) on the Langflow server by submitting components containing socket or urllib imports. This enables: (1) AWS credential…

▾ AbyssalIBM · Langflow OSSEPSS 0.43%via NVD
CVE-2026-90828Medium· 5.3PoC
2w ago

A security flaw has been discovered in GNU Binutils 2.47

A security flaw has been discovered in GNU Binutils 2.47. This vulnerability affects the function elf_orphan_compatible of the file ld/ldelf.c of the component ELF Orphan Section Handler. Performing a manipulation results in null pointer…

▾ Twilightgnu · binutilsEPSS 0.19%via NVD
CVE-2026-76081Medium· 5.5
2w ago

ZITADEL is an open source identity management platform

ZITADEL is an open source identity management platform. Prior to version 4.16.0, a bug in how ZITADEL updates permissions when multiple project roles are deleted at the same time can cause some user permissions to be missed. This issue s…

▾ Sunlitzitadel · github.com/zitadel/zitadelEPSS 0.40%via NVD
CVE-2026-13277Medium· 4.7
2w ago

IBM Verify Identity Access could allow a remote attacker to conduct phishing attacks, using an open redirect attack

IBM Verify Identity Access could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to spoo…

▾ SunlitIBM · Verify Identity AccessEPSS 0.28%via NVD
CVE-2026-13276Medium· 6.1
2w ago

IBM Verify Identity Access 11.0.0 through 11.0.3 Interim Fix 001 and IBM Security Verify Access 10.0.0 through 10.0.9.2 Interim Fix 001 and IBM Verify Identity Access Container 11.0.0 through 11.0.3 Interim Fix 001 and IBM Security Verif…

IBM Verify Identity Access 11.0.0 through 11.0.3 Interim Fix 001 and IBM Security Verify Access 10.0.0 through 10.0.9.2 Interim Fix 001 and IBM Verify Identity Access Container 11.0.0 through 11.0.3 Interim Fix 001 and IBM Security Verif…

▾ SunlitIBM · Verify Identity AccessEPSS 0.24%via NVD
CVE-2026-81903Medium· 5.4
2w ago

Concrete CMS versions 9.0.0 to 9.5.2 stored the Page Container icon value submitted through the dashboard without validating it against the set of known container icons

Concrete CMS versions 9.0.0 to 9.5.2 stored the Page Container icon value submitted through the dashboard without validating it against the set of known container icons. The unvalidated value was later concatenated into the src attribute…

▾ Sunlitconcretecms · concrete_cmsEPSS 0.32%via NVD
CVE-2026-13272Medium· 5.4
2w ago

IBM Verify Identity Access is missing origin validation which could allow a remote attacker to perform operations as the victim and potentially launch further attacks against the systems.

IBM Verify Identity Access is missing origin validation which could allow a remote attacker to perform operations as the victim and potentially launch further attacks against the systems.

▾ SunlitIBM · Verify Identity AccessEPSS 0.15%via NVD
CVE-2026-90818Medium· 4.3PoC
2w ago

A security flaw has been discovered in netease-youdao LobsterAI 2026.6.15/2026.8.28/2026.9.3/2026.9.4

A security flaw has been discovered in netease-youdao LobsterAI 2026.6.15/2026.8.28/2026.9.3/2026.9.4. Impacted is the function OpenClawConfigSync.buildBrowserConfig of the file src/main/libs/openclawConfigSync.ts of the component Browse…

▾ Twilightnetease-youdao · LobsterAIEPSS 0.54%via NVD
CVE-2026-13260High· 7.5
2w ago

IBM Verify Identity Access could allow a remote attacker to cause a denial of service due to insufficient validation of incoming request resources.

IBM Verify Identity Access could allow a remote attacker to cause a denial of service due to insufficient validation of incoming request resources.

▾ TwilightIBM · Verify Identity AccessEPSS 0.43%via NVD
CVE-2026-90819High· 7.3
2w ago

A weakness has been identified in a2aproject a2a-java 1.2.0

A weakness has been identified in a2aproject a2a-java 1.2.0. The affected element is the function BasePushNotificationSender.dispatchNotification of the file server-common/src/main/java/org/a2aproject/sdk/server/tasks/BasePushNotificatio…

▾ Twilighta2aproject · a2a-javaEPSS 0.66%via NVD
CVEs tagged “nvd” — page 313 · VulnSea