VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

30013 CVEsRSS

CVE-2026-47701High· 7.7
2w ago

The OpenTelemetry Operator is a Kubernetes Operator for the OpenTelemetry Collector

The OpenTelemetry Operator is a Kubernetes Operator for the OpenTelemetry Collector. Prior to 0.152.0, cmd/otel-allocator TargetAllocator instances with targetAllocator.prometheusCR.enabled set to true preserve a selected ServiceMonitor …

▾ Twilightopen-telemetry · opentelemetry-operatorEPSS 0.46%via NVD
CVE-2026-34151High· 8.2
2w ago

XWiki Platform is a generic wiki platform

XWiki Platform is a generic wiki platform. Prior to 17.10.5 and 18.2.0, the /skin/ action in com.xpn.xwiki.web.SkinAction can resolve double-encoded parent-directory segments outside the intended skin or web-application resource prefix w…

▾ Twilightxwiki · xwiki-platformEPSS 1.1%via NVD
CVE-2026-49250High· 8.7
2w ago

Conform, a type-safe form validation library, allows the parsing of nested objects in the form of object.property

Conform, a type-safe form validation library, allows the parsing of nested objects in the form of object.property. From 1.8.0 until 1.19.4, the parseSubmission future API in packages/conform-dom/formdata.ts repeatedly scans FormData or U…

▾ Twilightedmundhung · conformEPSS 0.51%via NVD
CVE-2026-44162Low· 2.7
2w ago

fluent-plugin-s3 is an Amazon S3 input and output plugin for Fluentd

fluent-plugin-s3 is an Amazon S3 input and output plugin for Fluentd. From 0.7.0 to 1.8.4, the in_s3 input plugin reads the entire decompressed payload of gzip, lzma2, and lzop objects into memory without enforcing a decompression_size_l…

▾ Sunlitfluent · fluent-plugin-s3EPSS 0.48%via NVD
CVE-2026-55832Medium· 6.1PoC
2w ago

Tract is a tiny, no-nonsense, self-contained TensorFlow and ONNX inference toolkit

Tract is a tiny, no-nonsense, self-contained TensorFlow and ONNX inference toolkit. Prior to 0.21.17, 0.22.3, and 0.23.2, the tract-onnx crate passes the attacker-controlled external_data location from an ONNX model through onnx/src/tens…

▾ Twilightsonos · tractEPSS 0.19%via NVD
CVE-2026-55091High· 7.5
2w ago

flat-to-nested converts a hierarchy from a flat representation to a nested representation

flat-to-nested converts a hierarchy from a flat representation to a nested representation. Prior to 1.1.2, FlatToNested.prototype.convert in index.js uses attacker-influenced id and parent record fields directly as keys in the plain temp…

▾ Twilightjoaonuno · flat-to-nested-jsEPSS 0.50%via NVD
CVE-2026-55795Medium· 6.9
2w ago

Craft Commerce is an ecommerce platform for Craft CMS

Craft Commerce is an ecommerce platform for Craft CMS. From 4.0.0 until 4.11.2 and 5.6.5, CartController in src/controllers/CartController.php activates its RateLimiter only when the number POST or GET parameter is supplied. An unauthent…

▾ Sunlitcraftcms · commerceEPSS 0.51%via NVD
CVE-2026-55837Medium· 6.8PoC
2w ago

dbt-mcp is a Model Context Protocol server for interacting with dbt

dbt-mcp is a Model Context Protocol server for interacting with dbt. Prior to 1.20.0, the local OAuth helper in src/dbt_mcp/oauth/fastapi_app.py exposes GET /dbt_platform_context without authentication or Host validation after a user com…

▾ Twilightdbt-labs · dbt-mcpEPSS 0.27%via NVD
CVE-2026-55846Medium· 6.2PoC
2w ago

Allure 2 is the version 2.x branch of Allure Report, a multi-language test reporting tool

Allure 2 is the version 2.x branch of Allure Report, a multi-language test reporting tool. Prior to 2.39.0, the HTTP server started by allure serve and allure open uses URI.getPath() in Commands.setUpServer() in allure-commandline/src/ma…

▾ Twilightallure-framework · allure2EPSS 0.18%via NVD
CVE-2026-55847Medium· 6.1
2w ago

Allure 2 is the version 2.x branch of Allure Report, a multi-language test reporting tool

Allure 2 is the version 2.x branch of Allure Report, a multi-language test reporting tool. Prior to 2.39.0, the ansi.js helper at allure-generator/src/main/javascript/helpers/ansi.js passes attacker-influenced statusMessage and statusTra…

▾ Sunlitallure-framework · allure2EPSS 0.34%via NVD
CVE-2026-55866Low· 3.7
2w ago

SpiceDB is an open source database system for creating and managing security-critical application permissions

SpiceDB is an open source database system for creating and managing security-critical application permissions. From 1.34.0 until 1.54.0, SpiceDB can return PERMISSIONSHIP_HAS_PERMISSION instead of PERMISSIONSHIP_CONDITIONAL_PERMISSION or…

▾ Sunlitauthzed · spicedbEPSS 0.34%via NVD
CVE-2026-47256Medium· 5.3PoC
2w ago

OpenTelemetry, also known as OTel, is a vendor-neutral open source Observability framework for instrumenting, generating, collecting, and exporting telemetry data such as traces, metrics, and logs

OpenTelemetry, also known as OTel, is a vendor-neutral open source Observability framework for instrumenting, generating, collecting, and exporting telemetry data such as traces, metrics, and logs. Prior to 0.154.0, the Sentry exporter r…

▾ Twilightopen-telemetry · opentelemetry-collector-contribEPSS 0.44%via NVD
CVE-2026-55093Medium· 6.1PoC
2w ago

Tract is a tiny, no-nonsense, self-contained TensorFlow and ONNX inference toolkit

Tract is a tiny, no-nonsense, self-contained TensorFlow and ONNX inference toolkit. Prior to 0.21.16, 0.22.2, and 0.23.1, tract-nnef uses unchecked usize multiplication in nnef/src/tensors.rs read_tensor for attacker-controlled tensor di…

▾ Twilightsonos · tractEPSS 0.18%via NVD
CVE-2026-90679Medium· 4.3
2w ago

Forgejo 13.0.0 through 16.0.4, when "[federation] ENABLED = true" is set, has a spoofing issue that affects identity integrity but does not allow account takeover or content modification

Forgejo 13.0.0 through 16.0.4, when "[federation] ENABLED = true" is set, has a spoofing issue that affects identity integrity but does not allow account takeover or content modification. It does not verify that the HTTP Signature on an …

▾ SunlitForgejo · ForgejoEPSS 0.18%via NVD
CVE-2026-90678High· 7.5
2w ago

An issue was discovered in HAProxy 3.3.0 through 3.4.4 and in 3.5-dev1 through 3.5-dev5

An issue was discovered in HAProxy 3.3.0 through 3.4.4 and in 3.5-dev1 through 3.5-dev5. Exploitation requires an HTTP/3 frontend: HAProxy must be built with QUIC support and configured with a QUIC bind listener, and the affected traffic…

▾ TwilightRed Hat · Red Hat Hardened ImagesEPSS 0.77%via NVD
CVE-2026-90668High· 7.5
2w ago

The webserver in UnrealIRCd 6.0.5 through 6.2.6 before 6.2.7 does not limit the number of HTTP request headers, which allows remote attackers to cause a denial of service (memory consumption and unresponsive server) via an HTTP request w…

The webserver in UnrealIRCd 6.0.5 through 6.2.6 before 6.2.7 does not limit the number of HTTP request headers, which allows remote attackers to cause a denial of service (memory consumption and unresponsive server) via an HTTP request w…

▾ TwilightUnrealIRCd · UnrealIRCdEPSS 0.58%via NVD
CVE-2026-90651High· 8.1
2w ago

Socket Firewall (socketdev/socket-registry-firewall) in registry mode before 2.0.0 does not verify upstream TLS certificates by default

Socket Firewall (socketdev/socket-registry-firewall) in registry mode before 2.0.0 does not verify upstream TLS certificates by default. When the api_ssl_verify and upstream_ssl_verify configuration keys are omitted from socket.yml, the …

▾ TwilightSocket · socketdev/socket-registry-firewallEPSS 0.21%via NVD
CVE-2026-90498High· 7.3PoC
2w ago

A vulnerability was identified in lenve vhr 1.0-SNAPSHOT

A vulnerability was identified in lenve vhr 1.0-SNAPSHOT. Affected by this issue is some unknown functionality of the file vhr.sql. The manipulation leads to use of default credentials. Remote exploitation of the attack is possible. The …

▾ Midnightlenve · vhrEPSS 0.47%via NVD
CVE-2026-90497Low· 3.5PoC
2w ago

A vulnerability was determined in Fengoffice Feng Office up to 3.11.13.11

A vulnerability was determined in Fengoffice Feng Office up to 3.11.13.11. Affected by this vulnerability is the function getTitle of the file application/views/task/add_task.php of the component Task Title Output. Executing a manipulati…

▾ TwilightFengoffice · Feng OfficeEPSS 0.33%via NVD
CVE-2026-90496Medium· 4.7PoC
2w ago

A vulnerability was found in Fengoffice Feng Office up to 3.11.13.11

A vulnerability was found in Fengoffice Feng Office up to 3.11.13.11. Affected is the function update_system_module_order/update_dimension_order of the file application/controllers/MoreController.class.php of the component Reorder Handle…

▾ TwilightFengoffice · Feng OfficeEPSS 0.33%via NVD
CVE-2026-90495High· 7.3PoC
2w ago

A vulnerability has been found in Fengoffice Feng Office up to 3.11.13.11

A vulnerability has been found in Fengoffice Feng Office up to 3.11.13.11. This impacts the function Contacts::instance->findAll of the file application/models/CompanyWebsite.class.php of the component Legacy API. Such manipulation of th…

▾ MidnightFengoffice · Feng OfficeEPSS 0.41%via NVD
CVE-2026-90494Medium· 5.3
2w ago

A flaw has been found in restify node-restify up to 12.0.0

A flaw has been found in restify node-restify up to 12.0.0. This affects the function serveStatic in the library /lib/plugins/static.js. This manipulation causes path traversal. The attack can be initiated remotely. The vendor was contac…

▾ Sunlitrestify · node-restifyEPSS 0.77%via NVD
CVE-2026-90493High· 8.8PoC
2w ago

A vulnerability was detected in Tonec Internet Download Manager up to 6.42 Build 63 on Windows

A vulnerability was detected in Tonec Internet Download Manager up to 6.42 Build 63 on Windows. The impacted element is an unknown function of the file idmwfp.sys of the component Kernel Driver. The manipulation results in improper acces…

▾ MidnightTonec · Internet Download ManagerEPSS 0.15%via NVD
CVE-2026-90492Medium· 6.3
2w ago

A security vulnerability has been detected in webgjc web_robot 2.4.0/2.5.0/2.8.0

A security vulnerability has been detected in webgjc web_robot 2.4.0/2.5.0/2.8.0. The affected element is the function controller_listen/controller_recover of the file py/web.py. The manipulation of the argument case_name leads to os com…

▾ Sunlitwebgjc · web_robotEPSS 2.4%via NVD
CVE-2026-90491Medium· 6.3PoC
2w ago

A weakness has been identified in sanjevirau gsubs up to 1.0.3

A weakness has been identified in sanjevirau gsubs up to 1.0.3. Impacted is the function showQuerySuccessPage of the file renderer/index.js of the component Electron. Executing a manipulation of the argument filename can lead to code inj…

▾ Twilightsanjevirau · gsubsEPSS 0.42%via NVD
CVE-2026-90490Medium· 6.3PoC
2w ago

A security flaw has been discovered in lenve vhr 1.0-SNAPSHOT

A security flaw has been discovered in lenve vhr 1.0-SNAPSHOT. This issue affects some unknown processing of the component MailReceiver. Performing a manipulation results in deserialization. The attack is possible to be carried out remot…

▾ Twilightlenve · vhrEPSS 0.41%via NVD
CVE-2026-90489Low· 3.5PoC
2w ago

A vulnerability was identified in Xuxueli xxl-job up to 3.5.0

A vulnerability was identified in Xuxueli xxl-job up to 3.5.0. This vulnerability affects unknown code of the file /jobinfo/insert. Such manipulation of the argument name/author leads to cross site scripting. The attack can be executed r…

▾ TwilightXuxueli · xxl-jobEPSS 0.33%via NVD
CVE-2026-90488Medium· 6.3PoC
2w ago

A vulnerability was determined in Xuxueli xxl-job up to 3.4.2

A vulnerability was determined in Xuxueli xxl-job up to 3.4.2. This affects the function GroovyClassLoader.parseClass of the file xxl-job-core/src/main/java/com/xxl/job/core/glue/GlueFactory.java. This manipulation causes code injection.…

▾ TwilightXuxueli · xxl-jobEPSS 0.39%via NVD
CVE-2026-90509High· 7.3PoC
2w ago

A weakness has been identified in dromara orion-visor up to 2.5.7

A weakness has been identified in dromara orion-visor up to 2.5.7. Affected by this issue is the function ExposeApiAspect.beforeExposeApi of the file ExposeApiAspect.java. Executing a manipulation can lead to hard-coded credentials. The …

▾ Midnightdromara · orion-visorEPSS 0.50%via NVD
CVE-2026-90504High· 7.3PoC
2w ago

A vulnerability has been found in vvbbnn00 WARP-Clash-API up to c7bf2360073959861219b422e51ae86411051b46

A vulnerability has been found in vvbbnn00 WARP-Clash-API up to c7bf2360073959861219b422e51ae86411051b46. The impacted element is the function authorized. The manipulation of the argument SECRET_KEY leads to missing authentication. The a…

▾ Midnightvvbbnn00 · WARP-Clash-APIEPSS 0.65%via NVD
CVEs tagged “nvd” — page 341 · VulnSea