VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

30161 CVEsRSS

CVE-2026-78579Medium· 6.8
3w ago

The Okta Access Gateway does not sanitize SAML assertion attribute values before interpolating them into LDAP search filters in the LDAP datastore configuration

The Okta Access Gateway does not sanitize SAML assertion attribute values before interpolating them into LDAP search filters in the LDAP datastore configuration. The raw values are substituted directly into the filter string and passed t…

▾ Sunlitokta · access_gatewayEPSS 0.24%via NVD
CVE-2026-78574High· 7.5
3w ago

The Okta Hyperdrive Integration plugin resolves a required assembly using a registry path within the current user's hive without integrity verification

The Okta Hyperdrive Integration plugin resolves a required assembly using a registry path within the current user's hive without integrity verification. The referenced path is loaded via Assembly.LoadFrom without signature validation, re…

▾ Twilightokta · hyperdriveEPSS 0.10%via NVD
CVE-2026-78560Medium· 4.8
3w ago

The Okta Access Gateway includes an optional pass-through authentication source that accepts user identity from a client-supplied HTTP header without cryptographic validation

The Okta Access Gateway includes an optional pass-through authentication source that accepts user identity from a client-supplied HTTP header without cryptographic validation. In architectures where this optional source is enabled withou…

▾ Sunlitokta · access_gatewayEPSS 0.20%via NVD
CVE-2026-78552Medium· 6.0
3w ago

The Okta Access Gateway does not apply its Lua directive restriction to the application-level custom configuration field

The Okta Access Gateway does not apply its Lua directive restriction to the application-level custom configuration field. The field is interpolated directly into the nginx server block without inspection, resulting in execution of inject…

▾ Sunlitokta · access_gatewayEPSS 0.27%via NVD
CVE-2026-78550Medium· 6.6
3w ago

The Okta Access Gateway management console passes user-supplied input to eval() without sanitization during an authenticated administrator SSH session

The Okta Access Gateway management console passes user-supplied input to eval() without sanitization during an authenticated administrator SSH session. As a result, the unsanitized input is executed directly, leading to code execution wi…

▾ Sunlitokta · access_gatewayEPSS 0.38%via NVD
CVE-2026-78545Medium· 6.6
3w ago

The Okta Access Gateway does not sanitize the application label field before including it in the generated nginx configuration file

The Okta Access Gateway does not sanitize the application label field before including it in the generated nginx configuration file. The unsanitized value is interpolated into an nginx server block directive, resulting in execution of in…

▾ Sunlitokta · access_gatewayEPSS 0.38%via NVD
CVE-2026-52486Medium· 6.6PoC
3w ago

An issue in OpenDDS 3.33.x allows a local attacker to cause a denial of service via the verify function in the SIgnedDocument module

An issue in OpenDDS 3.33.x allows a local attacker to cause a denial of service via the verify function in the SIgnedDocument module

▾ TwilightEPSS 0.09%via NVD
CVE-2026-19872Medium· 6.1
3w ago

HTML::FormHandler versions before 0.410000 for Perl allow cross-site scripting via a submitted value rendered unescaped in an error message. The wrappers and renderers that emit a form's errors interpolate the error string straight into…

HTML::FormHandler versions before 0.410000 for Perl allow cross-site scripting via a submitted value rendered unescaped in an error message. The wrappers and renderers that emit a form's errors interpolate the error string straight into…

▾ SunlitRed Hat · HTML-FormHandlerEPSS 0.26%via NVD
CVE-2026-86806High· 7.3
3w ago

A weakness has been identified in opengeos GeoLibre up to 2.3.0

A weakness has been identified in opengeos GeoLibre up to 2.3.0. Impacted is the function _is_within_roots. This manipulation causes server-side request forgery. The attack can be initiated remotely. Upgrading to version 2.4.0 is recomme…

▾ Twilightopengeos · GeoLibreEPSS 0.60%via NVD
CVE-2026-28659High· 7.8⚖ disputed
3w ago

In MicroXR Blobstore, there is a possible way to access other app's files due to a missing permission check

In MicroXR Blobstore, there is a possible way to access other app's files due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed …

▾ Twilightgoogle · android_xrEPSS 0.19%via NVD
CVE-2026-84869Critical· 9.9CISA KEVPoC
3w ago

A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote session without authorization or Host confirmation in certain circumstances

A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote session without authorization or Host confirmation in certain circumstances. ScreenConnect servers are not impacted.

▾ Hadalconnectwise · screenconnectEPSS 0.92%via NVD
CVE-2026-75863High· 7.8
3w ago

Photoshop Desktop is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user

Photoshop Desktop is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must…

▾ Twilightadobe · photoshopEPSS 0.31%via NVD
CVE-2026-49883Medium· 5.5⚖ disputed
3w ago

In checkReadPermission of PermissionsManager.java, there is a possible way to monitor sensitive device state data due to a missing permission check

In checkReadPermission of PermissionsManager.java, there is a possible way to monitor sensitive device state data due to a missing permission check. This could lead to local information disclosure with no additional execution privileges …

▾ Sunlitgoogle · androidEPSS 0.17%via NVD
CVE-2026-86808High· 7.3PoC
3w ago

A security vulnerability has been detected in moltis-org moltis up to 20260818.10

A security vulnerability has been detected in moltis-org moltis up to 20260818.10. The affected element is the function vault_unlock_handler/vault_recovery_handler of the file vault.rs. Such manipulation leads to missing authentication. …

▾ Midnightmoltis-org · moltisEPSS 0.84%via NVD
CVE-2026-82007High· 7.8
3w ago

Photoshop Desktop is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user

Photoshop Desktop is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must…

▾ Twilightadobe · photoshopEPSS 0.31%via NVD
CVE-2026-82006High· 7.8
3w ago

Photoshop Desktop is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user

Photoshop Desktop is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open…

▾ Twilightadobe · photoshopEPSS 0.34%via NVD
CVE-2026-82005High· 7.8
3w ago

Photoshop Desktop is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user

Photoshop Desktop is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a mal…

▾ Twilightadobe · photoshopEPSS 0.26%via NVD
CVE-2026-76199High· 8.6
3w ago

Photoshop Desktop is affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user

Photoshop Desktop is affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. …

▾ Twilightadobe · photoshopEPSS 0.29%via NVD
CVE-2026-75999High· 8.4
3w ago

ColdFusion is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user

ColdFusion is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could exploit this vulnerability to execute arbitrary code. …

▾ Twilightadobe · coldfusionEPSS 0.47%via NVD
CVE-2026-75992High· 7.8
3w ago

Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user

Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious…

▾ Twilightadobe · illustratorEPSS 0.26%via NVD
CVE-2026-75991High· 8.6
3w ago

Illustrator is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user

Illustrator is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation …

▾ Twilightadobe · illustratorEPSS 0.30%via NVD
CVE-2026-75862High· 7.8
3w ago

Photoshop Desktop is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user

Photoshop Desktop is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must…

▾ Twilightadobe · photoshopEPSS 0.31%via NVD
CVE-2026-75771High· 7.8
3w ago

Photoshop Desktop is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user

Photoshop Desktop is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must…

▾ Twilightadobe · photoshopEPSS 0.31%via NVD
CVE-2026-75631High· 7.8
3w ago

Photoshop Desktop is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user

Photoshop Desktop is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a mal…

▾ Twilightadobe · photoshopEPSS 0.26%via NVD
CVE-2026-84942High· 8.7
3w ago

Improper input validation in the Vega expression function implementation in OpenSearch Dashboards allows a remote authenticated actor with dashboard write permissions to execute arbitrary JavaScript in the context of other users' browser…

Improper input validation in the Vega expression function implementation in OpenSearch Dashboards allows a remote authenticated actor with dashboard write permissions to execute arbitrary JavaScript in the context of other users' browser…

▾ TwilightAWS · Amazon OpenSearch ServiceEPSS 0.54%via NVD
CVE-2026-76190High· 8.6
3w ago

ColdFusion is affected by an Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') vulnerability that could result in arbitrary code execution in the context of the current user

ColdFusion is affected by an Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit…

▾ Twilightadobe · coldfusionEPSS 0.83%via NVD
CVE-2026-76002Medium· 6.1
3w ago

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of …

▾ Sunlitadobe · coldfusionEPSS 0.43%via NVD
CVE-2026-76000Medium· 6.5
3w ago

ColdFusion is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service

ColdFusion is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application denial-o…

▾ Sunlitadobe · coldfusionEPSS 0.41%via NVD
CVE-2026-75998High· 7.5
3w ago

ColdFusion is affected by an Improper Access Control vulnerability that could lead to arbitrary file system read

ColdFusion is affected by an Improper Access Control vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. E…

▾ Twilightadobe · coldfusionEPSS 0.82%via NVD
CVE-2026-75993High· 8.5
3w ago

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's ac…

▾ Twilightadobe · coldfusionEPSS 0.45%via NVD
CVEs tagged “nvd” — page 395 · VulnSea