VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

25225 CVEsRSS

CVE-2026-97056Medium· 6.8PoC
4d ago

SigNoz versions from v0.98.0 up to (but not including) v0.143.0, when configured to use the opaque session tokenizer (which was not the default before v0.143.0), do not revoke a user's existing login sessions when the user's password is …

SigNoz versions from v0.98.0 up to (but not including) v0.143.0, when configured to use the opaque session tokenizer (which was not the default before v0.143.0), do not revoke a user's existing login sessions when the user's password is …

▾ TwilightSigNoz · signozEPSS 0.35%via NVD
CVE-2026-96882Medium· 5.3
4d ago

A vulnerability was identified in TaleLin lin-cms-spring-boot up to 0.2.1

A vulnerability was identified in TaleLin lin-cms-spring-boot up to 0.2.1. Affected by this vulnerability is the function searchBook of the file src/main/java/io/github/talelin/latticy/controller/v1/BookController.java of the component b…

▾ SunlitTaleLin · lin-cms-spring-bootEPSS 0.29%via NVD
CVE-2026-96881Medium· 5.3PoC
4d ago

A vulnerability was determined in TaleLin lin-cms-spring-boot up to 0.2.1

A vulnerability was determined in TaleLin lin-cms-spring-boot up to 0.2.1. Affected is the function getBooks of the file src/main/java/io/github/talelin/latticy/controller/v1/BookController.java of the component book Endpoint. Executing …

▾ TwilightTaleLin · lin-cms-spring-bootEPSS 0.29%via NVD
CVE-2026-97055High· 8.1PoC
4d ago

SigNoz from v0.8.0 before v0.143.0 defaults the JWT tokenizer signing secret (tokenizer::jwt::secret, set via SIGNOZ_TOKENIZER_JWT_SECRET or the deprecated SIGNOZ_JWT_SECRET) to an empty string, and Config.Validate() does not reject the …

SigNoz from v0.8.0 before v0.143.0 defaults the JWT tokenizer signing secret (tokenizer::jwt::secret, set via SIGNOZ_TOKENIZER_JWT_SECRET or the deprecated SIGNOZ_JWT_SECRET) to an empty string, and Config.Validate() does not reject the …

▾ MidnightSigNoz · signozEPSS 0.41%via NVD
CVE-2026-96880Medium· 5.3PoC
4d ago

A vulnerability was found in TaleLin lin-cms-spring-boot up to 0.2.1

A vulnerability was found in TaleLin lin-cms-spring-boot up to 0.2.1. This impacts the function getBook of the file src/main/java/io/github/talelin/latticy/controller/v1/BookController.java of the component book Endpoint. Performing a ma…

▾ TwilightTaleLin · lin-cms-spring-bootEPSS 0.29%via NVD
CVE-2026-96810Low· 3.5PoC
4d ago

A vulnerability was identified in huanzi-qch base-admin up to 52816b760cd53244989fd664bbb2b3d4edbfdbf1

A vulnerability was identified in huanzi-qch base-admin up to 52816b760cd53244989fd664bbb2b3d4edbfdbf1. This issue affects the function Save of the file base-admin-master\src\main\java\cn\huanzi\qch\baseadmin\common\controller\CommonCont…

▾ Twilighthuanzi-qch · base-adminEPSS 0.19%via NVD
CVE-2026-18467Critical· 9.8
4d ago

The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 5.0.3

The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 5.0.3. The 5.0.3 patch introduced a wp_hash()/hash_equals() signature gate on the pt-paytium-u…

▾ Midnightpaytiumsupport · Paytium: Mollie payment forms & donationsEPSS 0.39%via NVD
CVE-2026-96803High· 7.3PoC
4d ago

A vulnerability was identified in java110 MicroCommunity up to 2.0

A vulnerability was identified in java110 MicroCommunity up to 2.0. Affected is the function QueryServiceSMOImpl.fallBack of the file BusinessApi.java of the component fallBack API Endpoint. Such manipulation of the argument fallBackSql …

▾ Midnightjava110 · MicroCommunityEPSS 0.25%via NVD
CVE-2026-96777Medium· 6.3
4d ago

A vulnerability was determined in Forma LMS up to 4.1.43

A vulnerability was determined in Forma LMS up to 4.1.43. This impacts the function UserselectorAdmController::getDataTask of the file /appCore/ajax.adm_server.php?r=adm/userselector/getData of the component Multi-User-Selector AJAX Endp…

▾ SunlitForma · LMSEPSS 0.20%via NVD
CVE-2026-96774Medium· 5.3
4d ago

A vulnerability was found in SPON Communications IP Network Audio Device XC-9603 1.2.3_20181106 Build 107

A vulnerability was found in SPON Communications IP Network Audio Device XC-9603 1.2.3_20181106 Build 107. This affects the function loadCfg of the file /ini/sys_cfg.txt of the component Configuration File Download. The manipulation resu…

▾ SunlitSPON Communications · IP Network Audio Device XC-9603EPSS 0.29%via NVD
CVE-2026-96773Medium· 4.3PoC
4d ago

A weakness has been identified in Intelliants Subrion CMS up to 4.2.1

A weakness has been identified in Intelliants Subrion CMS up to 4.2.1. This vulnerability affects the function iaUsers::authorize of the file front/login.php of the component Login Page. This manipulation of the argument $_SERVER['HTTP_R…

▾ TwilightIntelliants · Subrion CMSEPSS 0.25%via NVD
CVE-2026-96772Medium· 5.3PoC
4d ago

A security flaw has been discovered in Intelliants Subrion CMS up to 4.2.1

A security flaw has been discovered in Intelliants Subrion CMS up to 4.2.1. This affects an unknown part of the file /actions.json?action=assign-owner. The manipulation of the argument q results in information disclosure. The attack can …

▾ TwilightIntelliants · Subrion CMSEPSS 0.29%via NVD
CVE-2026-96763Medium· 5.4
4d ago

A security flaw has been discovered in kvcache-ai mooncake up to 0.3.12/0.3.13.post1/0.3.14-rc1

A security flaw has been discovered in kvcache-ai mooncake up to 0.3.12/0.3.13.post1/0.3.14-rc1. This issue affects the function ScopedSegmentAccess::MountSegment of the file segment.cpp of the component MountSegment Request Processing. …

▾ Sunlitkvcache-ai · mooncakeEPSS 0.25%via NVD
CVE-2026-96764Medium· 4.3PoC
4d ago

A weakness has been identified in kvcache-ai mooncake up to 0.3.12/0.3.14-rc1

A weakness has been identified in kvcache-ai mooncake up to 0.3.12/0.3.14-rc1. Impacted is the function MasterService::GetReplicaListByRegex of the component Regular Expression Handler. Executing a manipulation can lead to allocation of …

▾ Twilightkvcache-ai · mooncakeEPSS 0.27%via NVD
CVE-2026-96762High· 7.3
4d ago

A vulnerability was determined in kvcache-ai mooncake up to 0.3.12/0.3.13.post1

A vulnerability was determined in kvcache-ai mooncake up to 0.3.12/0.3.13.post1. This affects the function UnmountSegment of the component RPC Path Handler. This manipulation of the argument client_id/segment_id causes authorization bypa…

▾ Twilightkvcache-ai · mooncakeEPSS 0.29%via NVD
CVE-2026-96751High· 7.3PoC
4d ago

A vulnerability has been found in pmTicket Project-Management-Software up to 078fa56a782490c5059a0814f84df27984f4d7e2

A vulnerability has been found in pmTicket Project-Management-Software up to 078fa56a782490c5059a0814f84df27984f4d7e2. This affects the function setSync of the file /ajax/add_project.php. Such manipulation of the argument conn_settings l…

▾ MidnightpmTicket · Project-Management-SoftwareEPSS 0.25%via NVD
CVE-2026-82370High· 8.6
4d ago

Unauthenticated remote command injection in the Brocade SANnav orchestrator HTTP service permits network-adjacent attackers to execute arbitrary administrative switch CLI commands and issue container management instructions

Unauthenticated remote command injection in the Brocade SANnav orchestrator HTTP service permits network-adjacent attackers to execute arbitrary administrative switch CLI commands and issue container management instructions. This could a…

▾ TwilightBrocade · SANnavEPSS 0.60%via NVD
CVE-2026-93577Critical· 9.9
4d ago

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to execute arbitrary code on…

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to execute arbitrary code on…

▾ MidnightGitLab · GitLabEPSS 0.43%via NVD
CVE-2026-92874Medium· 5.4
4d ago

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user with an MCP-scoped token to …

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user with an MCP-scoped token to …

▾ SunlitGitLab · GitLabEPSS 0.14%via NVD
CVE-2026-92628Low· 3.1
4d ago

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under a race condition, the MCP search tool's shared state handling could have caused search r…

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under a race condition, the MCP search tool's shared state handling could have caused search r…

▾ SunlitGitLab · GitLabEPSS 0.13%via NVD
CVE-2026-92529Medium· 4.3
4d ago

GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user with developer-role permissions…

GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user with developer-role permissions…

▾ SunlitGitLab · GitLabEPSS 0.18%via NVD
CVE-2026-92470High· 7.7
4d ago

GitLab has remediated an issue in GitLab EE affecting all versions from 18.7 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to access sensitive CI/CD varia…

GitLab has remediated an issue in GitLab EE affecting all versions from 18.7 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to access sensitive CI/CD varia…

▾ TwilightGitLab · GitLabEPSS 0.21%via NVD
CVE-2026-89078Critical· 9.9
4d ago

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to execute arbitrary code on…

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to execute arbitrary code on…

▾ MidnightGitLab · GitLabEPSS 0.36%via NVD
CVE-2026-96739Medium· 4.3PoC
4d ago

A flaw has been found in SEMCMS up to 4.2

A flaw has been found in SEMCMS up to 4.2. Affected by this issue is some unknown functionality of the file /Edit/php/upload_json.php of the component KindEditor Upload Interface. This manipulation of the argument imgFile causes cross si…

▾ TwilightEPSS 0.26%via NVD
CVE-2026-92530Medium· 4.3
4d ago

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to spoof merge request autho…

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to spoof merge request autho…

▾ SunlitGitLab · GitLabEPSS 0.11%via NVD
CVE-2026-47132Medium· 5.4PoC
4d ago

phpMyFAQ is an open source FAQ web application

phpMyFAQ is an open source FAQ web application. Prior to version 4.2.0-alpha, an authenticated SQL LIKE wildcard injection vulnerability in phpMyFAQ’s chat user search allows any logged-in user to bypass the intended display-name search …

▾ Twilightthorsten · thorsten/phpmyfaqEPSS 0.25%via NVD
CVE-2026-96680Medium· 4.3PoC
5d ago

A vulnerability was detected in ByteDance Coze Scraper Extension up to 2.0.2

A vulnerability was detected in ByteDance Coze Scraper Extension up to 2.0.2. Affected by this vulnerability is the function chrome.runtime.onMessageExternal.addListener of the file static/background/index.js of the component External Me…

▾ TwilightByteDance · Coze Scraper ExtensionEPSS 0.26%via NVD
CVE-2026-96678Medium· 6.3
5d ago

A security vulnerability has been detected in weiqingwen spring-boot-forum up to 538eecc3c6b85fdf0768ab4e8354b48c0c17d94f

A security vulnerability has been detected in weiqingwen spring-boot-forum up to 538eecc3c6b85fdf0768ab4e8354b48c0c17d94f. Affected is the function validate of the file src/main/java/com/qingwenwei/util/NewUserFormValidator.java of the c…

▾ Sunlitweiqingwen · spring-boot-forumEPSS 0.34%via NVD
CVE-2026-96676Medium· 6.3PoC
5d ago

A vulnerability was identified in Fast FAC1900R 20190827_2.0.2

A vulnerability was identified in Fast FAC1900R 20190827_2.0.2. The impacted element is the function get_alias_name of the component uhttpd. Such manipulation leads to stack-based buffer overflow. The attack may be performed from remote.…

▾ TwilightFast · FAC1900REPSS 0.24%via NVD
CVE-2026-70125High· 8.8
5d ago

Microsoft Office Outlook Remote Code Execution Vulnerability

Microsoft Office Outlook Remote Code Execution Vulnerability

▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.44%via NVD
CVEs tagged “nvd” — page 58 · VulnSea