VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

25376 CVEsRSS

CVE-2026-93433Medium· 5.5
1w ago

A flaw was found in libstoragemgmt

A flaw was found in libstoragemgmt. An attacker with control over a local or virtual storage device could provide specially crafted SCSI (Small Computer System Interface) Vital Product Data (VPD) page 0x80 data. This malformed data, spec…

▾ SunlitRed Hat · libstoragemgmtEPSS 0.15%via NVD
CVE-2026-79917Medium· 6.5
1w ago

MaxKB is an open-source AI assistant for enterprise

MaxKB is an open-source AI assistant for enterprise. In 2.7.0 through 2.10.4-lts, POST /chat/api/{application_id}/chat/{chat_id}/share_chat verifies that a conversation exists but does not verify that it belongs to the authenticated chat…

▾ Sunlit1Panel-dev · MaxKBEPSS 0.27%via NVD
CVE-2026-94424High· 8.8
1w ago

A vulnerability has been found in Moore Threads MTT S80 Driver Package up to 340.150

A vulnerability has been found in Moore Threads MTT S80 Driver Package up to 340.150. Impacted is the function sub_140001000 in the library mtdispkm64.sys of the component IOCTL Handler. The manipulation leads to heap-based buffer overfl…

▾ TwilightMoore Threads · MTT S80 Driver PackageEPSS 0.20%via NVD
CVE-2026-77522Medium· 4.3PoC
1w ago

MaxKB is an open-source AI assistant for enterprise

MaxKB is an open-source AI assistant for enterprise. In version 2.10.3-lts and earlier, the knowledge web-document import and synchronization crawler passes an authenticated workspace user's URL to Fork.fork, which calls requests.get wit…

▾ Twilight1Panel-dev · MaxKBEPSS 0.30%via NVD
CVE-2026-77521Critical· 10.0PoC
1w ago

MaxKB is an open-source AI assistant for enterprise

MaxKB is an open-source AI assistant for enterprise. Prior to version 2.10.5-lts, assistants with a tool, MCP tool, skill, or sub-application use SandboxShellBackend, which exposes an execute shell tool without excluding it and omits exe…

▾ Abyssal1Panel-dev · MaxKBEPSS 1.0%via NVD
CVE-2026-77517Medium· 5.4PoC
1w ago

MaxKB is an open-source AI assistant for enterprise

MaxKB is an open-source AI assistant for enterprise. From version 2.0.0 through 2.10.2-lts, document and paragraph operate routes authorize only knowledge_id in the request path, then query the target Document by document_id or Paragraph…

▾ Twilight1Panel-dev · MaxKBEPSS 0.23%via NVD
CVE-2026-94588Medium· 4.4
1w ago

In Proxmox pmg-api, an argument injection vulnerability exists in the package changelog retrieval functionality

In Proxmox pmg-api, an argument injection vulnerability exists in the package changelog retrieval functionality. This is caused by improper handling of user-supplied input passed to the underlying apt-get command when fetching package ch…

▾ SunlitProxmox · pmg-apiEPSS 0.25%via NVD
CVE-2026-79319Medium· 5.3
1w ago

Stencil core 4.43.5 is vulnerable to Incorrect Access Control.

Stencil core 4.43.5 is vulnerable to Incorrect Access Control.

▾ SunlitEPSS 0.21%via NVD
CVE-2026-79318Medium· 6.5
1w ago

web2py 3.2.2-stable (commit a7330a2bf21219fa77860b6665de927dd4f98e6d) is vulnerable to Directory Traversal in read_file()/write_file() (applications/admin/controllers/webservices.py).

web2py 3.2.2-stable (commit a7330a2bf21219fa77860b6665de927dd4f98e6d) is vulnerable to Directory Traversal in read_file()/write_file() (applications/admin/controllers/webservices.py).

▾ SunlitEPSS 0.56%via NVD
CVE-2026-73546High· 7.4PoC
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's /stats?format=html admin endpoint uses StatsHtmlRender, which sanitizes string statistic values …

▾ Midnightenvoyproxy · envoyEPSS 0.60%via NVD
CVE-2026-73512High· 7.5PoC
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's HttpDatagramHandler caches the current RequestDecoder when Capsule Protocol is enabled. Stream r…

▾ Midnightenvoyproxy · envoyEPSS 0.83%via NVD
CVE-2026-58269High· 8.1PoC
1w ago

Sync-in Server is an open-source platform for file storage, sharing, collaboration, and syncing

Sync-in Server is an open-source platform for file storage, sharing, collaboration, and syncing. Prior to version 2.4.0, `POST /api/auth/token` authenticates with username and password only, then calls `getTokens()`, which returns full a…

▾ MidnightSync-in · serverEPSS 0.22%via NVD
CVE-2026-62247Medium· 6.5
1w ago

Supabase Realtime provides Broadcast, Presence, and Postgres Changes via WebSockets

Supabase Realtime provides Broadcast, Presence, and Postgres Changes via WebSockets. Prior to 2.111.2, Realtime authorization does not correctly honor the per-extension presence.read row-level security policy when a private-channel clien…

▾ Sunlitsupabase · realtimeEPSS 0.45%via NVD
CVE-2026-52835High· 7.0PoC
1w ago

Tautulli is a Python based monitoring and tracking tool for Plex Media Server

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to 2.17.2, the import_config handler and the database_file branch of import_database in plexpy/webserve.py join the attacker-controlled config_file.file…

▾ MidnightTautulli · TautulliEPSS 0.59%via NVD
CVE-2026-54915Medium· 5.4PoC
1w ago

Tautulli is a Python based monitoring and tracking tool for Plex Media Server

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to 2.17.2, the unauthenticated /auth/redirect endpoint in plexpy/webauth.py removes forward slashes from the user-controlled redirect_uri parameter but …

▾ TwilightTautulli · TautulliEPSS 0.26%via NVD
CVE-2026-49995Medium· 4.8PoC
1w ago

Tautulli is a Python based monitoring and tracking tool for Plex Media Server

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to 2.17.2, the newsletter cron field stored in the newsletters table is inserted by data/interfaces/default/newsletter_config.html into a JavaScript str…

▾ TwilightTautulli · TautulliEPSS 0.60%via NVD
CVE-2026-45381Medium· 5.1
1w ago

Tautulli is a Python based monitoring and tracking tool for Plex Media Server

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to 2.17.2, the /search endpoint inserts its user-controlled query parameter into a JavaScript string in data/interfaces/default/search.html using manual…

▾ SunlitTautulli · TautulliEPSS 0.59%via NVD
CVE-2026-81469High· 7.8
1w ago

Dell Inventory Collector Client, versions prior to 15.0.0, contain an Unquoted Search Path or Element vulnerability

Dell Inventory Collector Client, versions prior to 15.0.0, contain an Unquoted Search Path or Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution and …

▾ TwilightDell · Inventory Collector ClientEPSS 0.19%via NVD
CVE-2026-55897High· 8.8PoC
1w ago

luci-app-advanced-reboot is a LuCI (web interface) application for OpenWrt that provides a way to reboot your router into an alternative firmware partition or perform reboot operations directly from the web UI

luci-app-advanced-reboot is a LuCI (web interface) application for OpenWrt that provides a way to reboot your router into an alternative firmware partition or perform reboot operations directly from the web UI. Prior to 1.1.2-6, the lu…

▾ Midnightopenwrt · luciEPSS 0.65%via NVD
CVE-2026-55159High· 8.8
1w ago

luci-app-adblock-fast a WebUI for fast, lightweight DNS-based ad-blocker for OpenWrt that works with dnsmasq, smartdns, or unbound

luci-app-adblock-fast a WebUI for fast, lightweight DNS-based ad-blocker for OpenWrt that works with dnsmasq, smartdns, or unbound. Prior to 1.2.4-2, the luci.adblock-fast.setCronEntry RPC method accepts an entry argument containing carr…

▾ Twilightopenwrt · luci-app-adblock-fastEPSS 0.49%via NVD
CVE-2026-73548High· 7.5PoC
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy forwards data for a configured non-WebSocket HTTP upgrade before the upstream accepts the upgrade.…

▾ Midnightenvoyproxy · envoyEPSS 0.48%via NVD
CVE-2026-50572Medium· 5.9
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's HTTP external-authorization client can retain a stale request callback after a request is reject…

▾ Sunlitenvoyproxy · envoyEPSS 0.68%via NVD
CVE-2026-73552High· 7.5
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy HTTP RBAC accepts RFC-valid opaque header bytes but evaluates safe_regex values with RE2's UTF-8 s…

▾ Twilightenvoyproxy · envoyEPSS 0.66%via NVD
CVE-2026-49811High· 8.4
1w ago

Dell Command | Monitor (DCM), versions prior to 10.13.2, contain an Incorrect Permission Assignment for Critical Resource vulnerability

Dell Command | Monitor (DCM), versions prior to 10.13.2, contain an Incorrect Permission Assignment for Critical Resource vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to…

▾ TwilightDell · Command | Monitor (DCM)EPSS 0.14%via NVD
CVE-2026-85219Low· 3.7
1w ago

Denial-of-Service in Redis module in Thinkst Canary's OpenCanary 0.9.9 allows an unauthenticated remote attacker cause unconstrained memory usage.

Denial-of-Service in Redis module in Thinkst Canary's OpenCanary 0.9.9 allows an unauthenticated remote attacker cause unconstrained memory usage.

▾ SunlitThinkst Applied Research · opencanaryEPSS 0.41%via NVD
CVE-2026-73513High· 7.5
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's optional oghttp2 upstream HTTP/2 codec accepts a response trailer HEADERS frame without END_STRE…

▾ Twilightenvoyproxy · envoyEPSS 0.72%via NVD
CVE-2026-79320Medium· 6.1
1w ago

Stencil core 4.43.5 contains a DOM-based cross-site scripting (XSS) vulnerability in the component runtime

Stencil core 4.43.5 contains a DOM-based cross-site scripting (XSS) vulnerability in the component runtime. When a downstream application enables the experimental slot fixes option and uses scoped components, assigning a string to the te…

▾ SunlitEPSS 0.15%via NVD
CVE-2026-73549Medium· 5.3
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's Utility::copyInternetAddressAndPort and QUIC client-address paths reconstruct scoped IPv6 addres…

▾ Sunlitenvoyproxy · envoyEPSS 0.60%via NVD
CVE-2026-48521Medium· 5.9PoC
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's ProdClusterManagerFactory::allocateConnPool dereferences transport_socket_options while selectin…

▾ Twilightenvoyproxy · envoyEPSS 0.70%via NVD
CVE-2026-73547High· 7.5
1w ago

Envoy is an open source edge and service proxy designed for cloud-native applications

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's ext_authz filter assumes that a request contains a :path pseudoheader when applying query_parame…

▾ Twilightenvoyproxy · envoyEPSS 0.83%via NVD
CVEs tagged “nvd” — page 96 · VulnSea