VYPR

CVEs

378,628 total · page 335 of 7,573

  • CVE-2026-56868Aug 18, 2026
    risk 0.00cvss —epss —

    Rejected reason: reserved but not needed

  • CVE-2026-56867Aug 18, 2026
    risk 0.00cvss —epss —

    Rejected reason: reserved but not needed

  • CVE-2026-55593MedAug 18, 2026
    risk 0.35cvss 6.5epss 0.00

    Froxlor is open source server administration software. Prior to 2.3.8, the standalone lib/ajax.php entry point bypasses the centralized request validation in lib/init.php, and Ajax::handle in lib/Froxlor/Ajax/Ajax.php checks only for a valid session before routing state-changing…

  • CVE-2026-55426HigAug 18, 2026
    risk 0.44cvss 7.8epss 0.00

    linuxfabrik-lib provides Python modules for database access, caching, shell execution, and API integrations, and Linuxfabrik Monitoring Plugins uses those modules to run external monitoring commands. From the earliest affected releases until linuxfabrik-lib 5.0.0 and Linuxfabrik…

  • CVE-2026-54543MedAug 18, 2026
    risk 0.28cvss 5.4epss 0.00

    Froxlor is open source server administration software. Prior to 2.3.8, the DomainZones.add API command in lib/Froxlor/Api/Commands/DomainZones.php accepts user-controlled record and type values without rejecting line delimiters, tab characters, semicolons, or unsupported DNS…

  • CVE-2026-54348HigAug 18, 2026
    risk 0.40cvss 7.2epss 0.01

    Froxlor is open source server administration software. Prior to 2.3.8, the Admins.add and Admins.update endpoints in lib/Froxlor/Api/Commands/Admins.php accept an attacker-controlled ipaddress array and store it as JSON in panel_admins.ip without enforcing numeric element types.…

  • CVE-2026-54347HigAug 18, 2026
    risk 0.50cvss 8.7epss 0.00

    Froxlor is open source server administration software. Prior to 2.3.8, DNS TXT record content accepted by lib/Froxlor/Api/Commands/DomainZones.php can contain HTML special characters, lib/Froxlor/UI/Callbacks/Text.php returns the content from Text::wordwrap without HTML…

  • CVE-2026-53759LowAug 18, 2026
    risk 0.06cvss —epss 0.00

    linuxfabrik-lib provides Python modules for database access, caching, shell execution, and API integrations. Prior to version 4.2.0, db_sqlite.py created SQLite databases at predictable paths in the shared /tmp directory and followed attacker-created symbolic links at those…

  • CVE-2026-53458MedAug 18, 2026
    risk 0.27cvss —epss 0.00

    Blueprint Studio is a VS Code-like file editor for Home Assistant configuration files. Prior to 2.5.2, Blueprint Studio backend API handlers in custom_components/blueprint_studio/backend/api.py returned raw exception strings to authenticated Home Assistant users. Some exception…

  • CVE-2026-53457MedAug 18, 2026
    risk 0.26cvss —epss 0.01

    Blueprint Studio is a VS Code-like file editor for Home Assistant configuration files. Prior to 2.5.2, the legacy stateless terminal command execution path in custom_components/blueprint_studio/backend/terminal_manager.py accepted a cwd working-directory parameter and checked…

  • CVE-2026-53456MedAug 18, 2026
    risk 0.29cvss —epss 0.00

    Blueprint Studio is a VS Code-like file editor for Home Assistant configuration files. Prior to 2.5.2, Blueprint Studio terminal SSH key authentication in custom_components/blueprint_studio/backend/terminal_manager.py wrote SSH private-key material to a file under the Home…

  • CVE-2026-53455HigAug 18, 2026
    risk 0.49cvss —epss 0.00

    Blueprint Studio is a VS Code-like file editor for Home Assistant configuration files. Prior to 2.5.2, Blueprint Studio generated a shell-based Git credential helper in custom_components/blueprint_studio/backend/git_manager.py by interpolating the configured Git username and…

  • CVE-2026-53454MedAug 18, 2026
    risk 0.38cvss —epss 0.00

    Blueprint Studio is a VS Code-like file editor for Home Assistant configuration files. Prior to 2.5.2, Blueprint Studio configured Git's credential.helper store when saving Git credentials, causing Git credential-store to persist usernames and access tokens in plaintext in the…

  • CVE-2026-53453HigAug 18, 2026
    risk 0.50cvss —epss 0.00

    Blueprint Studio is a VS Code-like file editor for Home Assistant configuration files. Prior to 2.5.2, Blueprint Studio exposed administrator-intended backend API actions to any authenticated Home Assistant user because the backend did not consistently enforce the panel's…

  • CVE-2026-52817HigAug 18, 2026
    risk 0.39cvss —epss 0.00

    Linuxfabrik Monitoring Plugins provides monitoring plugins for Icinga, Nagios, and related systems. Prior to version 5.1.0, the shipped assets/sudoers/Debian.sudoers policy allowed the nagios or icinga account to execute /usr/bin/apt-get as root without restricting its…

  • CVE-2026-52793HigAug 18, 2026
    risk 0.46cvss 8.1epss 0.00

    Froxlor is open source server administration software. Prior to 2.3.7, the API authentication path in lib/Froxlor/Api/FroxlorRPC.php and FroxlorRPC::validateAuth accepts an API key and secret for an administrator or customer account without checking type_2fa, validating a TOTP…

  • CVE-2026-41921MedAug 18, 2026
    risk 0.35cvss 5.4epss 0.00

    Koha before 26.05.02, 25.11.07, and 25.05.13 contains a stored cross-site scripting vulnerability in the purchase suggestion handler that allows authenticated staff users to inject malicious scripts by submitting unsanitized input through the suggestion save operation. Attackers…

  • CVE-2026-18504MedAug 18, 2026
    risk 0.28cvss 5.4epss 0.00

    fastify is a fast and low overhead web framework for Node.js. Versions of fastify before 5.12.1 are affected by a schema validation bypass when a request body schema targets a root primitive value. When the schema validates a top-level primitive such as an integer, Ajv can…

  • CVE-2026-16732MedAug 18, 2026
    risk 0.33cvss 6.1epss 0.00

    fastify is a fast and low overhead web framework for Node.js. Impact: the fix for CVE-2026-3635 added a guard on the forwarded-header reads used to derive the request host, protocol, hostname, ip, and ips values, checking the connecting address. That guard closes the IP, CIDR,…

  • CVE-2026-15571HigAug 18, 2026
    risk 0.47cvss 7.3epss 0.00

    A flaw was found in the legacy client-initiated account-linking endpoint of Keycloak, a widely used open-source identity and access management solution. The mechanism used to protect the account-linking process from unauthorized requests relies on a hash that can be predicted by…

  • CVE-2026-12632MedAug 18, 2026
    risk 0.35cvss 6.5epss 0.00

    Zephyr's Precision Time Protocol receive handler ptp_msg_post_recv() in subsys/net/lib/ptp/msg.c takes the 4-bit message type straight off the wire via ptp_msg_type() (msg->header.type_major_sdo_id & 0xF, range 0-15) and uses it to index the msg_size[] table. That table only…

  • CVE-2026-12631MedAug 18, 2026
    risk 0.35cvss 6.5epss 0.00

    The Zephyr kernel validates the k_thread_join() and k_thread_abort() system calls (declared __syscall in include/zephyr/kernel.h) through thread_obj_validate() in kernel/thread.c. Its default switch branch is the access-denied path, taken when k_object_validate() returns -EPERM…

  • CVE-2026-55224higAug 18, 2026
    risk 0.38cvss —epss —

    ## Path Traversal via Unsanitized Identifier in Plugin Install/Uninstall ### Summary The app-store plugin service concatenates unsanitized user-supplied `identifier` values directly into file system paths. An attacker can use path traversal sequences (e.g., `../`) to read,…

  • CVE-2026-76032MedAug 18, 2026
    risk 0.28cvss 4.3epss 0.00

    Pydio Cells 5.0.0 through 5.0.2 returns share-link details to any authenticated user. The REST handler for GET /a/share/link/{Uuid} in idm/share/rest/handler.go reads the workspace UUID from the path, calls LinkById, and writes the result with no authorization step, whereas the…

  • CVE-2026-75936HigAug 18, 2026
    risk 0.49cvss 7.5epss 0.00

    Improper handling of highly compressed data in the GZIP auto-decompression handler in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted compressed Ion document that expands to an arbitrarily large size upon decompression. To…

  • CVE-2026-75935HigAug 18, 2026
    risk 0.49cvss 7.5epss 0.00

    Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted Ion binary document containing a declared-length field that causes excessive heap preallocation. To remediate…

  • CVE-2026-75877CriAug 18, 2026
    risk 0.64cvss 9.9epss 0.01

    A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function SystemNetworkChanged/SystemDDNSChanged/SystemEmailChanged/SystemFTPChanged/websCheckRealm/FUN_00432574/FUN_0043372C of the component alphapd. Executing a manipulation can lead to…

  • CVE-2026-75876MedAug 18, 2026
    risk 0.41cvss 6.3epss 0.00

    A security vulnerability has been detected in xianrendzw EasyReport up to 2.0.17.0522_Beta. Affected by this issue is some unknown functionality of the file ModuleController.java of the component Move Operations. Such manipulation of the argument sourcePath leads to sql…

  • CVE-2026-73529MedAug 18, 2026
    risk 0.27cvss 5.3epss 0.00

    Plainpad through 1.1.1, fixed in commit d3823fc, contains a missing rate limiting vulnerability that allows unauthenticated attackers to send unbounded login requests to the POST /v1/sessions endpoint due to dead code in App\Http\Kernel.php that is never instantiated under the…

  • CVE-2026-73112Aug 18, 2026
    risk 0.00cvss —epss —

    Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

  • CVE-2026-73111Aug 18, 2026
    risk 0.00cvss —epss —

    Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

  • CVE-2026-73106Aug 18, 2026
    risk 0.00cvss —epss —

    Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

  • CVE-2026-73105Aug 18, 2026
    risk 0.00cvss —epss —

    Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

  • CVE-2026-73104Aug 18, 2026
    risk 0.00cvss —epss —

    Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

  • CVE-2026-73103Aug 18, 2026
    risk 0.00cvss —epss —

    Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

  • CVE-2026-71676HigAug 18, 2026
    risk 0.49cvss 7.5epss 0.00

    Buffer Overflow vulnerability in Open5GS v.2.7.0 allows a remote attacker to cause a denial of service via the NAS 5GS decoder chain, triggered when the message type byte of a NAS PDU is mutated

  • CVE-2026-71675HigAug 18, 2026
    risk 0.49cvss 7.5epss 0.00

    An issue in Open5GS v.2.7.0 allows a remote attacker to cause a denial of service via the ngap_send_to_nas() function in src/amf/ngap-path.c

  • CVE-2026-71417HigAug 18, 2026
    risk 0.40cvss 7.3epss 0.00

    Lemur manages TLS certificate creation. Prior to 1.9.3, POST /api/1/certificates/upload allowed a non-read-only user to create a duplicate row using another certificate body, authority_id, serial, or external_id without requiring permission on the underlying authority. PUT…

  • CVE-2026-71322MedAug 18, 2026
    risk 0.21cvss 4.3epss 0.00

    Lemur manages TLS certificate creation. Prior to 1.9.3, CertificateExport placed its CertificatePermission ownership check inside the plugin.requires_key branch for POST /api/1/certificates//export. A plugin declaring requires_key false bypassed that check, and the handler still…

  • CVE-2026-71317MedAug 18, 2026
    risk 0.35cvss 6.5epss 0.00

    Lemur manages TLS certificate creation. Prior to 1.9.3, POST /api/1/authorities with type=subca did not require AuthorityPermission on the parent authority when ADMIN_ONLY_AUTHORITY_CREATION was false. AssociatedAuthoritySchema resolved the caller-supplied parent and passed it…

  • CVE-2026-71308HigAug 18, 2026
    risk 0.46cvss 8.1epss 0.00

    Lemur manages TLS certificate creation. From 0.5.0 until 1.9.3, certificate create, upload, and edit requests accepted replaces[] or replacements identifiers that AssociatedCertificateSchema resolved with fetch_objects without a CertificatePermission check. Assigning those…

  • CVE-2026-71307HigAug 18, 2026
    risk 0.43cvss 7.7epss 0.00

    Lemur manages TLS certificate creation. Prior to 1.9.3, GET /api/1/destinations and GET /api/1/destinations/ relied only on authentication while sibling write handlers required admin_permission. DestinationOutputSchema returned raw options and copied them into pluginOptions…

  • CVE-2026-71303HigAug 18, 2026
    risk 0.43cvss 7.7epss 0.00

    Lemur manages TLS certificate creation. Prior to 1.9.3, _validate_acme_url enforced ACME_DIRECTORY_HOST_ALLOWLIST when an authority was created, but PUT /api/1/authorities/ passed options to lemur/authorities/service.py without applying the same check. A user holding an…

  • CVE-2026-70666HigAug 18, 2026
    risk 0.41cvss 7.4epss 0.00

    Lemur manages TLS certificate creation. Prior to 1.9.3, an authority-role member could update acme_url through PUT /api/1/authorities/ without revalidation and direct setup_acme_client_no_retry to an attacker-controlled ACME server. ACME directory and order responses contain…

  • CVE-2026-67443CriAug 18, 2026
    risk 0.53cvss —epss 0.01

    FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. In 1.3.2 and earlier, the allowDashboard authorization gate in server/integrations/node-red/index.js calls authJwt.verify for /nodered without inspecting the decoded identity. When nodeRedEnabled is true,…

  • CVE-2026-67440MedAug 18, 2026
    risk 0.38cvss —epss 0.00

    FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. In 1.3.2 and earlier, the DEVICE_BROWSE, DEVICE_NODE_ATTRIBUTE, HOST_INTERFACES, and DEVICE_TAGS_REQUEST handlers in server/runtime/index.js return device-discovery, node-attribute, host-network-interface,…

  • CVE-2026-65985MedAug 18, 2026
    risk 0.32cvss —epss 0.00

    FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. In 1.3.2 and earlier, the device-webapi-request Socket.IO handler in server/runtime/index.js permits an authenticated non-admin runtime user to control property.address, causing the FUXA server to issue an…

  • CVE-2026-65984HigAug 18, 2026
    risk 0.42cvss —epss 0.00

    FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. In 1.3.2 and earlier, POST /api/refresh in server/api/auth/index.js falls back from current user data to decoded.groups, including when the user is deleted or groups is zero, and POST /api/heartbeat in…

  • CVE-2026-59915HigAug 18, 2026
    risk 0.47cvss 7.3epss 0.00

    Dell Alienware Command Center (AWCC), versions prior to 6.14.20.0, contain a Least Privilege Violation vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.

  • CVE-2026-57826MedAug 18, 2026
    risk 0.37cvss 6.8epss 0.00

    An issue was discovered in openHiTLS 0.2.0 through 0.3.2. In the X.509 certificate chain verification, the basic constraints extension and CA flag processing of intermediate CAs are only verified for v3 certificates, and v1/v2 certificates are ignored.