VYPR

CVEs

383,871 total · page 383 of 7,678

  • CVE-2026-12554HigAug 24, 2026
    risk 0.55cvss —epss 0.00

    Potential security vulnerabilities have been identified in HP Easy Start for macOS, versions prior to 2.16.7.260722. These potential vulnerabilities may lead to escalation of privilege. HP is releasing updates to mitigate these potential vulnerabilities.

  • CVE-2025-68825HigAug 24, 2026
    risk 0.49cvss 7.5epss 0.00

    HCL Hive is affected by incorrect default permissions which could allow an attacker unauthorized lateral movement, container breakout, and interception of sensitive internal communications.

  • CVE-2026-9728MedAug 24, 2026
    risk 0.35cvss 6.4epss 0.00

    The userspace syscall verifier z_vrfy_mbox_send() in drivers/mbox/mbox_handlers.c validated the nested msg->data/msg->size fields by reading them directly out of live userspace memory, and then forwarded the original, still-mutable userspace struct mbox_msg * pointer to…

  • CVE-2026-78414HigAug 24, 2026
    risk 0.52cvss 8.0epss 0.00

    Cross-site scripting in the Web Administration interface of Network Optix Nx Witness VMS before version 6.1.3 on Linux, Windows and MacOS allows an adjacent-network attacker to execute arbitrary JavaScript in the browser of an authenticated administrator and steal the…

  • CVE-2026-78391HigAug 24, 2026
    risk 0.50cvss —epss 0.00

    RansomLook contains a stored cross-site scripting (XSS) vulnerability in the cryptocurrency wallet detail view. Cryptocurrency addresses and blockchain names originating from external sources, including the public crowd-sourced ransomwhe.re feed, were stored without sufficient…

  • CVE-2026-78387CriAug 24, 2026
    risk 0.54cvss —epss 0.01

    RansomLook contains an authorization weakness in the web-based configuration editor exposed through the /admin/config endpoint. The endpoint requires an authenticated session but does not perform an explicit privilege or administrator authorization check before allowing access…

  • CVE-2026-76055HigAug 24, 2026
    risk 0.49cvss —epss 0.00

    Improper Neutralization of Special Elements used in an OS Command in the package manager component of Black Duck blackduck-c-cpp before 3.0.7 allows an actor able to create a file within the scanned build directory to execute operating system commands as the account running the…

  • CVE-2026-76054HigAug 24, 2026
    risk 0.46cvss —epss 0.00

    Invocation of Process Using Visible Sensitive Information in Black Duck blackduck-c-cpp 1.0.17 through 3.0.6 allows an actor able to execute code within the scanned project's build to obtain the Black Duck API token via the ambient process environment, which is inherited by…

  • CVE-2026-65053MedAug 24, 2026
    risk 0.33cvss 6.1epss 0.00

    Horde IMP's AppleDouble MIME viewer writes an attacker-controlled attachment name into an HTML status block without escaping it. In lib/Mime/Viewer/Appledouble.php, _IMPrender() obtains the name of the data part with IMP_Contents::getPartName(), which returns the MIME part's own…

  • CVE-2026-39915HigAug 24, 2026
    risk 0.53cvss 8.1epss 0.00

    TIM Flow before 26.0.6 contains a CRLF injection vulnerability that allows remote attackers to inject arbitrary HTTP headers and response body content by embedding unsanitized carriage return and line feed sequences in the rt URL parameter, which is reflected into Set-Cookie…

  • CVE-2026-39914MedAug 24, 2026
    risk 0.42cvss 6.5epss 0.00

    TIM Flow before 26.0.6 contains an improper authorization vulnerability that allows any authenticated user to submit arbitrary SQL queries to a privileged dashboard Excel export endpoint intended for administrative use only. Attackers can craft and submit unauthorized SQL…

  • CVE-2026-21755MedAug 24, 2026
    risk 0.34cvss 5.3epss 0.00

    HCL Hive is affected by a missing rate limit which could allow an attacker unauthorized access via brute-force or credential stuffing attacks, or cause a denial of service.

  • CVE-2026-19874CriAug 24, 2026
    risk 0.59cvss 9.1epss 0.01

    A heap-based buffer overflow vulnerability exists in Konami's Metal Gear Online 3, originating from improper validation of lobby data fields related to kicked players. The affected function processes a list of kicked player identifiers using the lobby data key "kick_num" to…

  • CVE-2026-78386HigAug 24, 2026
    risk 0.50cvss —epss 0.01

    RansomLook exposed sensitive operator-side scraping configuration through multiple unauthenticated API responses. Location records associated with ransomware groups and markets were returned largely verbatim to unauthenticated callers whenever the location itself was not marked…

  • CVE-2026-78385HigAug 24, 2026
    risk 0.46cvss —epss 0.00

    RansomLook contains insufficient resource validation in the analysis PDF generation functionality. Analysis documents are converted from Markdown to HTML and passed to WeasyPrint for PDF rendering. Prior to the fix, WeasyPrint used its default URL fetcher, allowing resource…

  • CVE-2026-78381HigAug 24, 2026
    risk 0.46cvss —epss 0.01

    RansomLook contains a path traversal vulnerability in the handling of the screen field associated with group posts. The GroupPost.get API handler concatenates the database-controlled screen value directly with the application's source/ directory and opens the resulting path…

  • CVE-2026-78380HigAug 24, 2026
    risk 0.50cvss —epss 0.00

    RansomLook fails to enforce the privacy status of ransomware groups and markets when distributing newly collected victim posts to external notification channels. The post-processing logic checks whether an individual post is marked private but does not verify whether the group…

  • CVE-2026-78378MedAug 24, 2026
    risk 0.38cvss —epss 0.00

    Ransomlook contains a Redis glob pattern injection vulnerability caused by insufficient neutralization of user-controlled input before it is incorporated into Redis SCAN MATCH patterns. The /api/health/ endpoint attempted to resolve the supplied name to a known group or…

  • CVE-2026-78376HigAug 24, 2026
    risk 0.50cvss 8.8epss 0.00

    A flaw was found in WebKitGTK. Processing malicious web content can cause a use-after-free issue due to improper memory handling and result in memory corruption.

  • CVE-2026-78372CriAug 24, 2026
    risk 0.53cvss —epss 0.01

    RansomLook does not consistently enforce authorization checks when accessing groups, markets, and ransom notes marked as private. An unauthenticated or otherwise unauthorized remote attacker can access information associated with private entities through several web views…

  • CVE-2026-78370CriAug 24, 2026
    risk 0.53cvss —epss 0.01

    RansomLook contains an authorization flaw in its legacy database export functionality that can allow unauthenticated remote users to retrieve information intended to remain private. The /export/ endpoint permits selected internal databases to be exported without…

  • CVE-2026-78369HigAug 24, 2026
    risk 0.50cvss —epss 0.01

    RansomLook contains a missing authentication vulnerability in the /admin/crypto/group/new endpoint. While the endpoint provides an administrative function for creating new crypto group entries, it was not protected by the application's authentication mechanism. An…

  • CVE-2026-78367HigAug 24, 2026
    risk 0.46cvss 7.0epss 0.00

    A vulnerability was found in RPM's rpmbuild tarball processing. When processing a crafted source archive, the getTarSpec() function in tools/rpmbuild.cc passes an attacker-controlled tar archive member name to rpmExpand() as part of a %{basename:...} macro expression. A…

  • CVE-2026-78250MedAug 24, 2026
    risk 0.28cvss 4.3epss 0.01

    A vulnerability was identified in bytebot-ai bytebot 0.0.1. The affected element is an unknown function of the component Agent Execution Workflow. Such manipulation leads to infinite loop. The attack may be performed from remote. The exploit is publicly available and might be…

  • CVE-2026-78248HigAug 24, 2026
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was determined in SourceCodester Simple Online Food Ordering System 1.0. Impacted is an unknown function of the file /fos/admin/ajax.php?action=save_settings. This manipulation of the argument Name causes sql injection. The attack is possible to be carried out…

  • CVE-2026-77995CriAug 24, 2026
    risk 0.65cvss —epss 0.00

    Joomla Extension - miniorange.com - Arbitrary account takeover in miniOrange OAuth Client < 3.2.0, OAuth Single Sign-On – OIDC SSO < 1.2.2, Login with Keycloak OAuth Single Sign-On (SSO) < 1.2.2, Single Sign-On for Educational Institutes < 1.2.2 - The manipulation of a cookie…

  • CVE-2026-76848Aug 24, 2026
    risk 0.00cvss —epss 0.00

    Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

  • CVE-2026-76847HigAug 24, 2026
    risk 0.57cvss 8.8epss 0.00

    act starts an HTTP Artifacts V4 backend whenever a workflow uses actions/upload-artifact@v4 or actions/download-artifact@v4. The control-plane RPCs of that backend, including CreateArtifact, GetSignedArtifactURL, ListArtifacts, FinalizeArtifact and DeleteArtifact, accept a…

  • CVE-2026-76845MedAug 24, 2026
    risk 0.35cvss 6.5epss 0.00

    adm-zip 0.5.9 through 0.6.0 follows symbolic links at the extraction destination. Utils.sanitize in util/utils.js enforces containment by comparing only the string form of an archive entry name against the resolved extraction root, and Utils.writeFileTo opens the computed…

  • CVE-2026-76844HigAug 24, 2026
    risk 0.41cvss 7.4epss 0.01

    zlib 1.2.11 through 1.3.2 contains a heap buffer overflow: after an underlying write() fails, gz_write() returns without resetting strm.next_in, leaving it pointed at the caller's buffer. A later gz* write call then derives a position from the stale pointer and writes past a…

  • CVE-2026-76843HigAug 24, 2026
    risk 0.51cvss 7.8epss 0.00

    The official Flair wheels for 0.15.0 and 0.15.1 still contain flair/models/clustering.py, whose ClusteringModel.load static method returns pickle.loads(joblib.load(str(model_file))) and so executes arbitrary Python while loading a model file. Loading a model supplied by an…

  • CVE-2026-76842HigAug 24, 2026
    risk 0.46cvss 8.2epss 0.00

    The Mercado Pago Node.js SDK interpolates caller-supplied identifiers into API request paths without percent-encoding them, so characters that are structural in a URL survive into the outgoing request. The payment (get, capture, cancel), paymentRefund (create, total, list, get),…

  • CVE-2026-76841HigAug 24, 2026
    risk 0.50cvss 8.8epss 0.01

    Xinference loads models with Hugging Face remote code execution unconditionally enabled, and before version 2.12.0 exposes no setting to disable it. Six loader call sites pass trust_remote_code=True as a literal or as an unconditional default: RerankModel._get_tokenizer in…

  • CVE-2026-76840CriAug 24, 2026
    risk 0.55cvss 9.6epss 0.00

    RustDesk's Windows clipboard redirection copies a peer-supplied length into a fixed-size caller buffer without an upper bound check. When an OLE paste consumer such as explorer.exe calls IStream::Read with a buffer of cb bytes, CliprdrStream_Read in…

  • CVE-2026-67602CriAug 24, 2026
    risk 0.52cvss 9.1epss 0.01

    phpIPAM before 1.8.2 contains an authentication bypass vulnerability in the REST API that allows unauthenticated attackers to gain full API access by exploiting an insecure object cache keying mechanism. The cache is keyed by lookup value alone without including the searched…

  • CVE-2026-59568CriAug 24, 2026
    risk 0.59cvss 9.1epss 0.01

    Multiple vulnerabilities on affected versions of Zscaler Client Connector allow remote code execution, giving an unauthenticated, unprivileged user the ability to execute arbitrary code in the ZCC context.

  • CVE-2026-59567HigAug 24, 2026
    risk 0.57cvss 8.8epss 0.00

    Multiple vulnerabilities on affected versions of Zscaler Client Connector allow local privilege escalation, giving an unprivileged user the ability to execute arbitrary code in a privileged context.

  • CVE-2026-59566HigAug 24, 2026
    risk 0.55cvss 8.4epss 0.00

    A locally exploitable buffer overflow bug can cause a local denial-of-service attack on affected versions of Zscaler Client Connector on Android and ChromeOS.

  • CVE-2026-59565HigAug 24, 2026
    risk 0.57cvss 8.8epss 0.00

    A remotely exploitable buffer overflow bug can cause a local and kernel denial-of-service attack on affected versions of Zscaler Client Connector on Windows.

  • CVE-2026-59564CriAug 24, 2026
    risk 0.59cvss 9.1epss 0.01

    An authentication bypass issue exists in communications between affected versions of the Zscaler Client Connector and the Zscaler Client Connector Portal.

  • CVE-2026-30512HigAug 24, 2026
    risk 0.51cvss 7.8epss 0.00

    A local privilege escalation vulnerability exists in the Restricted Access (Kiosk) Mode implementation of Scheidt & Bachmann entervo HMI prior to V2 R5 P0 M5. The vulnerability affects the external PDF viewer functionality used to display the application manual and its…

  • CVE-2026-21751HigAug 24, 2026
    risk 0.48cvss 7.4epss 0.00

    HCL Hive is affected by a cryptographic primitive with a risky implementation which could allow an attacker unauthorized lateral compromise or widespread credential leakage if a single internal component is breached.

  • CVE-2026-17033MedAug 24, 2026
    risk 0.44cvss 6.8epss 0.00

    An authenticated attacker with Editor access or alert.instances.external:write can submit an external Alertmanager alert containing a controlled generatorURL. The attacker is authorized to create the alert, but not to execute script in another user's Grafana session. Grafana…

  • CVE-2025-68833MedAug 24, 2026
    risk 0.34cvss 5.3epss 0.00

    HCL Hive Keycloak IAM Instance is affected by insufficient granularity of access control which could allow an attacker unauthorized access to resources.

  • CVE-2026-78365CriAug 24, 2026
    risk 0.53cvss —epss 0.01

    Authorization Bypass Through User-Controlled Key in the supplier API in Roskus Prospero Flow CRM 4.0.0 through 5.3.1 allows any authenticated user to read and modify another company's supplier record, and to reassign it to their own company, via a PUT request to…

  • CVE-2026-78247HigAug 24, 2026
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was found in SourceCodester Simple Online Food Ordering System 1.0. This issue affects some unknown processing of the file /fos/admin/ajax.php?action=confirm_order. The manipulation of the argument ID results in sql injection. The attack can be executed remotely.…

  • CVE-2026-21759MedAug 24, 2026
    risk 0.28cvss 4.3epss 0.00

    HCL Hive is affected by an information exposure vulnerability where Swagger documentation was found exposed publicly.  Although no sensitive information (e.g., credentials, PII) was discovered, exposing API documentation to unauthenticated users can increase the overall attack…

  • CVE-2026-21756HigAug 24, 2026
    risk 0.47cvss 7.2epss 0.00

    HCL Hive is affected by a broken access control vulnerability which could allow an attacker or unauthorized user to introduce unverified, malicious, or broken code directly into production environments.

  • CVE-2026-78323MedAug 24, 2026
    risk 0.42cvss 6.5epss 0.00

    A flaw was found in JSS (Java Security Services). The JSSTrustManager class does not verify NSS trust flags when validating CA certificates, allowing certificates present in the NSS database without TRUSTED_CA flags to be accepted as trust anchors for TLS connections. In…

  • CVE-2026-78291MedAug 24, 2026
    risk 0.34cvss 5.3epss 0.00

    Unauthenticated Broken Access Control in RepairBuddy <= 4.1223 versions.