VYPR

CVEs

378,628 total · page 449 of 7,573

  • CVE-2023-54378Aug 6, 2026
    risk 0.00cvss —epss —

    Rejected reason: Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

  • CVE-2023-54377Aug 6, 2026
    risk 0.00cvss —epss —

    Rejected reason: Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

  • CVE-2023-54376Aug 6, 2026
    risk 0.00cvss —epss —

    Rejected reason: Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

  • CVE-2023-54375Aug 6, 2026
    risk 0.00cvss —epss —

    Rejected reason: Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

  • CVE-2026-67867HigAug 5, 2026
    risk 0.49cvss 7.5epss 0.00

    Buffer Overflow vulnerability in Systerel S2OPC 1.7.3 allows a remote attacker to cause a denial of service via the Alarm/Conditions wrapper when processing PublishResponse EventNotificationList data

  • CVE-2026-67866HigAug 5, 2026
    risk 0.49cvss 7.5epss 0.00

    Buffer Overflow vulnerability in Systerel S2OPC 1.7.3 allows a remote attacker to cause a denial of service via the LockedStaMac_ProcessMsg_DeleteMonitoredItemsResponse and SOPC_StaMac_NewDeleteMonitoredItems in the client wrapper DeleteMonitoredItems path

  • CVE-2026-67863HigAug 5, 2026
    risk 0.49cvss 7.5epss 0.00

    In open62541 1.5.5, a server-side use-after-free exists in the local MonitoredItem callback path. The issue occurs when UA_Subscription_localPublish continues to use the current UA_Notification after a callback invokes UA_Server_deleteMonitoredItem for the current local…

  • CVE-2026-19026MedAug 5, 2026
    risk 0.44cvss —epss 0.00

    H5Z__filter_nbit in H5Znbit.c in HDF5 through 2.3.0 dereferences cd_values[0] through cd_values[4] without validating that cd_values is non-NULL or that cd_nelmts is at least 5, the fixed size of the filter's header. This allows attackers to cause a denial of service via a…

  • CVE-2026-19025MedAug 5, 2026
    risk 0.44cvss —epss 0.00

    H5O__layout_decode in H5Olayout.c in HDF5 through 2.3.0 does not validate that a chunked dataset's stored chunk-layout dimensionality matches its dataspace rank when an existing dataset is opened, whereas this check is performed only at dataset-creation time. This allows…

  • CVE-2026-19024HigAug 5, 2026
    risk 0.53cvss —epss 0.00

    NULL pointer dereference in H5Pget_fill_value in HDF5 before 2.3.0 allows attackers to cause a denial of service via a dataset whose version 1 or 2 fill value message has the "defined" flag set together with a negative size field, which is not normalized to the library's…

  • CVE-2026-19023MedAug 5, 2026
    risk 0.44cvss —epss 0.00

    Untrusted pointer dereference in the render_bin_output function in the h5dump tool in HDF5 before 2.3.0 allows attackers to cause a denial of service via a variable-length string dataset with more than one element dumped in binary mode, which corrupts the per-element stride…

  • CVE-2026-71321HigAug 5, 2026
    risk 0.42cvss 7.5epss 0.00

    Nuxt is an open-source web development framework for Vue.js. From 3.1.0 until 3.21.10 and 4.5.1, the internal island renderer endpoint `/__nuxt_island/...` decodes and hashes attacker-controlled JSON body input with destr and ohash before validating the URL-resident hash. An…

  • CVE-2026-71320HigAug 5, 2026
    risk 0.46cvss 8.1epss 0.00

    Nuxt is an open-source web development framework for Vue.js. From 3.4.0 until 3.21.10 and 4.5.1, an attacker can inject a template key through /__nuxt_island/ props into a dynamic component when `vue.runtimeCompiler: true` is enabled, causing template execution in the Nitro…

  • CVE-2026-71319CriAug 5, 2026
    risk 0.55cvss 9.6epss 0.00

    Nuxt is an open-source web development framework for Vue.js. Prior to 3.3.1, Nuxt DevTools (development mode only) exposes a bidirectional RPC channel over the Vite HMR WebSocket via the nuxt:devtools:rpc plugin. On affected versions the channel has no authentication: any client…

  • CVE-2026-71318MedAug 5, 2026
    risk 0.31cvss 4.8epss 0.00

    Nuxt is an open-source web development framework for Vue.js. From 3.1.0 until 3.21.10 and 4.5.1, an attacker can supply a top-level `as` prop to the /__nuxt_island/ endpoint and drive dynamic component resolution through , resolveDynamicComponent, or h(). This…

  • CVE-2026-71316HigAug 5, 2026
    risk 0.42cvss 7.5epss 0.00

    Nuxt is an open-source web development framework for Vue.js. From 4.4.0 until 4.5.1, runtime cache:nuxt:payload entries for //_payload.json can be returned before route middleware and page guards because import.meta.prerender is not enforced, disclosing another user's SSR…

  • CVE-2026-67865HigAug 5, 2026
    risk 0.49cvss 7.5epss 0.01

    S2OPC 1.7.3 contains an out-of-bounds read in RepublishResponse handling. This allows a remote attacker to cause a denial of service

  • CVE-2026-67864HigAug 5, 2026
    risk 0.49cvss 7.5epss 0.00

    An issue in open62541 v.1.5.5 and before allows a remote attacker to cause a denial of service via the NodeManagement type-instantiation logic component

  • CVE-2025-63823CriAug 5, 2026
    risk 0.64cvss 9.8epss 0.00

    My Safetipin Android Application 5.2.1 contains Hardcoded credentials in the authentication module, which allows remote attackers to bypass authentication and gain unauthorized access to user accounts via predictable OTP values.

  • CVE-2025-63822HigAug 5, 2026
    risk 0.53cvss 8.1epss 0.00

    SirenGPS Android Application 2.19.44 is vulnerable to Incorrect Access Control. An authenticated attacker can manipulate user identifier parameters to bypass authorization controls and gain unauthorized READ and WRITE access to other users' personal information. The API fails to…

  • CVE-2026-71315HigAug 5, 2026
    risk 0.46cvss 8.2epss 0.00

    Nuxt is an open-source web development framework for Vue.js. From 3.21.7 until 3.21.10 and 4.5.1, mixed-case routeRules keys can fail to match case-folded lookups when router.options.sensitive is false and drop appMiddleware authorization gates. This is caused by an incomplete…

  • CVE-2026-71314HigAug 5, 2026
    risk 0.42cvss 7.5epss 0.00

    Nuxt is an open-source web development framework for Vue.js. From 3.1.0 until 3.21.10 and 4.5.1, an unauthenticated attacker can use a server island v-for prop, including vforToArray and , to trigger unbounded SSR memory allocation until MAX_VFOR_LENGTH = 100000 and crash the…

  • CVE-2026-71313MedAug 5, 2026
    risk 0.38cvss 6.9epss 0.00

    rclone is a command-line program to sync files and directories to and from different cloud storage providers. From v1.51.0 until v1.75.0, the local backend in backend/local/local.go relies on the configurable filename encoder to prevent remote filename data from becoming…

  • CVE-2026-71312HigAug 5, 2026
    risk 0.45cvss 8.0epss 0.00

    rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to v1.75.0, rclone interpolates remote SFTP paths into PowerShell hash commands in backend/sftp/sftp.go, and quoteOrEscapeShellPath escapes only ASCII apostrophe…

  • CVE-2026-71311MedAug 5, 2026
    risk 0.35cvss 6.4epss 0.00

    rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.75.0, a valid but nondefault FTP filename encoding in backend/ftp/ftp.go can restore raw CR/LF immediately before an attacker-controlled path is interpolated…

  • CVE-2026-71310MedAug 5, 2026
    risk 0.31cvss 5.9epss 0.00

    rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.75.0, the shared HTTP CONNECT helper in lib/proxy/http.go parses proxy CONNECT responses with http.ReadResponse over an unrestricted buffered reader, allowing…

  • CVE-2026-71309HigAug 5, 2026
    risk 0.49cvss —epss 0.00

    rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.40.0 until 1.75.0, rclone serve restic does not correctly reject URL paths beginning with ../ in cmd/serve/restic/restic.go WithRemote, which accepts a leading…

  • CVE-2026-34966HigAug 5, 2026
    risk 0.42cvss 7.6epss 0.00

    Gitea prior to 1.27.0 contains a server-side request forgery vulnerability that allows authenticated attackers to bypass SSRF protections by exploiting HTTP fetch operations in migration and OAuth avatar code paths that use Go's default http.Get without a custom DialContext.…

  • CVE-2026-18959MedAug 5, 2026
    risk 0.35cvss 5.4epss 0.00

    A flaw has been found in yushine InnoShop up to 0.8.2. Affected by this issue is the function FileManagerController::destroyFiles of the file innopacks/restapi/routes/panel-api.php of the component Files Endpoint. This manipulation causes path traversal. The attack may be…

  • CVE-2026-18839LowAug 5, 2026
    risk 0.14cvss 2.2epss 0.00

    An integer underflow was found in the popt library when formatting help text for option tables that exceed the terminal width. A local user who can cause an application to print help under those conditions may cause that application to crash or fail to display help, resulting in…

  • CVE-2026-18411HigAug 5, 2026
    risk 0.53cvss 8.1epss 0.00

    The KARR Security System and SWDS dealer-installed automotive anti-theft systems use a shared Bluetooth authentication key across affected devices. An attacker within Bluetooth range can leverage this weakness to issue unauthorized commands to the vehicle, potentially allowing…

  • CVE-2026-17583HigAug 5, 2026
    risk 0.55cvss 8.4epss 0.00

    The affected Thermo Fisher Applied Biosystems Genetic Analyzers are vulnerable because .fsa/.hid output files can be edited. An attacker could tamper with these files, altering DNA data and resulting in inaccurate DNA test outcomes.

  • CVE-2026-15996HigAug 5, 2026
    risk 0.49cvss 7.5epss 0.00

    A denial of service vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to cause excessive CPU consumption and exhaust the pool of request-handling worker processes by sending a crafted form-encoded HTTP POST request containing…

  • CVE-2026-70618MedAug 5, 2026
    risk 0.21cvss 4.3epss 0.00

    Spacebar Server before commit 51da17c contains a missing authorization vulnerability that allows any authenticated user to enumerate complete guild membership by querying the GET /guilds/{guild_id}/roles/{role_id}/member-ids endpoint without guild membership verification.…

  • CVE-2026-70617HigAug 5, 2026
    risk 0.46cvss 8.1epss 0.00

    Spacebar Server before commit dcfd910 contains a missing authorization vulnerability that allows any authenticated attacker to add themselves to arbitrary group DM channels by sending a PUT request to the channels recipient endpoint without membership verification. Attackers can…

  • CVE-2026-70616MedAug 5, 2026
    risk 0.42cvss 6.5epss 0.00

    boringproxy through 0.10.0 contains a resource exhaustion vulnerability that allows any authenticated user to permanently exhaust server file descriptors, goroutines, and memory by sending requests to the GET /loading endpoint with attacker-supplied id query parameter values.…

  • CVE-2026-70615CriAug 5, 2026
    risk 0.64cvss 9.9epss 0.00

    boringproxy through 0.10.0 contains a newline injection vulnerability that allows authenticated low-privileged users with tunnel-creation permission to inject arbitrary lines into the server account's SSH authorized_keys file by supplying a percent-encoded newline character in…

  • CVE-2026-69111HigAug 5, 2026
    risk 0.49cvss 7.5epss 0.01

    Milvus through 2.6.22 and 3.0.0 contains an unauthenticated denial of service vulnerability that allows remote attackers to terminate service components by sending a crafted HTTP GET request to the management server on port 9091. Attackers can exploit the unprotected…

  • CVE-2026-68746HigAug 5, 2026
    risk 0.57cvss 8.8epss 0.00

    Not Failing Securely ('Failing Open') vulnerability in livebook-dev livebook allows an unauthenticated network client to obtain full access to a Livebook server that enforces identity through Livebook Teams. A Livebook Agent or App Server connected to Livebook Teams caches the…

  • CVE-2026-66885MedAug 5, 2026
    risk 0.35cvss 6.5epss 0.00

    Cross-Site Request Forgery (CSRF) vulnerability in livebook-dev livebook allows an attacker to authenticate a victim's browser session under the attacker's own Livebook Teams identity. When Livebook is configured to use Livebook Teams for identity,…

  • CVE-2026-66881HigAug 5, 2026
    risk 0.46cvss 8.1epss 0.00

    Relative Path Traversal vulnerability in livebook-dev livebook allows an attacker-authored notebook to write a file with attacker-controlled content to an arbitrary path. A .livemd notebook can declare file_entries metadata, each entry carrying a name. Every path that creates a…

  • CVE-2026-66298HigAug 5, 2026
    risk 0.50cvss 8.8epss 0.00

    Origin Validation Error vulnerability in livebook-dev livebook allows untrusted notebook output JavaScript to trigger session-wide keyboard shortcuts, including forced evaluation of all cells and runtime restart. Livebook's JS-view feature renders notebook-defined JavaScript…

  • CVE-2026-66297HigAug 5, 2026
    risk 0.45cvss 8.0epss 0.02

    Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) vulnerability in livebook-dev livebook allows command injection into generated deployment setup commands. LivebookWeb.Hub.Teams.DeploymentGroupAgentComponent.docker_instructions/2 and…

  • CVE-2026-55524HigAug 5, 2026
    risk 0.42cvss 7.5epss 0.00

    PraisonAI is a multi-agent teams system. In versions prior to 1.6.58, the web_crawl tool performs its SSRF check only on the initially supplied URL, allowing the protection to be bypassed so the tool connects to attacker-chosen internal destinations. The check resolves the…

  • CVE-2026-55523HigAug 5, 2026
    risk 0.43cvss —epss 0.00

    PraisonAI is a multi-agent teams system. In versions 1.5.128 through 1.6.57, the praisonaiagents.tools.web_crawl_tools.web_crawl() function is vulnerable to server-side request forgery. While it validates the initially supplied URL and blocks direct loopback and private…

  • CVE-2026-55522HigAug 5, 2026
    risk 0.44cvss 7.8epss 0.00

    PraisonAI is a multi-agent teams system. In versions 3.9.26 through 4.6.57 of praiseonai and 0.12.12 through 1.6.57 of praiseonaiagents, the workflow "include" feature is vulnerable to code execution. Workflow._execute_include() implicitly imports and runs an included recipe's…

  • CVE-2026-21766MedAug 5, 2026
    risk 0.35cvss 5.4epss 0.00

    The default login portlet in HCL Digital Experience and Digital Experience Compose insufficiently protects credentials.  Under certain very specific use cases and specific configurations, sensitive information may be written to web server logs.  This only affects applications…

  • CVE-2026-18958HigAug 5, 2026
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was detected in imranrisal-dev Student-Management-System 18ea7904c339e0c7b0234724a79c939ce6191def/a8d43a29aaf267e7ca97171d6dbb44057bcd7f8c. Affected by this vulnerability is an unknown functionality of the file loginCheckTest.php of the component Login. The…

  • CVE-2026-18954MedAug 5, 2026
    risk 0.36cvss 5.5epss 0.00

    Incorrect authorization in the aggregation pipeline tool in Amazon AWS Labs DocumentDB MCP Server before 1.0.12 might allow an authenticated MCP client to perform inappropriate write operations on the connected database via write-capable aggregation pipeline stages that bypass…

  • CVE-2026-18953HigAug 5, 2026
    risk 0.56cvss 8.6epss 0.00

    Improper limitation of a pathname to a restricted directory in the get_resource tool in Amazon awslabs.aws-transform-mcp-server 0.1.0 through 0.1.4 might allow a context-dependent actor to write arbitrary files outside the intended working directory via the savePath parameter. …