Export limit exceeded: 401149 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Export limit exceeded: 401149 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (401149 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-93698 1 Webpros 2 Cpanel, Wp Squared 2026-10-02 N/A
Insufficient validation allows arbitrary commands to be executed via the Multilang adminbin.
CVE-2026-93697 1 Webpros 2 Cpanel, Wp Squared 2026-10-02 N/A
There is a stored XSS vulnerability allowing arbitrary code execution in the WHM Mass Modify Accounts interface.
CVE-2026-86344 1 Redhat 2 Directory Server, Enterprise Linux 2026-10-02 7.5 High
A flaw was found in 389-ds-base. An unauthenticated remote attacker can send a complete LDAP operation followed by the first bytes of an incomplete LDAPMessage on the same connection, causing the server to hand that connection to a second worker thread before the first worker's result is flushed. The second worker blocks until nsslapd-ioblocktimeout while holding the connection mutex, preventing delivery of the completed operation's result. Repeating this across a small number of connections proportional to the configured worker-thread pool size exhausts the entire pool under default configuration, denying service to all clients (anonymous and authenticated, plaintext and TLS) for as long as the attacker maintains the connections.
CVE-2026-71452 1 Johnson Controls 1 Easyio Fs32 2026-10-02 N/A
- OS Command Injection vulnerability in Johnson Controls EasyIO FS32 allows OS Command Injection. This issue affects EasyIO FS32: before 3.0b63.
CVE-2026-71451 1 Johnson Controls 1 Easyio Fs32 2026-10-02 N/A
- OS Command Injection vulnerability in Johnson Controls EasyIO FS32 allows - Command Injection. This issue affects EasyIO FS32: before 3.0b63.
CVE-2026-71449 1 Johnson Controls 1 Easyio Fs32 2026-10-02 N/A
: Use of Hard-coded Cryptographic Key vulnerability in Johnson Controls EasyIO FS32 allows : Retrieve Embedded Sensitive Data. This issue affects EasyIO FS32: before 3.0b63.
CVE-2026-63569 2026-10-02 N/A
Improper input validation in DHAgreement.CalculateAgreement (MTI/A0 two-pass Diffie-Hellman) in Legion of the Bouncy Castle Inc. bc-csharp before 2.7.0 allows an on-path attacker to make the local party compute an agreed value the attacker already knows, defeating the key authentication MTI/A0 is meant to provide. It also allows a malicious peer to learn the local static private key modulo the small factors of p-1, and to recover it entirely in groups with many such factors. The attack uses a crafted out-of-range or small-order ephemeral value, and works because that value is raised to the static private key without the range and subgroup-membership checks applied to DH public keys. Only applications that call DHAgreement directly are affected.
CVE-2026-27874 1 Johnson Controls 1 Easyio Fs32 2026-10-02 N/A
: Use of Hard-coded Credentials vulnerability in Johnson Controls EasyIO FS32 allows : Exploitation of Default or Hard-coded Credentials. This issue affects EasyIO FS32: before 3.0b63.
CVE-2026-27873 1 Johnson Controls 2 Easy Io Fg, Easyio Fg 2026-10-02 N/A
- Use of Hard-coded Credentials vulnerability in Johnson Controls EasyIO FG allows - Pasword Spraying. This issue affects EasyIO FG: before 2.0b52.
CVE-2026-21140 1 Samsung Mobile 1 Samsung Mobile Devices 2026-10-02 N/A
Improper access control in ManagedProvisioning prior to SMR Sep-2026 Release 1 allows local attackers to install arbitrary applications.
CVE-2026-104480 1 Discord 1 Libdave 2026-10-02 N/A
Discord libdave before 1.2.0 did not reject an MLS Welcome message when the resulting group roster contained an unrecognized participant. An attacker in control of the DAVE signaling path (the voice gateway, or an equivalent position able to add, alter, or withhold signaling messages to a client) could cause affected clients to accept an unauthorized member into the end-to-end encrypted media session, compromising the confidentiality and integrity of audio and video.
CVE-2026-104356 1 Hascheksolutions 1 Pictshare 2026-10-02 5.9 Medium
PictShare before version 3.7.1 contains a weak randomness vulnerability where the getRandomString() function uses the non-cryptographic rand() PRNG to generate the delete_code authorization token in src/inc/core.php. Attackers can predict or infer the PRNG state to guess valid delete_code values and perform unauthorized deletion of hosted files without needing to read the code from the info endpoint.
CVE-2026-104123 1 Sourcecodester 1 Online Reviewer Management System 2026-10-02 7.3 High
A vulnerability was detected in SourceCodester Online Reviewer Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /reviewer_0/admins/assessments/activities/btn_functions.php?action=activity. The manipulation of the argument Title results in sql injection. The attack may be launched remotely. The exploit is now public and may be used.
CVE-2026-104053 2 Itsourcecode, Sourcecodester 2 Pet Shop Management System, Petshop Management System 2026-10-02 6.3 Medium
A vulnerability was identified in itsourcecode Pet Shop Management System 1.0. The impacted element is an unknown function of the file admin_reservefilter.php. Such manipulation of the argument filter leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
CVE-2026-104020 1 Amazon 1 Ion-python 2026-10-02 7.5 High
Uncontrolled recursion in the Ion reader in Amazon Ion Python before 0.15.0 might allow a remote unauthenticated actor to crash the application using the library, resulting in a denial of service, via a crafted, deeply nested Ion value. To remediate this issue, users should upgrade to version 0.15.0 or later.
CVE-2026-104002 1 Aws 1 Powertools-lambda-python 2026-10-02 5.3 Medium
A fail-open error handling issue within the data masking utility of Powertools for AWS Lambda (Python) might allow actors to read sensitive field values that the application intended to mask.  To remediate this issue, users should upgrade to version 3.35.0.
CVE-2026-103957 2026-10-02 6.2 Medium
Server-side request forgery in the OAuth2 discovery handling in Loom for AWS before 1.7.0 might allow an authenticated remote user to obtain the access token of another user of the deployment and to cause the application to issue requests to arbitrary internal network locations, via a crafted discovery document address supplied when registering a tool server or remote agent configured for delegated authentication. To remediate this issue, users should upgrade to version 1.7.0 or later.
CVE-2026-103764 1 Kvcache-ai 1 Mooncake 2026-10-02 9.8 Critical
Mooncake transfer engine before 0.3.13 contains an untrusted pointer dereference in ServerSession::readHeader that allows unauthenticated attackers to read and write arbitrary process memory via the TCP transport data port. Attackers can send a crafted SessionHeader with arbitrary addr and size values using READ or WRITE opcodes to disclose KV cache contents, prompts and secrets or corrupt memory toward code execution.
CVE-2026-103098 2 Geovision, Geovision Inc. 2 Gv-eye, Gv-eye 2026-10-02 7.5 High
Transmission of a sensitive key in the URL over an unencrypted HTTP connection.  The request is sent over HTTP rather than HTTPS, meaning the key is transmitted in plaintext across the network. An attacker with the ability to monitor network traffic could intercept the request and obtain the key
CVE-2026-102626 1 Limesurvey 1 Limesurvey 2026-10-02 N/A
An authenticated LimeSurvey Community Edition 7.4.0 user with the global Surveys: create permission can store a JavaScript-breaking value in the date_min attribute of a Date/Time question. When another user renders the affected question, LimeSurvey inserts the stored value into a single-quoted inline JavaScript literal without JavaScript-context encoding.