Live feed

CVE Feed

Last 30 days — 14,273 matching across all industries.

Showing 40

Auto-refreshupdated 6s ago
CVE-2026-18635
HIGH· 7.2

Velociraptor's VQL has a query() plugin which allows running a VQL query in a different org or user context. To be able to run as a different user, the calling user needs to have the IMPERSONATE permission (usually only given to administrators). Velociraptor versions prior to 0.77.2 evaluate this permission against the caller's org instead of against the target org. This allows an administrator in one org to impersonate another user in another org, in which they may not have the IMPERSONATE permission.

29d ago
CVE-2026-18129
HIGH· 8.1

Cleartext transmission of sensitive information in the Core of Ivanti Endpoint Manager before version 2024 SU7 allows a remote unauthenticated attacker in a MITM position to leak credentials for external SQL connections.

29d ago
CVE-2026-18127
HIGH· 7.7

External control of a filename in the Core of Ivanti Endpoint Manager before version 2024 SU7 allows a remote authenticated attacker full write control over an S3 bucket configured for session recording storage.

29d ago
CVE-2026-18125
HIGH· 7.5

An out-of-bounds read in the Agent of Ivanti Endpoint Manager before version 2024 SU7 allows a remote unauthenticated attacker to crash an agent service.

29d ago
CVE-2026-17535
MEDIUM· 6.2

Velociraptor's NTFS parsing library mishandles several out of bound and memory exhaustion bugs which may be triggered by maliciously crafted NTFS images. Typically Velociraptor's NTFS parser is used on live NTFS filesystems, limiting the opportunity of attackers corrupting the filesystem. However, in some applications (e.g.  dead disk forensics https://docs.velociraptor.app/docs/forensic/deaddisk/ ) Velociraptor may be used on untrusted NTFS image files.  If an attacker is able to inject maliciously corrupted NTFS Volumes they can cause a crash and a Denial of Service.

29d ago
CVE-2026-17061
CRITICAL· 10.0

A Deserialization of Untrusted Data vulnerability affecting SIMULIA Execution Engine from Release 2023 through Release 2026 could lead to an unauthenticated remote code execution.

29d ago
CVE-2023-54374
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54373
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54372
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54371
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54370
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54369
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54368
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54367
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2022-50974
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47995
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47994
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47993
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47992
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47991
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47990
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47989
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47988
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37265
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37264
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37263
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37262
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37261
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37260
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37259
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37258
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37257
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2026-73210
NONE

A Server-Side Request Forgery (SSRF) vulnerability existed in Lookyloo's PlaywrightCapture when the only_global_lookup option was enabled. PlaywrightCapture implements this option to prevent captures from accessing local, loopback, or otherwise non-public network resources. However, favicon retrieval was performed separately from the browser request-routing protections. Favicon URLs extracted from rendered HTML were resolved and subsequently fetched directly using an aiohttp.ClientSession. An attacker able to supply or control a web page processed by PlaywrightCapture could include a crafted favicon reference, for example pointing to a loopback address, private IP address, or another resource reachable only from the PlaywrightCapture host. When the page was processed, the favicon retrieval routine could issue an HTTP request to this destination despite only_global_lookup being enabled. This bypass could therefore be used to make the PlaywrightCapture host interact with internal network services that should not be reachable through a capture. Depending on the targeted service and its response, this could enable internal service discovery, access to internal resources, or interaction with HTTP endpoints available only from the capture infrastructure. The patch introduces a common URL validation routine and applies it to favicon retrieval. Direct non-global IP addresses, localhost, .local domains, malformed URLs, and other explicitly non-public destinations are rejected before the favicon request is performed. This fix is a complementary fix to CVE-2026-44439 - GCVE-0-2026-44439 - GHSA-687H-XW6F-Q2QW

29d ago
CVE-2026-51584
CRITICAL· 9.8

An issue in usememos v0.27.1 allows a remote attacker to achieve account takeover via the ssoCredentials branch of the SignIn handler in server/router/api/v1/auth_service.go, because SSO identity is matched only on an attacker-controllable identifier without binding to the IdP's stable subject claim.

29d ago
CVE-2026-51583
HIGH· 8.5

An issue in usememos through v0.30.0 allows a remote authenticated attacker to perform Server-Side Request Forgery (SSRF) via the Webhook validation mechanism in internal/webhook/validate.go, by setting a webhook target to an internal address.

29d ago
CVE-2026-48056
CRITICAL· 10.0

Streambert is a cross-platform Electron Desktop App to stream and download video content. Versions prior to 2.5.0 improperly validate executable paths supplied to the  run-download  IPC handler, allowing a compromised renderer process to execute arbitrary local binaries with the application’s privileges. Version 2.5.0 contains a patch.

29d ago
CVE-2026-48046
NONE

Streambert is a cross-platform Electron Desktop App to stream and download video content. Versions prior to 2.5.0 contain an unvalidated auto-updater URL vulnerability that allows a compromised renderer process to make the main process download and execute an arbitrary binary, resulting in remote code execution. Version 2.5.0 contains a patch.

29d ago
CVE-2026-46670
CRITICAL· 9.8

YesWiki is a wiki system written in PHP. Prior to version 4.6.4, an unauthenticated SQL injection in the Bazar form-import path (`FormManager::create()`) allows any unauthenticated visitor of a default YesWiki install to inject arbitrary SQL into an `INSERT` statement and read the full database, including `yeswiki_users.password` hashes. Version 4.6.4 fixes the issue.

29d ago
CVE-2026-19539
NONE

Authorization Bypass Through User-Controlled Key in the ticket management component in Roskus Prospero Flow CRM before 5.4.9 allows authenticated users of any company to read the full content (title, description, and attachments) of tickets belonging to another company, to hijack another company's tickets by reassigning their company_id, and to delete another company's tickets without any authorization check, via the ticket's numeric identifier, because the read and save operations retrieve the record without constraining the query to the authenticated user's company, and the delete controller type-hints a generic Illuminate\Http\Request instead of the TicketDeleteRequest that would enforce the required permission.

29d ago
CVE-2026-19434
NONE

Cross-site Scripting in the finding renderer in maalfer Pentestify before 2.3.1 allows authenticated users to execute arbitrary JavaScript in the application origin via HTML markup stored in a finding's severity field, which the frontend interpolates unescaped into class and style attributes when rendering the report.

29d ago
Feedback

How was this page?

Spotted something off, or have an idea? Let us know.

0/1000