Live feed

CVE Feed

Last 30 days — 14,315 matching across all industries.

Showing 40

Auto-refreshupdated 6s ago
CVE-2026-73066
NONE

Tesseract is an open source OCR engine. Prior to 5.5.3, a crafted .traineddata LSTM model component loaded through Tesseract's deserializer can cause an unchecked signed integer multiplication in Convolve::DeSerialize in src/lstm/convolve.cpp to wrap the convolution output-channel count, undersizing the forward-pass output buffer while writes use the unwrapped element count and causing a heap out-of-bounds write during OCR recognition. This issue is fixed in version 5.5.3.

29d ago
CVE-2026-72925
MEDIUM· 6.1

SWC is a TypeScript / JavaScript compiler written in Rust. Prior to @swc/html 1.15.47-nightly-20260729.1 and swc_html_minifier 59.0.0, the minifyJson processing in crates/swc_html_minifier/src/lib.rs parsed and serialized attacker-controlled JSON in application/json and application/ld+json script elements without the escape_json_for_html_script behavior to re-escape less-than signs, allowing a closing script sequence to terminate the element early and execute script in the generated page's origin. This issue is fixed in @swc/html 1.15.47-nightly-20260729.1 and swc_html_minifier 59.0.0.

29d ago
CVE-2026-72922
HIGH· 8.2

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.70, AutoGPT's autogpt_platform/backend/backend/api/features/integrations/router.py webhook_ingress_generic route selected get_webhook_manager(provider) from the untrusted provider URL segment without verifying webhook.provider, allowing a request to /compass/webhooks/{webhook_id}/ingress to use CompassWebhookManager's inherited no-op BaseWebhooksManager.verify_signature instead of GenericWebhooksManager.verify_signature, bypass X-Webhook-Secret for a configured secret_token, and execute a generic webhook graph as its owner. This issue is fixed in version 0.6.70.

29d ago
CVE-2026-72921
HIGH· 8.1

SeaweedFS is a distributed storage system. Prior to 4.24, the weed/server/filer_server_handlers.go allowed_prefixes authorization check used strings.HasPrefix on raw path strings, so a filer JWT scoped to /tenant1 also authorized sibling paths such as /tenant1234, /tenant1-old, and /tenant1backup, enabling cross-tenant reads and writes with a valid scoped token. This issue is fixed in version 4.24.

29d ago
CVE-2026-72920
CRITICAL· 9.8

SeaweedFS is a distributed storage system. Prior to 4.24, the filer registers the SeaweedIdentityAccessManagement gRPC service without mandatory authentication when jwt.filer_signing.key is unset, allowing any client that can reach the filer gRPC port to invoke CreateUser, CreateAccessKey, PutPolicy, and related IAM RPCs to mint credentials and gain S3 administrative control. This issue is fixed in versions 4.24.

29d ago
CVE-2026-47702
NONE

TypeBot is a chatbot builder tool. In version 3.16.1, API tokens (bearer credentials used to authenticate against the builder API) are stored in the database as cleartext strings. An attacker who gains read access to the database (e.g., via SQL injection, backup exposure, or insider access) can extract all API tokens and impersonate any user without requiring a password or multi-factor authentication. Version 3.17.0 fixes the issue.

29d ago
CVE-2026-18860
HIGH· 8.7

Velociraptor allows multi-tenant deployments named "Orgs". By default Velociraptor, uses the ROOT org, but users can create child orgs for other tenants within the same deployment. Users can have different permissions in each org. To manage Orgs, Velociraptor usually examines the ORG_ADMIN permission on the ROOT org. This issue results from the Velociraptor server allowing for the deletion of Orgs by incorrectly checking the ORG_ADMIN permission of callers within the calling ORG instead of the ROOT org. However, Org admins of child orgs were able to add this permission to their ACL token within their own org. This allows an administrator in a child org, which is not also an administrator in the ROOT org, to delete other orgs.

29d ago
CVE-2026-18636
MEDIUM· 6.8

The Velociraptor gRPC API has a VFSGetBuffer endpoint which allows reading files from the datastore. To prevent users from reading sensitive files or accessing other orgs, the requested path is prefix checked against a list of denied prefixes. This prefix check can be bypassed allowing a user to access usually denied files. If the user has read permission in the ROOT org, this allows access to other orgs, in which the user may not have permission.

29d ago
CVE-2026-18635
HIGH· 7.2

Velociraptor's VQL has a query() plugin which allows running a VQL query in a different org or user context. To be able to run as a different user, the calling user needs to have the IMPERSONATE permission (usually only given to administrators). Velociraptor versions prior to 0.77.2 evaluate this permission against the caller's org instead of against the target org. This allows an administrator in one org to impersonate another user in another org, in which they may not have the IMPERSONATE permission.

29d ago
CVE-2026-18129
HIGH· 8.1

Cleartext transmission of sensitive information in the Core of Ivanti Endpoint Manager before version 2024 SU7 allows a remote unauthenticated attacker in a MITM position to leak credentials for external SQL connections.

29d ago
CVE-2026-18127
HIGH· 7.7

External control of a filename in the Core of Ivanti Endpoint Manager before version 2024 SU7 allows a remote authenticated attacker full write control over an S3 bucket configured for session recording storage.

29d ago
CVE-2026-18125
HIGH· 7.5

An out-of-bounds read in the Agent of Ivanti Endpoint Manager before version 2024 SU7 allows a remote unauthenticated attacker to crash an agent service.

29d ago
CVE-2026-17535
MEDIUM· 6.2

Velociraptor's NTFS parsing library mishandles several out of bound and memory exhaustion bugs which may be triggered by maliciously crafted NTFS images. Typically Velociraptor's NTFS parser is used on live NTFS filesystems, limiting the opportunity of attackers corrupting the filesystem. However, in some applications (e.g.  dead disk forensics https://docs.velociraptor.app/docs/forensic/deaddisk/ ) Velociraptor may be used on untrusted NTFS image files.  If an attacker is able to inject maliciously corrupted NTFS Volumes they can cause a crash and a Denial of Service.

29d ago
CVE-2026-17061
CRITICAL· 10.0

A Deserialization of Untrusted Data vulnerability affecting SIMULIA Execution Engine from Release 2023 through Release 2026 could lead to an unauthenticated remote code execution.

29d ago
CVE-2023-54374
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54373
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54372
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54371
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54370
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54369
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54368
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2023-54367
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2022-50974
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47995
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47994
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47993
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47992
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47991
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47990
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47989
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2021-47988
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37265
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37264
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37263
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37262
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37261
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37260
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37259
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37258
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
CVE-2020-37257
NONE

Rejected reason: This CVE ID has been rejected.

29d ago
Feedback

How was this page?

Spotted something off, or have an idea? Let us know.

0/1000