Wed, Oct 04 · 09:01 PM CDTCVE-2017-12149
9.8/10 · Must read/watchNVDvuln
Summary
In Jboss Application Server as shipped with Red Hat Enterprise Application Platform 5.2, it was found that the doFilter method in the ReadOnlyAccessFilter of the HTTP Invoker does not restrict classes for which it performs deserialization and thus allowing an attacker to execute arbitrary code via crafted serialized da
CVECVE-2017-12149
SeverityCRITICAL
TypeUPDATED
PublishedWed, Oct 04 · 09:01 PM CDT
ModifiedThu, Aug 13 · 05:17 AM CDT
Tue, Feb 05 · 06:29 AM CSTCVE-2017-18362
9.8/10 · Must read/watchNVDvuln
Summary
ConnectWise ManagedITSync integration through 2017 for Kaseya VSA is vulnerable to unauthenticated remote commands that allow full direct access to the Kaseya VSA database. In February 2019, attackers have actively exploited this in the wild to download and execute ransomware payloads on all endpoints managed by the VS
CVECVE-2017-18362
SeverityCRITICAL
TypeUPDATED
PublishedTue, Feb 05 · 06:29 AM CST
ModifiedThu, Aug 13 · 05:17 AM CDT
Thu, May 31 · 06:29 PM CDTCVE-2018-11138
9.8/10 · Must read/watchNVDvuln
Summary
The '/common/download_agent_installer.php' script in the Quest KACE System Management Appliance 8.0.318 is accessible by anonymous users and can be abused to execute arbitrary commands on the system.
CVECVE-2018-11138
SeverityCRITICAL
TypeUPDATED
PublishedThu, May 31 · 06:29 PM CDT
ModifiedThu, Aug 13 · 05:17 AM CDT
Fri, Dec 21 · 11:29 PM CSTCVE-2018-19323
9.8/10 · Must read/watchNVDvuln
Summary
The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 exposes functionality to read and write Machine Specific Registers (MSRs).
CVECVE-2018-19323
SeverityCRITICAL
TypeUPDATED
PublishedFri, Dec 21 · 11:29 PM CST
ModifiedThu, Aug 13 · 05:17 AM CDT
Wed, Oct 28 · 06:15 PM CDTCVE-2018-19949
9.8/10 · Must read/watchNVDvuln
Summary
If exploited, this command injection vulnerability could allow remote attackers to run arbitrary commands. QNAP has already fixed the issue in the following QTS versions. QTS 4.4.2.1231 on build 20200302; QTS 4.4.1.1201 on build 20200130; QTS 4.3.6.1218 on build 20200214; QTS 4.3.4.1190 on build 20200107; QTS 4.3.3.116
CVECVE-2018-19949
SeverityCRITICAL
TypeUPDATED
PublishedWed, Oct 28 · 06:15 PM CDT
ModifiedThu, Aug 13 · 05:17 AM CDT
Tue, Feb 05 · 06:29 AM CSTCVE-2018-20753
9.8/10 · Must read/watchNVDvuln
Summary
Kaseya VSA RMM before R9.3 9.3.0.35, R9.4 before 9.4.0.36, and R9.5 before 9.5.0.5 allows unprivileged remote attackers to execute PowerShell payloads on all managed devices. In January 2018, attackers actively exploited this vulnerability in the wild.
CVECVE-2018-20753
SeverityCRITICAL
TypeUPDATED
PublishedTue, Feb 05 · 06:29 AM CST
ModifiedThu, Aug 13 · 05:17 AM CDT
Thu, Jul 19 · 05:29 PM CDTCVE-2018-7602
9.8/10 · Must read/watchNVDvuln
Summary
A remote code execution vulnerability exists within multiple subsystems of Drupal 7.x and 8.x. This potentially allows attackers to exploit multiple attack vectors on a Drupal site, which could result in the site being compromised. This vulnerability is related to Drupal core - Highly critical - Remote Code Execution -
CVECVE-2018-7602
SeverityCRITICAL
TypeUPDATED
PublishedThu, Jul 19 · 05:29 PM CDT
ModifiedThu, Aug 13 · 05:17 AM CDT
Thu, Oct 11 · 03:29 PM CDTCVE-2018-9206
9.8/10 · Must read/watchNVDvuln
Summary
Unauthenticated arbitrary file upload vulnerability in Blueimp jQuery-File-Upload <= v9.22.0
CVECVE-2018-9206
SeverityCRITICAL
TypeUPDATED
PublishedThu, Oct 11 · 03:29 PM CDT
ModifiedWed, Aug 12 · 09:17 PM CDT
Fri, Mar 20 · 05:16 PM CDTCVE-2025-15608
9.8/10 · Must read/watchNVDvuln
Summary
This vulnerability in AX53 v1, AX55 v4 and AX55 v4.6 results from insufficient input sanitization in the device’s probe handling logic, where unvalidated parameters can trigger a stack-based buffer overflow that causes the affected service to crash and, under specific conditions, may enable remote code execution throug
CVECVE-2025-15608
SeverityCRITICAL
TypeUPDATED
PublishedFri, Mar 20 · 05:16 PM CDT
ModifiedWed, Aug 12 · 08:17 PM CDT
Sat, Mar 28 · 11:16 AM CDTCVE-2025-9497
9.8/10 · Must read/watchNVDvuln
Summary
Use of Hard-coded Credentials vulnerability in Microchip Time Provider 4100 allows Malicious Manual Software Update.This issue affects Time Provider 4100: before 2.5.0.
CVECVE-2025-9497
SeverityCRITICAL
TypeUPDATED
PublishedSat, Mar 28 · 11:16 AM CDT
ModifiedWed, Aug 12 · 04:32 PM CDT
Wed, Mar 04 · 09:15 AM CSTCVE-2026-27446
9.8/10 · Must read/watchNVDvuln
Summary
Missing Authentication for Critical Function (CWE-306) vulnerability in Apache Artemis, Apache ActiveMQ Artemis. An unauthenticated remote attacker can use the Core protocol to force a target broker to establish an outbound Core federation connection to an attacker-controlled rogue broker. This could potentially result
CVECVE-2026-27446
SeverityCRITICAL
TypeUPDATED
PublishedWed, Mar 04 · 09:15 AM CST
ModifiedWed, Aug 12 · 12:18 PM CDT
Wed, Mar 18 · 12:16 AM CDTCVE-2026-27459
9.8/10 · Must read/watchNVDvuln
Summary
pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set_cookie_generate_callback` returned a cookie value greater than 256 bytes, pyOpenSSL would overflow an OpenSSL provided buffer. Starting in version 26.0.0, cookie values t
CVECVE-2026-27459
SeverityCRITICAL
TypeUPDATED
PublishedWed, Mar 18 · 12:16 AM CDT
ModifiedWed, Aug 12 · 12:18 PM CDT
Wed, Feb 25 · 03:16 AM CSTCVE-2026-27606
9.8/10 · Must read/watchNVDvuln
Summary
Rollup is a module bundler for JavaScript. Versions prior to 2.80.0, 3.30.0, and 4.59.0 of the Rollup module bundler (specifically v4.x and present in current source) is vulnerable to an Arbitrary File Write via Path Traversal. Insecure file name sanitization in the core engine allows an attacker to control output file
CVECVE-2026-27606
SeverityCRITICAL
TypeUPDATED
PublishedWed, Feb 25 · 03:16 AM CST
ModifiedWed, Aug 12 · 12:18 PM CDT
Fri, Mar 06 · 07:16 AM CSTCVE-2026-28802
9.8/10 · Must read/watchNVDvuln
Summary
Authlib is a Python library which builds OAuth and OpenID Connect servers. From version 1.6.5 to before version 1.6.7, previous tests involving passing a malicious JWT containing alg: none and an empty signature was passing the signature verification step without any changes to the application code when a failure was e
CVECVE-2026-28802
SeverityCRITICAL
TypeUPDATED
PublishedFri, Mar 06 · 07:16 AM CST
ModifiedWed, Aug 12 · 12:18 PM CDT
Fri, Mar 06 · 07:16 PM CSTCVE-2026-29063
9.8/10 · Must read/watchNVDvuln
Summary
Immutable.js provides many Persistent Immutable data structures. Prior to versions 3.8.3, 4.3.7, and 5.1.5, Prototype Pollution is possible in immutable via the mergeDeep(), mergeDeepWith(), merge(), Map.toJS(), and Map.toObject() APIs. This issue has been patched in versions 3.8.3, 4.3.7, and 5.1.5.
CVECVE-2026-29063
SeverityCRITICAL
TypeUPDATED
PublishedFri, Mar 06 · 07:16 PM CST
ModifiedWed, Aug 12 · 12:18 PM CDT
Tue, Apr 07 · 04:16 PM CDTCVE-2026-33815
9.8/10 · Must read/watchNVDvuln
Summary
Memory-safety vulnerability in github.com/jackc/pgx/v5.
CVECVE-2026-33815
SeverityCRITICAL
TypeUPDATED
PublishedTue, Apr 07 · 04:16 PM CDT
ModifiedWed, Aug 12 · 12:18 PM CDT
Tue, Apr 07 · 04:16 PM CDTCVE-2026-33816
9.8/10 · Must read/watchNVDvuln
Summary
Memory-safety vulnerability in github.com/jackc/pgx/v5.
CVECVE-2026-33816
SeverityCRITICAL
TypeUPDATED
PublishedTue, Apr 07 · 04:16 PM CDT
ModifiedWed, Aug 12 · 12:18 PM CDT
Fri, Feb 20 · 09:19 PM CSTCVE-2026-25896
9.3/10 · Must read/watchNVDvuln
Summary
fast-xml-parser allows users to validate XML, parse XML to JS object, or build XML from JS object without C/C++ based libraries and no callback. From 4.1.3to before 5.3.5, a dot (.) in a DOCTYPE entity name is treated as a regex wildcard during entity replacement, allowing an attacker to shadow built-in XML entities (&
CVECVE-2026-25896
SeverityCRITICAL
TypeUPDATED
PublishedFri, Feb 20 · 09:19 PM CST
ModifiedWed, Aug 12 · 12:18 PM CDT
Mon, Jun 16 · 04:15 PM CDTCVE-2025-49794
9.1/10 · Must read/watchNVDvuln
Summary
A use-after-free vulnerability was found in libxml2. This issue occurs when parsing XPath elements under certain circumstances when the XML schematron has the schema elements. This flaw allows a malicious actor to craft a malicious XML document used as input for libxml, resulting in the program's crash using libxml or
CVECVE-2025-49794
SeverityCRITICAL
TypeUPDATED
PublishedMon, Jun 16 · 04:15 PM CDT
ModifiedWed, Aug 12 · 09:17 PM CDT
Mon, Jun 16 · 04:15 PM CDTCVE-2025-49796
9.1/10 · Must read/watchNVDvuln
Summary
A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML file can trigger a memory corruption issue. This flaw allows an attacker to craft a malicious XML input file that can lead libxml to crash, resulting in a denial of service or other possible undefined behavior due to sensitive
CVECVE-2025-49796
SeverityCRITICAL
TypeUPDATED
PublishedMon, Jun 16 · 04:15 PM CDT
ModifiedWed, Aug 12 · 09:17 PM CDT
Mon, Mar 16 · 06:16 PM CDTCVE-2026-27962
9.1/10 · Must read/watchNVDvuln
Summary
Authlib is a Python library which builds OAuth and OpenID Connect servers. Prior to version 1.6.9, a JWK Header Injection vulnerability in authlib's JWS implementation allows an unauthenticated attacker to forge arbitrary JWT tokens that pass signature verification. When key=None is passed to any JWS deserialization fu
CVECVE-2026-27962
SeverityCRITICAL
TypeUPDATED
PublishedMon, Mar 16 · 06:16 PM CDT
ModifiedWed, Aug 12 · 12:18 PM CDT
Fri, Mar 20 · 11:16 PM CDTCVE-2026-33186
9.1/10 · Must read/watchNVDvuln
Summary
gRPC-Go is the Go language implementation of gRPC. Versions prior to 1.79.3 have an authorization bypass resulting from improper input validation of the HTTP/2 `:path` pseudo-header. The gRPC-Go server was too lenient in its routing logic, accepting requests where the `:path` omitted the mandatory leading slash (e.g.,
CVECVE-2026-33186
SeverityCRITICAL
TypeUPDATED
PublishedFri, Mar 20 · 11:16 PM CDT
ModifiedWed, Aug 12 · 12:18 PM CDT
Mon, Mar 23 · 06:16 AM CDTCVE-2026-4599
9.1/10 · Must read/watchNVDvuln
Summary
Versions of the package jsrsasign from 7.0.0 and before 11.1.1 are vulnerable to Incomplete Comparison with Missing Factors via the getRandomBigIntegerZeroToMax and getRandomBigIntegerMinToMax functions in src/crypto-1.1.js; an attacker can recover the private key by exploiting the incorrect compareTo checks that accep
CVECVE-2026-4599
SeverityCRITICAL
TypeUPDATED
PublishedMon, Mar 23 · 06:16 AM CDT
ModifiedWed, Aug 12 · 12:19 PM CDT
Wed, Feb 26 · 07:00 AM CSTCVE-2022-49159
8.8/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Implement ref count for SRB The timeout handler and the done function are racing. When qla2x00_async_iocb_timeout() starts to run it can be preempted by the normal response path (via the firmware?). qla24xx_async_gpsc_sp_done() releases
CVECVE-2022-49159
SeverityHIGH
TypeUPDATED
PublishedWed, Feb 26 · 07:00 AM CST
ModifiedThu, Aug 13 · 12:17 AM CDT
Mon, Mar 23 · 06:16 AM CDTCVE-2026-4601
8.7/10 · Worth your timeNVDvuln
Summary
Versions of the package jsrsasign before 11.1.1 are vulnerable to Missing Cryptographic Step via the KJUR.crypto.DSA.signWithMessageHash process in the DSA signing implementation. An attacker can recover the private key by forcing r or s to be zero, so the library emits an invalid signature without retrying, and then s
CVECVE-2026-4601
SeverityHIGH
TypeUPDATED
PublishedMon, Mar 23 · 06:16 AM CDT
ModifiedWed, Aug 12 · 12:19 PM CDT