CVE-2026-44193 - OPNsense: RCE via XMLRPC endpoint using `opnsense.restore_config_section` method
Autor Mai 14, 2026 0 0
CVE-2026-42463 - SQLBot: Unauthorized Access Vulnerability
Autor Mai 14, 2026 0 0
CVE-2026-40327 - Apache Struts Remote Code Execution Vulnerability
Autor Mai 14, 2026 0 0
CVE-2026-40328 - Apache HTTP Server XML External Entity (XXE) Injection
Autor Mai 14, 2026 0 0
CVE-2026-32993 - Apache HTTP Server HTTP Header Injection
Autor Mai 14, 2026 0 0
CVE-2026-44437 - Angular SSR: Open Redirect and Request Steering via Encoded X-Forwarded-Prefix
Autor Mai 14, 2026 0 0
CVE-2026-44423 - ShellHub: Cross-tenant IDOR in `GET /api/sessions/:uid` discloses SSH session data
Autor Mai 14, 2026 0 0
CVE-2026-44439 - LookyLoo - PlaywrightCapture permits access to local files and internal network resources during page c...
Autor Mai 14, 2026 0 0
CVE-2026-44426 - ShellHub: Cross-tenant IDOR in `GET /api/namespaces/:tenant` via API Key bypasses membership check
Autor Mai 14, 2026 0 0
CVE-2026-44425 - ShellHub: Crash-DoS via field injection in filter and sort-by parameters
Autor Mai 14, 2026 0 0
CVE-2026-44424 - ShellHub: Cross-tenant IDOR in `GET /api/devices/:uid` discloses device data of any namespace
Autor Mai 14, 2026 0 0
CVE-2026-44448 - ERPNext: Unauthorised Document modification due to missing validation
Autor Mai 14, 2026 0 0

