🔔 Premium Features
🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-86522 Improper Output Neutralization for Logs vulnerability in team-alembic AshAuthentication allows an unauthenticated attacker to forge application log en... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-81637 Insufficient Session Expiration vulnerability in team-alembic AshAuthentication allows an attacker who obtains a victim's OAuth2 state value to r... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-82761 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in team-alembic AshAuthentication allows an attacker holding a leaked magic link to re... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-82685 Authorization Bypass Through User-Controlled Key vulnerability in team-alembic AshAuthentication allows an authenticated attacker to overwrite and con... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-82760 Inefficient Algorithmic Complexity vulnerability in team-alembic AshAuthentication allows an unauthenticated attacker to exhaust CPU and memory via an... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-82759 Use of a One-Way Hash with a Predictable Salt vulnerability in team-alembic AshAuthentication allows readers of the audit store to recover the client ... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-82723 Insertion of Sensitive Information into Log File vulnerability in team-alembic AshAuthentication allows disclosure of user password digests to readers... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-53679 No description available | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-11874 No description available | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-53681 No description available | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-92904 A flaw was found in the foreman_remote_execution plugin's template invocations controller. The show_template_invocation_by_host action resolves t... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-92932 In the MISP sachertortephp library, the Xml::build() static method in lib/Cake/Utility/Xml.php contains a logic error in the conditional that gates ne... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-92921 admin3 through 3.0.0 stores account passwords using single-round MD5 with only the username as salt and no key derivation function. Attackers with dat... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-92920 admin3 through 3.0.0 fails to invalidate existing sessions when disabling a user account, allowing attackers to retain authenticated access with origi... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-92919 admin3 through 3.0.0 fails to sanitize client-supplied filenames in the upload handler, allowing authenticated users to write files outside the storag... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-92918 admin3 through 3.0.0 persists user session tokens in the audit log event body when publishing UserLoggedIn domain events. Attackers with log:view perm... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-92925 A flaw was found in Redis community. The cluster bus packet parser, responsible for handling PING, PONG, and MEET packets, fails to properly validate ... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-81481 Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path ... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-81480 Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Stack-based Buffer Overflow vulnerability. A high privileged attacker wit... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-92860 A security flaw has been discovered in rcourtman Pulse up to 6.0.4/6.1.0-rc.4. Affected by this issue is the function fmt.Sprintf of the file /api/sec... | CRITICAL | ????? | ????? | NVD | 5 days ago |