搜尋
872 筆結果- CRITICAL9.1CVE-2026-46621Yamcs Vulnerable to Authenticated Remote Code Execution (RCE) via Jython Algorithm Code Injection
- CRITICAL9.8CVE-2026-46562Yamcs Vulnerable to Remote Code Execution via Mission Database algorithm override
- CRITICAL9.1CVE-2026-44632Yamcs Vulnerable to Server-Side Code Injection (RCE) via Janino Expression Engine in `JavaExprAlgorithmExecutionFactory`
- CRITICAL9.6CVE-2026-2587GlassFish's gadget handler is vulnerable to RCE
- CRITICAL9.8CVE-2026-45083EPSS 0.05%Goobi viewer - Core: Unauthenticated Solr Streaming Expression Proxy
- CRITICAL9.1CVE-2026-33117EPSS 0.03%Security feature bypass vulnerability in Azure Key Vault Keys library for Java
- CRITICAL9.1CVE-2026-43515EPSS 0.10%Apache Tomcat - Security constraints not correctly applied
- CRITICAL9.8CVE-2026-43512EPSS 0.14%Apache Tomcat - Digest authenticator will authenticate any unknown user
- CRITICAL9.8CVE-2026-41293EPSS 0.25%Apache Tomcat - HTTP/2 request headers not validated
- CRITICAL9.1CVE-2026-45091EPSS 0.01%sealed-env: TOTP secret embedded in unseal token payload (enterprise mode)
- CRITICAL9.1CVE-2026-27478EPSS 0.03%Unity Catalog has a JWT Issuer Validation Bypass tht Allows Complete User Impersonation
- CRITICAL9.1CVE-2026-40982EPSS 0.14%Spring Cloud Config vulnerable to Path Traversal
- CRITICAL9.1CVE-2026-42555EPSS 0.30%Valtimo has SpEL injection via StandardEvaluationContext that allows Remote Code Execution by admin users
- CRITICAL9.1CVE-2026-40010EPSS 0.11%Apache Wicket has a Session Fixation issue
- CRITICAL9.0CVE-2026-44221EPSS 0.01%ArcadeDB vulnerable to cross-database authorization bypass and unsecured newly-created databases
- CRITICAL10.0CVE-2026-7411EPSS 0.13%Eclipse BaSyx Java Server SDK vulnerable to Path Traversal
- CRITICAL9.0CVE-2026-41901EPSS 0.10%Sandboxed Thymeleaf expressions vulnerable to improper recognition of unauthorized syntax patterns
- CRITICAL9.1CVE-2026-41258EPSS 0.06%OpenMRS has Stored Velocity SSTI to RCE via ConceptReferenceRange
- CRITICAL9.9CVE-2026-42812EPSS 0.12%Apache Polaris has an Improper Input Validation issue
- CRITICAL9.9CVE-2026-42811EPSS 0.11%Apache Polaris has an Improper Input Validation issue
- CRITICAL9.9CVE-2026-42810EPSS 0.11%Apache Polaris has an Improper Input Validation Issue
- CRITICAL9.9CVE-2026-42809EPSS 0.10%Apache Polaris has an Improper Input Validation Issue
- CRITICAL9.8CVE-2026-42027EPSS 0.64%Apache OpenNLP ExtensionLoader Vulnerable to Arbitrary Class Instantiation via Model Manifest
- CRITICAL9.1CVE-2026-40682EPSS 0.11%Apache OpenNLP DictionaryEntryPersistor Vulnerable to XML External Entity (XXE) via Unsanitized Dictionary Parsing
- CRITICAL9.8CVE-2026-42779EPSS 0.08%Apache MINA vulnerable to Deserialization of Untrusted Data (CVE-2026-41635 Incomplete Fix)
第 1 / 35 頁下一頁 →