CyberSectr
Menü

CVE Veritabanı

Teknik veriler NVD, CISA KEV ve EPSS kaynaklarından otomatik senkronize edilir. Editör onaylı Türkçe açıklamalar İncelendi etiketiyle işaretlenir.

26371

Takip Edilen CVE

3128

Kritik

1331

CISA KEV

26371 sonuç bulundu.

CVE-2026-67238Bilinmiyor

RabbitMQ is a messaging and streaming broker. Prior to versions 4.2.7 and 4.3.1, rabbit_pid_codec:decompose_from_binary/1 parses a caller-supplied ETF-encoded binary and calls binary_to_atom(Node, utf8) on the node-name field. It is reached from rabbit_volatile_queue:pid_from_name/2, which is invoked for any queue name / routing key beginning amq.rabbitmq.reply-to.. The CandidateNodes membership check happens after the atom is created, and the surrounding try/catch cannot reclaim atoms (they are never GC'd). binary_to_existing_atom is not used. Any authenticated AMQP client can crash the entire Erlang VM (all vhosts, all connections) with ~1M cheap requests. Preconditions include Authenticated AMQP 0-9-1 connection to any vhost No per-connection rate limit low enough to make ~1M operations infeasible. This issue is fixed in versions 4.2.7 and 4.3.1.

CVE-2026-68490Bilinmiyor

Incorrect permission assignment allows local users to obtain sensitive CalDAV/CardDAV information belonging to other accounts.

CVE-2026-68492Bilinmiyor

An untrusted search path vulnerability in Plesk from 18.0.34 before 18.0.80.8 and 18.0.81 before 18.0.81.1 allows remote authenticated users to execute arbitrary code as root via the "Plesk RESTful API" extension from 2.4.2 before 2.4.7.

CVE-2026-66070Bilinmiyor

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.17, 4.0.22, 4.1.13, and 4.2.6, match_origin/1 returned the bare reflected Origin and allowed credentials even when the wildcard "" was configured, so the response echoed the attacker's origin together with Access-Control-Allow-Credentials. The affected code is rabbit_mgmt_cors.erl. When the management plugin is configured with a wildcard CORS origin (cors_allow_origins = ""), the handler reflects the request Origin back in Access-Control-Allow-Origin and also sends Access-Control-Allow-Credentials: true. A malicious web page that a signed-in administrator visits can then use that administrator's cached HTTP Basic credentials to issue authenticated, state-changing requests to the management API. Preconditions include The management plugin is configured with the wildcard cors_allow_origins = "*", which is an explicit operator misconfiguration A target administrator has a cached HTTP Basic-auth session in the browser. This issue is fixed in versions 3.13.17, 4.0.22, 4.1.13, and 4.2.6.

CVE-2026-96770Bilinmiyor

All published s2s-proxy versions through 0.2.2 are affected. In versions 0.1.16 through 0.2.2, TLS server listeners use Go's RequireAnyClientCert mode when skipCAVerification is false. This mode checks that the client holds the certificate's private key but does not verify the certificate against the configured CA. An attacker can therefore use a self-signed certificate and key to establish a TLS and yamux connection, then invoke RPCs allowed by the proxy's configuration and Temporal credentials. No certificate or private key trusted by the deployment, and no Temporal credential, is required.

CVE-2026-96872Bilinmiyor

Improper handling of insufficient permissions or privileges vulnerability in The Wikimedia Foundation Mediawiki - WikiLambda Extension on Linux, MacOS, and Windows allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Mediawiki - WikiLambda Extension: before 1.47.0.

CVE-2026-96541Yüksek

A denial-of-service flaw was found in gnome-remote-desktop. An unauthenticated remote attacker can open RDP connections without completing the handshake and retain the connection-throttling slots indefinitely because no pre-authentication handshake deadline is enforced. By exhausting the global connection limit, an attacker can prevent new RDP clients from connecting until a holding socket is closed.

7.5
CVE-2026-96545Orta

An out-of-bounds heap read flaw was found in GIMP's TIM image loader. When a user opens a crafted 4bpp TIM image that causes promotion to an RGBA layer, the file-tim plug-in allocates an undersized row buffer but processes it using the larger RGBA row size. This can copy adjacent heap contents into the decoded image and may crash the plug-in.

4.4
CVE-2026-96546Düşük

A one-byte out-of-bounds heap read flaw was found in GIMP's uncompressed DDS image loader. When a user opens an uncompressed DDS image, the file-dds plug-in performs an unconditional one-byte look-ahead after processing the final pixel. This may cause the plug-in to crash if the byte immediately following the pixel buffer is inaccessible; no information disclosure or code execution has been demonstrated.

2.5
CVE-2026-96548Orta

A flaw has been found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. This affects an unknown part of the file ssm_pro/src/main/resources/jdbc.properties. This manipulation causes hard-coded credentials. It is possible to initiate the attack remotely. The attack's complexity is rated as high. It is indicated that the exploitability is difficult. The exploit has been published and may be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The project was informed of the problem early through an issue report but has not responded yet.

5.6
CVE-2026-96549Düşük

A vulnerability has been found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. This vulnerability affects unknown code of the file ssm_pro/src/main/java/cn/sfturing/service/impl/CommonUserServiceImpl.java. Such manipulation leads to cleartext storage of sensitive information. The attack can only be performed from a local environment. The exploit has been disclosed to the public and may be used. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available. The project was informed of the problem early through an issue report but has not responded yet.

3.3
CVE-2026-95600Orta

Unauthenticated Sensitive Data Exposure in TrustedLogin Connector <= 2.0.3 versions.

5.3
CVE-2026-95601Kritik

Unauthenticated SQL Injection in Product Filter by WBW <= 3.1.7 versions.

9.3
CVE-2026-95602Orta

Authorization Bypass Through User-Controlled Key vulnerability in YITH YITH WooCommerce Request A Quote allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects YITH WooCommerce Request A Quote: from n/a before 4.46.1.

6.5
CVE-2026-95603Yüksek

Shop manager PHP Object Injection in Reycob Product Import Export <= 2.3.0 versions.

7.2
CVE-2026-95604Yüksek

Unauthenticated Broken Access Control in Loops & Logic <= 4.2.4 versions.

7.5
CVE-2026-95528Yüksek

Unauthenticated Cross Site Scripting (XSS) in Core Web Vitals & PageSpeed Booster <= 1.0.31 versions.

7.1
CVE-2026-95529Yüksek

Unauthenticated Cross Site Scripting (XSS) in Calculated Fields Form <= 5.5.1.1 versions.

7.1
CVE-2026-95530Orta

Subscriber Cross Site Scripting (XSS) in PixelYourSite – Your smart PIXEL (TAG) Manager <= 11.4.1 versions.

6.5
CVE-2026-95586Orta

Contributor Cross Site Scripting (XSS) in Ultimate Addons for Contact Form 7 <= 3.5.50 versions.

6.5
CVE-2026-95590Yüksek

Subscriber SQL Injection in Tainacan <= 1.2.0 versions.

7.1
CVE-2026-95592Orta

Unauthenticated Insecure Direct Object References (IDOR) in Team <= 6.0.0 versions.

5.3
CVE-2026-95593Yüksek

Editor SQL Injection in Ultimeter <= 3.0.8 versions.

7.6
CVE-2026-95514Orta

Unauthenticated Bypass Vulnerability in Netgsm <= 2.10.0 versions.

5.3
CVE-2026-95515Yüksek

Unauthenticated Cross Site Scripting (XSS) in Ninja Forms <= 3.15.3 versions.

7.1
CVE-2026-95522Yüksek

Shop manager SQL Injection in Easy Digital Downloads <= 3.7.0 versions.

7.6
CVE-2026-95523Orta

Subscriber Bypass Vulnerability in WP User Frontend <= 4.3.11 versions.

6.5
CVE-2026-95524Orta

Unauthenticated Bypass Vulnerability in WP User Frontend <= 4.3.11 versions.

5.3
CVE-2026-95525Orta

Subscriber Arbitrary File Deletion in WP User Frontend <= 4.3.11 versions.

6.5
CVE-2026-95527Orta

Unauthenticated Broken Access Control in Conekta Payment Gateway <= 6.2.4 versions.

6.5