863 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2026-33006
Apache HTTP Server Web
4.8
MEDIUM
EPSS
0.1%
2026 CWE-208 1 PoC

A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows a bypass of Digest authentication by a remote attacker. Users are recommended to upgrade to version 2.4.67, which fixes this issue.

CVE-2026-1151
mpay General
4.8
MEDIUM
EPSS
0.0%
2026 CWE-79 1 PoC

A weakness has been identified in technical-laohu mpay up to 1.2.4. The affected element is an unknown function of the component User Center. This manipulation of the argument Nickname causes cross site scripting. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.

CVE-2026-1417
GPAC General
4.8
MEDIUM
EPSS
0.0%
2026 CWE-476 1 PoC

A weakness has been identified in GPAC up to 2.4.0. Affected by this issue is the function dump_isom_rtp of the file applications/mp4box/filedump.c. This manipulation causes null pointer dereference. The attack needs to be launched locally. The exploit has been made available to the public and could be used for attacks. Patch name: f96bd57c3ccdcde4335a0be28cd3e8fe296993de. Applying a patch is the recommended action to fix this issue.

CVE-2026-1858
wget2 General
4.8
MEDIUM
EPSS
0.0%
2026 CWE-20 1 PoC

wget2 accepts a server certificate with incorrect Key Usage (KU) or Extended Key Usage (EKU). If the attackers compromise a certificate (with the associated private key) issued for a different purpose, they may be able to reuse it for TLS server authentication.

CVE-2026-3407
yosys General
4.8
MEDIUM
EPSS
0.0%
2026 CWE-122 1 PoC

A vulnerability was determined in YosysHQ yosys up to 0.62. This affects the function Yosys::RTLIL::Const::set of the file kernel/rtlil.h of the component BLIF File Parser. This manipulation causes heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized. Applying a patch is the recommended action to fix this issue. It appears that the issue is not reproducible all the time.

CVE-2026-25616
Blesta General ⚡ nuclei
4.7
MEDIUM
EPSS
2.5%
2026 CWE-79 1 PoC

Blesta 3.x through 5.x before 5.13.3 mishandles input validation, aka CORE-5665.

CVE-2026-3774
Foxit PDF Editor Web
4.7
MEDIUM
EPSS
0.0%
2026 CWE-200 1 PoC

The application allows PDF JavaScript and document/print actions (such as WillPrint/DidPrint) to update form fields, annotations, or optional content groups (OCGs) immediately before or after redaction, encryption, or printing. These script‑driven updates are not fully covered by the existing redaction, encryption, and printing logic, which, under specific document structures and user workflows, may cause a small amount of sensitive content to remain unremoved or unencrypted as expected, or result in printed output that slightly differs from what was reviewed on screen.

CVE-2026-5404
Wireshark Networking
4.7
MEDIUM
EPSS
0.0%
2026 CWE-120 1 PoC

K12 RF5 file parser crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

CVE-2026-3201
Wireshark General
4.7
MEDIUM
EPSS
0.0%
2026 CWE-1325 1 PoC

USB HID protocol dissector memory exhaustion in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows denial of service

CVE-2026-27659
Mattermost Web
4.6
MEDIUM
EPSS
0.0%
2026 CWE-352 1 PoC

Mattermost versions 11.2.x <= 11.2.2, 10.11.x <= 10.11.10, 11.4.x <= 11.4.0, 11.3.x <= 11.3.1 fail to properly validate CSRF tokens in the /api/v4/access_control_policies/{policy_id}/activate endpoint, which allows an attacker to trick an admin into changing access control policy active status via a crafted request.. Mattermost Advisory ID: MMSA-2026-00578

CVE-2026-2728
librenms Web
4.6
MEDIUM
EPSS
0.0%
2026 CWE-79 1 PoC

LibreNMS versions before 26.3.0 are affected by an authenticated Cross-site Scripting vulnerability on the showconfig page. Successful exploitation requires administrative privileges. Exploitation could result in XSS attacks being performed against other users with access to the page.

CVE-2026-22186
Bio-Formats General
4.6
MEDIUM
EPSS
0.0%
2026 CWE-611 1 PoC

Bio-Formats versions up to and including 8.3.0 contain an XML External Entity (XXE) vulnerability in the Leica Microsystems metadata parsing component (e.g., XLEF). The parser uses an insecurely configured DocumentBuilderFactory when processing Leica XML-based metadata files, allowing external entity expansion and external DTD loading. A crafted metadata file can trigger outbound network requests (SSRF), access local system resources where readable, or cause a denial of service during XML parsing.

CVE-2026-3837
Frappe Web
4.6
MEDIUM
EPSS
0.1%
2026 CWE-79 1 PoC

An authenticated attacker can persist crafted values in multiple field types and trigger client-side script execution when another user opens the affected document in Desk. The vulnerable formatter implementations interpolate stored values into raw HTML attributes and element content without escaping This issue affects Frappe: 16.10.0.

CVE-2026-3673
Frappe Web
4.6
MEDIUM
EPSS
0.1%
2026 CWE-79 1 PoC

An authenticated attacker can store a crafted tag value in _user_tags and trigger JavaScript execution when a victim opens the list/report view where tags are rendered. The vulnerable renderer interpolates tag content into HTML attributes and element content without escaping. This issue affects Frappe: 16.10.10.

CVE-2026-1628
Mattermost General
4.6
MEDIUM
EPSS
0.0%
2026 CWE-829 1 PoC

Mattermost Desktop App versions <=5.13.3 fail to attach listeners restricting navigation to external sites within the Mattermost app which allows a malicious server to expose preload script functionality to untrusted servers via having a user open an external link in their Mattermost server. Mattermost Advisory ID: MMSA-2026-00596

CVE-2026-21883
bokeh Web
4.5
MEDIUM
EPSS
0.0%
2026 CWE-1385 2 PoCs

Bokeh is an interactive visualization library written in Python. In versions 3.8.1 and below, if a server is configured with an allowlist (e.g., dashboard.corp), an attacker can register a domain like dashboard.corp.attacker.com (or use a subdomain if applicable) and lure a victim to visit it. The malicious site can then initiate a WebSocket connection to the vulnerable Bokeh server. Since the Origin header (e.g., http://dashboard.corp.attacker.com/) matches the allowlist according to the flawed logic, the connection is accepted. Once connected, the attacker can interact with the Bokeh server

CVE-2026-21736
Graphics DDK General
4.4
MEDIUM
EPSS
0.0%
2026 CWE-280 1 PoC

Software installed and run as a non-privileged user may conduct improper GPU system calls to gain write permission to read-only wrapped user-mode memory. This is caused by improper handling of the memory protections for the user-mode wrapped memory resource.

CVE-2026-28418
vim General
4.4
MEDIUM
EPSS
0.0%
2026 CWE-122 1 PoC

Vim is an open source, command line text editor. Prior to version 9.2.0074, a heap-based buffer overflow out-of-bounds read exists in Vim's Emacs-style tags file parsing logic. When processing a malformed tags file, Vim can be tricked into reading up to 7 bytes beyond the allocated memory boundary. Version 9.2.0074 fixes the issue.

CVE-2026-28420
vim General
4.4
MEDIUM
EPSS
0.0%
2026 CWE-122 1 PoC

Vim is an open source, command line text editor. Prior to version 9.2.0076, a heap-based buffer overflow WRITE and an out-of-bounds READ exist in Vim's terminal emulator when processing maximum combining characters from Unicode supplementary planes. Version 9.2.0076 fixes the issue.

CVE-2026-42140
macro-plantuml General
4.4
MEDIUM
EPSS
0.0%
2026 CWE-918 1 PoC

PlantUML Macro is a macro for rendering UML diagrams from simple textual schemes. Prior to version 2.4.1, the PlantUML Macro is vulnerable to Server-Side Request Forgery (SSRF). The macro allows users to specify an alternative PlantUML server via the server parameter. However, the application does not validate the supplied URL. An attacker can supply an internal IP address or a malicious external URL. The XWiki server will attempt to connect to this URL to "render" the diagram. This issue has been patched in version 2.4.1.