Search

Search Results (356400 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-43003 1 Openstack 2 Ironic-python-agent, Ironic Python Agent 2026-08-26 8 High
An issue was discovered in OpenStack ironic-python-agent 1.0.0 through 11.5.0. Ironic Python Agent (IPA) sometimes executes grub-install from within a chroot of the deployed partition image, leading to code execution in the case of a malicious image.
CVE-2026-42944 1 Nlnetlabs 1 Unbound 2026-08-26 7.5 High
NLnet Labs Unbound 1.14.0 up to and including version 1.25.0 has a vulnerability that results in heap overflow when encoding multiple NSID and/or DNS Cookie EDNS and/or EDNS Padding options in the reply packet. The relevant options ('nsid', 'answer-cookie', 'pad-responses' (default)) need to be enabled for the vulnerability to be exploited. An adversary who can query Unbound can exploit the vulnerability by attaching multiple NSID and/or DNS Cookie EDNS and/or EDNS Padding options to the query. A flaw in the size calculation of the EDNS field truncates the correct value which allows the encoder to overflow the available space when writing. Those two combined lead to a heap overflow write of Unbound controlled data and eventually a crash. Unbound 1.25.1 contains a patch with a fix to de-duplicate the EDNS options and a fix to prevent truncation of the EDNS field size calculation.
CVE-2026-60820 1 Oracle 2 Siebel Crm, Siebel Crm Integration 2026-08-26 7.4 High
Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: REST). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel CRM Integration. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Siebel CRM Integration accessible data as well as unauthorized access to critical data or complete access to all Siebel CRM Integration accessible data. CVSS 3.1 Base Score 7.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N).
CVE-2026-74234 1 Legora 1 Legora 2026-08-26 7.7 High
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-19042 1 Teamviewer 2 Full Client, Host 2026-08-26 8.8 High
A command injection vulnerability in TeamViewer Full Client and Host for Linux prior to version 15.81.5 allows a remote attacker to execute arbitrary commands in the context of the current user via a specially crafted URL sent through the out-of-session chat feature. Exploitation requires user interaction by clicking the malicious link.
CVE-2026-77535 1 Ubiquiti 1 Unifi Network Application 2026-08-26 9.1 Critical
A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerability found in UniFi Network Application to execute a Command Injection on an adopted device.
CVE-2026-77549 2026-08-26 9 Critical
A malicious actor with access to the network and under certain conditions could exploit an Improper Neutralization of CRLF Sequences vulnerability found in certain devices running UniFi OS to bypass authentication to such UniFi OS devices or instances.
CVE-2026-73547 2026-08-26 7.5 High
No description is available for this CVE.
CVE-2026-73512 2026-08-26 7.5 High
No description is available for this CVE.
CVE-2026-50572 2026-08-26 5.9 Medium
No description is available for this CVE.
CVE-2026-48521 2026-08-26 5.9 Medium
No description is available for this CVE.
CVE-2026-73553 2026-08-26 7.5 High
No description is available for this CVE.
CVE-2026-73552 2026-08-26 7.5 High
No description is available for this CVE.
CVE-2026-73551 2026-08-26 5.3 Medium
No description is available for this CVE.
CVE-2026-73550 2026-08-26 7.5 High
No description is available for this CVE.
CVE-2026-73549 2026-08-26 5.3 Medium
No description is available for this CVE.
CVE-2026-73548 2026-08-26 7.5 High
No description is available for this CVE.
CVE-2026-73546 2026-08-26 7.4 High
No description is available for this CVE.
CVE-2026-73513 2026-08-26 7.5 High
No description is available for this CVE.
CVE-2026-73511 2026-08-26 5.3 Medium
No description is available for this CVE.