Base de données CVE
- CVE-2025-15556Élevée7.5
Notepad++ versions prior to 8.8.9, when using the WinGUp updater, contain an update integrity verification vulnerability where downloaded update metadata and installers are not cryptographically verified. An attacker able to intercept or redirect update traffic can cause the updater to download and execute an attacker-controlled installer, resulting in arbitrary code execution with the privileges of the user.
- CVE-2026-1340Critique9.8
A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.
- CVE-2026-1281Critique9.8
A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.
- CVE-2025-40551Critique9.8
SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulnerability that could lead to remote code execution, which would allow an attacker to run commands on the host machine. This could be exploited without authentication.
- CVE-2025-40536Élevée8.1
SolarWinds Web Help Desk was found to be susceptible to a security control bypass vulnerability that if exploited, could allow an unauthenticated attacker to gain access to certain restricted functionality.
- CVE-2026-24858Critique9.8
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.5, FortiAnalyzer 7.4.0 through 7.4.9, FortiAnalyzer 7.2.0 through 7.2.11, FortiAnalyzer 7.0.0 through 7.0.15, FortiManager 7.6.0 through 7.6.5, FortiManager 7.4.0 through 7.4.9, FortiManager 7.2.0 through 7.2.11, FortiManager 7.0.0 through 7.0.15, FortiNAC-F 7.6.3 through 7.6.5, FortiOS 7.6.0 through 7.6.5, FortiOS 7.4.0 through 7.4.10, FortiOS 7.2.0 through 7.2.12, FortiOS 7.0.0 through 7.0.18, FortiProxy 7.6.0 through 7.6.4, FortiProxy 7.4.0 through 7.4.12, FortiProxy 7.2.0 through 7.2.15, FortiProxy 7.0.0 through 7.0.22, FortiWeb 8.0.0 through 8.0.3, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4.0 through 7.4.11 may allow an attacker with a FortiCloud account and a registered device to log into other devices registered to other accounts, if FortiCloud SSO authentication is enabled on those devices.
- CVE-2026-21509Élevée7.8
Reliance on untrusted inputs in a security decision in Microsoft Office allows an unauthorized attacker to bypass a security feature locally.
- CVE-2026-24423Critique9.8
SmarterTools SmarterMail versions prior to build 9511 contain an unauthenticated remote code execution vulnerability in the ConnectToHub API method. The attacker could point the SmarterMail to the malicious HTTP server, which serves the malicious OS command. This command will be executed by the vulnerable application.
- CVE-2026-0770Critique9.8
Vulnérabilité d'exécution de code à distance par inclusion de fonctionnalité issue d'une sphère de contrôle non fiable dans exec_globals de Langflow. Cette vulnérabilité permet à des attaquants distants d'exécuter du code arbitraire sur les installations affectées de Langflow. Aucune authentification n'est requise pour exploiter cette vulnérabilité. La faille spécifique existe dans la gestion du paramètre exec_globals fourni à l'endpoint validate. Le problème résulte de l'inclusion d'une ressource issue d'une sphère de contrôle non fiable. Un attaquant peut exploiter cette vulnérabilité pour exécuter du code dans le contexte de root. C'était ZDI-CAN-27325.
- CVE-2026-0768Critique9.8
Vulnérabilité d'injection de code et d'exécution de code à distance dans le code Langflow. Cette vulnérabilité permet à des attaquants distants d'exécuter du code arbitraire sur les installations affectées de Langflow. L'authentification n'est pas requise pour exploiter cette vulnérabilité. La faille spécifique existe dans la gestion du paramètre code fourni à l'endpoint validate. Le problème résulte de l'absence de validation appropriée d'une chaîne fournie par l'utilisateur avant son utilisation pour exécuter du code Python. Un attaquant peut exploiter cette vulnérabilité pour exécuter du code dans le contexte de root. . Était ZDI-CAN-27322.
- CVE-2025-9289Moyenne4.7
Une vulnérabilité Cross-Site Scripting (XSS) a été identifiée dans un paramètre d'Omada Controllers en raison d'un assainissement inapproprié des entrées. L'exploitation nécessite des conditions avancées, telles que le positionnement réseau ou l'émulation d'une entité de confiance, et une interaction utilisateur par un administrateur authentifié. En cas de réussite, un attaquant pourrait exécuter du JavaScript arbitraire dans le navigateur de l'administrateur, exposant potentiellement des informations sensibles et compromettant la confidentialité.
- CVE-2026-23760Critique9.8
SmarterTools SmarterMail versions prior to build 9511 contain an authentication bypass vulnerability in the password reset API. The force-reset-password endpoint permits anonymous requests and fails to verify the existing password or a reset token when resetting system administrator accounts. An unauthenticated attacker can supply a target administrator username and a new password to reset the account, resulting in full administrative compromise of the SmarterMail instance. NOTE: SmarterMail system administrator privileges grant the ability to execute operating system commands via built-in management functionality, effectively providing administrative (SYSTEM or root) access on the underlying host.
- CVE-2026-20045Élevée8.2
A vulnerability in Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P), Cisco Unity Connection, and Cisco Webex Calling Dedicated Instance could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. This vulnerability is due to improper validation of user-supplied input in HTTP requests. An attacker could exploit this vulnerability by sending a sequence of crafted HTTP requests to the web-based management interface of an affected device. A successful exploit could allow the attacker to obtain user-level access to the underlying operating system and then elevate privileges to root. Note: Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to root.
- CVE-2026-24061Critique9.8
telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.
- CVE-2026-21962Critique10.0
Vulnérabilité dans le produit Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in d'Oracle Fusion Middleware (composant : Weblogic Server Proxy Plug-in for Apache HTTP Server, Weblogic Server Proxy Plug-in for IIS). Les versions prises en charge qui sont affectées sont les versions 12.2.1.4.0, 14.1.1.0.0 et 14.1.2.0.0. Une vulnérabilité facilement exploitable permet à un attaquant non authentifié disposant d'un accès réseau via HTTP de compromettre Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in. Bien que la vulnérabilité se trouve dans Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in, les attaques peuvent avoir un impact significatif sur des produits supplémentaires (changement de périmètre). Les attaques réussies de cette vulnérabilité peuvent entraîner un accès non autorisé en création, suppression ou modification de données critiques ou de l'ensemble des données accessibles par Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in, ainsi qu'un accès non autorisé à des données critiques ou un accès complet à l'ensemble des données accessibles par Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in. Remarque : la version affectée pour Weblogic Server Proxy Plug-in for IIS est uniquement la version 12.2.1.4.0. Score de base CVSS 3.1 de 10.0 (impacts sur la confidentialité et l'intégrité). Vecteur CVSS : (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N).
- CVE-2026-20963Critique9.8
Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
- CVE-2026-20805Moyenne5.5
Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose information locally.
- CVE-2025-25249Élevée8.1
A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11, FortiOS 7.0.0 through 7.0.17, FortiOS 6.4 all versions, FortiSwitchManager 7.2.0 through 7.2.6, FortiSwitchManager 7.0.0 through 7.0.5 allows attacker to execute unauthorized code or commands via specially crafted packets
- CVE-2025-14279Élevée8.1
Les versions de MLFlow jusqu'à la version 3.4.0 incluse sont vulnérables aux attaques de type DNS rebinding en raison de l'absence de validation de l'en-tête Origin dans le serveur REST MLFlow. Cette vulnérabilité permet à des sites web malveillants de contourner les protections de la Same-Origin Policy et d'exécuter des appels non autorisés contre les endpoints REST. Un attaquant peut interroger, mettre à jour et supprimer des experiments via les endpoints affectés, entraînant une potentielle exfiltration, destruction ou manipulation de données. Le problème est résolu dans la version 3.5.0.
- CVE-2026-21858Critique10.0
n8n est une plateforme open source d'automatisation des workflows. Les versions à partir de 1.65.0 et inférieures à 1.121.0 permettent à un attaquant d'accéder aux fichiers sur le serveur sous-jacent via l'exécution de certains workflows basés sur des formulaires. Un workflow vulnérable pourrait accorder l'accès à un attaquant distant non authentifié, entraînant l'exposition d'informations sensibles stockées sur le système et pouvant permettre une compromission ultérieure selon la configuration de déploiement et l'utilisation des workflows. Ce problème est corrigé dans la version 1.121.0.
This product uses the NVD API but is not endorsed or certified by the NVD.