|
5551
|
5.5 |
MEDIUM
Local
|
dell
|
powerflex_appliance_intelligent_catalog powerflex_manager powerflex_rack
|
Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) a Use of a Broken or Risky Cryptographic Algorithm vulnerability in the ssh. A low privileged attacker with local access could potentially explo…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2025-46371
|
2026-05-23 05:40 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5552
|
7.1 |
HIGH
Network
|
-
|
-
|
Insecure deserialization in the job results processing component in Amazon Braket SDK before 1.117.0 might allow a remote authenticated user with S3 write access to the job output bucket to achieve a…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2026-9291
|
2026-05-23 05:31 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5553
|
- |
-
|
-
|
-
|
Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.11.0 through 2.28.1 allow any authenticated user to inject arbitrary HTML by updating their account's font family. Upon explo…
|
CWE-79
Cross-site Scripting
|
CVE-2026-40596
|
2026-05-23 05:31 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5554
|
- |
-
|
-
|
-
|
Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions 2.28.1 and below, given any pre-existing XSS / HTML injection vulnerability, an attacker can bypass the Content Security Pol…
|
CWE-79 CWE-358
Cross-site Scripting Improperly Implemented Security Check for Standard
|
CVE-2026-40597
|
2026-05-23 05:31 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5555
|
- |
-
|
-
|
-
|
Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions 2.11.0 through 2.28.1, a Stored XSS vulnerability is caused by incorrect escaping of a saved filter's owner, allowing an att…
|
CWE-79
Cross-site Scripting
|
CVE-2026-40607
|
2026-05-23 05:31 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5556
|
8.8 |
HIGH
Network
|
litellm
|
litellm
|
LiteLLM prior to 1.83.10 allows a user to modify their own user_role via the /user/update endpoint. While the endpoint correctly restricts users to updating only their own account, it does not restri…
|
CWE-863
Incorrect Authorization
|
CVE-2026-47102
|
2026-05-23 04:39 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5557
|
8.8 |
HIGH
Network
|
litellm
|
litellm
|
LiteLLM prior to 1.83.14 allows an authenticated internal_user to create API keys with access to routes that their role does not permit. When generating a key, the allowed_routes field is stored with…
|
CWE-863
Incorrect Authorization
|
CVE-2026-47101
|
2026-05-23 04:39 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5558
|
9.8 |
CRITICAL
Network
|
drupal
|
drupal
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Drupal Drupal core allows SQL Injection.
This issue affects Drupal core: from 8.9.0 before 10.4.…
|
CWE-89
SQL Injection
|
CVE-2026-9082
|
2026-05-23 04:38 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5559
|
7.5 |
HIGH
Network
|
apache
|
cxf
|
The fix for CVE-2025-48913: Apache CXF: Untrusted JMS configuration can lead to RCE was not complete, meaning that another path in the code might lead to code execution capabilities, if untrusted use…
|
CWE-20
Improper Input Validation
|
CVE-2026-44417
|
2026-05-23 04:29 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5560
|
5.4 |
MEDIUM
Network
|
mattermost
|
mattermost_server
|
Mattermost versions 11.6.x <= 11.6.0, 11.5.x <= 11.5.3, 11.4.x <= 11.4.4, 10.11.x <= 10.11.14 fail to validate the OAuth token scope on the callback which allows an authenticated Mattermost user to g…
|
CWE-863
Incorrect Authorization
|
CVE-2026-28735
|
2026-05-23 04:28 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5561
|
6.4 |
MEDIUM
Network
|
concretecms
|
concrete_cms
|
For Concrete CMS 9.5.0 and below, OAuth 2.0 Authorization-Code Handler Bypasses Account Status. A user with uIsActive=0 (suspended, banned, terminated employee) can still authenticate via OAuth and r…
|
CWE-1287
Improper Validation of Specified Type of Input
|
CVE-2026-7887
|
2026-05-23 04:21 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5562
|
- |
-
|
-
|
-
|
authentik is an open-source identity provider. In versions prior to 2025.12.5 and 2026.2.0-rc1 through 2026.2.2, authenticated non-admin users with at least one OAuth2 access token can retrieve the c…
|
CWE-200 CWE-863
Information Exposure Incorrect Authorization
|
CVE-2026-40166
|
2026-05-23 04:19 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5563
|
8.1 |
HIGH
Network
|
-
|
-
|
authentik is an open-source identity provider. In versions prior to 2025.12.5 and 2026.2.0-rc1 through 2026.2.2, the PATCH /api/v3/core/users/{pk}/ API allows a caller with change_user on a target us…
|
CWE-269
Improper Privilege Management
|
CVE-2026-40172
|
2026-05-23 04:19 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5564
|
4.3 |
MEDIUM
Network
|
concretecms
|
concrete_cms
|
Concrete CMS 9.5.0 and below is vulnerable to IDOR in AddMessage/UpdateMessage via attachments[] parameter which can lead to file permission bypass. The `AddMessage` and `UpdateMessage` conversation …
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-7886
|
2026-05-23 04:19 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5565
|
4.3 |
MEDIUM
Network
|
concretecms
|
concrete_cms
|
Concrete CMS 9.5.0 and below is subject to Insecure Direct Object Reference (IDOR) in the Express Entry Detail block via the exEntryID parameter. This IDOR leads to unauthorized access to all Express…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-7881
|
2026-05-23 04:19 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5566
|
5.3 |
MEDIUM
Network
|
concretecms
|
concrete_cms
|
In Concrete CMS 9.5.0 and below, the submit_password() method in concrete/controllers/single_page/download_file.php allows unauthorized file access since downloading
permission-restricted files bypa…
|
CWE-862
Missing Authorization
|
CVE-2026-7879
|
2026-05-23 04:18 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5567
|
6.5 |
MEDIUM
Network
|
-
|
-
|
TypeBot is a chatbot builder tool. In versions 3.15.2, the getLinkedTypebots API endpoint returns full bot definitions to any authenticated user who references a target bot ID in a Typebot Link block…
|
CWE-863
Incorrect Authorization
|
CVE-2026-39966
|
2026-05-23 04:18 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5568
|
4.8 |
MEDIUM
Network
|
concretecms
|
concrete_cms
|
Concrete CMS version 9.0 to 9.5.0 is vulnerable to Stored XSS via page name in the Atomik theme. A rogue editor can inject arbitrary JavaScript that executes in the context of any authenticated user …
|
CWE-79
Cross-site Scripting
|
CVE-2026-8353
|
2026-05-23 04:17 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5569
|
7.7 |
HIGH
Network
|
-
|
-
|
TypeBot is a chatbot builder tool. Versions 3.15.2 and prior contain an SSRF via Open Redirect Bypass as the HTTP Request block and Code block validate the initial request URL via validateHttpReqUrl(…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-39965
|
2026-05-23 04:17 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5570
|
7.6 |
HIGH
Network
|
-
|
-
|
TypeBot is a chatbot builder tool. In versions prior to 3.16.0, SSRF protection for Webhook / HTTP Request blocks validates only the URL string, blocked hostname literals, and literal IP formats. It …
|
CWE-20 CWE-918
Improper Input Validation Server-Side Request Forgery (SSRF)
|
CVE-2026-34207
|
2026-05-23 04:17 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5571
|
4.3 |
MEDIUM
Network
|
concretecms
|
concrete_cms
|
Concrete CMS 9.5.0 and below is vulnerable to IDOR + wrong-authorization-level in the Express association Reorder dialog. This can cause Cross-entity state tampering with view-only permission on one…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-8347
|
2026-05-23 04:16 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5572
|
6.5 |
MEDIUM
Network
|
concretecms
|
concrete_cms
|
Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF) at concrete/controllers/backend/file approveVersion(). The Concrete CMS security team gave this vulnerability a CVSS v.4…
|
CWE-352 CWE-1275
Origin Validation Error Sensitive Cookie with Improper SameSite Attribute
|
CVE-2026-8435
|
2026-05-23 04:15 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5573
|
6.7 |
MEDIUM
Local
|
dell
|
smartfabric_storage_software
|
Dell SmartFabric Storage Software, versions prior to 1.4.5, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A high privileged attacker w…
|
CWE-77
Command Injection
|
CVE-2026-35070
|
2026-05-23 04:14 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5574
|
6.4 |
MEDIUM
Network
|
concretecms
|
concrete_cms
|
In Concrete CMS 9.5.0 and below, the RSS Displayer block accepts a feed URL from any page editor and fetches it server-side without validation enabling redirect-to-internal bypasses. The Concrete CM…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-7890
|
2026-05-23 04:12 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5575
|
7.5 |
HIGH
Network
|
dell
|
elastic_cloud_storage
|
Dell ECS, versions 3.5 and 3.6, contain an Improper Access Control in the Identity and Access Management (IAM) module. A remote unauthenticated attacker may potentially exploit this vulnerability, le…
|
CWE-284
Improper Access Control
|
CVE-2022-31231
|
2026-05-23 04:10 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5576
|
5.0 |
MEDIUM
Network
|
devolutions
|
devolutions_server
|
Improper input validation in the external authentication provider flow in Devolutions Server allows an unauthenticated remote attacker to redirect victims to an attacker-controlled domain via a craft…
|
CWE-601
Open Redirect
|
CVE-2026-9245
|
2026-05-23 04:05 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5577
|
4.3 |
MEDIUM
Network
|
devolutions
|
devolutions_server
|
Improper access control in the entry documentation and attachment features in Devolutions Server allows an authenticated user with vault read access to retrieve the documentation and attachments of s…
|
CWE-862
Missing Authorization
|
CVE-2026-9246
|
2026-05-23 04:04 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5578
|
2.4 |
LOW
Network
|
devolutions
|
devolutions_server
|
Insufficient logging in the entry export feature in Devolutions Server allows an authenticated user with export permissions to export a sealed entry without triggering the unseal notification to admi…
|
CWE-778
Insufficient Logging
|
CVE-2026-9247
|
2026-05-23 04:03 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5579
|
2.6 |
LOW
Network
|
devolutions
|
devolutions_server
|
Authorization bypass in the entry duplication feature in Devolutions Server allows an authenticated user with write access to any vault to copy documentation and attachments from an entry in a vault …
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-9248
|
2026-05-23 04:02 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5580
|
3.1 |
LOW
Network
|
devolutions
|
devolutions_server
|
Unverified password change in Devolutions Server allows an attacker to change a user's password without providing the previous one via a crafted password change request.
This issue affects :
* D…
|
CWE-620
Unverified Password Change
|
CVE-2026-9249
|
2026-05-23 04:01 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5581
|
4.3 |
MEDIUM
Network
|
devolutions
|
devolutions_server
|
Missing authorization in the user profile update feature in Devolutions Server allows an authenticated Active Directory user to modify their own profile attributes via a crafted API request.
This is…
|
CWE-862
Missing Authorization
|
CVE-2026-9224
|
2026-05-23 03:58 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5582
|
4.3 |
MEDIUM
Network
|
devolutions
|
devolutions_server
|
Missing authorization in the vault import feature in Devolutions Server 2026.1.16.0 and earlier allows a low-privileged authenticated user to create new vaults via a crafted import request.
|
CWE-284
Improper Access Control
|
CVE-2026-9223
|
2026-05-23 03:57 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5583
|
7.6 |
HIGH
Network
|
devolutions
|
devolutions_server
|
Improper handling of factor key state in the multi-factor authentication management feature in Devolutions Server allows an attacker with knowledge of a user's password to bypass the user's multi-fac…
|
CWE-305
Authentication Bypass by Primary Weakness
|
CVE-2026-9047
|
2026-05-23 03:55 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5584
|
2.7 |
LOW
Network
|
devolutions
|
devolutions_server
|
Improper enforcement of the sealed-entry workflow in the entry sensitive-data retrieval feature in Devolutions Server allows an authenticated user with access to a sealed entry to retrieve its sensit…
|
CWE-841
Improper Enforcement of Behavioral Workflow
|
CVE-2026-8477
|
2026-05-23 03:54 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5585
|
7.1 |
HIGH
Network
|
devolutions
|
devolutions_server
|
Improper authorization in the Active Directory browsing feature in Devolutions Server allows a low-privileged authenticated user to obtain authentication material associated with a stored PAM provide…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-7325
|
2026-05-23 03:45 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5586
|
4.3 |
MEDIUM
Network
|
devolutions
|
devolutions_server
|
Improper access control in the entry activity log feature in Devolutions Server allows an authenticated user with access to an entry but without the required permission to retrieve that entry's activ…
|
CWE-284
Improper Access Control
|
CVE-2026-5171
|
2026-05-23 03:36 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5587
|
5.4 |
MEDIUM
Network
|
devolutions
|
devolutions_server
|
Missing authorization in the entry status management feature in Devolutions Server allows a non-administrator authenticated user to bypass the administrator-enforced Pending Approval flow and gain ac…
|
CWE-862
Missing Authorization
|
CVE-2026-9251
|
2026-05-23 03:31 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5588
|
6.1 |
MEDIUM
Network
|
-
|
-
|
Cross Site Scripting vulnerability in Advantech WebAccess/SCADA 8.0-2015.08.16 allows a remote attacker to obtain sensitive information via the decryption field in the Create New Project User compone…
|
CWE-79
Cross-site Scripting
|
CVE-2026-36226
|
2026-05-23 03:28 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5589
|
7.8 |
HIGH
Local
|
-
|
-
|
Missing input source validation in the tool authorization prompt in Kiro CLI before 1.28.0 allows a local attacker to execute arbitrary tools, including shell commands, without user approval by craft…
|
CWE-862
Missing Authorization
|
CVE-2026-9255
|
2026-05-23 03:28 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5590
|
5.9 |
MEDIUM
Local
|
-
|
-
|
HP ENVY 5000 series printers VERBASPP1N003.2237A.00 do not properly manage concurrent TCP connections to port 9100 (JetDirect/RAW printing). An unauthenticated remote attacker on the same network can…
|
CWE-400 CWE-770
Uncontrolled Resource Consumption Allocation of Resources Without Limits or Throttling
|
CVE-2026-42626
|
2026-05-23 03:28 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5591
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Typebot is a chatbot builder tool. In versions 3.15.2 and prior, the getResultLogs API endpoint authorizes the caller against the provided typebotId but fetches logs solely by resultId without verify…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-28444
|
2026-05-23 03:27 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5592
|
8.7 |
HIGH
Network
|
-
|
-
|
Typebot is a chatbot builder tool. In versions 3.15.2 and prior, the RatingButton component in the embed package renders the user-controlled customIcon.svg field directly via Solid's innerHTML direct…
|
CWE-79
Cross-site Scripting
|
CVE-2026-28445
|
2026-05-23 03:27 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5593
|
10.0 |
CRITICAL
Network
|
-
|
-
|
Typebot is a chatbot builder tool. In versions 3.15.2 and prior, the preview chat endpoint (POST /api/v1/typebots/{typebotId}/preview/startChat) allows unauthenticated users to achieve Server-Side Re…
|
CWE-862 CWE-918
Missing Authorization Server-Side Request Forgery (SSRF)
|
CVE-2026-33712
|
2026-05-23 03:27 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5594
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Directory Traversal vulnerability in Easy Chat Server 3.1 allows a remote attacker to obtain sensitive information and execute arbitrary code via the UserName parameter
|
CWE-22
Path Traversal
|
CVE-2026-36227
|
2026-05-23 03:27 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5595
|
7.3 |
HIGH
Network
|
-
|
-
|
Buffer Overflow vulnerability in Easy Chat Server 3.1 allows a remote attacker to obtain sensitive information and execute arbitrary code via the chat message functionality
|
CWE-120
Classic Buffer Overflow
|
CVE-2026-36228
|
2026-05-23 03:27 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5596
|
7.3 |
HIGH
Network
|
-
|
-
|
An issue in ClipBucket v5 v.5.5.2 allows an attacker to execute arbitrary code via the Authentication interface, login page endpoint and HTTP response security headers components
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2026-37470
|
2026-05-23 03:27 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5597
|
6.1 |
MEDIUM
Network
|
-
|
-
|
Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged to execute XSS attacks in applications that attempt to sanitize input HTML befo…
|
-
|
CVE-2026-42506
|
2026-05-23 03:16 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5598
|
6.1 |
MEDIUM
Network
|
-
|
-
|
Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged to execute XSS attacks in applications that attempt to sanitize input HTML befo…
|
-
|
CVE-2026-42502
|
2026-05-23 03:16 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5599
|
8.8 |
HIGH
Network
|
ivanti
|
secure_access_client
|
An improper certificate validation vulnerability in Ivanti Secure Access Client before 22.8R6 allows a remote unauthenticated attacker to execute arbitrary code.
|
CWE-295
Improper Certificate Validation
|
CVE-2026-8992
|
2026-05-23 02:50 |
2026-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5600
|
7.1 |
HIGH
Network
|
mattermost
|
mattermost_server
|
Mattermost versions 11.6.x <= 11.6.0, 11.5.x <= 11.5.3, 11.4.x <= 11.4.4, 10.11.x <= 10.11.14 fail to validate file ownership and access control, which allows an authenticated user to access and down…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-3473
|
2026-05-23 02:21 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|