Anwendungssicherheit
🟠 CVE-2026-55968: High Luecke in Apache Thrift
Inefficient Algorithmic Complexity, Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Node.js bindings. This issue affects Apache...
🟠 CVE-2026-45112: High Luecke in Apache Thrift
Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings. This issue affects Apache Thrift: from 0.19.0...
🟠 CVE-2026-12493: High Schwachstelle
The Clover Payment Gateway by Zaytech for WooCommerce WordPress plugin before 1.3.6 does not verify that an approved external payment...
🟠 CVE-2026-17527: High Schwachstelle
In containerized-data-importer (CDI), the aggregated cdi.kubevirt.io:view ClusterRole, intended to provide read-only access to CDI resources, includes a rule granting create...
🟠 CVE-2026-13152: High Schwachstelle
The Custom Fields Account Registration For Woocommerce WordPress plugin before 1.4 does not prevent its custom registration fields from writing...
🟠 CVE-2026-17496: High Schwachstelle
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via...
🟠 CVE-2026-17497: High Schwachstelle
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the...
🟠 CVE-2026-59688: High Schwachstelle
An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows...
🟠 CVE-2026-59687: High Schwachstelle
An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows...
🟠 CVE-2026-59686: High Schwachstelle
An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows...