Anwendungssicherheit
🟠 CVE-2026-47827: High Schwachstelle
Command Injection in BOSH CLI tool on windows in Cloud Foundry allows a remote attacker to execute arbitrary shell commands...
🟠 CVE-2026-16323: High Schwachstelle
Execution after redirect (EAR) vulnerability in FuyaWeb Internet and Informatics Services ArchitectPanel Web Admin Panel allows Authentication Bypass. This issue...
🟠 CVE-2026-63046: High Schwachstelle
Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Apache InLong. Agent Installer's ModuleManager executes arbitrary shell commands...
🟠 CVE-2026-61400: High Schwachstelle
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache CloudStack's run and get diagnostics functionality...
🟠 CVE-2026-50112: High Schwachstelle
SSRF via Metalink Mirror URL Resolution: An authenticated tenant can register a template pointing to an attacker-controlled metalink file containing...
🔴 CVE-2026-77776: Critical Schwachstelle
Headroom's LLM proxy derives the memory owner from the x-headroom-user-id request header. The header is read directly at several points...
🔴 CVE-2026-77806: Critical Schwachstelle
SPIP before 4.4.21 allows unauthenticated remote attackers to execute arbitrary code, as exploited in the wild in August 2026. This...
🔴 CVE-2026-77264: Critical Schwachstelle
The Automation Web Platform – Notifications and OTP for WooCommerce, Advanced Country Code plugin for WordPress is vulnerable to Authentication...
🔴 CVE-2026-62941: Critical Schwachstelle
Incus is a system container and virtual machine manager. Prior to version 7.3.0, when copying an instance across projects, the...
🔴 CVE-2026-62940: Critical Schwachstelle
Incus is a system container and virtual machine manager. Prior to version 7.3.0, when migrating an instance to another cluster...