Vulnerabilities (CVE)
Yack CVE helps teams search and track vulnerabilities.
TOTAL
394,898 CVE
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 8Windows 10 1607 Windows 10 1809Windows 10 21h2+5 moreSep 21, 2026 Sep 8, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Use of uninitialized resource in Windows Task Scheduler allows an authorized attacker to disclose information locally. |
1Microsoft 10Windows 10 1809 Windows 10 21h2Windows 10 22h2+7 moreSep 21, 2026 Sep 8, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to execute code locally. |
1Microsoft 13Windows 10 1607 Windows 10 1809Windows 10 21h2+10 moreSep 21, 2026 Sep 8, 2026 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthorized access to victim's machine |
1Microsoft 6Windows 11 23h2 Windows 11 24h2Windows 11 25h2+3 moreSep 21, 2026 Sep 8, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Null pointer dereference in Windows SMB Server Network Transport Driver (srvnet.sys) allows an unauthorized attacker to deny service over a network. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreSep 21, 2026 Sep 8, 2026 N/A· v4 8.8 HIGH· v3 N/A· v2 Heap-based buffer overflow in Windows Media Player allows an unauthorized attacker to execute code over a network. |
1Microsoft 13Windows 10 1607 Windows 10 1809Windows 10 21h2+10 moreSep 21, 2026 Sep 8, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 Use after free in Windows Universal Disk Format File System Driver (UDFS) allows an authorized attacker to elevate privileges locally. |
1Microsoft 12Windows 10 1607 Windows 10 1809Windows 10 21h2+9 moreSep 21, 2026 Sep 8, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 Use after free in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally. |
1Microsoft 13Windows 10 1607 Windows 10 1809Windows 10 21h2+10 moreSep 21, 2026 Sep 8, 2026 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network. |
1Microsoft 13Windows 10 1607 Windows 10 1809Windows 10 21h2+10 moreSep 21, 2026 Sep 8, 2026 N/A· v4 7.0 HIGH· v3 N/A· v2 Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally. |
1Microsoft 13Windows 10 1607 Windows 10 1809Windows 10 21h2+10 moreSep 21, 2026 Sep 8, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Buffer over-read in Windows Volume Manager Extension Driver allows an authorized attacker to elevate privileges locally. |
jshERP through 3.6 contains an authorization bypass vulnerability in the userBusiness CRUD endpoints that allows authenticated users to create, modify, or delete authorization-relation rows without privilege checks. Atta...Show more |
jshERP through 3.6 fails to validate object ownership in by-id info, update, and delete endpoints across multiple resource types. Authenticated users can read, modify, and delete other users' business objects by submitti...Show more |
jshERP through 3.6 fails to properly validate user privileges in SystemConfigService.updateSystemConfig, allowing authenticated users to modify tenant system configuration. Attackers can rewrite or delete tenant-wide set...Show more |
jshERP through 3.6 is missing an authorization check on the POST /userBusiness/updateBtnStr endpoint that allows authenticated users to modify role button-permission definitions. Attackers can supply arbitrary roleId and...Show more |
jshERP through 3.6 fails to redact password hashes in the /user/info endpoint, allowing authenticated users to retrieve unsalted MD5 password digests for any user. Attackers can request arbitrary user information by supp...Show more |
jshERP through 3.6 contains an authorization bypass vulnerability in the POST /user/resetPwd endpoint that allows authenticated users to reset any other user's password. Attackers can submit a request with an arbitrary t...Show more |
jshERP 3.6 contains a privilege escalation vulnerability in the updateOneValueByKeyIdAndType endpoint that allows authenticated users to grant themselves arbitrary roles. Attackers can send a POST request with type=UserR...Show more |
A weakness has been identified in ColorFul iGameCenter 1.0.3.4. This impacts the function sub_140001AF0 in the library ene.sys of the component IOCTL Handler. This manipulation causes untrusted pointer dereference. The a...Show more |
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, allows attackers to read certain uninitialized data from stack memory. |
Gopeed through 2.0.0-beta.3 contains a path traversal vulnerability in archive extraction that allows attackers to write arbitrary files outside the extraction directory. Attackers can craft malicious archives with entri...Show more |
rclone versions 1.56.0 through 1.75.0 contain a path traversal vulnerability in the `rclone serve docker` volume plugin. newVolume() in cmd/serve/docker/volume.go computes a volume's mountpoint as filepath.Join(drv.root,...Show more |
OpenPanel through commit bad75bdd writes Model Context Protocol authentication tokens from URL query parameters to plaintext application logs without redaction. Attackers with access to application stdout or centralized...Show more |
A vulnerability was identified in code-projects Internship Management System 1.0. Affected by this issue is some unknown functionality of the file /login.php. Such manipulation of the argument Password leads to sql injec...Show more |
A vulnerability was detected in SourceCodester Online Reviewer Management System 1.0. The impacted element is an unknown function of the file /reviewer_0/admins/assessments/subject/btn_functions.php?action=remove. Perfor...Show more |
A vulnerability was determined in aiyiyi121 SxDevOps 1.0/1.1. This affects the function update of the file backend/rbac/serializers.py of the component UserSerializer. Executing a manipulation can lead to improper privil...Show more |