Wszystkie CVE z ostatnich sześciu miesięcy, aktualizowane codziennie.
Opublikowane podatności prosto z National Vulnerability Database, z wagą, klasą CWE i listą produktów. Szukaj, filtruj i sprawdzaj, co pojawiło się dzisiaj.
- 303 z ostatnich 24 godzin
- 2210 z ostatnich 7 dni
- 58 432 z ostatnich sześciu miesięcy
Źródło: NVD (National Vulnerability Database) · Aktualizacja: 24 wrz 2026
Pokazano 4 z 4
Improper neutralization of parameter/argument delimiters in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CWE-141microsoft edge_chromiumInsufficient input sanitization in Snowflake Python API (`snowflake.core`) versions prior to 1.13.0 allowed confused-deputy privilege escalation through two related weaknesses: path traversal (CWE-22) via unencoded `..` identifier path segments, and HTTP param
A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with low privileges to execute arbitrary commands on the underlying operating system of an affected system and elevate privileges to root. Th
CWE-141cisco unified_computing_systemImproper Neutralization of Parameter/Argument Delimiters vulnerability in elixir-plug plug allows an attacker to inject or override HTTP cookie attributes. The Plug.Conn.Cookies.encode/2 function in lib/plug/conn/cookies.ex builds the Set-Cookie response heade
Znajdź błąd, zanim zrobi to atakujący.
Zaloguj się przez GitHub i uruchom pierwszy audyt w niecałą minutę. Plan darmowy nie wymaga karty kredytowej.