Wszystkie CVE z ostatnich sześciu miesięcy, aktualizowane codziennie.
Opublikowane podatności prosto z National Vulnerability Database, z wagą, klasą CWE i listą produktów. Szukaj, filtruj i sprawdzaj, co pojawiło się dzisiaj.
- 462 z ostatnich 24 godzin
- 2979 z ostatnich 7 dni
- 58 202 z ostatnich sześciu miesięcy
Źródło: NVD (National Vulnerability Database) · Aktualizacja: 23 wrz 2026
Pokazano 4 z 4
An attacker who knows (or guesses) that a resolver uses RPZ with wildcard CNAME policies can craft query names long enough to trigger a NAMETOOLONG error condition during RPZ processing. This is not handled correctly and may lead to defeating the RPZ rule. It
Plack::Middleware::Security::Common versions before 0.13.1 for Perl did not block header injections in request paths. The header injection rule was ineffective at blocking header injections in the request paths unless they were double-encoded, for example, GET
An unauthenticated remote attacker can exploit insufficient input validation to access backend components beyond their intended scope via path traversal, resulting in exposure of sensitive information.
Ericsson Indoor Connect 8855 versions prior to 2025.Q3 contains an Improper Filtering of Special Elements vulnerability which, if exploited, can lead to unauthorized modification of certain information
Znajdź błąd, zanim zrobi to atakujący.
Zaloguj się przez GitHub i uruchom pierwszy audyt w niecałą minutę. Plan darmowy nie wymaga karty kredytowej.