Search
2,372 CVEs
CVEs (2,372, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 376–400 of 2,372 (capped at 500)
| CVE ID | Severity | Patch | CVSS | Published ↑ | Description |
|---|---|---|---|---|---|
| CVE-2026-63435 | MEDIUM | Patched | 5.3 | 2026-09-01 | Mail is an internet library for Ruby designed to handle email generation, parsing, and sending. Prior to 2.9.1, Mail::Utilities.q_value_decode and Mail::Utilities.b_value_d… |
| CVE-2026-71981 | HIGH | Patched | 8.8 | 2026-09-01 | Cypht before 2.12.2 contains a PHP object injection vulnerability that allows authenticated attackers to execute arbitrary operating system commands by supplying a crafted … |
| CVE-2026-73524 | MEDIUM | Patched | 6.1 | 2026-09-01 | Cypht before 2.12.2 contains a cross-site scripting vulnerability in the contacts module that allows remote attackers to execute arbitrary script content by embedding malic… |
| CVE-2026-73749 | CRITICAL | Patched | 9.8 | 2026-09-01 | Multiple vulnerabilities exist in a daemon of AOS-CX that may allow for improper processing of malformed input. An unauthenticated remote attacker could exploit these vulne… |
| CVE-2026-73750 | HIGH | 8.8 | 2026-09-01 | Vulnerabilities exist in the authentication module that may improperly process malformed or truncated input. An authenticated remote attacker could exploit these vulnerabil… | |
| CVE-2026-73751 | HIGH | 8.8 | 2026-09-01 | An authenticated user with low-privileged access could submit crafted input through the web-based management interface to execute arbitrary commands on the underlying opera… | |
| CVE-2026-73752 | HIGH | Patched | 8.8 | 2026-09-01 | An unauthenticated arbitrary file write vulnerability exists in an API endpoint of AOS-CX. Successful exploitation of this vulnerability allows an attacker to write arbitra… |
| CVE-2026-73753 | HIGH | 8.8 | 2026-09-01 | Exploitation through affected command-line operations could allow an authenticated low-privileged user to execute arbitrary commands as a privileged user on the underlying … | |
| CVE-2026-73754 | MEDIUM | Patched | 5.3 | 2026-09-01 | Denial-of-service vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation could allow an authenticated user to disrupt the normal operation o… |
| CVE-2026-73755 | MEDIUM | Patched | 5.7 | 2026-09-01 | A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low-privilege operator user, after a require… |
| CVE-2026-73756 | MEDIUM | Patched | 5.9 | 2026-09-01 | A vulnerability in an API endpoint of AOS-CX could allow a remote unauthenticated attacker to obtain sensitive information via a man-in-the-middle attack. Successful exploi… |
| CVE-2026-73757 | MEDIUM | Patched | 6.4 | 2026-09-01 | A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a server-side request forgery (SSRF) attack. A succe… |
| CVE-2026-73758 | MEDIUM | Patched | 6.5 | 2026-09-01 | A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low privilege operator user to change the st… |
| CVE-2026-73759 | MEDIUM | Patched | 6.5 | 2026-09-01 | Vulnerabilities in AOS-CX could allow an unauthenticated remote malicious actor to trigger a denial-of-service condition by sending specially crafted packets. Successful ex… |
| CVE-2026-73760 | MEDIUM | Patched | 6.5 | 2026-09-01 | An authenticated Path Traversal vulnerability exists in AOS-CX. Successful exploitation of this vulnerability allows an attacker to read arbitrary files from the web-based … |
| CVE-2026-73761 | MEDIUM | Patched | 6.5 | 2026-09-01 | An out-of-bounds read vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated information disclosure by sending a specially cra… |
| CVE-2026-73762 | MEDIUM | Patched | 6.6 | 2026-09-01 | A vulnerability has been identified in the API endpoint of AOS-CX that could allow a remote actor to circumvent existing access controls. In some cases this could enable un… |
| CVE-2026-73763 | HIGH | 7.1 | 2026-09-01 | A vulnerability exists in a management component that could allow an unauthenticated adjacent attacker to execute arbitrary commands. Successful exploitation could result i… | |
| CVE-2026-73764 | HIGH | Patched | 7.1 | 2026-09-01 | Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authenti… |
| CVE-2026-73765 | HIGH | Patched | 7.2 | 2026-09-01 | Authenticated path traversal vulnerabilities exist in API endpoints of AOS-CX. Successful exploitation of these vulnerabilities allows an attacker to write arbitrary files … |
| CVE-2026-73766 | HIGH | Patched | 7.2 | 2026-09-01 | Command injection vulnerabilities in the API endpoint of AOS-CX could allow an authenticated remote attacker with administrative privileges to inject arbitrary commands. Su… |
| CVE-2026-73767 | HIGH | Patched | 7.2 | 2026-09-01 | Authenticated command injection vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation of these vulnerabilities results in the ability to ex… |
| CVE-2026-73768 | HIGH | Patched | 7.3 | 2026-09-01 | A vulnerability exists in the command line interface of AOS-CX that may allow for improper processing of malformed input. Successful exploitation could result in the execut… |
| CVE-2026-73770 | HIGH | Patched | 7.3 | 2026-09-01 | An authenticated arbitrary file write vulnerability exists in AOS-CX. Successful exploitation could allow an authenticated malicious actor, under specific conditions outsid… |
| CVE-2026-73771 | HIGH | Patched | 7.5 | 2026-09-01 | An authentication vulnerability exists in the AOS-CX management interface and API that may allow improper authentication processing. An unauthenticated remote attacker coul… |