CVE-2026-42933 — CVSS 10.0 (critical): Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow an attacker to use…
CVE-2026-39906 — CVSS 10.0 (critical): Unisys WebPerfect Image Suite versions 3.0.3960.22810 and 3.0.3960.22604 expose a deprecated .NET Remoting TCP channel that allows remote…
CVE-2026-100706 — CVSS 9.9 (critical): kyverno before 1.19.1 fails to properly validate URL-encoded path segments in Policy apiCall urlPath, allowing namespace tenants to bypass…
CVE-2026-67567 — CVSS 9.9 (critical): A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a tenant, who has the ability to create…
CVE-2026-72526 — CVSS 9.9 (critical): A flaw was found in the multicloud-integrations component. The Application propagation controller processes the `ocm-managed-cluster`…
CVE-2025-62718 — CVSS 9.9 (critical): Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.0 and 0.31.0, Axios does not correctly handle hostname…
CVE-2025-64123 — CVSS 9.8 (critical): Unintended Proxy or Intermediary vulnerability in Nuvation Energy Multi-Stack Controller (MSC) allows Network Boundary Bridging.This issue…
CVE-2021-20042 — CVSS 9.8 (critical): An unauthenticated remote attacker can use SMA 100 as an unintended proxy or intermediary undetectable proxy to bypass firewall rules. This…
CVE-2026-70398 — CVSS 9.6 (critical): A flaw was found in multicloud-integrations, a component of Red Hat Advanced Cluster Management (RHACM). This vulnerability allows an…
CVE-2025-64125: A vulnerability in Nuvation Energy nCloud VPN Service allowed Network Boundary Bridging.This issue affected the nCloud VPN Service and was…
CVE-2026-24471: continuwuity is a Matrix homeserver written in Rust. This vulnerability allows an attacker with a malicious remote server to cause the…
CVE-2026-44945 — CVSS 9.1 (critical): A privilege escalation vulnerability exists in Rancher's impersonation middleware (pkg/auth/requests/impersonate.go). An authenticated…
CVE-2015-2947 — CVSS 9.1 (critical): KanColleViewer versions 3.8.1 and earlier operates as an open proxy which allows remote attackers to trigger outbound network traffic.
CVE-2026-36608 — CVSS 8.8 (high): Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows UPnP AddPortMapping to forward external ports to the router's own…
CVE-2026-16158 — CVSS 8.7 (high): Impact: @fastify/reply-from versions from 8.3.1 up to but not including 12.6.4 build the internal URL cache key by concatenating the…
CVE-2026-44494 — CVSS 8.7 (high): Axios is a promise based HTTP client for the browser and Node.js. From 1.0.0 to before 1.16.0, the Axios library is vulnerable to a…
CVE-2025-11393 — CVSS 8.7 (high): A flaw was found in runtimes-inventory-rhel8-operator. An internal proxy component is incorrectly configured. Because of this flaw, the…
CVE-2024-30128 — CVSS 8.6 (high): HCL Nomad server on Domino is affected by an open proxy vulnerability in which an unauthenticated attacker can mask their original source…
CVE-2026-17107 — CVSS 8.5 (high): A flaw was found in the cluster-proxy service-proxy component used in Red Hat Advanced Cluster Management for Kubernetes (RHACM) and…
CVE-2026-56986 — CVSS 8.4 (high): In multiple files, there is a possible out-of-bounds read due to type confusion. This could lead to local escalation of privilege with no…
CVE-2026-56985 — CVSS 8.4 (high): In multiple files, there is a possible way to obtain signatures due to type confusion. This could lead to local escalation of privilege…
CVE-2026-0107 — CVSS 8.4 (high): In gmc_ddr_handle_mba_mr_req of gmc_mba_ddr.c, there is a possible escalation of privileges due to a confused deputy. This could lead to…
CVE-2026-0021 — CVSS 8.4 (high): In hasInteractAcrossUsersFullPermission of AppInfoBase.java, there is a possible cross-user permission bypass due to a confused deputy…
CVE-2026-0013 — CVSS 8.4 (high): In setupLayout of PickActivity.java, there is a possible way to start any activity as a DocumentsUI app due to a confused deputy. This…
CVE-2026-0008 — CVSS 8.4 (high): In multiple functions of FaceEnroll.kt, there is a possible privilege escalation due to a confused deputy. This could lead to local…
CVE-2025-48579 — CVSS 8.4 (high): In multiple functions of MediaProvider.java, there is a possible external storage write permission bypass due to a confused deputy. This…
CVE-2026-106228 — CVSS 8.3 (high): Confused deputy in Google Lens in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process…
CVE-2026-87582 — CVSS 8.3 (high): Confused deputy in DataTransfer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process…
CVE-2026-42313 — CVSS 8.3 (high): pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the set_config_value() API method…
CVE-2025-47269 — CVSS 8.3 (high): code-server runs VS Code on any machine anywhere through browser access. Prior to version 4.99.4, a maliciously crafted URL using the proxy…
CVE-2026-86600 — CVSS 8.2 (high): In affected Snowflake drivers, WORKLOAD_IDENTITY authentication requests a cloud workload-identity token and attaches it to the login…
CVE-2026-77348 — CVSS 8.2 (high): Wallos is an open-source, self-hostable personal subscription tracker. Prior to version 5.0.0, the fix for CVE-2026-33407…
CVE-2026-43910 — CVSS 8.2 (high): Appium Java Client is the Java language binding for writing Appium tests that conform to the W3C WebDriver protocol. From 8.2.1 until…
CVE-2026-24470 — CVSS 8.1 (high): Skipper is an HTTP router and reverse proxy for service composition. Prior to version 0.24.0, when running Skipper as an Ingress…
CVE-2026-55270 — CVSS 7.8 (high): In dialInternal in multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation…
CVE-2026-28648 — CVSS 7.8 (high): In Settings, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no…
CVE-2026-56945 — CVSS 7.8 (high): In VPU, there is a possible out-of-bounds write due to a confused deputy. This could lead to local escalation of privilege with no…
CVE-2026-45520 — CVSS 7.8 (high): In onAttach of BiometricsSettingsBase.java, there is a possible authentication bypass due to a confused deputy. This could lead to local…
CVE-2026-28657 — CVSS 7.8 (high): In onActivityResult of AppWidgetConfigActivityProxy.java, there is a possible unauthorized URI permission grant due to a confused deputy…
CVE-2026-28644 — CVSS 7.8 (high): In startNextMatchingActivity of ActivityTaskManagerService.java, there is a possible permission bypass due to a confused deputy. This could…
CVE-2026-28636 — CVSS 7.8 (high): In setupLayout of PickActivity.java, there is a possible bypass of the "Install unknown apps" security restriction due to a confused…
CVE-2026-28624 — CVSS 7.8 (high): In multiple locations, there is a possible read/write access to files without the proper permissions due to a confused deputy. This could…
CVE-2026-28616 — CVSS 7.8 (high): In Setup Wizard, there is a possible way to force connection to a malicious network due to confused deputy. This could lead to local…
CVE-2026-28614 — CVSS 7.8 (high): In onCreate of SlicePermissionActivity.java, there is a possible permission bypass due to a confused deputy. This could lead to local…
CVE-2026-28607 — CVSS 7.8 (high): In multiple functions in multiple locations, there is a possible background activity launch bypass due to a confused deputy. This could…
CVE-2026-28603 — CVSS 7.8 (high): In assertSafeToStartCustomActivity of AppRestrictionsFragment.java, there is a possible read/write access to private files due to a…
CVE-2026-28600 — CVSS 7.8 (high): In onCreate of PaymentDefaultDialog.java, there is a possible way to change default payment app due to a confused deputy. This could lead…
CVE-2026-0098 — CVSS 7.8 (high): In getCallingPackageName of Shared.java, there is a possible way to bypass activity start restrictions due to a confused deputy. This could…