Live-Feed 1644 aktiv ausgenutzt

Priorisierte Schwachstellen

Aktiv ausgenutzte und priorisierte CVEs, stündlich aktualisiert und nach NIS2/CRA-Relevanz gefiltert. Standardmässig die neuesten zuerst – umschaltbar nach Priorität (KEV, Severity, EPSS). Kostenlos & offen für alle.

22387
CVEs gesamt
1644
Aktiv ausgenutzt (KEV)
290
Ransomware-Bezug
4549
Kritisch

Zeige 3501 bis 3550 von 22387

  1. CVE-2026-35267 Hoch
    Score 53 CVSS 8.8 EPSS 0.43%

    Schwachstelle in Oracle Identity Manager (REST-Webservices)

  2. CVE-2026-35299 Hoch
    Score 53 CVSS 8.8 EPSS 0.40%

    Oracle WebLogic Server: Schwachstelle in der Console-Komponente

  3. CVE-2026-35303 Hoch
    Score 53 CVSS 8.8 EPSS 0.40%

    Schwachstelle in der Console von Oracle WebLogic Server

  4. CVE-2026-35311 Hoch
    Score 53 CVSS 8.8 EPSS 0.40%

    Oracle WebLogic Server (Fusion Middleware): Leicht ausnutzbare Schwachstelle in der Core-Komponente

  5. CVE-2026-35258 Hoch
    Score 52 CVSS 8.7 EPSS 0.33%

    Oracle WebLogic Server: Schwachstelle in der Console-Komponente

  6. CVE-2026-35271 Hoch
    Score 52 CVSS 8.7 EPSS 0.34%

    Schwachstelle in Oracle PeopleSoft PT PeopleTools (Weblogic)

  7. CVE-2026-46870 Hoch
    Score 51 CVSS 8.5 EPSS 0.31%

    Schwachstelle in Oracle MySQL Shell for VS Code

  8. CVE-2026-12437 Hoch
    Score 50 CVSS 8.3 EPSS 0.28%

    Use-after-free in Google Chrome für Windows (WebShare)

  9. CVE-2026-12438 Hoch
    Score 50 CVSS 8.3 EPSS 0.21%

    Google Chrome: Fehlerhafte Implementierung in WebView (Android)

  10. CVE-2026-12451 Hoch
    Score 50 CVSS 8.3 EPSS 0.17%

    Use-after-free in DigitalCredentials von Google Chrome

  11. CVE-2026-12454 Hoch
    Score 50 CVSS 8.3 EPSS 0.15%

    Google Chrome (macOS): Race Condition in Safe Browsing (Sandbox-Ausbruch)

  12. CVE-2026-12464 Hoch
    Score 50 CVSS 8.3 EPSS 0.22%

    Google Chrome: Use-after-free in Browser

  13. CVE-2026-12465 Hoch
    Score 50 CVSS 8.3 EPSS 0.24%

    Object-Lifecycle-Fehler in Metrics (Google Chrome)

  14. CVE-2026-12467 Hoch
    Score 50 CVSS 8.3 EPSS 0.22%

    Google Chrome: Sandbox-Escape durch Use-after-free in Extensions

  15. CVE-2026-12468 Hoch
    Score 50 CVSS 8.3 EPSS 0.14%

    Google Chrome unter macOS: Race Condition im Updater ermöglicht Sandbox-Escape

  16. CVE-2026-35272 Hoch
    Score 50 CVSS 8.4 EPSS 0.20%

    Schwachstelle in Oracle PeopleSoft PeopleTools (Deployment Package)

  17. CVE-2026-35302 Hoch
    Score 50 CVSS 8.3 EPSS 0.30%

    Oracle WebLogic Server (Console) – Schwachstelle in Oracle Fusion Middleware

  18. CVE-2026-11311 Hoch
    Score 49 CVSS 8.1 EPSS 0.57%

    NGINX Gateway Fabric: Injection im Konfigurationsgenerator

  19. CVE-2026-30802 Hoch
    Score 49 CVSS 8.2 EPSS 0.25%

    RTI Connext Micro – Out-of-bounds Read in den Core Libraries

  20. CVE-2026-32804 Hoch
    Score 49 CVSS 8.1 EPSS 0.22%

    Dell PowerFlex Manager: Authentifizierungsumgehung über benachbartes Netzwerk

  21. CVE-2026-35274 Hoch
    Score 49 CVSS 8.2 EPSS 0.39%

    Oracle PeopleSoft PeopleTools (Deployment Package): leicht ausnutzbare Schwachstelle

  22. CVE-2026-35276 Hoch
    Score 49 CVSS 8.1 EPSS 0.44%

    Oracle PeopleSoft PeopleTools – Schwachstelle im Application Server

  23. CVE-2026-35279 Hoch
    Score 49 CVSS 8.1 EPSS 0.39%

    Oracle PeopleSoft PeopleTools (Performance Monitor): schwer ausnutzbare Schwachstelle

  24. CVE-2026-35288 Hoch
    Score 49 CVSS 8.2 EPSS 0.19%

    Oracle PeopleSoft PeopleTools – Schwachstelle in Deployment Package

  25. CVE-2026-35289 Hoch
    Score 49 CVSS 8.1 EPSS 0.41%

    Oracle PeopleSoft PeopleTools – Schwachstelle in Deployment Package

  26. CVE-2026-42055 Hoch
    Score 49 CVSS 8.1 EPSS 3.55%

    Schwachstelle in NGINX Plus und NGINX Open Source (HTTP/2-Proxy- und gRPC-Module)

  27. CVE-2026-42530 Hoch
    Score 49 CVSS 8.1 EPSS 3.23%

    NGINX Open Source – Schwachstelle im HTTP/3-Modul (ngx_http_v3_module)

  28. CVE-2026-46849 Hoch
    Score 49 CVSS 8.1 EPSS 0.38%

    Oracle PeopleSoft CS Student Financials – Schwachstelle

  29. CVE-2026-46851 Hoch
    Score 49 CVSS 8.1 EPSS 0.46%

    Oracle PeopleSoft Enterprise CS Campus Community – Schwachstelle in der Security-Komponente

  30. CVE-2026-50107 Hoch
    Score 49 CVSS 8.1 EPSS 0.49%

    Injection-Schwachstelle im Konfigurationsgenerator von NGINX Gateway Fabric

  31. CVE-2026-55200 Hoch
    Score 49 CVSS 8.1 EPSS 0.73%

    libssh2: Out-of-bounds-Write in ssh2_transport_read()

  32. CVE-2025-48640 Hoch
    Score 48 CVSS 8 EPSS 0.09%

    Android – Rechteausweitung durch fehlende Berechtigungsprüfung bei Passkey-Pairing

  33. CVE-2025-48617 Hoch
    Score 47 CVSS 7.8 EPSS 0.08%

    Android CarrierConfigLoader: Rechteausweitung durch UID-Prüfungsumgehung

  34. CVE-2025-48643 Hoch
    Score 47 CVSS 7.8 EPSS 0.08%

    Android – Provisioning-Bypass durch fehlerhafte Eingabeprüfung

  35. CVE-2026-0019 Hoch
    Score 47 CVSS 7.8 EPSS 0.08%

    Android SettingsLib – Rechteausweitung durch Logikfehler

  36. CVE-2026-0063 Hoch
    Score 47 CVSS 7.8 EPSS 0.15%

    Android: Umgehung von Carrier-Restriktionen (setAllowedCarriers)

  37. CVE-2026-0068 Hoch
    Score 47 CVSS 7.8 EPSS 0.12%

    Android PackageInstallerService: Entfernen einer DPC-App ohne DO-Zustimmung

  38. CVE-2026-0071 Hoch
    Score 47 CVSS 7.8 EPSS 0.15%

    Android/ChromeOS – Fehlende Berechtigungsprüfung in SettingsLib

  39. CVE-2026-0081 Hoch
    Score 47 CVSS 7.8 EPSS 0.15%

    Android NFC: Rechteausweitung durch Spoofing eines NFC-Ereignisses

  40. CVE-2026-0082 Hoch
    Score 47 CVSS 7.8 EPSS 0.17%

    Android – Rechteausweitung über NfcDispatcher (unsicherer Standardwert)

  41. CVE-2026-12449 Hoch
    Score 47 CVSS 7.8 EPSS 0.11%

    Google Chrome (Windows): Rechteausweitung durch Use-after-free in Chromoting

  42. CVE-2026-28615 Hoch
    Score 47 CVSS 7.8 EPSS 0.12%

    Android Telecomm: Rechteausweitung durch unautorisierten Telefonanruf

  43. CVE-2026-32652 Hoch
    Score 47 CVSS 7.8 EPSS 0.10%

    Dell AIOps Collector – Verwendung von Standard-Zugangsdaten

  44. CVE-2026-46848 Hoch
    Score 47 CVSS 7.9 EPSS 0.15%

    Oracle WebLogic Server – Schwachstelle in der Console

  45. CVE-2026-12445 Hoch
    Score 45 CVSS 7.5 EPSS 0.16%

    Google Chrome – Use-after-free in Extensions

  46. CVE-2026-12455 Hoch
    Score 45 CVSS 7.5 EPSS 0.23%

    Google Chrome: Use-after-free im Tab Strip

  47. CVE-2026-12462 Hoch
    Score 45 CVSS 7.5 EPSS 0.27%

    Google Chrome (Media) – Use-after-free ermöglicht Codeausführung

  48. CVE-2026-20190 Hoch
    Score 45 CVSS 7.5 EPSS 0.41%

    Cisco ISE / ISE-PIC: Fehlerhafte Autorisierung ermöglicht Zugriff auf sensible Informationen

  49. CVE-2026-22283 Hoch
    Score 45 CVSS 7.5 EPSS 0.21%

    Dell PowerFlex Manager: Einbindung von Funktionen aus nicht vertrauenswürdiger Quelle

  50. CVE-2026-35269 Hoch
    Score 45 CVSS 7.5 EPSS 0.35%

    Oracle Fusion Middleware Identity Manager – Schwachstelle in REST WebServices

Diesem Feed folgen, kostenlos

Per RSS sofort nutzbar: global, pro Kategorie oder pro Produkt. E-Mail und Webhook richten wir auf Anfrage ein. Stündlich aktualisiert, frei zugänglich für alle.