Live-Feed 1649 aktiv ausgenutzt

Priorisierte Schwachstellen

Aktiv ausgenutzte und priorisierte CVEs, stündlich aktualisiert und nach NIS2/CRA-Relevanz gefiltert. Standardmässig die neuesten zuerst – umschaltbar nach Priorität (KEV, Severity, EPSS). Kostenlos & offen für alle.

23432
CVEs gesamt
1649
Aktiv ausgenutzt (KEV)
295
Ransomware-Bezug
4840
Kritisch

Zeige 4101 bis 4150 von 23432

  1. CVE-2026-10094 Kritisch
    Score 59 CVSS 9.8 EPSS 0.38%

    SOLIDWORKS Visualize: Path Traversal ermöglicht Schreiben beliebiger Dateien

  2. CVE-2026-22327 Kritisch
    Score 59 CVSS 9.9 EPSS 0.46%

    Restaurt <= 1.0.4 – beliebiger Datei-Upload durch Benutzer der Rolle Subscriber

  3. CVE-2026-25446 Kritisch
    Score 59 CVSS 9.9 EPSS 0.43%

    WishList Member X: Beliebiger Datei-Upload durch Subscriber

  4. CVE-2026-27041 Kritisch
    Score 59 CVSS 9.9 EPSS 0.32%

    Unlimited Elements for Elementor (Premium) – Arbitrary File Upload durch Contributor

  5. CVE-2026-27395 Kritisch
    Score 59 CVSS 9.8 EPSS 0.34%

    Support Board: Nicht authentifizierte Rechteausweitung

  6. CVE-2026-27429 Kritisch
    Score 59 CVSS 9.8 EPSS 0.56%

    Nifty bis 1.4.1: Unauthentifizierte PHP Object Injection

  7. CVE-2026-32966 Kritisch
    Score 59 CVSS 9.8 EPSS 0.39%

    Apache DolphinScheduler: fehlende Autorisierungsprüfung in der DataSource-API

  8. CVE-2026-35263 Kritisch
    Score 59 CVSS 9.9 EPSS 0.32%

    Oracle WebLogic Server – Schwachstelle in der Komponente Core

  9. CVE-2026-35268 Kritisch
    Score 59 CVSS 9.9 EPSS 0.43%

    Oracle Identity Manager (Core): Leicht ausnutzbare Schwachstelle

  10. CVE-2026-35278 Kritisch
    Score 59 CVSS 9.8 EPSS 0.58%

    Oracle PeopleSoft PeopleTools: Schwachstelle in der Komponente Performance Monitor

  11. CVE-2026-35280 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle WebCenter Enterprise Capture (Komponente Client Bundle) – leicht ausnutzbare Schwachstelle

  12. CVE-2026-35281 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle WebCenter Enterprise Capture – Schwachstelle im Client Bundle

  13. CVE-2026-35282 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle WebCenter Enterprise Capture – leicht ausnutzbare Schwachstelle im Client Bundle

  14. CVE-2026-35283 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle WebCenter Enterprise Capture (Client Bundle) – leicht ausnutzbare Schwachstelle

  15. CVE-2026-35284 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle WebCenter Enterprise Capture (Client Bundle): kritische Schwachstelle

  16. CVE-2026-35285 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle WebCenter Enterprise Capture: Schwachstelle im Client Bundle

  17. CVE-2026-35286 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle WebCenter Content (Content Server): leicht ausnutzbare Schwachstelle

  18. CVE-2026-35293 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle WebCenter Sites 14.1.2.0.0: Leicht ausnutzbare Schwachstelle

  19. CVE-2026-35294 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle Identity Manager Connector – Schwachstelle in den Mainframe Connectors

  20. CVE-2026-35296 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle WebCenter Sites: Leicht ausnutzbare Schwachstelle (Oracle Fusion Middleware)

  21. CVE-2026-35300 Kritisch
    Score 59 CVSS 9.8 EPSS 0.56%

    Oracle WebLogic Server: Leicht ausnutzbare Schwachstelle in der Core-Komponente

  22. CVE-2026-35304 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    Oracle Coherence (Oracle Fusion Middleware, Komponente Core): Kritische Schwachstelle

  23. CVE-2026-35309 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    Oracle Coherence (Oracle Fusion Middleware): Schwachstelle in Centralized Third Party Jars

  24. CVE-2026-35310 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle Coherence (Oracle Fusion Middleware): Schwachstelle in der Core-Komponente

  25. CVE-2026-35312 Kritisch
    Score 59 CVSS 9.8 EPSS 0.52%

    Oracle Virtual Directory: Schwachstelle im Virtual Directory Server

  26. CVE-2026-35313 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle Access Manager (Authentication Engine): Leicht ausnutzbare Schwachstelle

  27. CVE-2026-35316 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle WebCenter Content (Komponente Content Server) – leicht ausnutzbare Schwachstelle

  28. CVE-2026-35319 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle WebCenter Content (Content Server): leicht ausnutzbare Schwachstelle

  29. CVE-2026-35321 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle WebCenter Content – Schwachstelle im Content Server

  30. CVE-2026-35323 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle WebCenter Content – leicht ausnutzbare Schwachstelle im Content Server

  31. CVE-2026-39529 Kritisch
    Score 59 CVSS 9.8 EPSS 0.38%

    Elementra: Nicht authentifizierte PHP Object Injection

  32. CVE-2026-39589 Kritisch
    Score 59 CVSS 9.9 EPSS 0.43%

    Webenvo <= 0.0.6 – Arbitrary File Upload durch Subscriber

  33. CVE-2026-40725 Kritisch
    Score 59 CVSS 9.8 EPSS 0.38%

    WooCommerce Product Filters vor 2.0.6: Unauthentifizierte PHP Object Injection

  34. CVE-2026-40746 Kritisch
    Score 59 CVSS 9.9 EPSS 0.43%

    Restaurant Zone <= 0.7.8 – beliebiger Datei-Upload durch Benutzer der Rolle Subscriber

  35. CVE-2026-40747 Kritisch
    Score 59 CVSS 9.9 EPSS 0.43%

    Ecommerce Zone: Beliebiger Datei-Upload durch Subscriber

  36. CVE-2026-40748 Kritisch
    Score 59 CVSS 9.9 EPSS 0.43%

    Kids Gift Shop – Arbitrary File Upload durch Subscriber

  37. CVE-2026-40749 Kritisch
    Score 59 CVSS 9.9 EPSS 0.43%

    Charity Zone – beliebiger Datei-Upload durch Nutzer mit Subscriber-Rechten

  38. CVE-2026-40783 Kritisch
    Score 59 CVSS 9.9 EPSS 0.54%

    Blocksy Companion Pro <= 2.1.37 – Remote Code Execution durch Contributor

  39. CVE-2026-42380 Kritisch
    Score 59 CVSS 9.8 EPSS 0.51%

    AI Lab: Nicht authentifizierte PHP Object Injection

  40. CVE-2026-46765 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle WebCenter Portal (Composer) – leicht ausnutzbare Schwachstelle

  41. CVE-2026-46766 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    Oracle WebCenter Content (Komponente Content Server): Kritische Schwachstelle

  42. CVE-2026-46767 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle WebCenter Portal (Composer): kritische Schwachstelle

  43. CVE-2026-46773 Kritisch
    Score 59 CVSS 9.8 EPSS 0.52%

    Oracle Unified Directory (Oracle Fusion Middleware): Schwachstelle in OUD Core

  44. CVE-2026-46774 Kritisch
    Score 59 CVSS 9.8 EPSS 0.52%

    Oracle Unified Directory (Oracle Fusion Middleware): Schwachstelle in OUD Core

  45. CVE-2026-46779 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle WebCenter Enterprise Capture: Schwachstelle im Client Bundle

  46. CVE-2026-46782 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle WebCenter Enterprise Capture – Schwachstelle in der Komponente Client Bundle

  47. CVE-2026-46783 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle WebCenter Content: Imaging – Schwachstelle in der Komponente Core

  48. CVE-2026-46792 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle Identity Manager Connector (Generic Unix Connector): Leicht ausnutzbare Schwachstelle

  49. CVE-2026-46793 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle Identity Manager Connector (Komponente Database User) – leicht ausnutzbare Schwachstelle

  50. CVE-2026-46794 Kritisch
    Score 59 CVSS 9.9 EPSS 0.43%

    Oracle Identity Manager Connector – Schwachstelle im Generic Unix Connector

Diesem Feed folgen, kostenlos

Per RSS sofort nutzbar: global, pro Kategorie oder pro Produkt. E-Mail und Webhook richten wir auf Anfrage ein. Stündlich aktualisiert, frei zugänglich für alle.