Live-Feed 1649 aktiv ausgenutzt
Priorisierte Schwachstellen
Aktiv ausgenutzte und priorisierte CVEs, stündlich aktualisiert und nach NIS2/CRA-Relevanz gefiltert. Standardmässig die neuesten zuerst – umschaltbar nach Priorität (KEV, Severity, EPSS). Kostenlos & offen für alle.
23432
CVEs gesamt
1649
Aktiv ausgenutzt (KEV)
295
Ransomware-Bezug
4840
Kritisch
Zeige 4101 bis 4150 von 23432
- CVE-2026-10094 KritischScore 59 CVSS 9.8 EPSS 0.38%
SOLIDWORKS Visualize: Path Traversal ermöglicht Schreiben beliebiger Dateien
- CVE-2026-22327 KritischScore 59 CVSS 9.9 EPSS 0.46%
Restaurt <= 1.0.4 – beliebiger Datei-Upload durch Benutzer der Rolle Subscriber
- CVE-2026-25446 KritischScore 59 CVSS 9.9 EPSS 0.43%
WishList Member X: Beliebiger Datei-Upload durch Subscriber
- CVE-2026-27041 KritischScore 59 CVSS 9.9 EPSS 0.32%
Unlimited Elements for Elementor (Premium) – Arbitrary File Upload durch Contributor
- CVE-2026-27395 KritischScore 59 CVSS 9.8 EPSS 0.34%
Support Board: Nicht authentifizierte Rechteausweitung
- CVE-2026-27429 KritischScore 59 CVSS 9.8 EPSS 0.56%
Nifty bis 1.4.1: Unauthentifizierte PHP Object Injection
- CVE-2026-32966 KritischScore 59 CVSS 9.8 EPSS 0.39%
Apache DolphinScheduler: fehlende Autorisierungsprüfung in der DataSource-API
- CVE-2026-35263 KritischScore 59 CVSS 9.9 EPSS 0.32%
Oracle WebLogic Server – Schwachstelle in der Komponente Core
- CVE-2026-35268 KritischScore 59 CVSS 9.9 EPSS 0.43%
Oracle Identity Manager (Core): Leicht ausnutzbare Schwachstelle
- CVE-2026-35278 KritischScore 59 CVSS 9.8 EPSS 0.58%
Oracle PeopleSoft PeopleTools: Schwachstelle in der Komponente Performance Monitor
- CVE-2026-35280 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle WebCenter Enterprise Capture (Komponente Client Bundle) – leicht ausnutzbare Schwachstelle
- CVE-2026-35281 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle WebCenter Enterprise Capture – Schwachstelle im Client Bundle
- CVE-2026-35282 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle WebCenter Enterprise Capture – leicht ausnutzbare Schwachstelle im Client Bundle
- CVE-2026-35283 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle WebCenter Enterprise Capture (Client Bundle) – leicht ausnutzbare Schwachstelle
- CVE-2026-35284 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle WebCenter Enterprise Capture (Client Bundle): kritische Schwachstelle
- CVE-2026-35285 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle WebCenter Enterprise Capture: Schwachstelle im Client Bundle
- CVE-2026-35286 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle WebCenter Content (Content Server): leicht ausnutzbare Schwachstelle
- CVE-2026-35293 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle WebCenter Sites 14.1.2.0.0: Leicht ausnutzbare Schwachstelle
- CVE-2026-35294 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle Identity Manager Connector – Schwachstelle in den Mainframe Connectors
- CVE-2026-35296 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle WebCenter Sites: Leicht ausnutzbare Schwachstelle (Oracle Fusion Middleware)
- CVE-2026-35300 KritischScore 59 CVSS 9.8 EPSS 0.56%
Oracle WebLogic Server: Leicht ausnutzbare Schwachstelle in der Core-Komponente
- CVE-2026-35304 KritischScore 59 CVSS 9.8 EPSS 0.47%
Oracle Coherence (Oracle Fusion Middleware, Komponente Core): Kritische Schwachstelle
- CVE-2026-35309 KritischScore 59 CVSS 9.8 EPSS 0.47%
Oracle Coherence (Oracle Fusion Middleware): Schwachstelle in Centralized Third Party Jars
- CVE-2026-35310 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle Coherence (Oracle Fusion Middleware): Schwachstelle in der Core-Komponente
- CVE-2026-35312 KritischScore 59 CVSS 9.8 EPSS 0.52%
Oracle Virtual Directory: Schwachstelle im Virtual Directory Server
- CVE-2026-35313 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle Access Manager (Authentication Engine): Leicht ausnutzbare Schwachstelle
- CVE-2026-35316 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle WebCenter Content (Komponente Content Server) – leicht ausnutzbare Schwachstelle
- CVE-2026-35319 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle WebCenter Content (Content Server): leicht ausnutzbare Schwachstelle
- CVE-2026-35321 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle WebCenter Content – Schwachstelle im Content Server
- CVE-2026-35323 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle WebCenter Content – leicht ausnutzbare Schwachstelle im Content Server
- CVE-2026-39529 KritischScore 59 CVSS 9.8 EPSS 0.38%
Elementra: Nicht authentifizierte PHP Object Injection
- CVE-2026-39589 KritischScore 59 CVSS 9.9 EPSS 0.43%
Webenvo <= 0.0.6 – Arbitrary File Upload durch Subscriber
- CVE-2026-40725 KritischScore 59 CVSS 9.8 EPSS 0.38%
WooCommerce Product Filters vor 2.0.6: Unauthentifizierte PHP Object Injection
- CVE-2026-40746 KritischScore 59 CVSS 9.9 EPSS 0.43%
Restaurant Zone <= 0.7.8 – beliebiger Datei-Upload durch Benutzer der Rolle Subscriber
- CVE-2026-40747 KritischScore 59 CVSS 9.9 EPSS 0.43%
Ecommerce Zone: Beliebiger Datei-Upload durch Subscriber
- CVE-2026-40748 KritischScore 59 CVSS 9.9 EPSS 0.43%
Kids Gift Shop – Arbitrary File Upload durch Subscriber
- CVE-2026-40749 KritischScore 59 CVSS 9.9 EPSS 0.43%
Charity Zone – beliebiger Datei-Upload durch Nutzer mit Subscriber-Rechten
- CVE-2026-40783 KritischScore 59 CVSS 9.9 EPSS 0.54%
Blocksy Companion Pro <= 2.1.37 – Remote Code Execution durch Contributor
- CVE-2026-42380 KritischScore 59 CVSS 9.8 EPSS 0.51%
AI Lab: Nicht authentifizierte PHP Object Injection
- CVE-2026-46765 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle WebCenter Portal (Composer) – leicht ausnutzbare Schwachstelle
- CVE-2026-46766 KritischScore 59 CVSS 9.8 EPSS 0.47%
Oracle WebCenter Content (Komponente Content Server): Kritische Schwachstelle
- CVE-2026-46767 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle WebCenter Portal (Composer): kritische Schwachstelle
- CVE-2026-46773 KritischScore 59 CVSS 9.8 EPSS 0.52%
Oracle Unified Directory (Oracle Fusion Middleware): Schwachstelle in OUD Core
- CVE-2026-46774 KritischScore 59 CVSS 9.8 EPSS 0.52%
Oracle Unified Directory (Oracle Fusion Middleware): Schwachstelle in OUD Core
- CVE-2026-46779 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle WebCenter Enterprise Capture: Schwachstelle im Client Bundle
- CVE-2026-46782 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle WebCenter Enterprise Capture – Schwachstelle in der Komponente Client Bundle
- CVE-2026-46783 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle WebCenter Content: Imaging – Schwachstelle in der Komponente Core
- CVE-2026-46792 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle Identity Manager Connector (Generic Unix Connector): Leicht ausnutzbare Schwachstelle
- CVE-2026-46793 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle Identity Manager Connector (Komponente Database User) – leicht ausnutzbare Schwachstelle
- CVE-2026-46794 KritischScore 59 CVSS 9.9 EPSS 0.43%
Oracle Identity Manager Connector – Schwachstelle im Generic Unix Connector
Diesem Feed folgen, kostenlos
Per RSS sofort nutzbar: global, pro Kategorie oder pro Produkt. E-Mail und Webhook richten wir auf Anfrage ein. Stündlich aktualisiert, frei zugänglich für alle.