Live-Feed 1649 aktiv ausgenutzt

Priorisierte Schwachstellen

Aktiv ausgenutzte und priorisierte CVEs, stündlich aktualisiert und nach NIS2/CRA-Relevanz gefiltert. Standardmässig die neuesten zuerst – umschaltbar nach Priorität (KEV, Severity, EPSS). Kostenlos & offen für alle.

23587
CVEs gesamt
1649
Aktiv ausgenutzt (KEV)
296
Ransomware-Bezug
4863
Kritisch

Zeige 4201 bis 4250 von 23587

  1. CVE-2026-46857 Kritisch
    Score 59 CVSS 9.8 EPSS 0.51%

    Oracle Enterprise Manager Base Platform: Schwachstelle im Oracle Management Service

  2. CVE-2026-46859 Kritisch
    Score 59 CVSS 9.8 EPSS 0.51%

    Oracle Agile PLM – Schwachstelle in der Komponente Security

  3. CVE-2026-46860 Kritisch
    Score 59 CVSS 9.8 EPSS 0.51%

    Oracle MySQL Router 9.0.0–9.7.0: leicht ausnutzbare Schwachstelle

  4. CVE-2026-46878 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in der Enterprise Infrastructure Security

  5. CVE-2026-46879 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in der Enterprise Infrastructure Security

  6. CVE-2026-46880 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in der Enterprise Infrastructure Security

  7. CVE-2026-46881 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    Oracle JD Edwards EnterpriseOne Tools: Kritische Schwachstelle in der Enterprise Infrastructure Security

  8. CVE-2026-46882 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in Enterprise Infrastructure Security

  9. CVE-2026-46883 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in Enterprise Infrastructure Security

  10. CVE-2026-46884 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    Oracle Siebel CRM: Schwachstelle in Siebel Apps – Marketing

  11. CVE-2026-46887 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    Oracle Siebel CRM (Siebel Apps – Marketing): leicht ausnutzbare Schwachstelle

  12. CVE-2026-46889 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    Oracle Siebel CRM: Schwachstelle in Siebel Apps – Marketing

  13. CVE-2026-46890 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle Siebel CRM: Schwachstelle in Siebel Apps - Marketing

  14. CVE-2026-46893 Kritisch
    Score 59 CVSS 9.9 EPSS 0.30%

    JD Edwards EnterpriseOne General Ledger (E1 Foundation): kritische Schwachstelle

  15. CVE-2026-46895 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle Enterprise Command Center Framework: Schwachstelle in der Core-Komponente

  16. CVE-2026-46897 Kritisch
    Score 59 CVSS 9.9 EPSS 0.37%

    Oracle Enterprise Command Center Framework (E-Business Suite) – Schwachstelle in der Komponente Core

  17. CVE-2026-46900 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle Enterprise Command Center Framework (Core): Leicht ausnutzbare Schwachstelle

  18. CVE-2026-46901 Kritisch
    Score 59 CVSS 9.9 EPSS 0.37%

    Oracle Enterprise Command Center Framework (E-Business Suite, Komponente Core) – leicht ausnutzbare Schwachstelle

  19. CVE-2026-46902 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    Oracle Enterprise Command Center Framework (Oracle E-Business Suite): Schwachstelle in der Komponente Core

  20. CVE-2026-46904 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in Enterprise Infrastructure Security

  21. CVE-2026-46905 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in Web Runtime Security

  22. CVE-2026-46907 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle JD Edwards EnterpriseOne Order Promising – Schwachstelle in der Order-Promising-Integration

  23. CVE-2026-46908 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    JD Edwards EnterpriseOne Accounts Payable – leicht ausnutzbare Schwachstelle

  24. CVE-2026-46909 Kritisch
    Score 59 CVSS 9.8 EPSS 0.48%

    Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in Enterprise Infrastructure Security

  25. CVE-2026-46918 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle Process Manufacturing Product Development (E-Business Suite) – leicht ausnutzbare Schwachstelle

  26. CVE-2026-46919 Kritisch
    Score 59 CVSS 9.8 EPSS 0.36%

    Oracle Siebel CRM: Schwachstelle in Siebel CRM Cloud Applications (Siebel Cloud Manager)

  27. CVE-2026-46933 Kritisch
    Score 59 CVSS 9.9 EPSS 0.41%

    Oracle Applications Manager (Internal Operations): kritische Schwachstelle

  28. CVE-2026-46963 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle Universal Work Queue: Schwachstelle in der Work-Provider-Administration

  29. CVE-2026-46964 Kritisch
    Score 59 CVSS 9.9 EPSS 0.40%

    Oracle Universal Work Queue (E-Business Suite) – Schwachstelle in der Work Provider Site Level Administration

  30. CVE-2026-47103 Kritisch
    Score 59 CVSS 9.8 EPSS 1.19%

    Python StateMachine: Remote Code Execution über manipulierte SCXML-Dokumente

  31. CVE-2026-48781 Kritisch
    Score 59 CVSS 9.9 EPSS 0.21%

    Postiz – angreiferkontrolliertes JWT über den Skool-Integrations-Callback

  32. CVE-2026-49058 Kritisch
    Score 59 CVSS 9.8 EPSS 0.32%

    LoginPress Pro: Nicht authentifizierte Rechteausweitung

  33. CVE-2026-49075 Kritisch
    Score 59 CVSS 9.8 EPSS 0.38%

    JetEngine bis 3.8.9.1: PHP Object Injection durch Nutzer mit Contributor-Rechten

  34. CVE-2026-49107 Kritisch
    Score 59 CVSS 9.8 EPSS 0.38%

    Thrive Apprentice: nicht authentifizierte PHP Object Injection

  35. CVE-2026-49108 Kritisch
    Score 59 CVSS 9.8 EPSS 0.30%

    Moderno: Nicht authentifizierte PHP Object Injection

  36. CVE-2026-49767 Kritisch
    Score 59 CVSS 9.8 EPSS 0.55%

    wpForo Forum: Nicht authentifizierte Umgehung der Authentifizierung (<= 3.1.0)

  37. CVE-2026-52706 Kritisch
    Score 59 CVSS 9.8 EPSS 0.47%

    JetEngine: nicht authentifizierte PHP Object Injection

  38. CVE-2026-53805 Kritisch
    Score 59 CVSS 9.8 EPSS 0.69%

    NVIDIA GEN3C: Unauthentifizierte Remote Code Execution im Inference-API-Server

  39. CVE-2026-53873 Kritisch
    Score 59 CVSS 9.8 EPSS 0.46%

    picklescan: Unvollständige Blocklist erlaubt Codeausführung über profile.run()

  40. CVE-2026-53874 Kritisch
    Score 59 CVSS 9.8 EPSS 0.52%

    picklescan: Unsichere Deserialisierung erlaubt Codeausführung

  41. CVE-2026-54194 Kritisch
    Score 59 CVSS 9.8 EPSS 0.39%

    Fusion Builder: PHP Object Injection durch Benutzer mit Contributor-Rechten

  42. CVE-2026-54803 Kritisch
    Score 59 CVSS 9.8 EPSS 0.45%

    SMS Alert Order Notifications: Rechteausweitung ab Subscriber-Rolle

  43. CVE-2026-54806 Kritisch
    Score 59 CVSS 9.8 EPSS 0.59%

    WP Activity Log: unauthentifizierte PHP Object Injection

  44. CVE-2026-54807 Kritisch
    Score 59 CVSS 9.8 EPSS 0.45%

    Registration Form for WooCommerce: nicht authentifizierte Rechteausweitung

  45. CVE-2026-12440 Kritisch
    Score 58 CVSS 9.6 EPSS 0.25%

    Google Chrome unter Windows: Use-after-free in DigitalCredentials ermöglicht Sandbox-Ausbruch

  46. CVE-2026-46786 Kritisch
    Score 58 CVSS 9.6 EPSS 0.21%

    Oracle WebCenter Content (Content Server): leicht ausnutzbare Schwachstelle in 14.1.2.0.0

  47. CVE-2026-46789 Kritisch
    Score 58 CVSS 9.6 EPSS 0.42%

    Oracle WebCenter Content (Content Server): Leicht ausnutzbare Schwachstelle in Version 14.1.2.0.0

  48. CVE-2026-46853 Kritisch
    Score 58 CVSS 9.6 EPSS 0.48%

    Oracle Enterprise Manager Base Platform: Schwachstelle im Metadata Plugin

  49. CVE-2026-46856 Kritisch
    Score 58 CVSS 9.6 EPSS 0.47%

    Oracle Enterprise Manager Base Platform: Schwachstelle in der Metadata-Plugin-Komponente

  50. CVE-2026-46861 Kritisch
    Score 58 CVSS 9.6 EPSS 0.36%

    Oracle MySQL NDB Cluster: Schwachstelle im NDB Operator

Diesem Feed folgen, kostenlos

Per RSS sofort nutzbar: global, pro Kategorie oder pro Produkt. E-Mail und Webhook richten wir auf Anfrage ein. Stündlich aktualisiert, frei zugänglich für alle.