Live-Feed 1649 aktiv ausgenutzt
Priorisierte Schwachstellen
Aktiv ausgenutzte und priorisierte CVEs, stündlich aktualisiert und nach NIS2/CRA-Relevanz gefiltert. Standardmässig die neuesten zuerst – umschaltbar nach Priorität (KEV, Severity, EPSS). Kostenlos & offen für alle.
23587
CVEs gesamt
1649
Aktiv ausgenutzt (KEV)
296
Ransomware-Bezug
4863
Kritisch
Zeige 4201 bis 4250 von 23587
- CVE-2026-46857 KritischScore 59 CVSS 9.8 EPSS 0.51%
Oracle Enterprise Manager Base Platform: Schwachstelle im Oracle Management Service
- CVE-2026-46859 KritischScore 59 CVSS 9.8 EPSS 0.51%
Oracle Agile PLM – Schwachstelle in der Komponente Security
- CVE-2026-46860 KritischScore 59 CVSS 9.8 EPSS 0.51%
Oracle MySQL Router 9.0.0–9.7.0: leicht ausnutzbare Schwachstelle
- CVE-2026-46878 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in der Enterprise Infrastructure Security
- CVE-2026-46879 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in der Enterprise Infrastructure Security
- CVE-2026-46880 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in der Enterprise Infrastructure Security
- CVE-2026-46881 KritischScore 59 CVSS 9.8 EPSS 0.47%
Oracle JD Edwards EnterpriseOne Tools: Kritische Schwachstelle in der Enterprise Infrastructure Security
- CVE-2026-46882 KritischScore 59 CVSS 9.8 EPSS 0.47%
Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in Enterprise Infrastructure Security
- CVE-2026-46883 KritischScore 59 CVSS 9.8 EPSS 0.47%
Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in Enterprise Infrastructure Security
- CVE-2026-46884 KritischScore 59 CVSS 9.8 EPSS 0.47%
Oracle Siebel CRM: Schwachstelle in Siebel Apps – Marketing
- CVE-2026-46887 KritischScore 59 CVSS 9.8 EPSS 0.47%
Oracle Siebel CRM (Siebel Apps – Marketing): leicht ausnutzbare Schwachstelle
- CVE-2026-46889 KritischScore 59 CVSS 9.8 EPSS 0.47%
Oracle Siebel CRM: Schwachstelle in Siebel Apps – Marketing
- CVE-2026-46890 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle Siebel CRM: Schwachstelle in Siebel Apps - Marketing
- CVE-2026-46893 KritischScore 59 CVSS 9.9 EPSS 0.30%
JD Edwards EnterpriseOne General Ledger (E1 Foundation): kritische Schwachstelle
- CVE-2026-46895 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle Enterprise Command Center Framework: Schwachstelle in der Core-Komponente
- CVE-2026-46897 KritischScore 59 CVSS 9.9 EPSS 0.37%
Oracle Enterprise Command Center Framework (E-Business Suite) – Schwachstelle in der Komponente Core
- CVE-2026-46900 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle Enterprise Command Center Framework (Core): Leicht ausnutzbare Schwachstelle
- CVE-2026-46901 KritischScore 59 CVSS 9.9 EPSS 0.37%
Oracle Enterprise Command Center Framework (E-Business Suite, Komponente Core) – leicht ausnutzbare Schwachstelle
- CVE-2026-46902 KritischScore 59 CVSS 9.8 EPSS 0.47%
Oracle Enterprise Command Center Framework (Oracle E-Business Suite): Schwachstelle in der Komponente Core
- CVE-2026-46904 KritischScore 59 CVSS 9.8 EPSS 0.47%
Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in Enterprise Infrastructure Security
- CVE-2026-46905 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in Web Runtime Security
- CVE-2026-46907 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle JD Edwards EnterpriseOne Order Promising – Schwachstelle in der Order-Promising-Integration
- CVE-2026-46908 KritischScore 59 CVSS 9.9 EPSS 0.41%
JD Edwards EnterpriseOne Accounts Payable – leicht ausnutzbare Schwachstelle
- CVE-2026-46909 KritischScore 59 CVSS 9.8 EPSS 0.48%
Oracle JD Edwards EnterpriseOne Tools: Schwachstelle in Enterprise Infrastructure Security
- CVE-2026-46918 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle Process Manufacturing Product Development (E-Business Suite) – leicht ausnutzbare Schwachstelle
- CVE-2026-46919 KritischScore 59 CVSS 9.8 EPSS 0.36%
Oracle Siebel CRM: Schwachstelle in Siebel CRM Cloud Applications (Siebel Cloud Manager)
- CVE-2026-46933 KritischScore 59 CVSS 9.9 EPSS 0.41%
Oracle Applications Manager (Internal Operations): kritische Schwachstelle
- CVE-2026-46963 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle Universal Work Queue: Schwachstelle in der Work-Provider-Administration
- CVE-2026-46964 KritischScore 59 CVSS 9.9 EPSS 0.40%
Oracle Universal Work Queue (E-Business Suite) – Schwachstelle in der Work Provider Site Level Administration
- CVE-2026-47103 KritischScore 59 CVSS 9.8 EPSS 1.19%
Python StateMachine: Remote Code Execution über manipulierte SCXML-Dokumente
- CVE-2026-48781 KritischScore 59 CVSS 9.9 EPSS 0.21%
Postiz – angreiferkontrolliertes JWT über den Skool-Integrations-Callback
- CVE-2026-49058 KritischScore 59 CVSS 9.8 EPSS 0.32%
LoginPress Pro: Nicht authentifizierte Rechteausweitung
- CVE-2026-49075 KritischScore 59 CVSS 9.8 EPSS 0.38%
JetEngine bis 3.8.9.1: PHP Object Injection durch Nutzer mit Contributor-Rechten
- CVE-2026-49107 KritischScore 59 CVSS 9.8 EPSS 0.38%
Thrive Apprentice: nicht authentifizierte PHP Object Injection
- CVE-2026-49108 KritischScore 59 CVSS 9.8 EPSS 0.30%
Moderno: Nicht authentifizierte PHP Object Injection
- CVE-2026-49767 KritischScore 59 CVSS 9.8 EPSS 0.55%
wpForo Forum: Nicht authentifizierte Umgehung der Authentifizierung (<= 3.1.0)
- CVE-2026-52706 KritischScore 59 CVSS 9.8 EPSS 0.47%
JetEngine: nicht authentifizierte PHP Object Injection
- CVE-2026-53805 KritischScore 59 CVSS 9.8 EPSS 0.69%
NVIDIA GEN3C: Unauthentifizierte Remote Code Execution im Inference-API-Server
- CVE-2026-53873 KritischScore 59 CVSS 9.8 EPSS 0.46%
picklescan: Unvollständige Blocklist erlaubt Codeausführung über profile.run()
- CVE-2026-53874 KritischScore 59 CVSS 9.8 EPSS 0.52%
picklescan: Unsichere Deserialisierung erlaubt Codeausführung
- CVE-2026-54194 KritischScore 59 CVSS 9.8 EPSS 0.39%
Fusion Builder: PHP Object Injection durch Benutzer mit Contributor-Rechten
- CVE-2026-54803 KritischScore 59 CVSS 9.8 EPSS 0.45%
SMS Alert Order Notifications: Rechteausweitung ab Subscriber-Rolle
- CVE-2026-54806 KritischScore 59 CVSS 9.8 EPSS 0.59%
WP Activity Log: unauthentifizierte PHP Object Injection
- CVE-2026-54807 KritischScore 59 CVSS 9.8 EPSS 0.45%
Registration Form for WooCommerce: nicht authentifizierte Rechteausweitung
- CVE-2026-12440 KritischScore 58 CVSS 9.6 EPSS 0.25%
Google Chrome unter Windows: Use-after-free in DigitalCredentials ermöglicht Sandbox-Ausbruch
- CVE-2026-46786 KritischScore 58 CVSS 9.6 EPSS 0.21%
Oracle WebCenter Content (Content Server): leicht ausnutzbare Schwachstelle in 14.1.2.0.0
- CVE-2026-46789 KritischScore 58 CVSS 9.6 EPSS 0.42%
Oracle WebCenter Content (Content Server): Leicht ausnutzbare Schwachstelle in Version 14.1.2.0.0
- CVE-2026-46853 KritischScore 58 CVSS 9.6 EPSS 0.48%
Oracle Enterprise Manager Base Platform: Schwachstelle im Metadata Plugin
- CVE-2026-46856 KritischScore 58 CVSS 9.6 EPSS 0.47%
Oracle Enterprise Manager Base Platform: Schwachstelle in der Metadata-Plugin-Komponente
- CVE-2026-46861 KritischScore 58 CVSS 9.6 EPSS 0.36%
Oracle MySQL NDB Cluster: Schwachstelle im NDB Operator
Diesem Feed folgen, kostenlos
Per RSS sofort nutzbar: global, pro Kategorie oder pro Produkt. E-Mail und Webhook richten wir auf Anfrage ein. Stündlich aktualisiert, frei zugänglich für alle.