Live-Feed 1649 aktiv ausgenutzt
Priorisierte Schwachstellen
Aktiv ausgenutzte und priorisierte CVEs, stündlich aktualisiert und nach NIS2/CRA-Relevanz gefiltert. Standardmässig die neuesten zuerst – umschaltbar nach Priorität (KEV, Severity, EPSS). Kostenlos & offen für alle.
24199
CVEs gesamt
1649
Aktiv ausgenutzt (KEV)
295
Ransomware-Bezug
4896
Kritisch
Zeige 4751 bis 4800 von 24199
- CVE-2026-53776 KritischScore 55 CVSS 9.1 EPSS 0.36%
Perry – JWT-Validierungsschwachstelle (Umgehung des Token-Ablaufs)
- CVE-2026-0132 HochScore 53 CVSS 8.8 EPSS 0.29%
Modem – Heap-Buffer-Overflow ermöglicht Remote Code Execution
- CVE-2026-0139 HochScore 53 CVSS 8.8 EPSS 0.28%
Android (Modem) – Out-of-bounds-Write ermöglicht Remote Code Execution
- CVE-2026-0146 HochScore 53 CVSS 8.8 EPSS 0.28%
Android – Out-of-Bounds-Write in mfc_core_get_dec_metadata_sei_nal
- CVE-2026-0147 HochScore 53 CVSS 8.8 EPSS 0.28%
Android/Modem: Out-of-Bounds-Write in mfc_core_nal_q.c ermöglicht Remote Code Execution
- CVE-2026-0148 HochScore 53 CVSS 8.8 EPSS 0.28%
Android: Out-of-Bounds-Write durch Integer-Überlauf in VideoRtpPayloadDecoderNode.cpp
- CVE-2026-0149 HochScore 53 CVSS 8.8 EPSS 0.29%
RtpSession::rtpSendRtcpPacket – Out-of-Bounds-Write über Heap-Buffer-Overflow
- CVE-2026-0151 HochScore 53 CVSS 8.8 EPSS 0.23%
Android: Out-of-Bounds-Write in IntfGraphCreate (intfgraph.c) durch Integer-Überlauf
- CVE-2026-0154 HochScore 53 CVSS 8.8 EPSS 0.23%
CVE-2026-0154 – Speicherbeschädigung im Modem über SIP-REFER (Remote Code Execution)
- CVE-2026-0160 HochScore 53 CVSS 8.8 EPSS 0.23%
TextRtpPayloadDecoderNode – Out-of-Bounds-Write in DecodeT140
- CVE-2026-0161 HochScore 53 CVSS 8.8 EPSS 0.23%
Android (RtpSession) – Integer-Overflow ermöglicht Privilegienausweitung
- CVE-2026-0162 HochScore 53 CVSS 8.8 EPSS 0.23%
Android – Speicherkorruption durch Type Confusion in AudioSdpParser
- CVE-2026-0164 HochScore 53 CVSS 8.8 EPSS 0.23%
Android Modem: Out-of-Bounds-Write ermöglicht Remote Code Execution
- CVE-2026-12289 HochScore 53 CVSS 8.8 EPSS 0.40%
CVE-2026-12289 – Rechteausweitung in der WebRender-Grafikkomponente (Firefox/Thunderbird)
- CVE-2026-12291 HochScore 53 CVSS 8.8 EPSS 0.38%
Mozilla Firefox – Use-after-free in der HTTP-Netzwerkkomponente
- CVE-2026-12161 HochScore 53 CVSS 8.8 EPSS 0.29%
Devolutions Remote Desktop Manager: Command Injection in der SSH-Elevate-Shell
- CVE-2026-10649 HochScore 52 CVSS 8.6 EPSS 0.56%
Pacemaker: Integer-Überlauf bei der Dekompression entfernter Nachrichten
- CVE-2026-12326 HochScore 49 CVSS 8.1 EPSS 0.25%
Mozilla Firefox/Thunderbird – Speichersicherheitsfehler
- CVE-2026-12327 HochScore 49 CVSS 8.1
Speichersicherheitsfehler in Firefox und Thunderbird (ESR 140 / 151)
- CVE-2026-0133 HochScore 47 CVSS 7.8 EPSS 0.07%
Android arm-smmu-v3 – Rechteausweitung durch fehlende Berechtigungsprüfung
- CVE-2026-0135 HochScore 47 CVSS 7.8 EPSS 0.10%
Android Modem – Out-of-Bounds-Read ermöglicht Remote Code Execution
- CVE-2026-0137 HochScore 47 CVSS 7.8 EPSS 0.07%
Android edgetpu-dmabuf: Use-after-free ermöglicht Rechteausweitung
- CVE-2026-0138 HochScore 47 CVSS 7.8 EPSS 0.07%
Android/ChromeOS – Out-of-bounds Write in lwis_io_buffer_write
- CVE-2026-0143 HochScore 47 CVSS 7.8 EPSS 0.07%
Android LWIS: Rechteausweitung durch Use-after-free in lwis_event.c
- CVE-2026-0150 HochScore 47 CVSS 7.8 EPSS 0.07%
Android EdgeTPU-Firmware – Out-of-bounds-Write durch Integer-Überlauf
- CVE-2026-0152 HochScore 47 CVSS 7.8 EPSS 0.07%
Android – Lokale Rechteausweitung durch Logikfehler in pmr_os.c (OSMMapPMRGeneric)
- CVE-2026-0153 HochScore 47 CVSS 7.8 EPSS 0.07%
Out-of-Bounds-Write in msg_to_host_buffer.cc ermöglicht Rechteausweitung
- CVE-2026-24155 HochScore 47 CVSS 7.8 EPSS 0.19%
NVIDIA NeMo Framework: Code-Injection-Schwachstelle
- CVE-2026-24228 HochScore 47 CVSS 7.8 EPSS 0.16%
NVIDIA NeMo Framework (Linux) – Deserialisierung nicht vertrauenswürdiger Daten
- CVE-2026-46331 HochScore 47 CVSS 7.8 EPSS 0.32%
Linux-Kernel: Page-Cache-Korruption durch fehlerhaftes pedit-COW (net/sched)
- CVE-2026-47964 HochScore 47 CVSS 7.8 EPSS 0.20%
Adobe DNG SDK: Heap-basierter Pufferüberlauf ermöglicht Codeausführung
- CVE-2026-0156 HochScore 45 CVSS 7.5 EPSS 0.21%
Android: Fehlende NULL-Prüfung in RtpSession ermöglicht Denial of Service
- CVE-2026-0131 HochScore 44 CVSS 7.3 EPSS 0.07%
RtpPacket::decodePacket: Integer-Überlauf ermöglicht lokale Rechteausweitung
- CVE-2026-0125 HochScore 42 CVSS 7 EPSS 0.07%
Android: Use-after-Free durch Race Condition in vpu_ioctl.c
- CVE-2026-9261 MittelScore 41 CVSS 6.8 EPSS 0.18%
Canon EOS Network Setting Tool: Schwache SSH-Kryptoalgorithmen
- CVE-2024-22447 MittelScore 40 CVSS 6.7 EPSS 0.10%
Dell Peripheral Manager: Unkontrolliertes Search-Path-Element ermöglicht DLL-Preloading
- CVE-2024-22451 MittelScore 40 CVSS 6.7 EPSS 0.10%
Dell Peripheral Manager: Uncontrolled Search Path Element
- CVE-2026-0127 MittelScore 39 CVSS 6.5 EPSS 0.25%
Android/ChromeOS: Out-of-Bounds-Read im NRMM-Decoder (Remote-DoS)
- CVE-2026-0128 MittelScore 39 CVSS 6.5 EPSS 0.18%
Out-of-Bounds-Read durch Integer-Überlauf in RtcpFbPacket::decodeRtcpFbPacket
- CVE-2026-0136 MittelScore 39 CVSS 6.5 EPSS 0.25%
Modem-Komponente: Out-of-Bounds-Read (Remote DoS)
- CVE-2026-0144 MittelScore 39 CVSS 6.5 EPSS 0.25%
Android AocAudioCodec Out-of-Bounds Denial of Service (writeAocCommand)
- CVE-2026-9258 MittelScore 39 CVSS 6.5 EPSS 0.27%
Canon EOS Network Setting Tool: Fehlerhafte Prüfung von SSH-Hostschlüsseln
- CVE-2026-9259 MittelScore 39 CVSS 6.5 EPSS 0.19%
Canon EOS Network Setting Tool: Unzureichende Server-Zertifikatsprüfung
- CVE-2026-9262 MittelScore 39 CVSS 6.5 EPSS 0.26%
Canon EOS Network Setting Tool – Unsicheres Protokoll als Standard-FTP-Konfiguration
- CVE-2026-9260 MittelScore 37 CVSS 6.2 EPSS 0.23%
Canon EOS Network Setting Tool: Fest codierte kryptografische Schlüssel (≤ 1.5.0)
- CVE-2026-0165 MittelScore 34 CVSS 5.7 EPSS 0.17%
RTCP-Paket-Decoder: Out-of-bounds-Read durch fehlende Bereichsprüfung
- CVE-2026-1764 MittelScore 34 CVSS 5.6 EPSS 0.21%
GNOME localsearch: Fehlende Bereichsprüfung im MP3-Extractor
- CVE-2026-1766 MittelScore 34 CVSS 5.6 EPSS 0.16%
GNOME localsearch – Heap-Buffer-Overflow im MP3-Extractor
- CVE-2026-1767 MittelScore 34 CVSS 5.6 EPSS 0.25%
GNOME localsearch: Heap-Buffer-Overflow im MP3-Extractor
- CVE-2026-47927 MittelScore 33 CVSS 5.5 EPSS 0.17%
Adobe DNG SDK: Out-of-bounds-Read ermöglicht Offenlegung von Speicherinhalten
Diesem Feed folgen, kostenlos
Per RSS sofort nutzbar: global, pro Kategorie oder pro Produkt. E-Mail und Webhook richten wir auf Anfrage ein. Stündlich aktualisiert, frei zugänglich für alle.