Live-Feed 1649 aktiv ausgenutzt

Priorisierte Schwachstellen

Aktiv ausgenutzte und priorisierte CVEs, stündlich aktualisiert und nach NIS2/CRA-Relevanz gefiltert. Standardmässig die neuesten zuerst – umschaltbar nach Priorität (KEV, Severity, EPSS). Kostenlos & offen für alle.

24248
CVEs gesamt
1649
Aktiv ausgenutzt (KEV)
295
Ransomware-Bezug
4900
Kritisch

Zeige 4801 bis 4850 von 24248

  1. CVE-2026-0135 Hoch
    Score 47 CVSS 7.8 EPSS 0.10%

    Android Modem – Out-of-Bounds-Read ermöglicht Remote Code Execution

  2. CVE-2026-0137 Hoch
    Score 47 CVSS 7.8 EPSS 0.07%

    Android edgetpu-dmabuf: Use-after-free ermöglicht Rechteausweitung

  3. CVE-2026-0138 Hoch
    Score 47 CVSS 7.8 EPSS 0.07%

    Android/ChromeOS – Out-of-bounds Write in lwis_io_buffer_write

  4. CVE-2026-0143 Hoch
    Score 47 CVSS 7.8 EPSS 0.07%

    Android LWIS: Rechteausweitung durch Use-after-free in lwis_event.c

  5. CVE-2026-0150 Hoch
    Score 47 CVSS 7.8 EPSS 0.07%

    Android EdgeTPU-Firmware – Out-of-bounds-Write durch Integer-Überlauf

  6. CVE-2026-0152 Hoch
    Score 47 CVSS 7.8 EPSS 0.07%

    Android – Lokale Rechteausweitung durch Logikfehler in pmr_os.c (OSMMapPMRGeneric)

  7. CVE-2026-0153 Hoch
    Score 47 CVSS 7.8 EPSS 0.07%

    Out-of-Bounds-Write in msg_to_host_buffer.cc ermöglicht Rechteausweitung

  8. CVE-2026-24155 Hoch
    Score 47 CVSS 7.8 EPSS 0.19%

    NVIDIA NeMo Framework: Code-Injection-Schwachstelle

  9. CVE-2026-24228 Hoch
    Score 47 CVSS 7.8 EPSS 0.16%

    NVIDIA NeMo Framework (Linux) – Deserialisierung nicht vertrauenswürdiger Daten

  10. CVE-2026-46331 Hoch
    Score 47 CVSS 7.8 EPSS 0.32%

    Linux-Kernel: Page-Cache-Korruption durch fehlerhaftes pedit-COW (net/sched)

  11. CVE-2026-47964 Hoch
    Score 47 CVSS 7.8 EPSS 0.20%

    Adobe DNG SDK: Heap-basierter Pufferüberlauf ermöglicht Codeausführung

  12. CVE-2026-0156 Hoch
    Score 45 CVSS 7.5 EPSS 0.21%

    Android: Fehlende NULL-Prüfung in RtpSession ermöglicht Denial of Service

  13. CVE-2026-0131 Hoch
    Score 44 CVSS 7.3 EPSS 0.07%

    RtpPacket::decodePacket: Integer-Überlauf ermöglicht lokale Rechteausweitung

  14. CVE-2026-0125 Hoch
    Score 42 CVSS 7 EPSS 0.07%

    Android: Use-after-Free durch Race Condition in vpu_ioctl.c

  15. CVE-2026-9261 Mittel
    Score 41 CVSS 6.8 EPSS 0.18%

    Canon EOS Network Setting Tool: Schwache SSH-Kryptoalgorithmen

  16. CVE-2024-22447 Mittel
    Score 40 CVSS 6.7 EPSS 0.10%

    Dell Peripheral Manager: Unkontrolliertes Search-Path-Element ermöglicht DLL-Preloading

  17. CVE-2024-22451 Mittel
    Score 40 CVSS 6.7 EPSS 0.10%

    Dell Peripheral Manager: Uncontrolled Search Path Element

  18. CVE-2026-0127 Mittel
    Score 39 CVSS 6.5 EPSS 0.25%

    Android/ChromeOS: Out-of-Bounds-Read im NRMM-Decoder (Remote-DoS)

  19. CVE-2026-0128 Mittel
    Score 39 CVSS 6.5 EPSS 0.18%

    Out-of-Bounds-Read durch Integer-Überlauf in RtcpFbPacket::decodeRtcpFbPacket

  20. CVE-2026-0136 Mittel
    Score 39 CVSS 6.5 EPSS 0.25%

    Modem-Komponente: Out-of-Bounds-Read (Remote DoS)

  21. CVE-2026-0144 Mittel
    Score 39 CVSS 6.5 EPSS 0.25%

    Android AocAudioCodec Out-of-Bounds Denial of Service (writeAocCommand)

  22. CVE-2026-9258 Mittel
    Score 39 CVSS 6.5 EPSS 0.27%

    Canon EOS Network Setting Tool: Fehlerhafte Prüfung von SSH-Hostschlüsseln

  23. CVE-2026-9259 Mittel
    Score 39 CVSS 6.5 EPSS 0.19%

    Canon EOS Network Setting Tool: Unzureichende Server-Zertifikatsprüfung

  24. CVE-2026-9262 Mittel
    Score 39 CVSS 6.5 EPSS 0.26%

    Canon EOS Network Setting Tool – Unsicheres Protokoll als Standard-FTP-Konfiguration

  25. CVE-2026-9260 Mittel
    Score 37 CVSS 6.2 EPSS 0.23%

    Canon EOS Network Setting Tool: Fest codierte kryptografische Schlüssel (≤ 1.5.0)

  26. CVE-2026-0165 Mittel
    Score 34 CVSS 5.7 EPSS 0.17%

    RTCP-Paket-Decoder: Out-of-bounds-Read durch fehlende Bereichsprüfung

  27. CVE-2026-1764 Mittel
    Score 34 CVSS 5.6 EPSS 0.21%

    GNOME localsearch: Fehlende Bereichsprüfung im MP3-Extractor

  28. CVE-2026-1766 Mittel
    Score 34 CVSS 5.6 EPSS 0.16%

    GNOME localsearch – Heap-Buffer-Overflow im MP3-Extractor

  29. CVE-2026-1767 Mittel
    Score 34 CVSS 5.6 EPSS 0.25%

    GNOME localsearch: Heap-Buffer-Overflow im MP3-Extractor

  30. CVE-2026-47927 Mittel
    Score 33 CVSS 5.5 EPSS 0.17%

    Adobe DNG SDK: Out-of-bounds-Read ermöglicht Offenlegung von Speicherinhalten

  31. CVE-2026-47934 Mittel
    Score 33 CVSS 5.5 EPSS 0.17%

    Adobe DNG SDK: Out-of-bounds-Read mit möglicher Preisgabe von Speicherinhalten

  32. CVE-2026-47963 Mittel
    Score 33 CVSS 5.5 EPSS 0.17%

    Adobe DNG SDK: Informationsoffenlegung durch Out-of-bounds-Read

  33. CVE-2026-46448 Mittel
    Score 32 CVSS 5.4 EPSS 0.27%

    OpenStack Nova: Server-Create-API entfernt bestimmte Hint-Daten nicht

  34. CVE-2026-0140 Mittel
    Score 26 CVSS 4.3 EPSS 0.18%

    Out-of-Bounds-Read in RtpPacket::decodePacket

  35. CVE-2026-0141 Mittel
    Score 26 CVSS 4.3 EPSS 0.20%

    Android: OOB-Lesezugriff in decodeAppPacket (RtcpAppPacket)

  36. CVE-2026-0155 Mittel
    Score 26 CVSS 4.3 EPSS 0.17%

    Android: Out-of-bounds-Read in ImsMediaBitReader::ReadByteBuffer

  37. CVE-2026-0157 Mittel
    Score 26 CVSS 4.3 EPSS 0.17%

    Android/ChromeOS – Out-of-Bounds-Read in RtcpHeader::decodeRtcpHeader

  38. CVE-2026-0129 Niedrig
    Score 21 CVSS 3.5 EPSS 0.17%

    CVE-2026-0129 – Fehlende Bounds-Prüfung in RtcpByePacket (Android/Chrome)

  39. CVE-2026-0130 Niedrig
    Score 21 CVSS 3.5 EPSS 0.17%

    Out-of-Bounds-Read in RtcpChunk::decodeRtcpChunk

  40. CVE-2026-0134 Niedrig
    Score 20 CVSS 3.3 EPSS 0.07%

    Android Recovery: Datenpersistenz nach Werksreset (Informationspreisgabe)

  41. CVE-2026-0142 Niedrig
    Score 20 CVSS 3.3 EPSS 0.07%

    Android: Out-of-Bounds-Read in iavb_parse_key_data (avb_rsa.c)

  42. CVE-2026-0145 Niedrig
    Score 20 CVSS 3.3 EPSS 0.07%

    Android keymint: Berechtigungsumgehung durch Logikfehler

  43. CVE-2026-0158 Niedrig
    Score 20 CVSS 3.3 EPSS 0.06%

    Android: Unbefugter Fotozugriff in der Kamera-Komponente

  44. CVE-2026-20262 Mittel Aktiv ausgenutzt
    Score 100 CVSS 6.5 EPSS 7.68%

    Cisco Catalyst SD-WAN Manager: Beliebiges Schreiben/Überschreiben von Dateien

  45. CVE-2026-54420 Hoch Aktiv ausgenutzt
    Score 100 CVSS 8.5 EPSS 1.26%

    LiteSpeed cPanel-Plugin: Symlink-Following-Schwachstelle unter UNIX

  46. CVE-2026-40772 Kritisch
    Score 60 CVSS 10 EPSS 0.35%

    GeekyBot <= 1.2.2 – Unauthentifizierter Arbitrary File Upload

  47. CVE-2026-48836 Kritisch
    Score 60 CVSS 10 EPSS 0.57%

    Easy Invoice – Unauthenticated Remote Code Execution

  48. CVE-2026-52704 Kritisch
    Score 60 CVSS 10 EPSS 0.31%

    WooCommerce PDF Invoice Builder – Code Injection (Remote Code Inclusion)

  49. CVE-2018-25436 Kritisch
    Score 59 CVSS 9.8 EPSS 0.66%

    WordPress-Plugin Baggage Freight Shipping Australia 0.1.0 – unbeschränkter Datei-Upload

  50. CVE-2026-27053 Kritisch
    Score 59 CVSS 9.8 EPSS 0.39%

    Broadcast Live Video vor 7.1.3: Unauthentifizierte PHP Object Injection

Diesem Feed folgen, kostenlos

Per RSS sofort nutzbar: global, pro Kategorie oder pro Produkt. E-Mail und Webhook richten wir auf Anfrage ein. Stündlich aktualisiert, frei zugänglich für alle.