7.7

CVSS4.0

CVE-2026-3125 - SSRF vulnerability in opennextjs-cloudflare via /cdn-cgi/ path normalization bypass

A Server-Side Request Forgery (SSRF) vulnerability was identified in the @opennextjs/cloudflare package, resulting from a path normalization bypass in the /cdn-cgi/image/ handler.The @opennextjs/cloudflare worker template includes a /cdn-cgi/image/ handler intended for development use only. In prod…

📅 Published: March 4, 2026, 6:14 p.m. 🔄 Last Modified: April 18, 2026, 10:15 a.m.

5.8

CVSS3.1

CVE-2026-20073 - Cisco Secure Firewall Adaptive Security Appliance Software and Cisco Secure Firewall Threat Defense…

A vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to send traffic that should be denied through an affected device. This vulnerability is due to improper erro…

📅 Published: March 4, 2026, 5:52 p.m. 🔄 Last Modified: May 4, 2026, 5:08 p.m.

6.1

CVSS3.1

CVE-2026-20102 - Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SAML …

A vulnerability in the SAML 2.0 single sign-on (SSO) feature of Cisco Secure Firewall ASA Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against the SAML feature and access sensitive, br…

📅 Published: March 4, 2026, 5:52 p.m. 🔄 Last Modified: April 16, 2026, 8:28 p.m.

6.1

CVSS3.1

CVE-2026-20070 - Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software VPN W…

A vulnerability in the VPN web services component of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a browser that is acce…

📅 Published: March 4, 2026, 5:51 p.m. 🔄 Last Modified: May 4, 2026, 5:24 p.m.

4.3

CVSS3.1

CVE-2026-20069 - Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software VPN W…

A vulnerability in the VPN web services component of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct browser-based attacks against users of an affected device. This…

📅 Published: March 4, 2026, 5:51 p.m. 🔄 Last Modified: April 16, 2026, 1:30 p.m.

5.8

CVSS3.1

CVE-2026-20068 - Multiple Cisco Products Snort 3 TBD Denial of Service Vulnerability

Multiple Cisco products are affected by a vulnerability in the Snort 3 detection engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection. This vulnerability is due to incomplete error checking…

📅 Published: March 4, 2026, 5:49 p.m. 🔄 Last Modified: April 17, 2026, 1:15 p.m.

5.8

CVSS3.1

CVE-2026-20067 - Multiple Cisco Products Snort 3 TBD Denial of Service Vulnerability

Multiple Cisco products are affected by a vulnerability in the Snort 3 detection engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection.  This vulnerability is due to incomplete error ch…

📅 Published: March 4, 2026, 5:49 p.m. 🔄 Last Modified: April 16, 2026, 1:30 p.m.

5.8

CVSS3.1

CVE-2026-20066 - Multiple Cisco Products Snort 3 TBD Denial of Service Vulnerability

Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection. This vulnerability is due to an error in the JSTokeniz…

📅 Published: March 4, 2026, 5:49 p.m. 🔄 Last Modified: April 16, 2026, 1:30 p.m.

5.8

CVSS3.1

CVE-2026-20065 - Multiple Cisco Products Snort 3 TBD Denial of Service Vulnerability

Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection. This vulnerability is due to an error in the binder mo…

📅 Published: March 4, 2026, 5:48 p.m. 🔄 Last Modified: April 16, 2026, 1:30 p.m.

6

CVSS3.1

CVE-2026-20063 - Cisco Secure FTD Software Authenticated Command Injection Vulnerability

A vulnerability in the CLI of Cisco Secure FTD Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system as root. To exploit this vulnerability, the attacker must have valid administrative credentials on an affected device. This vulner…

📅 Published: March 4, 2026, 5:48 p.m. 🔄 Last Modified: April 17, 2026, 1:15 p.m.
Total resulsts: 349182
Page 1340 of 34,919
« previous page » next page
Filters