5.4

CVSS3.1

CVE-2026-34623 - Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)

Adobe Experience Manager versions 6.5.24, FP11.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM environment to execute malicious JavaScript within the context of the victim's browser. Exploitation of thi…

πŸ“… Published: April 14, 2026, 6:26 p.m. πŸ”„ Last Modified: April 15, 2026, 7:41 p.m.

5.4

CVSS3.1

CVE-2026-34624 - Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)

Adobe Experience Manager versions 6.5.24, FP11.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM environment to execute malicious JavaScript within the context of the victim's browser. Exploitation of thi…

πŸ“… Published: April 14, 2026, 6:25 p.m. πŸ”„ Last Modified: April 15, 2026, 7:42 p.m.

5.4

CVSS3.1

CVE-2026-27288 - Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)

Adobe Experience Manager versions 6.5.24, FP11.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM environment to execute malicious JavaScript within the context of the victim's browser. Exploitation of thi…

πŸ“… Published: April 14, 2026, 6 p.m. πŸ”„ Last Modified: April 15, 2026, 7:46 p.m.

8.5

CVSS4.0

CVE-2026-0207 - Sensitive Information Logging Vulnerability in FlashBlade

A vulnerability exists in FlashBlade whereby sensitive information may be logged under specific conditions.

πŸ“… Published: April 14, 2026, 5:53 p.m. πŸ”„ Last Modified: April 17, 2026, 3:38 p.m.

9.3

CVSS3.1

CVE-2026-5752 - CVE-2026-5752

Sandbox Escape Vulnerability in Terrarium allows arbitrary code execution with root privileges on a host process via JavaScript prototype chain traversal.

πŸ“… Published: April 14, 2026, 5:53 p.m. πŸ”„ Last Modified: April 17, 2026, 3:17 p.m.

6.9

CVSS4.0

CVE-2026-0209 - Incorrect Snapshot Retention Timing in Pure Storage FlashArray May Lead to Data Loss

Under certain administrative conditions, FlashArray Purity may apply snapshot retention policies earlier or later than configured.

πŸ“… Published: April 14, 2026, 5:52 p.m. πŸ”„ Last Modified: April 17, 2026, 3:38 p.m.

7.5

CVSS3.1

CVE-2026-5756 - Unauthenticated Configuration File Modification Vulnerability in DRC Central Office Services (COS)

Unauthenticated Configuration File Modification Vulnerability in DRC Central Office Services (COS) allows an attacker to modify the server's configuration file, potentially leading to mass data exfiltration, malicious traffic interception, or disruption of testing services.

πŸ“… Published: April 14, 2026, 5:51 p.m. πŸ”„ Last Modified: April 17, 2026, 3:17 p.m.

6.1

CVSS3.1

CVE-2026-5754 - Radware Alteon has a reflected XSS vulnerability

Reflected Cross-Site Scripting (XSS) Vulnerability in Radware Alteon 34.5.4.0 vADC load-balancer allows an attacker to inject malicious scripts into the website, potentially leading to unauthorized actions, data theft, or other malicious activities.

πŸ“… Published: April 14, 2026, 5:51 p.m. πŸ”„ Last Modified: April 17, 2026, 9 a.m.

5.1

CVSS4.0

CVE-2026-24907 - October CMS has Stored XSS via Event Log Mail Preview

October is a Content Management System (CMS) and web platform. Versions prior to 3.7.14 and 4.1.10 contain a stored cross-site scripting (XSS) vulnerability in the Event Log mail preview feature. When viewing logged mail messages, HTML content was rendered in an iframe without proper sandboxing, al…

πŸ“… Published: April 14, 2026, 5:34 p.m. πŸ”„ Last Modified: April 17, 2026, 3:38 p.m.

9.6

CVSS3.1

CVE-2026-27303 - Adobe Connect | Deserialization of Untrusted Data (CWE-502)

Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed.

πŸ“… Published: April 14, 2026, 5:33 p.m. πŸ”„ Last Modified: April 15, 2026, 3:58 a.m.
Total resulsts: 345147
Page 62 of 34,515
Β« previous page Β» next page
Filters