7.1

CVSS3.1

CVE-2026-26001 - GLPI Inventory Plugin has SQL Injection on dropdown_calendar Report

The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collection for GLPI agents. Prior to 1.6.6, non sanitized user input can lend to an SQL injection from reports, with adequate rights. This vulnerability is fixed in 1.6.6.

๐Ÿ“… Published: March 17, 2026, 11:18 p.m. ๐Ÿ”„ Last Modified: March 18, 2026, 8:16 p.m.

6.5

CVSS3.1

CVE-2026-25937 - GLPI has a MFA bypass

GLPI is a free Asset and IT management software package. Starting in version 11.0.0 and prior to version 11.0.6, a malicious actor with knowledge of a user's credentials can bypass MFA and steal their account. Version 11.0.6 fixes the issue.

๐Ÿ“… Published: March 17, 2026, 11:16 p.m. ๐Ÿ”„ Last Modified: March 19, 2026, 3:55 a.m.

7.5

CVSS3.1

CVE-2026-22727 - Cloud Foundry unprotected internal endpoints

Unprotected internal endpoints in Cloud Foundry Capi Release 1.226.0 and below, and CF Deployment v54.9.0 and below on all platforms allows any user who has bypassed the firewall to potentially replace droplets and therefore applications allowing them to access secure application information.

๐Ÿ“… Published: March 17, 2026, 10:45 p.m. ๐Ÿ”„ Last Modified: March 19, 2026, 3:55 a.m.

9.8

CVSS3.1

CVE-2026-21994 -

Vulnerability in the Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit product of Oracle Open Source Projects (component: Desktop). The supported version that is affected is 0.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to cโ€ฆ

๐Ÿ“… Published: March 17, 2026, 10:43 p.m. ๐Ÿ”„ Last Modified: March 18, 2026, 3:16 p.m.

7.1

CVSS3.1

CVE-2026-1264 - IBM Sterling B2B Integrator and IBM Sterling File Gateway Improper Access Controls

IBM Sterling B2B Integratorย and IBM Sterling File Gatewayย 6.1.0.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_1, 6.2.1.0 through 6.2.1.1_1, and 6.2.2.0 allows a remote unauthenticated attacker to view and delete the partners of a community and to delete the communities.

๐Ÿ“… Published: March 17, 2026, 10:41 p.m. ๐Ÿ”„ Last Modified: March 19, 2026, 2:20 p.m.

7.5

CVSS3.1

CVE-2025-14031 - IBM Sterling B2B Integrator and IBM Sterling File Gateway Denial of Service

IBM Sterling B2B Integrator andย and IBM Sterling File Gatewayย 6.1.0.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_1, 6.2.1.0 through 6.2.1.1_1, and 6.2.2.0 could allow an unauthenticated attacker to send a specially crafted request that causes the application to crash.

๐Ÿ“… Published: March 17, 2026, 10:41 p.m. ๐Ÿ”„ Last Modified: March 19, 2026, 2:20 p.m.

5.4

CVSS3.1

CVE-2026-20643 -

A cross-origin issue in the Navigation API was addressed with improved input validation. This issue is fixed in Background Security Improvements for iOS 26.3.1, iPadOS 26.3.1, macOS 26.3.1, and macOS 26.3.2. Processing maliciously crafted web content may bypass Same Origin Policy.

๐Ÿ“… Published: March 17, 2026, 10:29 p.m. ๐Ÿ”„ Last Modified: March 19, 2026, 5:16 p.m.

5.3

CVSS3.1

CVE-2026-3856 - IBM Db2 Recovery Expert Missing Integrity Check

IBM Db2 Recovery Expert for Linux, UNIX and Windows 5.5 IF 2 could allow an attacker to modify or corrupt data due to an insecure mechanism used for verifying the integrity of the data during transmission.

๐Ÿ“… Published: March 17, 2026, 10:20 p.m. ๐Ÿ”„ Last Modified: March 19, 2026, 2:20 p.m.

0.0

CVE-2026-33188 -

Further research determined the issue originates from a different product.

๐Ÿ“… Published: March 17, 2026, 10:16 p.m. ๐Ÿ”„ Last Modified: March 18, 2026, 2:16 a.m.

0.0

CVE-2026-33189 -

Further research determined the issue originates from a different product.

๐Ÿ“… Published: March 17, 2026, 10:16 p.m. ๐Ÿ”„ Last Modified: March 18, 2026, 2:16 a.m.
Total resulsts: 339221
Page 87 of 33,923
ยซ previous page ยป next page
Filters