ALPHACON BBSGość · pl

WIEDZA Z SIECI

Podatności

Wyniki: 119

Ostatnia aktualizacja: 28.09.2026 12:15

CISA KEV · AKTYWNIE WYKORZYSTYWANE · CVSS 9.3

CVE-2026-19490 · Citrix NetScaler Authentication Bypass Using an Alternate Path or Channel Vulnerability

Citrix NetScaler ADC and NetScaler Gateway contain an authentication-bypass vulnerability involving an alternate path or channel. When the NetScaler appliance is configured as an AAA virtual server or as a Gateway (SSL VPN, ICA Proxy, CVPN, or RDP Proxy), an unauthenticated remote threat actor may be able to bypass authentication.Czytaj całość ↵Źródło — otwiera w nowej karcie
CISA KEV · AKTYWNIE WYKORZYSTYWANE · CVSS 8.8

CVE-2026-87491 · Google Chromium V8 Out of Bounds Write Vulnerability

Google Chromium V8 contains an out of bounds write vulnerability that allows a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.Czytaj całość ↵Źródło — otwiera w nowej karcie
CISA KEV · AKTYWNIE WYKORZYSTYWANE · CVSS 10.0

CVE-2026-20079 · Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel Vulnerability

Cisco Secure Firewall Management Center (FMC) Software and Cisco Security Cloud Control (SCC) Firewall Management contain an authentication Bypass using an alternate path or channel vulnerability that could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access to the underlying operating system.Czytaj całość ↵Źródło — otwiera w nowej karcie
CISA KEV · AKTYWNIE WYKORZYSTYWANE · CVSS 6.5

CVE-2026-48710 · Kludex Starlette HTTP Request/Response Smuggling Vulnerability

Kludex Starlette contains a HTTP request/response smuggling vulnerability that could allow attackers to inject paths into the host part, prepending the actual path leading to issues such as authentication bypass when the authentication depends on the reconstructed URL’s path. This vulnerability could be chaned with CVE-2026-42271.Czytaj całość ↵Źródło — otwiera w nowej karcie