Search

Search Results (375984 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-54371 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2023-54370 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2023-54369 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2023-54368 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2023-54367 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2021-47995 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2021-47994 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2021-47993 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2021-47992 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2021-47991 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2021-47990 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2021-47989 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2021-47988 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2022-50974 2026-08-11 N/A
This CVE ID has been rejected.
CVE-2026-44765 1 Sap 1 Manufacturing Integration And Intelligence 2026-08-11 7.3 High
Due to a Missing Authorization Check vulnerability in SAP Manufacturing Integration and Intelligence, an unauthenticated remote attacker could access scheduling-related application functions without proper authorization validation. Successful exploitation could allow the attacker to retrieve, create, modify, or delete application-managed scheduling data, causing a low impact on confidentiality, integrity, and availability.
CVE-2026-58230 1 Sap Se 1 Sap Business Ai Platform (approuter) 2026-08-11 7 High
SAP Approuter does not sufficiently validate certain token content under specific configurations. An unauthenticated attacker could send a specially crafted token to cause sensitive credential material to be sent to an attacker-controlled destination. The attack complexity is high due to non-default preconditions required in the target environment. This results in a high impact on confidentiality and a low impact on integrity and availability.
CVE-2026-72922 2026-08-11 8.2 High
AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.70, AutoGPT's autogpt_platform/backend/backend/api/features/integrations/router.py webhook_ingress_generic route selected get_webhook_manager(provider) from the untrusted provider URL segment without verifying webhook.provider, allowing a request to /compass/webhooks/{webhook_id}/ingress to use CompassWebhookManager's inherited no-op BaseWebhooksManager.verify_signature instead of GenericWebhooksManager.verify_signature, bypass X-Webhook-Secret for a configured secret_token, and execute a generic webhook graph as its owner. This issue is fixed in version 0.6.70.
CVE-2026-58235 1 Sap Se 1 Sap Netweaver As Java (adobe Document Services) 2026-08-11 6.3 Medium
SAP NetWeaver Application Server Java (Adobe Document Service) uses outdated open source cryptographic and data transfer libraries that contain known vulnerabilities addressed in later versions. A low-privileged authenticated attacker could potentially leverage these weaknesses against the affected component, though no specific exploit is currently known. Successful exploitation could result in low impact on confidentiality, integrity, and availability of the system.
CVE-2026-58236 1 Sap Se 1 Sap Netweaver Application Server Abap And Abap Platform 2026-08-11 5.5 Medium
SAP NetWeaver Application Server ABAP and ABAP Platform allow an attacker with high privileges to bypass missing security controls on an internal code path leading to operating system command execution. Successful exploitation could allow the attacker to execute OS-level commands that write to the operating system or stop the SAP system, resulting in no impact on confidentiality, low impact on integrity, and high impact on availability.
CVE-2026-58237 1 Sap Se 1 Sap Business Ai Platform (approuter) 2026-08-11 5.9 Medium
WebSocket of SAP Approuter does not perform sufficient authorization checks in certain functionality. An attacker with low privileges could exploit this to access restricted functionality. Successful exploitation could allow the attacker to read sensitive information and perform limited modifications, resulting in a high impact on confidentiality and a low impact on integrity. There is no impact on availability.