Skip to main content

CWE archive

CWE-1241 CVEs

Programmatic archive

9 CVEs tagged with CWE-12410 Critical, 5 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2026-57869

Published Jul 7, 2026

Broken object-level access controls and the use of a deterministic pattern during random ID generation in MicroRealEstate allows attackers to access documents uploaded by landlord…

CVSS 7.1 · High
evidence mentions
2
Buzz score
21.0

CVE-2026-6420

Published May 6, 2026

A flaw was found in Keylime. An attacker with root access on an enrolled monitored machine, where the Keylime agent runs, can exploit a vulnerability in the Keylime verifier. The…

CVSS 6.3 · Medium
evidence mentions
3
Buzz score
23.9

CVE-2026-26018

Published Mar 6, 2026

CoreDNS is a DNS server that chains plugins. Prior to version 1.14.2, a denial of service vulnerability exists in CoreDNS's loop detection plugin that allows an attacker to crash…

CVSS 7.5 · High
evidence mentions
8
Buzz score
35.0
Vendor/product tagsBeta · best-effort

CVE-2025-13079

Published Feb 19, 2026

The Popup Builder – Create highly converting, mobile friendly marketing popups. plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.…

CVSS 5.3 · Medium
evidence mentions
4
Buzz score
22.6

CVE-2025-32056

Published Jan 22, 2026

The anti-theft protection mechanism can be bypassed by attackers due to weak response generation algorithms for the head unit. It is possible to reveal all 32 corresponding respon…

CVSS 4.0 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2023-4695

Published Sep 1, 2023

Use of Predictable Algorithm in Random Number Generator in GitHub repository pkp/pkp-lib prior to 3.3.0-16.

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1