Skip to main content

CWE archive

CWE-266 CVEs

Programmatic archive

1,006 CVEs tagged with CWE-266107 Critical, 272 High, 374 Medium, 252 Low, 1 Unrated.

CVE-2026-3796

Published Mar 9, 2026

A weakness has been identified in Qi-ANXIN QAX Virus Removal up to 2025-10-22. The affected element is the function ZwTerminateProcess in the library QKSecureIO_Imp.sys of the com…

CVSS 1.9 · Low
evidence mentions
5
Buzz score
24.4
Vendor/product tagsBeta · best-effort

CVE-2026-3738

Published Mar 8, 2026

A vulnerability was identified in SourceCodester Pet Grooming Management Software 1.0. This vulnerability affects unknown code of the component Financial Report Page. The manipula…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
33.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-3737

Published Mar 8, 2026

A vulnerability was determined in SourceCodester Pet Grooming Management Software 1.0. This affects an unknown part of the file add_user.php of the component User Creation Handler…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
33.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-3675

Published Mar 7, 2026

A vulnerability was determined in Freedom Factory dGEN1 up to 20260221. Affected by this issue is the function FakeAppReceiver of the component org.ethosmobile.ethoslauncher. Exec…

CVSS 1.9 · Low
evidence mentions
4
Buzz score
22.6

CVE-2026-3674

Published Mar 7, 2026

A vulnerability was found in Freedom Factory dGEN1 up to 20260221. Affected by this vulnerability is the function FakeAppProvider of the component org.ethosmobile.ethoslauncher. P…

CVSS 1.9 · Low
evidence mentions
4
Buzz score
22.6

CVE-2026-3671

Published Mar 7, 2026

A flaw has been found in Freedom Factory dGEN1 up to 20260221. Affected by this vulnerability is the function TokenBalanceContentProvider of the component org.ethereumphone.wallet…

CVSS 1.9 · Low
evidence mentions
4
Buzz score
22.6

CVE-2026-3670

Published Mar 7, 2026

A vulnerability was detected in Freedom Factory dGEN1 up to 20260221. Affected is an unknown function of the component com.dgen.alarm. Performing a manipulation results in imprope…

CVSS 1.9 · Low
evidence mentions
4
Buzz score
22.6

CVE-2026-3669

Published Mar 7, 2026

A security vulnerability has been detected in Freedom Factory dGEN1 up to 20260221. This impacts the function AlarmService of the component com.dgen.alarm. Such manipulation leads…

CVSS 1.9 · Low
evidence mentions
4
Buzz score
22.6

CVE-2026-3668

Published Mar 7, 2026

A weakness has been identified in Freedom Factory dGEN1 up to 20260221. This affects the function AndroidEthereum of the component org.ethosmobile.webpwaemul. This manipulation ca…

CVSS 1.3 · Low
evidence mentions
4
Buzz score
22.6

CVE-2026-3667

Published Mar 7, 2026

A security flaw has been discovered in Freedom Factory dGEN1 up to 20260221. The impacted element is the function FakeAppService of the component org.ethosmobile.ethoslauncher. Th…

CVSS 1.9 · Low
evidence mentions
5
Buzz score
24.4

CVE-2026-27983

Published Mar 5, 2026

Incorrect Privilege Assignment vulnerability in designthemes LMS Elementor Pro lms-elementor-pro allows Privilege Escalation.This issue affects LMS Elementor Pro: from n/a through…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2026-27541

Published Mar 5, 2026

Incorrect Privilege Assignment vulnerability in Josh Kohlbach Wholesale Suite woocommerce-wholesale-prices allows Privilege Escalation.This issue affects Wholesale Suite: from n/a…

CVSS 7.2 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-24963

Published Mar 5, 2026

Incorrect Privilege Assignment vulnerability in ameliabooking Amelia ameliabooking allows Privilege Escalation.This issue affects Amelia: from n/a through <= 1.2.38.

CVSS 7.2 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-21425

Published Mar 4, 2026

Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains an incorrect privilege assignment vulnerability. A low privileged attacker with…

CVSS 6.7 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-15597

Published Mar 2, 2026

A vulnerability has been found in Dataease SQLBot up to 1.4.0. This affects an unknown function of the file backend/apps/system/api/assistant.py of the component API Endpoint. Suc…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2026-0871

Published Feb 27, 2026

A flaw was found in Keycloak. An administrator with `manage-users` permission can bypass the "Only administrators can view" setting for unmanaged attributes, allowing them to modi…

CVSS 4.9 · Medium
evidence mentions
4
Buzz score
26.1
Vendor/product tagsBeta · best-effort

CVE-2026-3268

Published Feb 26, 2026

A vulnerability was detected in psi-probe PSI Probe up to 5.3.0. The affected element is an unknown function of the file psi-probe-core/src/main/java/psiprobe/controllers/sessions…

CVSS 2.1 · Low
evidence mentions
4
Buzz score
27.1
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-3265

Published Feb 26, 2026

A vulnerability was identified in go2ismail Free-CRM up to b83c40a90726d5e58f0cc680ffdcaa28a03fb5d1. This affects an unknown part of the file /api/Security/ of the component Secur…

CVSS 2.1 · Low
evidence mentions
4
Buzz score
27.1
Public PoC observed
Vendor/product tagsBeta · best-effort
Showing 251-275 of 1,006 CVEsPage 11 of 41