Skip to main content

CWE archive

CWE-266 CVEs

Programmatic archive

1,010 CVEs tagged with CWE-266109 Critical, 273 High, 374 Medium, 253 Low, 1 Unrated.

CVE-2025-2954

Published Mar 30, 2025

A vulnerability, which was classified as problematic, was found in mannaandpoem OpenManus up to 2025.3.13. This affects the function execute of the file app/tool/file_saver.py of…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-2713

Published Mar 28, 2025

Google gVisor's runsc component exhibited a local privilege escalation vulnerability due to incorrect handling of file access permissions, which allowed unprivileged users to acce…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-26512

Published Mar 24, 2025

SnapCenter versions prior to 6.0.1P1 and 6.1P1 are susceptible to a vulnerability which may allow an authenticated SnapCenter Server user to become an admin user on a remote sy…

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-2686

Published Mar 24, 2025

A vulnerability has been found in mingyuefusu 明月复苏 tushuguanlixitong 图书管理系统 up to d4836f6b49cd0ac79a4021b15ce99ff7229d4694 and classified as critical. Affected by this vulnerabili…

CVSS 6.9 · Medium

CVE-2025-2653

Published Mar 23, 2025

A vulnerability was found in FoxCMS 1.25 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to improper authorization. The…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-2639

Published Mar 23, 2025

A vulnerability has been found in JIZHICMS up to 1.7.0 and classified as problematic. This vulnerability affects unknown code of the file /user/release.html of the component Artic…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-2638

Published Mar 23, 2025

A vulnerability, which was classified as problematic, was found in JIZHICMS up to 1.7.0. This affects an unknown part of the file /user/release.html of the component Article Handl…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-2637

Published Mar 23, 2025

A vulnerability, which was classified as problematic, has been found in JIZHICMS up to 1.7.0. Affected by this issue is some unknown functionality of the file /user/userinfo.html…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-2557

Published Mar 20, 2025

A vulnerability, which was classified as critical, has been found in Audi UTR Dashcam 2.0. Affected by this issue is some unknown functionality of the component Command API. The m…

CVSS 5.1 · Medium

CVE-2025-0628

Published Mar 20, 2025

An improper authorization vulnerability exists in the main-latest version of BerriAI/litellm. When a user with the role 'internal_user_viewer' logs into the application, they are…

CVSS 8.1 · High
evidence mentions
2
Buzz score
17.5

CVE-2025-2397

Published Mar 17, 2025

A vulnerability was found in China Mobile P22g-CIac, ZXWT-MIG-P4G4V, ZXWT-MIG-P8G8V, GT3200-4G4P and GT3200-8G8P up to 20250305. It has been declared as problematic. This vulnerab…

CVSS 4.8 · Medium

CVE-2024-49561

Published Mar 17, 2025

Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Incorrect Privilege Assignment vulnerability. A low privileged attacker with local…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-2345

Published Mar 16, 2025

A vulnerability, which was classified as very critical, was found in IROAD Dash Cam X5 and Dash Cam X6 up to 20250308. This affects an unknown part. The manipulation leads to impr…

CVSS 9.3 · Critical
Showing 701-725 of 1,010 CVEsPage 29 of 41