Skip to main content

CWE archive

CWE-281 CVEs

Programmatic archive

337 CVEs tagged with CWE-28131 Critical, 148 High, 132 Medium, 24 Low, 2 Unrated.

CVE-2026-23556

Published Jul 9, 2026

When oxenstored is tearing a domain down, the node data is cleaned up but the usage counts are leaked. When the domain ID is eventually reused, the new domain can create fewer no…

CVSS 9.4 · Critical
evidence mentions
3
Buzz score
23.9

CVE-2026-58494

Published Jul 8, 2026

Wasmtime is a runtime for WebAssembly. Prior to 24.0.11, 36.0.12, 45.0.3, and 46.0.1, wasmtime-wasi hard-link creation and renaming check directory permissions but not matching Fi…

CVSS 6.5 · Medium
evidence mentions
9
Buzz score
28.0

CVE-2026-4360

Published Jun 30, 2026

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could e…

CVSS 2.0 · Low
evidence mentions
10
Buzz score
39.0
Vendor/product tagsBeta · best-effort

CVE-2026-44947

Published Jun 30, 2026

A missing clean-up in the legacy Project Role Template Binding (PRTB) reconciler in Rancher versions 2.13.0 up to 2.13.7 and 2.14.0 up to 2.14.3 allowed users to retain unauthori…

CVSS 6.9 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-40767

Published Jun 15, 2026

Unauthenticated Broken Access Control in wpForo Forum < 3.0.2 versions.

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-44832

Published May 26, 2026

Snipe-IT is an IT asset/license management system. Prior to 8.4.1, aAn authenticated user with only users.edit permission can escalate their own privileges to admin by sending a P…

CVSS 8.7 · High
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2026-24194

Published May 26, 2026

NVIDIA Display Driver for Linux contains a vulnerability in a kernel mode layer handler, where a user could cause improper permission handling. A successful exploit of this vulner…

CVSS 7.8 · High
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-39832

Published May 22, 2026

When adding a key to a remote agent constraint extensions such as [email protected] were not serialized in the request. Destination restrictions were silently s…

CVSS 9.1 · Critical
evidence mentions
33
Buzz score
50.0
Vendor/product tagsBeta · best-effort

CVE-2026-39828

Published May 22, 2026

When an SSH server authentication callback returned PartialSuccessError with non-nil Permissions, those permissions were silently discarded, potentially dropping certificate restr…

CVSS 6.3 · Medium
evidence mentions
46
Buzz score
50.0
Vendor/product tagsBeta · best-effort

CVE-2026-34744

Published May 19, 2026

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.28.1 and prior permit a user to list and download their own attachments from an Issue created by another…

CVSS 5.3 · Medium
evidence mentions
3
Buzz score
23.9

CVE-2026-34600

Published May 19, 2026

Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Versions 3.5.2 and prior contain a logic error in the delta API that allo…

CVSS 5.7 · Medium
evidence mentions
3
Buzz score
18.9

CVE-2026-25850

Published May 19, 2026

in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-35361

Published Apr 22, 2026

The mknod utility in uutils coreutils fails to handle security labels atomically by creating device nodes before setting the SELinux context. If labeling fails, the utility attemp…

CVSS 3.4 · Low
evidence mentions
2
Buzz score
20.5
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-35351

Published Apr 22, 2026

The mv utility in uutils coreutils fails to preserve file ownership during moves across different filesystem boundaries. The utility falls back to a copy-and-delete routine that c…

CVSS 4.2 · Medium
evidence mentions
1
Buzz score
16.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-35350

Published Apr 22, 2026

The cp utility in uutils coreutils fails to properly handle setuid and setgid bits when ownership preservation fails. When copying with the -p (preserve) flag, the utility applies…

CVSS 6.6 · Medium
evidence mentions
1
Buzz score
16.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-35385

Published Apr 2, 2026

In OpenSSH before 10.3, a file downloaded by scp may be installed setuid or setgid, an outcome contrary to some users' expectations, if the download is performed as root with -O (…

CVSS 7.5 · High
evidence mentions
37
Buzz score
50.0
Vendor/product tagsBeta · best-effort

CVE-2026-24834

Published Feb 19, 2026

Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. In versions prior to 3.27.0, an…

CVSS 9.3 · Critical
evidence mentions
6
Buzz score
32.5
Vendor/product tagsBeta · best-effort

CVE-2025-69875

Published Feb 3, 2026

A vulnerability exists in Quick Heal Total Security 23.0.0 in the quarantine management component where insufficient validation of restore paths and improper permission handling a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-9615

Published Jan 26, 2026

A flaw was found in NetworkManager. The NetworkManager package allows access to files that may belong to other users. NetworkManager allows non-root users to configure the system'…

CVSS 3.3 · Low

CVE-2025-55130

Published Jan 20, 2026

A flaw in Node.js’s Permissions model allows attackers to bypass `--allow-fs-read` and `--allow-fs-write` restrictions using crafted relative symlink paths. By chaining directorie…

CVSS 9.1 · Critical
evidence mentions
20
Buzz score
43.0
Vendor/product tagsBeta · best-effort

CVE-2024-12125

Published Nov 6, 2025

A flaw was found in the 3scale Developer Portal. When creating or updating an account in the Developer Portal UI it is possible to modify fields explicitly configured as read-only…

CVSS 7.5 · High

CVE-2025-37735

Published Nov 6, 2025

Improper preservation of permissions in Elastic Defend on Windows hosts can lead to arbitrary files on the system being deleted by the Defend service running as SYSTEM. In some ca…

CVSS 7.0 · High

CVE-2025-34298

Published Oct 30, 2025

Nagios Log Server versions prior to 2024R1.3.2 contain a privilege escalation vulnerability in the account email-change workflow. A user could set their own email to an invalid va…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 337 CVEsPage 1 of 14