Skip to main content

CWE archive

CWE-290 CVEs

Programmatic archive

633 CVEs tagged with CWE-290107 Critical, 202 High, 299 Medium, 25 Low, 0 Unrated.

CVE-2026-28900

Published Jul 27, 2026

A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. A maliciously crafted ZIP archive may bypass Gatek…

CVSS 5.5 · Medium
evidence mentions
2
Buzz score
16.0

CVE-2026-28849

Published Jul 27, 2026

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. A maliciously crafted ZIP archive may bypass Gatekeeper checks.

CVSS 5.5 · Medium
evidence mentions
2
Buzz score
16.0

CVE-2026-11922

Published Jul 24, 2026

A vulnerability in zenml-io/zenml versions 0.57.0 through 0.94.2 allows an attacker to bypass rate-limiting on the `POST /api/v1/login` and self password-change endpoints by rotat…

CVSS 6.5 · Medium
evidence mentions
2
Buzz score
17.5

CVE-2026-64875

Published Jul 23, 2026

Joomla Extension - regularlabs.com - IP spoofing vulnerability in GeoIP extension - GeoIP lookups trusted spoofable forwarded client-IP headers, this could cause GeoIP-rule bypass.

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-64797

Published Jul 22, 2026

Joomla Extension - regularlabs.com - IP spoofing vulnerability in IP login extension - IP Login trusted forwarded client-IP headers without requiring a configured trusted proxy. A…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-63683

Published Jul 22, 2026

Joomla Extension - regularlabs.com - Client IP spoofing vulnerability in Regular Labs conditions manager - IP and GeoIP conditions trusted spoofable forwarded headers, allowing re…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-54478

Published Jul 22, 2026

In NLnet Labs Unbound 1.18.0 up to and including 1.25.1, when Unbound listens on a 'proxy-protocol-port' interface with 'answer-cookie: yes', the RFC 9018 server-cookie SipHash is…

CVSS 3.7 · Low
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-61217

Published Jul 21, 2026

Vulnerability in the Oracle Security Service product of Oracle Fusion Middleware (component: Oracle SSL API). The supported version that is affected is 12.2.1.4.0. Difficult to…

CVSS 6.4 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-50755

Published Jul 21, 2026

An issue in DayuanJiang next-ai-draw-io 0.4.13 allows a remote attacker to obtain sensitive information via the X-Forwarded-For header value

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
16.0

CVE-2026-16404

Published Jul 21, 2026

Spoofing issue in Firefox for Android. This vulnerability was fixed in Firefox 153.

CVSS 7.4 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-3183

Published Jul 21, 2026

Zohocorp ManageEngine ADSelfService Plus versions before 6524 are vulnerable to Multi Factor Authentication Bypass.

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-15812

Published Jul 21, 2026

A vulnerability was found in the internal Access Control List (ACL) subsystem of kronosnet (Version affected: <= 1.34). When the framework is explicitly configured to manage dynam…

CVSS 4.8 · Medium
evidence mentions
2
Buzz score
21.0

CVE-2026-16076

Published Jul 18, 2026

A vulnerability has been found in AstrBotDevs AstrBot up to 4.25.5. This issue affects the function OpenApiRoute.chat_send of the file astrbot/dashboard/routes/open_api.py of the…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
24.4

CVE-2026-62224

Published Jul 17, 2026

OpenClaw MS Teams before 2026.5.12 contain an authorization bypass vulnerability where the allowFrom feature binds to mutable display names. Attackers with lower-trust access can…

CVSS 2.3 · Low
evidence mentions
2
Buzz score
17.5

CVE-2026-55652

Published Jul 15, 2026

Wekan is open source kanban built with Meteor. Prior to 9.46, header-login with HEADER_LOGIN_TRUSTED_IPS uses getRequestIp() in server/lib/headerLoginAuth.js to trust the client-s…

CVSS 9.8 · Critical
evidence mentions
3
Buzz score
18.9

CVE-2026-49353

Published Jul 15, 2026

9Router is an AI router & token saver. In 0.4.45 and earlier, 9Router's src/dashboardGuard.js local-only access gate used Host and Origin headers in isLocalRequest() to protect /a…

CVSS 7.5 · High
evidence mentions
4
Buzz score
21.1

CVE-2026-12382

Published Jul 15, 2026

A flaw was found in the AAP Gateway Envoy proxy configuration. The non-mTLS route to EDA event streams does not remove the Subject HTTP header from client requests, despite the so…

CVSS 8.2 · High
evidence mentions
6
Buzz score
29.5

CVE-2026-47737

Published Jul 14, 2026

Puma is a Ruby/Rack web server built for parallelism. From 5.5.0 until 7.2.1 and 8.0.2, Puma is vulnerable to source IP spoofing when set_remote_address proxy_protocol: :v1 is ena…

CVSS 7.5 · High
evidence mentions
7
Buzz score
25.8

CVE-2026-45063

Published Jul 14, 2026

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.40, 7.4.12, and 8.0.12, X509Authenticator extracts the user…

CVSS 9.1 · Critical
evidence mentions
6
Buzz score
24.5
Vendor/product tagsBeta · best-effort

CVE-2026-45074

Published Jul 14, 2026

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 7.1.0 until 7.4.12 and 8.0.12, Cas2Handler builds the CAS service parameter…

CVSS 7.6 · High
evidence mentions
4
Buzz score
21.1
Vendor/product tagsBeta · best-effort

CVE-2026-62644

Published Jul 14, 2026

In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, the password plugin of the Roundcube Webmail was subject to username spoofing via session data, which could lead to acco…

CVSS 6.4 · Medium
evidence mentions
7
Buzz score
30.8
Vendor/product tagsBeta · best-effort

CVE-2026-55954

Published Jul 14, 2026

Authentication Bypass by Spoofing vulnerability in ueberauth ueberauth_apple allows account takeover via unvalidated ID token claims. The Ueberauth.Strategy.Apple.Token.payload/2…

CVSS 9.1 · Critical
evidence mentions
4
Buzz score
27.6

CVE-2026-58488

Published Jul 13, 2026

HedgeDoc is an open source, real-time, collaborative, markdown notes application. Versions prior to 1.11.0 allowed attackers to circumvent the rate-limiting of the /login and /reg…

CVSS 6.9 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-61428

Published Jul 11, 2026

PraisonAI AgentMail versions before 4.6.78 lack signature verification in webhook mode, allowing unauthenticated attackers to inject messages with spoofed sender addresses. Attack…

CVSS 6.9 · Medium
evidence mentions
2
Buzz score
17.5

CVE-2026-56675

Published Jul 10, 2026

9Router is an AI router & token saver. Prior to 0.5.2, 9router treats loopback requests as trusted and allows /v1/* access without an API key, so a same-host reverse proxy that fo…

CVSS 8.3 · High
evidence mentions
3
Buzz score
18.9
Showing 1-25 of 633 CVEsPage 1 of 26