Skip to main content

CWE archive

CWE-501 CVEs

Programmatic archive

31 CVEs tagged with CWE-5011 Critical, 18 High, 11 Medium, 1 Low, 0 Unrated.

CVE-2026-65902

Published Jul 23, 2026

DOMPurify before 3.4.7 (affected versions <= 3.4.5) passes direct references to the module-level DEFAULT_ALLOWED_TAGS and DEFAULT_ALLOWED_ATTR sets to the uponSanitizeElement and…

CVSS 5.3 · Medium
evidence mentions
3
Buzz score
20.4
Vendor/product tagsBeta · best-effort

CVE-2026-49458

Published Jul 14, 2026

DOMPurify is a DOM-only cross-site scripting sanitizer for HTML, MathML, and SVG. Prior to 3.4.6, DOMPurify.sanitize(node, { IN_PLACE: true }) accepted same-origin foreign-realm D…

CVSS 6.1 · Medium
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2026-48746

Published Jun 22, 2026

vLLM is an inference and serving engine for large language models (LLMs). From 0.3.0 until 0.22.0, a vulnerability in ASGI web servers and starlette's trust on those web servers e…

CVSS 9.1 · Critical
evidence mentions
14
Buzz score
45.1
Vendor/product tagsBeta · best-effort

CVE-2026-35051

Published Apr 30, 2026

Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.43, 3.6.14, and 3.7.0-rc.2, there is an authentication bypass vulnerability in Traefik's ForwardAuth mid…

CVSS 7.8 · High
evidence mentions
8
Buzz score
35.0
Vendor/product tagsBeta · best-effort

CVE-2026-34780

Published Apr 4, 2026

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. From versions 39.0.0-alpha.1 to before 39.8.0, 40.0.0-alpha.1 to before 40.…

CVSS 8.3 · High
evidence mentions
4
Buzz score
29.1
Vendor/product tagsBeta · best-effort

CVE-2026-27893

Published Mar 27, 2026

vLLM is an inference and serving engine for large language models (LLMs). Starting in version 0.10.1 and prior to version 0.18.0, two model implementation files hardcode `trust_re…

CVSS 8.8 · High
evidence mentions
17
Buzz score
41.9
Vendor/product tagsBeta · best-effort

CVE-2026-4687

Published Mar 24, 2026

Sandbox escape due to incorrect boundary conditions in the Telemetry component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird 149…

CVSS 8.6 · High
evidence mentions
34
Buzz score
44.5
Vendor/product tagsBeta · best-effort

CVE-2026-25725

Published Feb 6, 2026

Claude Code is an agentic coding tool. Prior to version 2.1.2, Claude Code's bubblewrap sandboxing mechanism failed to properly protect the .claude/settings.json configuration fil…

CVSS 7.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-14542

Published Dec 13, 2025

The vulnerability arises when a client fetches a tools’ JSON specification, known as a Manual, from a remote Manual Endpoint. While a provider may initially serve a benign manual…

CVSS 7.5 · High
evidence mentions
2
Buzz score
17.5

CVE-2025-64496

Published Nov 8, 2025

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Versions 0.6.224 and prior contain a code injection vulnerability in the Direct…

CVSS 7.3 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2025-61884

Published Oct 12, 2025

Vulnerability in the Oracle Configurator product of Oracle E-Business Suite (component: Runtime UI). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable v…

CVSS 7.5 · High
evidence mentions
17
Buzz score
68.4
Vendor/product tagsBeta · best-effort

CVE-2025-49714

Published Jul 8, 2025

Trust boundary violation in Visual Studio Code - Python extension allows an unauthorized attacker to execute code locally.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-48938

Published May 30, 2025

go-gh is a collection of Go modules to make authoring GitHub CLI extensions easier. A security vulnerability has been identified in versions prior to 2.12.1 where an attacker-cont…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-1118

Published Feb 19, 2025

A flaw was found in grub2. Grub's dump command is not blocked when grub is in lockdown mode, which allows the user to read any memory information, and an attacker may leverage thi…

CVSS 4.4 · Medium
evidence mentions
5
Buzz score
34.4

CVE-2024-3661

Published May 6, 2024

DHCP can add routes to a client’s routing table via the classless static route option (121). VPN-based security solutions that rely on routes to redirect traffic can be forced to…

CVSS 7.6 · High
evidence mentions
6
Buzz score
27.5

CVE-2024-20265

Published Mar 27, 2024

A vulnerability in the boot process of Cisco Access Point (AP) Software could allow an unauthenticated, physical attacker to bypass the Cisco Secure Boot functionality and load a…

CVSS 5.9 · Medium

CVE-2024-1725

Published Mar 7, 2024

A flaw was found in the kubevirt-csi component of OpenShift Virtualization's Hosted Control Plane (HCP). This issue could allow an authenticated attacker to gain access to the roo…

CVSS 6.5 · Medium

CVE-2024-23682

Published Jan 19, 2024

Artemis Java Test Sandbox versions before 1.8.0 are vulnerable to a sandbox escape when an attacker includes class files in a package that Ares trusts. An attacker can abuse this…

CVSS 8.2 · High
evidence mentions
5
Buzz score
27.9
Vendor/product tagsBeta · best-effort

CVE-2023-49788

Published Dec 8, 2023

Collabora Online is a collaborative online office suite based on LibreOffice technology. Unlike a standalone dedicated Collabora Online server, the Built-in CODE Server (richdocum…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2023-0627

Published Sep 25, 2023

Docker Desktop 4.11.x allows --no-windows-containers flag bypass via IPC response spoofing which may lead to Local Privilege Escalation (LPE).This issue affects Docker Desktop: 4.…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-0629

Published Mar 13, 2023

Docker Desktop before 4.17.0 allows an unprivileged user to bypass Enhanced Container Isolation (ECI) restrictions by setting the Docker host to docker.raw.sock, or npipe:////.pip…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 31 CVEsPage 1 of 2