Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.5 5EEAA18E-23B7-

Exploit for Path Traversal in Cisco Catalyst_Sd-Wan_Manager_5EEAA18E-23B7-5627-B8F5-105707CA1640

CVE-2026-20262 - Cisco Catalyst SD-WAN Manager Arbitrary File Write Path Traversal -orange 📋 Descripción CVE-2026-20262 es una vulnerabilidad de P...

N/A N/A GITHUBEXPLOIT
MEDIUM 4.3 CVE-2026-12117

CVE-2026-12117_CVE-2026-12117

Improper access control in the social login connection endpoint in Devolutions Server 2026.2.5 allows an authenticated vault member to enumerate ...

Devolutions Devolutions Server 2026.2.0 CVE
MEDIUM 6.5 CVE-2026-12105

CVE-2026-12105_CVE-2026-12105

Improper access control in Devolutions Server 2026.2.5, 2026.1.21 allows an authenticated user to access attachments via folder duplication with ...

Devolutions Devolutions Server CVE
MEDIUM 4.3 CVE-2026-11890

CVE-2026-11890_CVE-2026-11890

Improper access control in PAM account discovery results in Devolutions Server 2026.2.5, 2026.1.21 allows an authenticated user to retrieve accou...

Devolutions Devolutions Server CVE
MEDIUM 6.5 CVE-2026-47340

Apache DolphinScheduler: An incorrect authorization vulnerability allows authenticated users to access alert instances associated with alert groups they do not have permission to access._CVE-2026-47340

Allow authenticated users to access alert instances associated with alert groups they do not have permission to access. in Apache DolphinScheduler....

Apache Software Foundation Apache DolphinScheduler CVE
MEDIUM 6.5 CVE-2026-42357

Apache DolphinScheduler: Incorrect Authorization vulnerability allows users to access workflow instance information belonging to projects they do not have permission to access._CVE-2026-42357

Incorrect Authorization vulnerability allows users to access workflow instance information belonging to projects they do not have permission to acc...

Apache Software Foundation Apache DolphinScheduler CVE
MEDIUM 6.5 CVE-2026-32967

Apache DolphinScheduler: The `/v2` experimental interface lacks permission checks_CVE-2026-32967

Incorrect Authorization vulnerability of `/v2` experimental interface in Apache DolphinScheduler. This issue affects Apache DolphinScheduler: befo...

Apache Software Foundation Apache DolphinScheduler CVE
MEDIUM 5.7 CVE-2026-35069

CVE-2026-35069_CVE-2026-35069

Dell PowerFlex Manager, version(s) [Versions], contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') v...

Dell PowerFlex CVE
MEDIUM 6 CVE-2026-20246

Cisco Umbrella Virtual Appliance Privilege Escalation Vulnerability_CVE-2026-20246

A vulnerability in the vmadmin CLI of Cisco Umbrella Virtual Appliance could allow an authenticated, local attacker to elevate privileges on an aff...

Cisco Cisco Umbrella Insights Virtual Appliance 2.6.0 CVE
MEDIUM 6.3 CVE-2026-20220

Cisco Crosswork Network Controller Remote Code Execution Vulnerability_CVE-2026-20220

A vulnerability in the web-based management interface of Cisco Crosswork Network Controller could allow an authenticated, remote attacker to e...

Cisco Cisco Crosswork Network Change Automation 3.0.0 CVE