CVE search

369,452 results
CVE-2026-25714MEDIUMGitea user organization API bypasses public-only token filteringEPSS 0.3%CVE-2026-25712HIGHGitea organization permission APIs expose private visibility informationEPSS 0.4%CVE-2026-25038HIGHGitea private organization labels are visible to unauthorized usersEPSS 0.5%CVE-2026-24690HIGHGitea pull-request branch updates use insufficient permission checksEPSS 0.3%CVE-2026-24451HIGHGitea fork synchronization can expose private parent repository dataEPSS 0.5%CVE-2026-22874CRITICALGitea webhook and migration allow-list filtering permits SSRFEPSS 0.5%CVE-2026-22555HIGHGitea organization forks can expose organization secrets without create permissionEPSS 0.3%CVE-2026-22547CRITICALGitea repository creation accepts invalid field valuesEPSS 0.4%CVE-2026-20909MEDIUMGitea tracked-time list endpoint has insufficient permission checksEPSS 0.3%CVE-2026-20896CRITICALGitea Docker image trusts spoofable reverse-proxy headers by defaultEPSS 0.8%CVE-2026-20779HIGHGitea TOTP single-use enforcement defect allows OTP replayEPSS 0.5%CVE-2026-20706CRITICALGitea repository archive downloads bypass token scope checksEPSS 0.4%CVE-2026-14609MEDIUMSourceCodester CET Automated Grading System with AI Predictive Analytics session fixiationEPSS 0.3%CVE-2026-14608MEDIUMSourceCodester CET Automated Grading System with AI Predictive Analytics POST index.php view_student authorizationEPSS 0.2%CVE-2026-14607MEDIUMRT-Thread lwp_syscall.c sys_getaddrinfo memory corruptionEPSS 0.1%CVE-2026-14606HIGHRT-Thread SWM341 CAN SWM341.h CAN_Receive stack-based overflowEPSS 0.1%CVE-2026-14605HIGHRT-Thread ls1c CAN ls1c_can.h recvmsg stack-based overflowEPSS 0.1%CVE-2026-14604MEDIUMOpen Asset Import Library Assimp PLY Model PlyLoader.cpp ExportToBlob double freeEPSS 0.2%CVE-2026-58379HIGHGimp: gimp: heap buffer overflow in read_channel_data()EPSS 0.2%CVE-2026-14631MEDIUMwebpack-dev-server vulnerable to denial of service via a malformed Host or Origin headerEPSS 0.3%