|
101
|
7.5 |
HIGH
Network
|
progress
|
moveit_automation
|
Allocation of resources without limits or throttling vulnerability in Progress Software MOVEit Automation allows Excessive Allocation.
This issue affects MOVEit Automation: before 2025.0.11, from 20…
New
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-8488
|
2026-05-22 04:00 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
102
|
7.8 |
HIGH
Local
|
hp
|
linux_imaging_and_printing
|
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vulnerability may allow escalation of privileges and/or arbitrary code execution v…
New
|
CWE-77
Command Injection
|
CVE-2026-8632
|
2026-05-22 03:58 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
103
|
9.8 |
CRITICAL
Network
|
hp
|
linux_imaging_and_printing
|
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vulnerability may allow escalation of privileges and/or arbitrary code execution v…
New
|
CWE-122 CWE-190
Heap-based Buffer Overflow Integer Overflow or Wraparound
|
CVE-2026-8631
|
2026-05-22 03:58 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
104
|
5.3 |
MEDIUM
Network
|
esri
|
arcgis_server
|
ArcGIS Server contains an improper authentication vulnerability in an undocumented administrative endpoint. An unauthenticated attacker could exploit this issue by sending a crafted request to the en…
New
|
CWE-287
Improper Authentication
|
CVE-2026-2812
|
2026-05-22 03:56 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
105
|
7.5 |
HIGH
Network
|
progress
|
moveit_automation
|
Incorrect default permissions vulnerability in Progress Software MOVEit Automation allows Retrieve Embedded Sensitive Data.
This issue affects MOVEit Automation: before 2025.0.11, from 2025.1.0 befo…
New
|
CWE-276
Incorrect Default Permissions
|
CVE-2026-8487
|
2026-05-22 03:56 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
106
|
7.5 |
HIGH
Network
|
progress
|
moveit_automation
|
Allocation of resources without limits or throttling vulnerability in Progress Software MOVEit Automation allows Flooding.
This issue affects MOVEit Automation: before 2025.0.11, from 2025.1.0 befor…
New
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-8486
|
2026-05-22 03:54 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
107
|
4.1 |
MEDIUM
Network
|
esri
|
arcgis_server
|
ArcGIS Server contains an input validation weakness in the login redirection workflow. An Authenticated attacker could exploit this issue by sending a specially crafted request, Successful exploitati…
New
|
CWE-601
Open Redirect
|
CVE-2026-2813
|
2026-05-22 03:54 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
108
|
5.9 |
MEDIUM
Network
|
-
|
-
|
Open ISES Tickets before 3.44.2 disables TLS certificate verification in rm/incs/mobile_login.inc.php by setting CURLOPT_SSL_VERIFYPEER to false (and not setting CURLOPT_SSL_VERIFYHOST) when issuing …
New
|
CWE-295
Improper Certificate Validation
|
CVE-2026-48249
|
2026-05-22 03:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
109
|
5.9 |
MEDIUM
Network
|
-
|
-
|
Open ISES Tickets before 3.44.2 disables TLS certificate verification in incs/login.inc.php by setting CURLOPT_SSL_VERIFYPEER to false (and not setting CURLOPT_SSL_VERIFYHOST) when issuing outbound H…
New
|
CWE-295
Improper Certificate Validation
|
CVE-2026-48248
|
2026-05-22 03:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
110
|
5.9 |
MEDIUM
Network
|
-
|
-
|
Open ISES Tickets before 3.44.2 disables TLS certificate verification in incs/functions.inc.php by setting CURLOPT_SSL_VERIFYPEER to false (and not setting CURLOPT_SSL_VERIFYHOST) when issuing outbou…
New
|
CWE-295
Improper Certificate Validation
|
CVE-2026-48247
|
2026-05-22 03:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|