|
871
|
5.9 |
MEDIUM
Network
|
oracle
|
identity_manager_connector
|
Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). The supported version that is affected is 12.2.1.4.0. Difficult to exploit vulnerabilit…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2026-34288
|
2026-04-23 21:07 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
872
|
5.9 |
MEDIUM
Network
|
oracle
|
identity_manager_connector
|
Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). The supported version that is affected is 12.2.1.4.0. Difficult to exploit vulnerabilit…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2026-34289
|
2026-04-23 21:06 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
873
|
7.5 |
HIGH
Network
|
oracle
|
identity_manager_connector
|
Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-34290
|
2026-04-23 21:06 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
874
|
5.9 |
MEDIUM
Network
|
oracle
|
identity_manager_connector
|
Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Microsoft Active Directory). The supported version that is affected is 12.2.1.4.0. Difficult t…
|
CWE-284
Improper Access Control
|
CVE-2026-34294
|
2026-04-23 21:05 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
875
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2026-4049
|
2026-04-23 08:16 |
2026-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
876
|
4.3 |
MEDIUM
Network
|
-
|
-
|
NVIDIA KAI Scheduler contains a vulnerability where an attacker could cause improper authorization through cross-namespace pod references. A successful exploit of this vulnerability might lead to dat…
|
CWE-863
Incorrect Authorization
|
CVE-2026-24176
|
2026-04-23 06:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
877
|
- |
|
-
|
-
|
This Critical severity OS Command Injection vulnerability was introduced in versions 9.6.0, 10.0.0, 10.1.0, 10.2.0,
11.0.0, 11.1.0, 12.0.0, and 12.1.0 of Bamboo Data Center.
This RCE (Remote Cod…
|
CWE-78
OS Command
|
CVE-2026-21571
|
2026-04-23 06:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
878
|
7.7 |
HIGH
Network
|
-
|
-
|
NVIDIA KAI Scheduler contains a vulnerability where an attacker could access API endpoints without authorization. A successful exploit of this vulnerability might lead to information disclosure.
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2026-24177
|
2026-04-23 06:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
879
|
8.2 |
HIGH
Network
|
-
|
-
|
NVIDIA CUDA-Q contains a vulnerability in an endpoint, where an unauthenticated attacker could cause an out-of-bounds read by sending a maliciously crafted request. A successful exploit of this vulne…
|
CWE-125
Out-of-bounds Read
|
CVE-2026-24189
|
2026-04-23 06:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
880
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. From 0.43.0 to 1.11.0, trusted resources verification policies match a resource source string (refSource.URI…
|
CWE-185
Incorrect Regular Expression
|
CVE-2026-25542
|
2026-04-23 06:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|