|
771
|
5.9 |
MEDIUM
Network
|
oracle
|
identity_manager_connector
|
Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). The supported version that is affected is 12.2.1.4.0. Difficult to exploit vulnerabilit…
New
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2026-34289
|
2026-04-23 21:06 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
772
|
7.5 |
HIGH
Network
|
oracle
|
identity_manager_connector
|
Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerability …
New
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-34290
|
2026-04-23 21:06 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
773
|
5.9 |
MEDIUM
Network
|
oracle
|
identity_manager_connector
|
Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Microsoft Active Directory). The supported version that is affected is 12.2.1.4.0. Difficult t…
New
|
CWE-284
Improper Access Control
|
CVE-2026-34294
|
2026-04-23 21:05 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
774
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
New
|
-
|
CVE-2026-4049
|
2026-04-23 08:16 |
2026-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
775
|
- |
|
-
|
-
|
This Critical severity OS Command Injection vulnerability was introduced in versions 9.6.0, 10.0.0, 10.1.0, 10.2.0,
11.0.0, 11.1.0, 12.0.0, and 12.1.0 of Bamboo Data Center.
This RCE (Remote Cod…
New
|
CWE-78
OS Command
|
CVE-2026-21571
|
2026-04-23 06:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
776
|
4.3 |
MEDIUM
Network
|
-
|
-
|
NVIDIA KAI Scheduler contains a vulnerability where an attacker could cause improper authorization through cross-namespace pod references. A successful exploit of this vulnerability might lead to dat…
New
|
CWE-863
Incorrect Authorization
|
CVE-2026-24176
|
2026-04-23 06:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
777
|
7.7 |
HIGH
Network
|
-
|
-
|
NVIDIA KAI Scheduler contains a vulnerability where an attacker could access API endpoints without authorization. A successful exploit of this vulnerability might lead to information disclosure.
New
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2026-24177
|
2026-04-23 06:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
778
|
8.2 |
HIGH
Network
|
-
|
-
|
NVIDIA CUDA-Q contains a vulnerability in an endpoint, where an unauthenticated attacker could cause an out-of-bounds read by sending a maliciously crafted request. A successful exploit of this vulne…
New
|
CWE-125
Out-of-bounds Read
|
CVE-2026-24189
|
2026-04-23 06:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
779
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Textpattern CMS 4.9.0 contains a Broken Access Control vulnerability in the article management system that allows authenticated users with low privileges to modify articles owned by users with higher…
New
|
CWE-284
Improper Access Control
|
CVE-2026-30452
|
2026-04-23 06:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
780
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. From 0.43.0 to 1.11.0, trusted resources verification policies match a resource source string (refSource.URI…
New
|
CWE-185
Incorrect Regular Expression
|
CVE-2026-25542
|
2026-04-23 06:24 |
2026-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|