CVE-2017-5373: Schwachstellen-Eintrag (NVD)
Memory safety bugs were reported in Firefox 50.1 and Firefox ESR 45.6. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.
- 🔗 rhn.redhat.com/errata/RHSA-2017-0190.html
- 🔗 rhn.redhat.com/errata/RHSA-2017-0238.html
- 🔗 www.securityfocus.com/bid/95762
- 🔗 www.securitytracker.com/id/1037693
- 🔗 bugzilla.mozilla.org/buglist.cgi
- 🔗 security.gentoo.org/glsa/201702-13
- 🔗 security.gentoo.org/glsa/201702-22
- 🔗 www.debian.org/security/2017/dsa-3771
Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-08-29 | 2026-09-14 |
|---|---|---|
| ≥90 % | 4 | 0 |
| ≥50 % | 4 | 0 |
| ≥10 % | 3 | 0 |
| <10 % | 304 | 300 |
CVE-2026-43698 | Apple macOS up to 14.8.7/15.7.7/26.5 injection (Nessus ID 345686)
A vulnerability labeled as very critical has been found in Apple macOS up to 14.8.7/15.7.7/26.5. This issue affects some unknown processing. Executing a manipulation can lead to injection. This vulnerability is handled as CVE-2026-43698. It
CVE-2026-43743 | Apple iOS/iPadOS/macOS up to 26.5.1 denial of service (Nessus ID 345686)
A vulnerability classified as problematic was found in Apple iOS, iPadOS and macOS up to 26.5.1. This issue affects some unknown processing. Executing a manipulation can lead to denial of service. This vulnerability is tracked as CVE-2026-4
CVE-2026-64758 | Apple iOS/iPadOS/macOS/tvOS/visionOS/watchOS up to 26.5 memory corruption (Nessus ID 345687)
A vulnerability, which was classified as very critical, has been found in Apple iOS, iPadOS, macOS, tvOS, visionOS and watchOS up to 26.5. This impacts an unknown function. This manipulation causes memory corruption. This vulnerability is r
CVE-2026-43763 | Apple macOS up to 14.8.7/15.7.7/26.5 sandbox (Nessus ID 345687)
A vulnerability was found in Apple macOS up to 14.8.7/15.7.7/26.5 and classified as problematic. This affects an unknown part. Such manipulation leads to sandbox issue. This vulnerability is referenced as CVE-2026-43763. The attack can only
CVE-2026-28969 | Apple iOS/iPadOS/macOS/tvOS/visionOS/watchOS up to 18.7.8/26.4 App use after free (Nessus ID 345687)
A vulnerability classified as critical has been found in Apple iOS, iPadOS, macOS, tvOS, visionOS and watchOS up to 18.7.8/26.4. Impacted is an unknown function of the component App. This manipulation causes use after free. This vulnerabili
CVE-2026-89162 | PCRE PCRE2 up to 10.47 pcre2_serialize_encode information disclosure (WID-SEC-2026-3334)
A vulnerability has been found in PCRE PCRE2 up to 10.47 and classified as problematic. This affects the function pcre2_serialize_encode. This manipulation causes information disclosure. The identification of this vulnerability is CVE-2026-
CVE-2026-15588 | GNOME glib2 GDBusServer denial of service (Nessus ID 335957 / WID-SEC-2026-2866)
A vulnerability was found in GNOME glib2 and classified as problematic. This affects an unknown function of the component GDBusServer. The manipulation results in denial of service. This vulnerability is known as CVE-2026-15588. Access to t
CVE-2026-85189 | RegularLabs Modals Extension up to 16.2.0 cross site scripting (EUVD-2026-77312)
A vulnerability identified as problematic has been detected in RegularLabs Modals Extension up to 16.2.0. This vulnerability affects unknown code of the component Modals. Performing a manipulation results in cross site scripting. This vulne
CVE-2026-81565 | Joomshaper SP Page Builder Extension up to 6.9.0 Media Upload upload folder path traversal (EUVD-2026-77383)
A vulnerability described as problematic has been identified in Joomshaper SP Page Builder Extension up to 6.9.0. The impacted element is the function Folder::create/File::upload of the component Media Upload. Such manipulation of the argum
CVE-2026-79700 | Joomshaper SP Page Builder Pro Extension up to 5.1.4/6.9.0 optin_form captcha_question/captcha_answer improper authentication (EUVD-2026-77382)
A vulnerability marked as critical has been reported in Joomshaper SP Page Builder Pro Extension up to 5.1.4/6.9.0. The affected element is an unknown function of the component optin_form. This manipulation of the argument captcha_question/
CVE-2026-90880 | D-Link DSL-3782 2016-07-28 Diagnostics Diagnostics.asp system Addr command injection (EUVD-2026-78270)
A vulnerability was found in D-Link DSL-3782 2016-07-28. It has been rated as critical. This issue affects the function system of the file /cgi-bin/New_GUI/Set/Diagnostics.asp of the component Diagnostics. Performing a manipulation of the a
CVE-2026-81566 | Joomshaper SP Page Builder Extension up to 6.9.0 Menu Item Creation save menuid access control (EUVD-2026-77385)
A vulnerability classified as problematic has been found in Joomshaper SP Page Builder Extension up to 6.9.0. This affects the function Save of the component Menu Item Creation. Performing a manipulation of the argument menuid results in im
CVE-2026-85190 | RegularLabs Quick Index Extension up to 1.0.0/5.0.4 cross site scripting (EUVD-2026-77314)
A vulnerability classified as problematic has been found in RegularLabs Quick Index Extension up to 1.0.0/5.0.4. The impacted element is an unknown function. This manipulation causes cross site scripting. This vulnerability is registered as
CVE-2026-79701 | Joomshaper SP Page Builder Extension up to 6.9.0 CAPTCHA Plugin onCheckAnswer view_type improper authentication (EUVD-2026-77426)
A vulnerability, which was classified as problematic, has been found in Joomshaper SP Page Builder Extension up to 6.9.0. Affected is the function onCheckAnswer of the component CAPTCHA Plugin. The manipulation of the argument view_type lea
CVE-2026-90881 | D-Link DIR-882 up to 20260814 CGI Binary /HNAP1/dllog.cgi main information disclosure (EUVD-2026-78271)
A vulnerability categorized as problematic has been discovered in D-Link DIR-882 up to 20260814. Impacted is the function main of the file /HNAP1/dllog.cgi of the component CGI Binary. Executing a manipulation can lead to information disclo
Root RCE Zero-Day in Cisco Secure Email Gateway Under Active Exploitation
An unauthenticated attacker can exploit CVE-2026-76461 to execute arbitrary commands on the underlying OS with root privileges. The post Root RCE Zero-Day in Cisco Secure Email Gateway Under Active Exploitation appeared first on SecurityWee
CVE-2026-89161 | PCRE PCRE2 up to 10.47 JIT Match pcre2_jit_match use after free (WID-SEC-2026-3334)
A vulnerability labeled as problematic has been found in PCRE PCRE2 up to 10.47. The affected element is the function pcre2_jit_match of the component JIT Match. The manipulation results in use after free. This vulnerability is reported as
CVE-2026-89158 | PCRE PCRE2 up to 10.47 pcre2_compile_32 integer overflow (WID-SEC-2026-3334)
A vulnerability classified as critical has been found in PCRE PCRE2 up to 10.47. This impacts the function pcre2_compile_32. Performing a manipulation results in integer overflow. This vulnerability is known as CVE-2026-89158. Remote exploi
CVE-2026-89157 | PCRE PCRE2 up to 10.47 pcre2_pattern_convert out-of-bounds write (WID-SEC-2026-3334)
A vulnerability described as problematic has been identified in PCRE PCRE2 up to 10.47. This affects the function pcre2_pattern_convert. Such manipulation leads to out-of-bounds write. This vulnerability is traded as CVE-2026-89157. An atta
CVE-2026-89156 | PCRE PCRE2 up to 10.47 JIT Fallback pcre2_match out-of-bounds (WID-SEC-2026-3334)
A vulnerability marked as critical has been reported in PCRE PCRE2 up to 10.47. The impacted element is the function pcre2_match of the component JIT Fallback. This manipulation causes out-of-bounds read. This vulnerability appears as CVE-2
CVE-2026-89160 | PCRE PCRE2 up to 10.47 pcre2_match out-of-bounds (WID-SEC-2026-3334)
A vulnerability classified as problematic was found in PCRE PCRE2 up to 10.47. Affected is the function pcre2_match. Executing a manipulation can lead to out-of-bounds read. This vulnerability is handled as CVE-2026-89160. The attack can be
CVE-2026-90698 | memcached 1.6.41/1.6.42/1.6.43 mcmc Tokenizer proto_text.c try_read_command_asciiauth out-of-bounds (WID-SEC-2026-3336)
A vulnerability, which was classified as problematic, was found in memcached 1.6.41/1.6.42/1.6.43. This vulnerability affects the function try_read_command_asciiauth of the file proto_text.c of the component mcmc Tokenizer. The manipulation
CVE-2026-87910 | Python up to 3.15.x filter return value (WID-SEC-2026-3335)
A vulnerability identified as critical has been detected in Python up to 3.15.x. This affects the function filter. This manipulation causes unchecked return value. This vulnerability is handled as CVE-2026-87910. The attack can be initiated
CVE-2026-87575 | Google Chrome up to 152.0.7977.82 Loader access control
A vulnerability described as critical has been identified in Google Chrome. Affected by this issue is some unknown functionality of the component Loader. Such manipulation leads to improper access controls. This vulnerability is documented
CVE-2026-87595 | Google Chrome up to 152.0.7977.82 server-side request forgery
A vulnerability has been found in Google Chrome and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to server-side request forgery. This vulnerability is traded as CVE-2026-87595. It is p
CVE-2026-65351 | Apple iOS/iPadOS/macOS prior 26.6.1/26.6.2 denial of service
A vulnerability has been found in Apple iOS, iPadOS and macOS and classified as critical. This impacts an unknown function. The manipulation leads to denial of service. This vulnerability is traded as CVE-2026-65351. It is possible to initi
CVE-2026-87608 | Google Chrome up to 152.0.7977.82 FedCM certificate validation
A vulnerability marked as problematic has been reported in Google Chrome. Affected by this issue is some unknown functionality of the component FedCM. Performing a manipulation results in improper certificate validation. This vulnerability
CVE-2026-87571 | Google Chrome up to 152.0.7977.82 Loader certificate validation
A vulnerability categorized as problematic has been discovered in Google Chrome. This affects an unknown function of the component Loader. Executing a manipulation can lead to improper certificate validation. This vulnerability is tracked a
CVE-2022-51018 | pmmp PocketMine-MP up to 3.26.4/4.0.4 resource consumption
A vulnerability was found in pmmp PocketMine-MP up to 3.26.4/4.0.4. It has been classified as problematic. Affected by this issue is some unknown functionality. This manipulation causes resource consumption. This vulnerability is registered
CVE-2026-67398 | WebPros WHMCS up to 8.12.2/8.13.7/9.0.7 2Checkout Payment Gateway improper authorization (EUVD-2026-70849)
A vulnerability categorized as problematic has been discovered in WebPros WHMCS up to 8.12.2/8.13.7/9.0.7. The impacted element is an unknown function of the component 2Checkout Payment Gateway. The manipulation results in improper authoriz
CVE-2026-64705 | Apple macOS up to 14.8.6/15.7.6 buffer overflow
A vulnerability classified as very critical has been found in Apple macOS up to 14.8.6/15.7.6. Affected by this vulnerability is an unknown functionality. The manipulation leads to buffer overflow. This vulnerability is traded as CVE-2026-6
CVE-2026-63310 | NLTK up to 3.9.2 Downloader integrity check (EUVD-2026-64335 / Nessus ID 339002)
This issue seems to be a false positive. Please check the referenced sources and consider omitting this entry entirely. Weiterlesen
Hackers Exploit Critical Cisco Secure Email Gateway Vulnerability in the Wild to Run Malicious Code
Cisco has issued an urgent warning regarding an actively exploited zero-day vulnerability in its Secure Email Gateway appliances that allows remote, unauthenticated attackers to execute arbitrary commands with highest-level root privileges.
CVE-2026-65347 | Apple iOS/iPadOS/macOS prior 26.6.1/26.6.2 Image Processing denial of service
A vulnerability was found in Apple iOS, iPadOS and macOS. It has been declared as critical. Affected by this issue is some unknown functionality of the component Image Processing. Such manipulation leads to denial of service. This vulnerabi
CVE-2026-65339 | Apple iOS/iPadOS/macOS prior 26.6.1/26.6.2 privileges management
A vulnerability was found in Apple iOS, iPadOS and macOS. It has been rated as problematic. This affects an unknown part. Performing a manipulation results in improper privilege management. This vulnerability was named CVE-2026-65339. The a
CVE-2026-65343 | Apple iOS/iPadOS/macOS prior 26.6.1/26.6.2 use after free
A vulnerability was found in Apple iOS, iPadOS and macOS and classified as very critical. The impacted element is an unknown function. Executing a manipulation can lead to use after free. This vulnerability is handled as CVE-2026-65343. The
CVE-2026-65346 | Apple iOS/iPadOS/macOS prior 26.6.1/26.6.2 integer overflow (EUVD-2026-60509)
A vulnerability was found in Apple iOS, iPadOS and macOS. It has been classified as very critical. This affects an unknown function. The manipulation leads to integer overflow. This vulnerability is uniquely identified as CVE-2026-65346. Th
CVE-2026-65349 | Apple iOS/iPadOS/macOS prior 26.6.1/26.6.2 out-of-bounds
A vulnerability was found in Apple iOS, iPadOS and macOS. It has been classified as very critical. Affected by this vulnerability is an unknown functionality. This manipulation causes out-of-bounds read. This vulnerability is handled as CVE
CVE-2026-65341 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 memory corruption
A vulnerability, which was classified as very critical, was found in Apple iOS, iPadOS and macOS. This affects an unknown function. Executing a manipulation can lead to memory corruption. This vulnerability appears as CVE-2026-65341. The at
CVE-2026-65340 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 denial of service
A vulnerability, which was classified as critical, has been found in Apple iOS, iPadOS and macOS. The impacted element is an unknown function. Performing a manipulation results in denial of service. This vulnerability is reported as CVE-202
CVE-2026-65337 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 State Management input validation
A vulnerability classified as problematic has been found in Apple iOS, iPadOS and macOS. Impacted is an unknown function of the component State Management. This manipulation causes improper input validation. This vulnerability is registered
CVE-2026-65338 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 memory corruption
A vulnerability classified as critical was found in Apple iOS, iPadOS and macOS. The affected element is an unknown function. Such manipulation leads to memory corruption. This vulnerability is documented as CVE-2026-65338. The attack can b
CVE-2026-65336 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 State Management input validation
A vulnerability described as problematic has been identified in Apple iOS, iPadOS and macOS. This issue affects some unknown processing of the component State Management. The manipulation results in improper input validation. This vulnerabi
CVE-2026-65335 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 State Management denial of service
A vulnerability marked as critical has been reported in Apple iOS, iPadOS and macOS. This vulnerability affects unknown code of the component State Management. The manipulation leads to denial of service. This vulnerability is listed as CVE
CVE-2026-65330 | Apple iOS/iPadOS/macOS prior 26.6.1/26.6.2 Kernel memory corruption (Nessus ID 335968)
A vulnerability was found in Apple iOS, iPadOS and macOS and classified as very critical. Affected is an unknown function of the component Kernel. The manipulation results in memory corruption. This vulnerability is known as CVE-2026-65330.
CVE-2026-64781 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 input validation (Nessus ID 335968)
A vulnerability categorized as critical has been discovered in Apple iOS, iPadOS and macOS. This affects an unknown function. The manipulation results in improper input validation. This vulnerability is identified as CVE-2026-64781. The att
CVE-2026-64782 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 memory corruption (Nessus ID 335968)
A vulnerability identified as very critical has been detected in Apple iOS, iPadOS and macOS. This impacts an unknown function. This manipulation causes memory corruption. This vulnerability is tracked as CVE-2026-64782. The attack is possi
CVE-2026-65329 | Apple iOS/iPadOS up to 26.6.0 improper authentication
A vulnerability described as critical has been identified in Apple iOS and iPadOS up to 26.6.0. This impacts an unknown function. Such manipulation leads to improper authentication. This vulnerability is documented as CVE-2026-65329. The at
CVE-2026-65334 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 memory corruption (Nessus ID 335968)
A vulnerability labeled as critical has been found in Apple iOS, iPadOS and macOS. This affects an unknown part. Executing a manipulation can lead to memory corruption. This vulnerability is tracked as CVE-2026-65334. The attack can be laun
CVE-2026-65333 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 State Management resource consumption (Nessus ID 335968)
A vulnerability identified as critical has been detected in Apple iOS, iPadOS and macOS. Affected by this issue is some unknown functionality of the component State Management. Performing a manipulation results in resource consumption. This
CVE-2026-65332 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 denial of service (Nessus ID 335968)
A vulnerability categorized as critical has been discovered in Apple iOS, iPadOS and macOS. Affected by this vulnerability is an unknown functionality. Such manipulation leads to denial of service. This vulnerability is referenced as CVE-20
CVE-2026-65331 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 denial of service (Nessus ID 335968)
A vulnerability was found in Apple iOS, iPadOS and macOS. It has been rated as critical. Affected is an unknown function. This manipulation causes denial of service. The identification of this vulnerability is CVE-2026-65331. It is possible
CVE-2026-64788 | Apple iOS/iPadOS/macOS prior 26.6.1/26.6.2 memory corruption (Nessus ID 335968)
A vulnerability described as very critical has been identified in Apple iOS, iPadOS and macOS. Affected by this issue is some unknown functionality. Executing a manipulation can lead to memory corruption. This vulnerability is registered as
CVE-2026-64787 | Apple iOS/iPadOS/macOS prior 26.6.1/26.6.2 use after free (Nessus ID 335968 / WID-SEC-2026-2940)
A vulnerability marked as critical has been reported in Apple iOS, iPadOS and macOS. Affected by this vulnerability is an unknown functionality. Performing a manipulation results in use after free. This vulnerability is cataloged as CVE-202
CVE-2026-64784 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 out-of-bounds (Nessus ID 335968)
A vulnerability labeled as very critical has been found in Apple iOS, iPadOS and macOS. Affected is an unknown function. Such manipulation leads to out-of-bounds read. This vulnerability is listed as CVE-2026-64784. The attack may be perfor
CVE-2026-64760 | Apple iOS/iPadOS up to 18.7.9 Kernel information disclosure
A vulnerability, which was classified as problematic, has been found in Apple iOS and iPadOS up to 18.7.9. This issue affects some unknown processing of the component Kernel. This manipulation causes information disclosure. This vulnerabili
CVE-2026-64779 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 memory corruption (Nessus ID 335968)
A vulnerability was found in Apple iOS, iPadOS and macOS. It has been declared as very critical. The affected element is an unknown function. Executing a manipulation can lead to memory corruption. The identification of this vulnerability i
CVE-2026-64778 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 information disclosure (Nessus ID 335968)
A vulnerability was found in Apple iOS, iPadOS and macOS. It has been classified as problematic. Impacted is an unknown function. Performing a manipulation results in information disclosure. This vulnerability was named CVE-2026-64778. The
CVE-2026-64715 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 use after free (Nessus ID 335968)
A vulnerability was found in Apple iOS, iPadOS and macOS and classified as very critical. This issue affects some unknown processing. Such manipulation leads to use after free. This vulnerability is uniquely identified as CVE-2026-64715. Th
CVE-2026-43794 | Apple iOS/iPadOS/macOS prior 18.7.10/26.6.1/26.6.2 memory corruption (Nessus ID 335968)
A vulnerability, which was classified as very critical, has been found in Apple iOS, iPadOS and macOS. Affected by this issue is some unknown functionality. The manipulation leads to memory corruption. This vulnerability is traded as CVE-20