Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-08-29 | 2026-09-17 |
|---|---|---|
| ≥90 % | 4 | 0 |
| ≥50 % | 4 | 0 |
| ≥10 % | 3 | 0 |
| <10 % | 304 | 300 |
CVE-2026-87886 | Acronis Backup Plugin permission
A vulnerability was found in Acronis Backup Plugin, Acronis Backup Extension and Acronis Backup Plugin. It has been classified as very critical. Affected is an unknown function. Performing a manipulation results in permission issues. This v
CVE-2026-89819 | Linux Kernel up to 6.12.109/6.18.50/7.2.4 Plane Degamma LUT Validation drm/amd/display __set_dm_plane_degamma out-of-bounds (WID-SEC-2026-3438)
A vulnerability classified as very critical has been found in Linux Kernel up to 6.12.109/6.18.50/7.2.4. Affected is the function __set_dm_plane_degamma of the file drm/amd/display of the component Plane Degamma LUT Validation. The manipula
CVE-2026-89818 | Linux Kernel up to 7.2.4 Vcn drm/amdgpu/vcn num_buffers integer overflow (WID-SEC-2026-3438)
A vulnerability has been found in Linux Kernel up to 6.1.187/6.6.156/6.12.109/6.18.50/7.2.4 and classified as critical. This vulnerability affects unknown code of the file drm/amdgpu/vcn of the component Vcn. Performing a manipulation of th
CVE-2026-89817 | Linux Kernel up to 7.3-rc1 gud gud_drv.c gud_connector_add_tv_mode out-of-bounds (WID-SEC-2026-3438)
A vulnerability, which was classified as critical, was found in Linux Kernel up to 7.3-rc1. This affects the function gud_connector_add_tv_mode of the file drivers/gpu/drm/gud/gud_drv.c of the component gud. Such manipulation leads to out-o
CVE-2026-89816 | Linux Kernel up to 7.3-rc1 drm drm/ complete_signaling memory leak (WID-SEC-2026-3438)
A vulnerability described as problematic has been identified in Linux Kernel up to 7.3-rc1. This impacts the function complete_signaling of the file drm/ of the component drm. Executing a manipulation can lead to memory leak. The identifica
CVE-2026-89814 | Linux Kernel up to 6.18.50/7.2.4 drm/amdgpu out-of-bounds (WID-SEC-2026-3438)
A vulnerability marked as very critical has been reported in Linux Kernel up to 6.18.50/7.2.4. This affects an unknown function of the component drm/amdgpu. Performing a manipulation results in out-of-bounds read. This vulnerability was nam
CVE-2026-89815 | Linux Kernel up to 7.2.4 ttm ttm_pool_restore_and_alloc stack-based overflow (WID-SEC-2026-3438)
A vulnerability labeled as critical has been found in Linux Kernel up to 7.2.4. The impacted element is the function ttm_pool_restore_and_alloc of the component ttm. Such manipulation leads to stack-based buffer overflow. This vulnerability
CVE-2026-77164 | Nextcloud Server up to 32.0.0 Circles server-side request forgery (EUVD-2026-82621)
A vulnerability described as problematic has been identified in Nextcloud Server up to 32.0.0. This impacts an unknown function of the component Circles. The manipulation results in server-side request forgery. This vulnerability was named
CVE-2026-68493 | Nextcloud Server up to 34.0.0 privileges management (EUVD-2026-82623)
A vulnerability, which was classified as problematic, was found in Nextcloud Server up to 34.0.0. This affects an unknown part. Executing a manipulation can lead to improper privilege management. This vulnerability is tracked as CVE-2026-68
CVE-2026-82985 | Nextcloud up to 31.x Photos privileges management (EUVD-2026-82622)
A vulnerability labeled as problematic has been found in Nextcloud up to 31.x. The impacted element is an unknown function of the component Photos. Executing a manipulation can lead to improper privilege management. This vulnerability is ha
CVE-2026-93314 | Freedesktop Poppler 26.07.0 fofi/FoFiTrueType.cc mapCodeToGID segCnt integer overflow (ID 1761 / EUVD-2026-82624)
A vulnerability labeled as critical has been found in Freedesktop Poppler 26.07.0. This affects the function FoFiTrueType::mapCodeToGID of the file fofi/FoFiTrueType.cc. Executing a manipulation of the argument segCnt can lead to integer ov
CVE-2026-92925 | Redis up to 8.8.1/8.9.x Cluster Bus out-of-bounds (EUVD-2026-81460)
A vulnerability, which was classified as critical, has been found in Redis up to 8.8.1/8.9.x. The affected element is an unknown function of the component Cluster Bus. The manipulation leads to out-of-bounds read. This vulnerability is trad
CVE-2026-93373 | Google Chrome up to 153.0.8010.47 Extensions use after free (Nessus ID 346979)
A vulnerability classified as critical has been found in Google Chrome. Affected by this issue is some unknown functionality of the component Extensions. Performing a manipulation results in use after free. This vulnerability was named CVE-
CVE-2026-93372 | Google Chrome up to 153.0.8010.47 WebGL buffer overflow (Nessus ID 346979)
A vulnerability labeled as critical has been found in Google Chrome. This impacts an unknown function of the component WebGL. The manipulation results in buffer overflow. This vulnerability is known as CVE-2026-93372. It is possible to laun
CVE-2026-93374 | Google Chrome up to 153.0.8010.47 Dawn use after free (Nessus ID 346979)
A vulnerability described as critical has been identified in Google Chrome. Affected by this vulnerability is an unknown functionality of the component Dawn. Such manipulation leads to use after free. This vulnerability is uniquely identifi
CVE-2026-93382 | Google Chrome up to 153.0.8010.47 PDFium use after free (Nessus ID 346979)
A vulnerability has been found in Google Chrome and classified as critical. Impacted is an unknown function of the component PDFium. This manipulation causes use after free. This vulnerability is tracked as CVE-2026-93382. The attack is pos
CVE-2023-1380 | Linux Kernel cfg80211.c brcmf_get_assoc_ies out-of-bounds (EUVD-2023-23636)
A vulnerability categorized as problematic has been discovered in Linux Kernel. The affected element is the function brcmf_get_assoc_ies of the file drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c. Such manipulation leads to out
CVE-2025-20327 | Cisco IOS up to 15.2(8)E5 Web UI improper validation of specified type of input (cisco-sa-ios-invalid-url-dos-Nvxszf6u)
A vulnerability was found in Cisco IOS. It has been declared as critical. This issue affects some unknown processing of the component Web UI. The manipulation results in improper validation of specified type of input. This vulnerability was
CVE-2022-44373 | TRENDnet Wireless AC Easy-Upgrader TEW-820AP 1.0R stack-based overflow (EUVD-2022-47318)
A vulnerability identified as critical has been detected in TRENDnet Wireless AC Easy-Upgrader TEW-820AP 1.0R. Affected by this vulnerability is an unknown functionality. The manipulation leads to stack-based buffer overflow. This vulnerabi
CVE-2022-44378 | Automotive Shop Management System 1.0 Master.php?f=delete_mechanic sql injection (EUVD-2022-47323)
A vulnerability was found in Automotive Shop Management System 1.0. It has been classified as critical. This affects an unknown function of the file /asms/classes/Master.php?f=delete_mechanic. This manipulation causes sql injection. This vu
CVE-2022-44371 | hope-boot 1.0.0 deserialization (Issue 83 / EUVD-2022-47316)
A vulnerability identified as critical has been detected in hope-boot 1.0.0. This affects an unknown function. Performing a manipulation results in deserialization. This vulnerability is identified as CVE-2022-44371. The attack can be initi
CVE-2022-44369 | NASM 2.16 output/outaout.c null pointer dereference (EUVD-2022-47314)
A vulnerability was found in NASM 2.16. It has been declared as problematic. Affected by this issue is some unknown functionality of the file output/outaout.c. Executing a manipulation can lead to null pointer dereference. This vulnerabilit
CVE-2022-44368 | NASM 2.16 null pointer dereference (EUVD-2022-47313)
A vulnerability marked as problematic has been reported in NASM 2.16. This vulnerability affects unknown code. This manipulation causes null pointer dereference. This vulnerability is tracked as CVE-2022-44368. The attack is only possible w
CVE-2022-44367 | Tenda i21 1.0.0.14 /goform/setUplinkInfo buffer overflow (EUVD-2022-47312)
A vulnerability identified as critical has been detected in Tenda i21 1.0.0.14. This issue affects some unknown processing of the file /goform/setUplinkInfo. Performing a manipulation results in buffer overflow. This vulnerability was named
CVE-2022-44365 | Tenda i21 1.0.0.14 /goform/setSysPwd stack-based overflow (EUVD-2022-47310)
A vulnerability was found in Tenda i21 1.0.0.14. It has been rated as critical. This affects an unknown part of the file /goform/setSysPwd. This manipulation causes stack-based buffer overflow. This vulnerability is handled as CVE-2022-4436
CVE-2022-44363 | Tenda i21 1.0.0.14 /goform/setSnmpInfo buffer overflow (EUVD-2022-47308)
A vulnerability was found in Tenda i21 1.0.0.14. It has been declared as critical. Affected by this issue is some unknown functionality of the file /goform/setSnmpInfo. The manipulation results in buffer overflow. This vulnerability is know
CVE-2022-44362 | Tenda i21 1.0.0.14 /goform/AddSysLogRule buffer overflow (EUVD-2022-47307)
A vulnerability was found in Tenda i21 1.0.0.14. It has been classified as critical. Affected by this vulnerability is an unknown functionality of the file /goform/AddSysLogRule. The manipulation leads to buffer overflow. This vulnerability
CVE-2022-44361 | ZZCMS 2022 admin/ad_list.php cross site scripting (EUVD-2022-47306)
A vulnerability labeled as problematic has been found in ZZCMS 2022. This impacts an unknown function of the file admin/ad_list.php. Executing a manipulation can lead to cross site scripting. This vulnerability is tracked as CVE-2022-44361.
CVE-2022-44355 | SolarView Compact 7.0 /network_test.php cross site scripting (EUVD-2022-47300)
A vulnerability classified as problematic was found in SolarView Compact 7.0. Affected by this issue is some unknown functionality of the file /network_test.php. The manipulation results in cross site scripting. This vulnerability was named
CVE-2026-91102 | HP HPLIP up to 3.26.5 privileges management (Nessus ID 346884)
A vulnerability identified as critical has been detected in HP HPLIP up to 3.26.5. This vulnerability affects unknown code. The manipulation leads to improper privilege management. This vulnerability is traded as CVE-2026-91102. It is possi
CVE-2026-91098 | HP HPLIP up to 3.26.5 privilege escalation (Nessus ID 346883)
A vulnerability described as critical has been identified in HP HPLIP up to 3.26.5. This vulnerability affects unknown code. The manipulation results in privilege escalation. This vulnerability was named CVE-2026-91098. The attack may be pe
CVE-2026-91105 | HP HPLIP up to 3.26.5 privileges management (Nessus ID 346885)
A vulnerability was found in HP HPLIP up to 3.26.5. It has been classified as critical. Affected is an unknown function. This manipulation causes improper privilege management. This vulnerability is registered as CVE-2026-91105. Remote expl
CVE-2022-44351 | Zorlan Skycaiji 2.5.1 Mystore.php deserialization (Issue 46 / EUVD-2022-47296)
A vulnerability, which was classified as problematic, was found in Zorlan Skycaiji 2.5.1. This issue affects some unknown processing of the file /SkycaijiApp/admin/controller/Mystore.php. Executing a manipulation can lead to deserialization
CVE-2022-44354 | SolarView Compact 4.0/5.0 unrestricted upload (EUVD-2022-47299)
A vulnerability was found in SolarView Compact 4.0/5.0. It has been rated as problematic. This affects an unknown part. Performing a manipulation results in unrestricted upload. This vulnerability is reported as CVE-2022-44354. The attacker
CVE-2022-44349 | NAVBLUE S.A.S N-Ops & Crew 22.5-rc.50 cross site scripting (EUVD-2022-47294)
A vulnerability has been found in NAVBLUE S.A.S N-Ops &amp; Crew 22.5-rc.50 and classified as problematic. The affected element is an unknown function. Performing a manipulation results in cross site scripting. This vulnerability was na
CVE-2022-44348 | Sanitization Management System 1.0 update_status.php ID sql injection (EUVD-2022-47293)
A vulnerability was found in Sanitization Management System 1.0. It has been classified as critical. Impacted is an unknown function of the file /php-sms/admin/orders/update_status.php. This manipulation of the argument ID causes sql inject
CVE-2022-44347 | Sanitization Management System 1.0 view_inquiry ID sql injection (EUVD-2022-47292)
A vulnerability was found in Sanitization Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /php-sms/admin/?page=inquiries/view_inquiry. The manipulation of the argument ID results in s
CVE-2026-20707 | Intel Xeon Scalable Processors race condition (Nessus ID 346889)
A vulnerability described as critical has been identified in Intel Xeon Scalable Processors. The affected element is an unknown function. The manipulation results in race condition. This vulnerability was named CVE-2026-20707. The attack ne
CVE-2026-20901 | Intel Xeon Processors Firmware input validation (Nessus ID 346889)
A vulnerability categorized as problematic has been discovered in Intel Xeon Processors. Affected is an unknown function of the component Firmware. Executing a manipulation can lead to improper input validation. The identification of this v
CVE-2026-91097 | HP Linux Imaging and Printing Software up to 3.26.5 privileges management (Nessus ID 346887)
A vulnerability marked as critical has been reported in HP Linux Imaging and Printing Software up to 3.26.5. This affects an unknown part. The manipulation leads to improper privilege management. This vulnerability is uniquely identified as
CVE-2026-20760 | Intel Processors Microcode privileges management (Nessus ID 346889)
A vulnerability categorized as very critical has been discovered in Intel Processors. The impacted element is an unknown function of the component Microcode. Executing a manipulation can lead to improper privilege management. This vulnerabi
CVE-2026-20713 | Intel Xeon processors control flow (Nessus ID 346889)
A vulnerability classified as problematic has been found in Intel Xeon processors. The impacted element is an unknown function. This manipulation causes incorrect control flow. The identification of this vulnerability is CVE-2026-20713. The
CVE-2026-20716 | Intel Processors access control (Nessus ID 346889)
A vulnerability classified as problematic was found in Intel Processors. This affects an unknown function. Such manipulation leads to improper access controls. This vulnerability is referenced as CVE-2026-20716. The attack can only be perfo
CVE-2022-44345 | Sanitization Management System 1.0 view_quote ID sql injection (EUVD-2022-47290)
A vulnerability has been found in Sanitization Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /php-sms/admin/?page=quotes/view_quote. The manipulation of the argument ID leads to sql in
CVE-2022-44343 | ZhongBangKeJi CRMEB 4.4.4 information disclosure (EUVD-2022-47288)
A vulnerability was found in ZhongBangKeJi CRMEB 4.4.4. It has been declared as problematic. The affected element is an unknown function. Such manipulation leads to information disclosure. This vulnerability is documented as CVE-2022-44343.
CVE-2022-44321 | PicoC 3.2.2 lex.c LexSkipComment heap-based overflow (Issue 37 / EUVD-2022-47266)
A vulnerability was found in PicoC 3.2.2. It has been classified as critical. Affected is the function LexSkipComment of the file lex.c. The manipulation leads to heap-based buffer overflow. This vulnerability is listed as CVE-2022-44321. T
CVE-2022-44320 | PicoC 3.2.2 expression.c ExpressionCoerceFP heap-based overflow (Issue 37 / EUVD-2022-47265)
A vulnerability marked as critical has been reported in PicoC 3.2.2. This affects the function ExpressionCoerceFP of the file expression.c. Performing a manipulation results in heap-based buffer overflow. This vulnerability is known as CVE-
CVE-2025-35973 | Intel Processors Kernel/Hypervisor privileges management (Nessus ID 346889)
A vulnerability was found in Intel Processors. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Kernel/Hypervisor. This manipulation causes improper privilege management. This vulnerabi
CVE-2026-20917 | Intel Processors Hypervisor/Kernel information disclosure (Nessus ID 346889)
A vulnerability was found in Intel Processors. It has been classified as problematic. This affects an unknown part of the component Hypervisor/Kernel. The manipulation leads to information disclosure. This vulnerability is traded as CVE-202
CVE-2025-31936 | Intel Xeon 6 processors SMM/TDX privileges management (Nessus ID 346889 / WID-SEC-2026-2772)
A vulnerability marked as problematic has been reported in Intel Xeon 6 processors. Impacted is an unknown function of the component SMM/TDX. The manipulation leads to improper privilege management. This vulnerability is uniquely identified
CVE-2025-31938 | Intel Xeon 6 Scalable processors TDX access control (Nessus ID 346889)
A vulnerability was found in Intel Xeon 6 Scalable processors. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component TDX. The manipulation results in improper access controls. This
CVE-2026-70351 | Microsoft WebP Image Extension prior 1.2.31.0 integer overflow (Nessus ID 346896)
A vulnerability marked as critical has been reported in Microsoft WebP Image Extension. Affected by this vulnerability is an unknown functionality. This manipulation causes integer overflow. This vulnerability appears as CVE-2026-70351. The
CVE-2026-15913 | Fortra GoAnywhere MFT up to 7.10.1 path traversal (EUVD-2026-75175 / Nessus ID 346899)
A vulnerability classified as problematic was found in Fortra GoAnywhere MFT up to 7.10.1. This affects an unknown part. The manipulation results in path traversal. This vulnerability was named CVE-2026-15913. The attack may be performed fr
CVE-2026-84386 | Fortinet FortiClientWindows up to 7.2.15/7.4.7 access control (Nessus ID 346901)
A vulnerability marked as problematic has been reported in Fortinet FortiClientWindows up to 7.2.15/7.4.7. This affects an unknown function. The manipulation leads to improper access controls. This vulnerability is referenced as CVE-2026-84
CVE-2022-44319 | PicoC 3.2.2 cstdlib/string.c StdioBasePrintf heap-based overflow (Issue 37 / EUVD-2022-47264)
A vulnerability was found in PicoC 3.2.2 and classified as critical. This impacts the function StdioBasePrintf in the library cstdlib/string.c. Executing a manipulation can lead to heap-based buffer overflow. This vulnerability is tracked a
CVE-2022-44318 | PicoC 3.2.2 cstdlib/string.c StringStrcat heap-based overflow (Issue 37 / EUVD-2022-47263)
A vulnerability has been found in PicoC 3.2.2 and classified as critical. This affects the function StringStrcat in the library cstdlib/string.c. Performing a manipulation results in heap-based buffer overflow. This vulnerability is identif
CVE-2022-44316 | PicoC 3.2.2 lex.c LexGetStringConstant heap-based overflow (Issue 37 / EUVD-2022-47261)
A vulnerability, which was classified as critical, has been found in PicoC 3.2.2. The affected element is the function LexGetStringConstant of the file lex.c. This manipulation causes heap-based buffer overflow. The identification of this v
CVE-2022-44317 | PicoC 3.2.2 cstdlib/stdio.c StdioOutPutc heap-based overflow (Issue 37 / EUVD-2022-47262)
A vulnerability, which was classified as critical, was found in PicoC 3.2.2. The impacted element is the function StdioOutPutc in the library cstdlib/stdio.c. Such manipulation leads to heap-based buffer overflow. This vulnerability is refe
CVE-2026-89813 | Linux Kernel up to 7.2.4 KIQ ring drm/amdgpu amdgpu_device_pre_asic_reset race condition (WID-SEC-2026-3438)
A vulnerability was found in Linux Kernel up to 7.2.4 and classified as critical. Affected by this issue is the function amdgpu_device_pre_asic_reset of the file drm/amdgpu of the component KIQ ring. Such manipulation leads to race conditio
CVE-2026-89812 | Linux Kernel MES ring amdgpu_device_pre_asic_reset infinite loop (WID-SEC-2026-3438)
A vulnerability has been found in Linux Kernel and classified as critical. Affected by this vulnerability is the function amdgpu_device_pre_asic_reset of the component MES ring. This manipulation causes infinite loop. This vulnerability is