Vulnerabilities
Vulnerable Software
Security Vulnerabilities
Credentials for a deleted user may remain valid for a short period under specific conditions.
CVSS Score
4.2
EPSS Score
0.002
Published
2026-08-12
An unauthenticated user may access restricted repository information under specific conditions.
CVSS Score
5.3
EPSS Score
0.003
Published
2026-08-12
An authenticated user without repository read permission may access private NuGet metadata under specific conditions.
CVSS Score
4.3
EPSS Score
0.002
Published
2026-08-12
An authenticated user may view private Puppet module metadata without repository read access.
CVSS Score
4.3
EPSS Score
0.002
Published
2026-08-12
An authenticated user without repository read permission may access private OCI referrer metadata under specific conditions.
CVSS Score
4.3
EPSS Score
0.002
Published
2026-08-12
A maliciously created executable, when executed on the victim's machine, may allow a local low-privileged attacker to inject unauthenticated IPC messages into named pipes, modify pipe permissions or ownership, and potentially impact confidentiality, integrity, and availability.
CVSS Score
7.8
EPSS Score
0.001
Published
2026-08-12
A maliciously crafted input, when processed by the Autodesk Installer IPC frame parser, may trigger improper validation of an input-specified position or offset, resulting in an out-of-range substring operation. A malicious actor may leverage this vulnerability to cause the NT AUTHORITY\SYSTEM service to terminate unexpectedly, resulting in a denial-of-service condition.
CVSS Score
5.5
EPSS Score
0.001
Published
2026-08-12
A server-side request forgery (ssrf) vulnerability in Fortinet FortiSIEM 7.5.0, FortiSIEM 7.4.0 through 7.4.2, FortiSIEM 7.3.0 through 7.3.5, FortiSIEM 7.2 all versions, FortiSIEM 7.1 all versions, FortiSIEM 7.0 all versions, FortiSIEM 6.7 all versions, FortiSIEM 6.6 all versions, FortiSIEM 6.5 all versions may allow attacker to execute unauthorized code or commands via <insert attack vector here>
CVSS Score
3.8
EPSS Score
0.002
Published
2026-08-12
A authentication bypass using an alternate path or channel vulnerability in Fortinet FortiManager 7.6.1, FortiManager 7.4.3 through 7.4.5, FortiManager 7.2.5 through 7.2.9, FortiManager Cloud 7.6.1, FortiManager Cloud 7.4.3 through 7.4.5, FortiManager Cloud 7.2.5 through 7.2.9 may allow attacker to improper access control via <insert attack vector here>
CVSS Score
8.1
EPSS Score
0.008
Published
2026-08-12
A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an unauthenticated attacker who can bypass stack protection and ASLR to execute arbitrary code or commands in the context of the WAD daemon via crafted sockets, only if the explicit proxy is configured with Kerberos authentication and SOCKS enabled.
CVSS Score
5.6
EPSS Score
0.005
Published
2026-08-12


Contact Us

Shodan ® - All rights reserved