Vulnerabilities
Vulnerable Software
Security Vulnerabilities
Tanium addressed an uncontrolled resource consumption vulnerability in Connect.
CVSS Score
4.3
EPSS Score
0.0
Published
2026-02-05
Tanium addressed an improper access controls vulnerability in Interact.
CVSS Score
3.1
EPSS Score
0.0
Published
2026-02-05
Tanium addressed an unauthorized code execution vulnerability in Tanium Appliance.
CVSS Score
7.8
EPSS Score
0.0
Published
2026-02-05
Tanium addressed an improper output sanitization vulnerability in Tanium Appliance.
CVSS Score
6.6
EPSS Score
0.001
Published
2026-02-05
Tanium addressed an improper output sanitization vulnerability in Tanium Appliance.
CVSS Score
6.6
EPSS Score
0.001
Published
2026-02-05
Tanium addressed an improper input validation vulnerability in Tanium Appliance.
CVSS Score
2.7
EPSS Score
0.0
Published
2026-02-05
Tanium addressed an improper certificate validation vulnerability in Tanium Appliance.
CVSS Score
3.7
EPSS Score
0.0
Published
2026-02-05
pgAdmin versions 9.11 are affected by a Restore restriction bypass via key disclosure vulnerability that occurs when running in server mode and performing restores from PLAIN-format dump files. An attacker with access to the pgAdmin web interface can observe an active restore operation, extract the `\restrict` key in real time, and race the restore process by overwriting the restore script with a payload that re-enables meta-commands using `\unrestrict <key>`. This results in reliable command execution on the pgAdmin host during the restore operation.
CVSS Score
7.4
EPSS Score
0.0
Published
2026-02-05
During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between the initial handshake and the resumed handshake, the resumed handshake may succeed when it should have failed. This may happen when a user calls Config.Clone and mutates the returned Config, or uses Config.GetConfigForClient. This can cause a client to resume a session with a server that it would not have resumed with during the initial handshake, or cause a server to resume a session with a client that it would not have resumed with during the initial handshake.
CVSS Score
10.0
EPSS Score
0.0
Published
2026-02-05
An issue in ChestnutCMS v.1.5.8 and before allows a remote attacker to execute arbitrary code via the template creation function
CVSS Score
7.2
EPSS Score
0.003
Published
2026-02-05


Contact Us

Shodan ® - All rights reserved