Total CVEs

125,872

Critical Severity

2,276

High Severity

7,883

Last 7 Days

1,163
Quick preset (or use dates below)
Clear Filters
Showing 661 - 680 of 12,199 CVEs
CVE-2026-28718 MEDIUM - 5.3

Denial of service due to insufficient input validation in authentication logging. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

Vendor: Acronis
Product: Acronis Cyber Protect 17
Published: Mar 06, 2026
Source: NVD
CVE-2026-28716 MEDIUM - 4.4

Information disclosure and manipulation due to improper authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

Vendor: Acronis
Product: Acronis Cyber Protect 17
Published: Mar 06, 2026
Source: NVD
CVE-2026-28715 MEDIUM - 6.5

Sensitive information disclosure due to improper authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

Vendor: Acronis
Product: Acronis Cyber Protect 17
Published: Mar 06, 2026
Source: NVD
CVE-2026-28714 MEDIUM - 4.8

Unnecessary transmission of sensitive cryptographic material. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

Vendor: Acronis
Product: Acronis Cyber Protect 17
Published: Mar 06, 2026
Source: NVD
CVE-2026-28710 HIGH - 8.1

Sensitive information disclosure and manipulation due to improper authentication. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

Vendor: Acronis
Product: Acronis Cyber Protect 17
Published: Mar 06, 2026
Source: NVD
CVE-2026-28709 MEDIUM - 4.3

Unauthorized resource manipulation due to improper authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

Vendor: Acronis
Product: Acronis Cyber Protect 17
Published: Mar 06, 2026
Source: NVD
CVE-2025-30413 MEDIUM - 4.4

Credentials are not deleted from Acronis Agent after plan revocation. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 40497, Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186.

Vendor: Acronis
Product: Acronis Cyber Protect Cloud Agent, Acronis Cyber Protect 17
Published: Mar 06, 2026
Source: NVD
CVE-2025-11791 MEDIUM - 5.5

Sensitive information disclosure and manipulation due to insufficient authorization checks. The following products are affected: Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186, Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 41124.

Vendor: Acronis
Product: Acronis Cyber Protect 17, Acronis Cyber Protect Cloud Agent
Published: Mar 06, 2026
Source: NVD
CVE-2025-11790 MEDIUM - 4.4

Credentials are not deleted from Acronis Agent after plan revocation. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 41124.

Vendor: Acronis
Product: Acronis Cyber Protect Cloud Agent
Published: Mar 06, 2026
Source: NVD

Ubuntu Linux 6.8 GA retains the legacy AF_UNIX garbage collector but backports upstream commit 8594d9b85c07 ("af_unix: Don’t call skb_get() for OOB skb"). When orphaned MSG_OOB sockets hit unix_gc(), the garbage collector still calls kfree_skb() as if OOB SKBs held two references; on Ubunt...

Vendor: Canonical
Product: Ubuntu Linux
Published: Mar 05, 2026
Source: NVD
CVE-2026-30798 HIGH - 7.5

Insufficient Verification of Data Authenticity, Improper Handling of Exceptional Conditions vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Heartbeat sync loop, strategy processing modules) allows Protocol Manipulation. This vulnerability is a...

Vendor: rustdesk-client
Product: RustDesk Client
Published: Mar 05, 2026
Source: NVD

Missing Authorization vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Flutter URI scheme handler, config import modules) allows Application API Message Manipulation via Man-in-the-Middle. This vulnerability is associated with program files flu...

Vendor: rustdesk-client
Product: RustDesk Client
Published: Mar 05, 2026
Source: NVD

Cleartext Transmission of Sensitive Information vulnerability in rustdesk-server-pro RustDesk Server Pro rustdesk-server-pro on Windows, MacOS, Linux (Address book sync API modules) allows Sniffing Attacks. This vulnerability is associated with program files Closed source β€” API endpoint handling hea...

Vendor: rustdesk-server-pro
Product: RustDesk Server Pro
Published: Mar 05, 2026
Source: NVD

Cleartext Transmission of Sensitive Information vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Heartbeat sync loop modules) allows Sniffing Attacks. This vulnerability is associated with program files src/hbbs_http/sync.Rs and program routine...

Vendor: rustdesk-client
Product: RustDesk Client
Published: Mar 05, 2026
Source: NVD

Improper Certificate Validation vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (HTTP API client, TLS transport modules) allows Adversary in the Middle (AiTM). This vulnerability is associated with program files src/hbbs_http/http_client.Rs and...

Vendor: rustdesk-client
Product: RustDesk Client
Published: Mar 05, 2026
Source: NVD

Cross-Site Request Forgery (CSRF) vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Flutter URI scheme handler, FFI bridge modules) allows Privilege Escalation. This vulnerability is associated with program files flutter/lib/common.Dart, src/flu...

Vendor: rustdesk-client
Product: RustDesk Client
Published: Mar 05, 2026
Source: NVD

A vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android, WebClient (Strategy sync, HTTP API client, config options engine modules) allows Application API Message Manipulation via Man-in-the-Middle. This vulnerability is associated with program files ...

Vendor: rustdesk-client
Product: RustDesk Client
Published: Mar 05, 2026
Source: NVD

Improper Restriction of Excessive Authentication Attempts, Use of Password Hash With Insufficient Computational Effort vulnerability in rustdesk-server-pro RustDesk Server Pro rustdesk-server-pro on Windows, MacOS, Linux (Peer authentication, API login modules), rustdesk-server RustDesk Server (OSS)...

Vendor: rustdesk-server-pro, rustdesk-server
Product: RustDesk Server Pro, RustDesk Server (OSS)
Published: Mar 05, 2026
Source: NVD

Authentication Bypass by Capture-replay, Use of Password Hash With Insufficient Computational Effort vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Client login, peer authentication modules) allows Reusing Session IDs (aka Session Replay). Th...

Vendor: rustdesk-client
Product: RustDesk Client
Published: Mar 05, 2026
Source: NVD

Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution'), Use of Password Hash With Insufficient Computational Effort vulnerability in rustdesk-client RustDesk Client rustdesk, hbb_common on Windows, MacOS, Linux (Password security module, config encryption...

Vendor: rustdesk-client
Product: RustDesk Client
Published: Mar 05, 2026
Source: NVD