CWE-669
Incorrect Resource Transfer Between Spheres
The product does not properly transfer a resource/behavior to another sphere, or improperly imports a resource/behavior from another sphere, in a manner that provides unintended control over that resource.
87 vulnerabilities with CWE-669
CVE-2026-40552
MEDIUM
Remote Code Execution in mpGabinet
CVE-2026-41525
MEDIUM
KDE Dolphin <25.12.3 - Path Traversal
CVSS 6.5
CVE-2026-31431
HIGH
KEV
crypto: algif_aead - Revert to operating out-of-place
CVSS 7.8
CVE-2026-41030
MEDIUM
ONLYOFFICE DesktopEditors <9.3.0 - Privilege Escalation
CVSS 6.2
CVE-2026-40228
LOW
systemd 259 - Info Disclosure
CVSS 2.9
CVE-2026-40225
MEDIUM
systemd <260 - Privilege Escalation
CVSS 6.4
CVE-2026-35545
MEDIUM
Roundcube Webmail < 1.5.15 - Information Disclosure
CVSS 5.3
CVE-2026-35544
MEDIUM
Roundcube Webmail <1.5.14 - CSS Sanitization Bypass
CVSS 5.3
CVE-2026-35543
MEDIUM
Roundcube Webmail < 1.5.14 - Information Disclosure
CVSS 5.3
CVE-2026-35542
MEDIUM
Roundcube Webmail < 1.5.14 - Information Disclosure
CVSS 5.3
CVE-2026-35540
MEDIUM
Roundcube Webmail < 1.6.14 - Information Disclosure
CVSS 5.4
CVE-2026-33265
MEDIUM
LibreChat 0.8.1-rc2 - Auth Bypass
CVSS 6.3
CVE-2026-32772
LOW
GNU inetutils <=2.7 - Info Disclosure
CVSS 3.4
CVE-2026-24708
HIGH
OpenStack Nova <30.2.2 - Memory Corruption
CVSS 8.2
CVE-2026-25253
HIGH
OpenClaw <2026.1.29 - Info Disclosure
CVSS 8.8
CVE-2025-41660
HIGH
CODESYS Control Boot Application Replacement Enables Code Execution
CVSS 8.8
CVE-2025-67895
CRITICAL
Apache-airflow-providers-edge3 < 2.0.0 - Remote Code Execution
CVSS 9.8
CVE-2025-62775
HIGH
Mercku M6a <2.1.0 - Privilege Escalation
CVSS 8.0
CVE-2025-62646
MEDIUM
Restaurant Brands International RBI - Info Disclosure
CVSS 5.0
CVE-2025-62292
MEDIUM
SonarQube <25.6 - Info Disclosure
CVSS 4.3
CVE-2025-56675
LOW
EKEN video doorbell T6 - Info Disclosure
CVSS 3.5
CVE-2025-59692
LOW
PureVPN client < September 2025 - Info Disclosure
CVSS 3.7
CVE-2025-59691
LOW
PureVPN Linux Client - Info Disclosure
CVSS 3.7
CVE-2025-59453
LOW
Click Studios Passwordstate <9.9.9972 - Auth Bypass
CVSS 3.2
CVE-2025-59378
MEDIUM
GNU Guix <1618ca7 - Privilege Escalation
CVSS 5.7
Details
Vulnerabilities
87