CWE-187
CWE-187 · 3 records · 1 with a public proof-of-concept
Records the NVD classes under CWE-187, highest CVSS first.
- MEDIUM 6.5CVE-2026-101914public PoC
@grpc/grpc-js implements the core functionality of gRPC purely in JavaScript, without a C++ addon. Prior to 1.13.1 and 1.14.1, the exact path (method name) matcher used by RBAC performs a prefix comparison instead of an equality comparison when case-insensitiv…
- MEDIUM 5.8CVE-2026-81479
Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Partial String Comparison vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Denial of service.
- UNSCOREDCVE-2026-94576
An authentication logic and privilege escalation vulnerability exists in the account management interface of Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1. Under specific conditions, an authenticated user can bypass authorization restric…