CVE-2026-65430
MaxMind credentials where leaked in request URLs, causing a credential leakage vulnerability.
CVSS
—
Sin CVSS
EPSS
0.2%
p9
KEV
—
Exploit Today
3
0-100
Publicado: 23 jul 2026 · Última mod.: 23 jul 2026 · CWE-200
Sin historial EPSS suficiente todavía.
MaxMind credentials where leaked in request URLs, causing a credential leakage vulnerability.
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-65758——
——0The front-end Submissions view did not enforce access control. An unauthenticated visitor could therefore list a form's submissions.8hCVE-2026-64874—8.9%
——3CDN credentials were exposed in administrator request URLs.8hCVE-2026-442766.0 MED5.0%
——2Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the REST API. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.1dCVE-2026-613925.3 MED26.9%
——8There is a information disclosure vulnerability in some Hikvision cameras, allowing unauthenticated attackers to obtain partial information from the device’s memory.21hCVE-2026-625677.7 ALT10.2%
——3Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: UK Payroll). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle HRMS (UK). While the vulnerability is in Oracle HRMS (UK), attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle HRMS (UK) accessible data. CVSS 3.1 Base Score 7.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N).1dCVE-2026-625657.1 ALT6.7%
——2Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: US Payroll Year End). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle HRMS (US). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle HRMS (US) accessible data as well as unauthorized update, insert or delete access to some of Oracle HRMS (US) accessible data. CVSS 3.1 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N).1d