PULSE
EN VIVO49señales / 24h
FEED
ransomqilin reclama a Machinerie P&W · CA · Manufacturingransomqilin reclama a ABM Enviro · CA · Professional Servicesransomkrybit reclama a nilepet.com · EG · Retail & E-Commerceransomthegentlemen reclama a European Design · CA · Otherransomthegentlemen reclama a MK Jewelry · MK · Retail & E-Commerceransomthegentlemen reclama a GUERREIROS seguros · PT · Financial Servicesransomthegentlemen reclama a Tikona Infinet · IN · Technologyransomthegentlemen reclama a TC Printing · AU · Manufacturingransomthegentlemen reclama a Oldelval Oleoductos del Valle · AR · Energy & Utilitiesransomthegentlemen reclama a Decoupe Laser Services · FR · Manufacturingransomthegentlemen reclama a Thialf · NL · Energy & Utilitiesransomthegentlemen reclama a Title Resources · AU · Financial Servicesransomthegentlemen reclama a Clarke Radiology · AU · Healthcareransomthegentlemen reclama a SICSOE · FR · Not Foundransomqilin reclama a Machinerie P&W · CA · Manufacturingransomqilin reclama a ABM Enviro · CA · Professional Servicesransomkrybit reclama a nilepet.com · EG · Retail & E-Commerceransomthegentlemen reclama a European Design · CA · Otherransomthegentlemen reclama a MK Jewelry · MK · Retail & E-Commerceransomthegentlemen reclama a GUERREIROS seguros · PT · Financial Servicesransomthegentlemen reclama a Tikona Infinet · IN · Technologyransomthegentlemen reclama a TC Printing · AU · Manufacturingransomthegentlemen reclama a Oldelval Oleoductos del Valle · AR · Energy & Utilitiesransomthegentlemen reclama a Decoupe Laser Services · FR · Manufacturingransomthegentlemen reclama a Thialf · NL · Energy & Utilitiesransomthegentlemen reclama a Title Resources · AU · Financial Servicesransomthegentlemen reclama a Clarke Radiology · AU · Healthcareransomthegentlemen reclama a SICSOE · FR · Not Found
← Todos los CVEs
CVE Watch23 jul 2026

CVE-2026-65758

The front-end Submissions view did not enforce access control. An unauthenticated visitor could therefore list a form's submissions.

CVSS

Sin CVSS

EPSS

KEV

Exploit Today

0

0-100

Publicado: 23 jul 2026 · Última mod.: 23 jul 2026 · CWE-200 · CWE-284

EPSS · 30d

Sin historial EPSS suficiente todavía.

Descripción técnica

The front-end Submissions view did not enforce access control. An unauthenticated visitor could therefore list a form's submissions.

Referencias oficiales
CVEs relacionados
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-65757
2.8%
1The editor popup could expose restricted module data to authenticated users without the required module permissions or valid request tokens.7h
CVE-2026-65430
8.9%
3MaxMind credentials where leaked in request URLs, causing a credential leakage vulnerability.7h
CVE-2026-64876
2.8%
1Database-update requests lacked consistent token and Super User checks, this could cause unauthorized updates.7h
CVE-2026-64874
8.9%
3CDN credentials were exposed in administrator request URLs.7h
CVE-2026-64871
2.8%
1Administrator URL purges did not consistently require a valid token and cache-management permission.7h
CVE-2024-583307.5 ALT
39.9%
12A missing authentication check in Bosch IP cameras of families CPP13 and CPP14 allows an unauthenticated attacker to retrieve video analytics event data.8h