cisa CISA Reported Vulnerabilities
Cisa Malcolm vulnerabilities.
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Role-Based Access Control Vulnerability in Malcolm's Nginx Lua for Limited Privilege Users
CVE-2026-107334CisaMalcolm5.4MEDIUMDenial of Service Vulnerability in Malcolm by CISA Government
CVE-2026-107335CisaMalcolm6.5MEDIUMImproper Authentication in Malcolm Kiosk Application by CISA
CVE-2026-107337CisaMalcolm7.1HIGHExposure of the Arkime Live Capture Service in Malcolm by CISA
CVE-2026-107361CisaMalcolm4.2MEDIUMFile Upload Vulnerability in Malcolm Affecting FilePond PHP Server Component
CVE-2026-107362CisaMalcolm7.1HIGHRole-Based Access Control Vulnerability in Malcolm's NGiNX Reverse Proxy
CVE-2026-107333CisaMalcolm8.1HIGHCase-Sensitive Rewrite Issue in Malcolmβs Arkime Backend
CVE-2026-107336CisaMalcolm6.5MEDIUMWeak Password Hashing in Administrative Credential Management for Software
CVE-2026-90457CisaMalcolm6.9MEDIUMEnvironment Configuration Vulnerability in Inventory Management Component by CISAgov
CVE-2026-90456CisaMalcolm9.2CRITICALVulnerability in Log-Processing Component of HTTP Client Library by Vendor
CVE-2026-90455CisaMalcolm6.3MEDIUMAccess Control Weakness in Packet-Analysis Component by Cisco
CVE-2026-90454CisaMalcolm5.3MEDIUMFile Upload Handler Vulnerability in Affected Web Application
CVE-2026-90453CisaMalcolm5.1MEDIUMImproper Certificate Validation in Identity Provider for Proxy Services
CVE-2026-90452CisaMalcolm6MEDIUMAuthentication Cookie Forgery Vulnerability in Packet-Analysis Component by Vendor
CVE-2026-90451CisaMalcolm8.2HIGHAccess Control Flaw in Vendor Product Exposes User Roles
CVE-2026-90450CisaMalcolm5.3MEDIUMAuthentication Bypass in Third-Party Administrative Interfaces of Vendor Product
CVE-2026-90449CisaMalcolm6.9MEDIUMAPI Misconfiguration in Deployment Mode Affects A2Z Secure Data Management
CVE-2026-90448CisaMalcolm7.1HIGHAuthentication Bypass Vulnerability in Affected Product by Vendor
CVE-2026-90447CisaMalcolm7.1HIGHAPI Endpoint Vulnerability in Search and Analytics Software by Vendor
CVE-2026-90446CisaMalcolm5.3MEDIUMFile Upload Exploit in Affected Product by Vendor
CVE-2026-90445CisaMalcolm7.1HIGHFile Transfer Vulnerability in Product A by Vendor B
CVE-2026-90444CisaMalcolm8.7HIGHCross-Site Scripting Vulnerability in Web Application by Vendor
CVE-2026-90443CisaMalcolm5.3MEDIUM