A vulnerability was found in TOTOLINK A720R 4.1.5cu.374 and classified as critical. This issue affects some unknown proc
A flaw was found in Quay. When an organization acts as a proxy cache, and a user or robot pulls an image that hasn't bee
Improper privilege assignment in PAM JIT privilege sets in Devolutions Server allows a PAM user to perform PAM JIT req
An issue in Unifiedtransform v2.0 allows a remote attacker to escalate privileges via the /students/edit/{id} endpoint.
An issue in Unifiedtransform v2.0 allows a remote attacker to escalate privileges via the /course/edit/{id} endpoint.
An issue was discovered in AlertEnterprise Guardian 4.1.14.2.2.1. One can elevate to administrator privileges via the Is
The Binary MLM Plan plugin for WordPress is vulnerable to limited Privilege Escalation in all versions up to, and includ
An issue in Sublime HQ Pty Ltd Sublime Text 4 4200 allows authenticated attackers with low-level privileges to escalate
A vulnerability was discovered in RISC-V Rocket-Chip v1.6 and before implementation where the SRET (Supervisor-mode Exce
A vulnerability was determined in SourceCodester Online Student Clearance System 1.0. The affected element is an unknown
An issue was discovered in CyberDAVA before 1.1.20. A privilege escalation vulnerability allows a low-privileged user to
A vulnerability was found in SingMR HouseRent 1.0. It has been rated as critical. Affected by this issue is some unknown
A vulnerability, which was classified as problematic, was found in pankajindevops scale up to 20241113. This affects an
A vulnerability classified as critical has been found in CampCodes School Management Software 1.0. Affected is an unknow
A vulnerability was found in zj1983 zz up to 2024-8. It has been rated as critical. This issue affects some unknown proc
A vulnerability classified as critical has been found in Thinkware Car Dashcam F800 Pro up to 20250226. Affected is an u
A vulnerability was found in xujiangfei admintwo 1.0. It has been rated as critical. Affected by this issue is some unkn
A vulnerability classified as critical was found in lenve VBlog up to 1.0.0. Affected by this vulnerability is the funct
A vulnerability was found in JamesZBL/code-projects db-hospital-drug 1.0 and classified as critical. Affected by this is
A vulnerability classified as critical was found in ZeroWdd/code-projects studentmanager 1.0. This vulnerability affects
A vulnerability was found in 201206030 Novel 3.5.0 and classified as critical. This issue affects the function updateBoo
Incorrect privilege assignment in PAM JIT elevation feature in Devolutions Server 2025.1.5.0 and earlier allows a PAM us
A vulnerability classified as critical has been found in JeeWMS up to 20250504. Affected is the function dogenerate of t
A vulnerability, which was classified as critical, has been found in JeeWMS up to 20250504. Affected by this issue is th
A vulnerability, which was classified as critical, was found in JeeWMS up to 20250504. This affects the function filedea
A vulnerability, which was classified as critical, has been found in juzaweb CMS up to 3.4.2. Affected by this issue is
A vulnerability has been found in juzaweb CMS up to 3.4.2 and classified as critical. This vulnerability affects unknown
A vulnerability was found in juzaweb CMS up to 3.4.2 and classified as critical. This issue affects some unknown process
A vulnerability was found in juzaweb CMS up to 3.4.2. It has been classified as critical. Affected is an unknown functio
A vulnerability was found in juzaweb CMS up to 3.4.2. It has been declared as critical. Affected by this vulnerability i
A vulnerability was found in juzaweb CMS up to 3.4.2. It has been rated as critical. Affected by this issue is some unkn
A vulnerability classified as critical has been found in juzaweb CMS up to 3.4.2. This affects an unknown part of the fi
A vulnerability classified as critical was found in juzaweb CMS up to 3.4.2. This vulnerability affects unknown code of
A vulnerability classified as critical has been found in juzaweb CMS 3.4.2. Affected is an unknown function of the file
A vulnerability classified as critical was found in juzaweb CMS 3.4.2. Affected by this vulnerability is an unknown func
A vulnerability, which was classified as critical, has been found in Intelbras InControl 2.21.60.9. This issue affects s
A vulnerability was found in Dromara Northstar up to 7.3.5. It has been rated as critical. Affected by this issue is the
A vulnerability has been found in TDuckCloud tduck-platform up to 5.1 and classified as critical. Affected by this vulne
A vulnerability was found in LitmusChaos Litmus up to 3.19.0. It has been rated as critical. This issue affects some unk
A vulnerability, which was classified as critical, was found in LitmusChaos Litmus up to 3.19.0. This affects an unknown
A vulnerability was found in LitmusChaos Litmus up to 3.19.0 and classified as critical. This issue affects some unknown
A vulnerability was found in jshERP up to 3.5. This issue affects some unknown processing of the file /jshERP-boot/user/
A security flaw has been discovered in LiuYuYang01 ThriveX-Blog up to 3.1.7. Affected by this vulnerability is the funct
A vulnerability was found in Xinhu RockOA up to 2.6.9. Impacted is the function publicsaveAjax of the file /index.php. P
A vulnerability was found in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /educac
A weakness has been identified in Portabilis i-Educar up to 2.10. Impacted is an unknown function of the file /module/Hi
A weakness has been identified in Portabilis i-Educar up to 2.10. This affects an unknown part of the file /module/Api/m
A vulnerability was detected in Portabilis i-Educar up to 2.10. This affects an unknown function of the file /exportacao
A flaw has been found in Portabilis i-Educar up to 2.10. This affects an unknown part of the file /enturmacao-em-lote/.
A vulnerability has been found in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /c
Frequently Asked Questions
What is CWE-266?
CWE-266 (CWE-266) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-266?
There are 1,098 CVE records associated with CWE-266 in our database. Of these, 122 are critical severity, 343 are high severity, and 567 are medium severity.
How can I protect against CWE-266 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-266 using AI-powered security agents.
Detect CWE-266 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-266 vulnerabilities across your infrastructure.
Get Started