Security Risk Category

Input Validation Security Risks — Page 2

Published vulnerability pages connected to Input Validation. Each page keeps one canonical URL and focused remediation guidance.

243 published Input Validation risks

Input Validation risks

Showing 37–72 of 243 published risks.

mediumEPSS 0.004

CVE-2026-55026 365 apps vulnerability

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.

CVE-2026-55026microsoftinput-validation

Updated Jul 17, 2026

highEPSS 0.005

CVE-2026-55033 365 apps vulnerability

Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to execute code locally.

CVE-2026-55033microsoftinput-validationmemory-corruption

Updated Jul 17, 2026

highEPSS 0.003

CVE-2026-55039 365 apps vulnerability

Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVE-2026-55039microsoftinput-validationmemory-corruption

Updated Jul 17, 2026

highEPSS 0.003

CVE-2026-55043 365 apps vulnerability

Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

CVE-2026-55043microsoftinput-validationmemory-corruption

Updated Jul 17, 2026

mediumEPSS 0.004

CVE-2026-55057 365 apps vulnerability

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.

CVE-2026-55057microsoftinput-validation

Updated Jul 17, 2026

mediumEPSS 0.004

CVE-2026-55124 365 apps vulnerability

Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

CVE-2026-55124microsoftinput-validation

Updated Jul 17, 2026

highEPSS 0.003

CVE-2026-58532 windows 10 1607 vulnerability

Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-58532linuxwindowsinput-validation

Updated Jul 17, 2026

highEPSS 0.008

CVE-2026-58594 windows 10 1607 vulnerability

Integer overflow or wraparound in Windows RDP allows an unauthorized attacker to execute code over a network.

CVE-2026-58594windowsinput-validation

Updated Jul 17, 2026

mediumEPSS 0.002

CVE-2026-48308 premiere pro vulnerability

Premiere Pro is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue does not require user interaction. Scope is changed.

CVE-2026-48308input-validation

Updated Jul 17, 2026

highEPSS 0.002

CVE-2026-48342 bridge vulnerability

Bridge is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVE-2026-48342remote-code-executioninput-validation

Updated Jul 17, 2026

mediumEPSS 0.002

CVE-2026-48296 c2pa vulnerability

CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.

CVE-2026-48296input-validation

Updated Jul 17, 2026

mediumEPSS 0.002

CVE-2026-48298 c2pa vulnerability

CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.

CVE-2026-48298input-validation

Updated Jul 17, 2026

mediumEPSS 0.002

CVE-2026-48302 c2pa vulnerability

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.

CVE-2026-48302input-validation

Updated Jul 17, 2026

mediumEPSS 0.002

CVE-2026-48312 c2pa vulnerability

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploitation of this issue does not require user interaction.

CVE-2026-48312input-validation

Updated Jul 17, 2026

criticalEPSS 0.004

CVE-2026-48334 illustrator vulnerability

Illustrator is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

CVE-2026-48334remote-code-executioninput-validation

Updated Jul 17, 2026

highEPSS 0.004

CVE-2026-48351 c2pa vulnerability

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.

CVE-2026-48351input-validation

Updated Jul 17, 2026

highEPSS 0.004

CVE-2026-48352 c2pa vulnerability

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.

CVE-2026-48352input-validation

Updated Jul 17, 2026

mediumEPSS 0.002

CVE-2026-48353 c2pa vulnerability

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVE-2026-48353input-validationfile-write

Updated Jul 17, 2026

mediumEPSS 0.002

CVE-2026-48354 c2pa vulnerability

CAI Content Credentials is affected by an Integer Overflow or Wraparound vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.

CVE-2026-48354input-validation

Updated Jul 17, 2026

highEPSS 0.003

CVE-2026-56398 open webui vulnerability

Open WebUI before 0.9.5 contains a stored cross-site scripting vulnerability in the OAuth authentication flow where the picture claim URL MIME type is inferred from file extension rather than Content-Type header, allowing SVG files to bypass the profile image validator and be stored as data URIs. Authenticated users who visit the profile image endpoint receive attacker-controlled SVG content with inline disposition and no default security headers, enabling script execution in the same origin to steal authentication tokens and achieve account takeover.

CVE-2026-56398web-applicationinput-validationxss

Updated Jul 17, 2026

highEPSS 0.002

CVE-2026-54109 in Microsoft Windows

Integer overflow or wraparound in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

CVE-2026-54109windowsmicrosoftremote-code-executioninput-validation

Updated Jul 16, 2026

highEPSS 0.003

CVE-2026-55048 in Microsoft 365 Apps

Integer overflow or wraparound in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVE-2026-55048microsoftremote-code-executioninput-validationmemory-corruption

Updated Jul 16, 2026

mediumEPSS 0.005

CVE-2026-45754 in Symfony Mailer and Notifier Bridges

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 6.4.40, 7.4.12, and 8.0.12, the Mailjet mailer bridge and LOX24 notifier bridge webhook parsers received configured webhook secrets but did not verify them, allowing unauthenticated POST requests to inject forged Mailjet and LOX24 event payloads. This issue is fixed in versions 6.4.40, 7.4.12, and 8.0.12.

CVE-2026-45754phpinput-validationauthentication-bypass

Updated Jul 16, 2026

mediumEPSS 0.005

CVE-2026-48736 in Symfony HttpClient

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 5.4.0 to 5.4.53, 6.4.41, 7.4.13, and 8.0.13, NoPrivateNetworkHttpClient and IpUtils::PRIVATE_SUBNETS omitted IPv6 transition prefixes such as 6to4, NAT64, Teredo, and IPv4-compatible IPv6, allowing attacker-supplied URLs to represent private IPv4 targets in forms that IpUtils::isPrivateIp() did not block. This issue is fixed in versions 5.4.53, 6.4.41, 7.4.13, and 8.0.13.

CVE-2026-48736phpinput-validationssrf

Updated Jul 16, 2026

highEPSS 0.003

CVE-2026-15769 in Google Chrome

Insufficient validation of untrusted input in Linux Toolkit Theming in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

CVE-2026-15769browserlinuxinput-validationprivilege-escalation

Updated Jul 16, 2026

mediumEPSS 0.003

CVE-2026-15771 in Google Chrome

Insufficient validation of untrusted input in Media in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)

CVE-2026-15771browserwindowsinput-validationinformation-disclosure

Updated Jul 16, 2026

mediumEPSS 0.003

CVE-2026-15778 in Google Chrome

Insufficient validation of untrusted input in Navigation in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Medium)

CVE-2026-15778browserinput-validationauthorization-bypass

Updated Jul 16, 2026

criticalEPSS 0.022

CVE-2026-48284 in Adobe ColdFusion

ColdFusion is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed.

CVE-2026-48284web-applicationremote-code-executioninput-validation

Updated Jul 16, 2026

highEPSS 0.006

CVE-2026-48328 in Adobe ColdFusion

ColdFusion is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and gain unauthorized read access. Exploitation of this issue does not require user interaction. Scope is changed.

CVE-2026-48328web-applicationinput-validationauthorization-bypassinformation-disclosure

Updated Jul 16, 2026

low

CVE-2026-40954 in Absolute Secure Access

CVE-2026-40954 is an integer underflow vulnerability in the traffic parsing function of Secure Access clients prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel protocol can create a non-persistent DoS against their client

CVE-2026-40954network-securityinput-validationdenial-of-service

Updated Jul 16, 2026

low

CVE-2026-40955 in Absolute Secure Access

CVE-2026-40955 is an integer underflow vulnerability in the traffic parsing function of Secure Access clients prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel protocol can create a non-persistent DoS against their client.

CVE-2026-40955network-securityinput-validationdenial-of-service

Updated Jul 16, 2026

low

CVE-2026-40958 in Absolute Secure Access

CVE-2026-40958 is a input validation error in Secure Access clients prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel protocol can create a non-persistent DoS against their client.

CVE-2026-40958network-securityinput-validationdenial-of-service

Updated Jul 16, 2026

criticalEPSS 0.002

CVE-2026-53488 containerd CRI Label Validation Command Execution Risk

containerd is an open-source container runtime. In versions prior to 1.7.33, 2.3.2, 2.2.5, 2.1.9, and 2.0.10 the CRI plugin propagates labels from an image config (LABEL instruction in Dockerfile) to a container without validation. This may result in executing an arbitrary command on the host, via a plugin that consumes container labels for some operations. This issue has been fixed in versions 1.7.33, 2.3.2, 2.2.5, 2.1.9, and 2.0.10.

CVE-2026-53488cloud-securitydevopssupply-chainremote-code-execution

Updated Jul 15, 2026

mediumEPSS 0.002

CVE-2026-57962 Mozilla Thunderbird LDAP Memory Exhaustion Vulnerability

A malicious LDAP server, which a Thunderbird user is configured to query for address-book autocomplete, can stash arbitrarily large amounts of attacker-supplied data into the Thunderbird LDAP client until it crashes due to memory exhaustion. This vulnerability was fixed in Thunderbird 152.0.1 and Thunderbird 140.12.1.

CVE-2026-57962browserinput-validationdenial-of-service

Updated Jul 15, 2026

lowEPSS 0.004

CVE-2026-44042 UltraVNC Repeater Base64 Decode Off-by-One

UltraVNC repeater through 1.8.2.2 contains an off-by-one error in the Base64 decode helper used for HTTP Basic authentication. In repeater/webgui/webutils.c:817, the wi_uudecode() function checks whether the input length exceeds the output buffer with a strict greater-than comparison (>), while the correct check should be greater-than-or-equal (>=). When strlen(authdata) equals sizeof(decode), the decoded output length (approximately 3/4 of input) does not overflow the buffer in current practice because the outer HTTP request bounds constrain the Authorization header. However, the defective check leaves a latent off-by-one condition that could become exploitable if the buffering constraints change. The current risk is limited to a one-byte write at the boundary of a 1024-byte stack buffer under constrained conditions.

CVE-2026-44042network-securityinput-validationmemory-corruption

Updated Jul 15, 2026

mediumEPSS 0.011

CVE-2026-7828 UltraVNC Repeater Integer Overflow Vulnerability

UltraVNC repeater through 1.8.2.2 contains an integer overflow in the HTTP request logging path. In repeater/webgui/settings.c:336, the win_log() function allocates list nodes via malloc(sizeof(struct LIST) + strlen(line)), where line is derived from HTTP request URIs. If strlen(line) is sufficiently large, the addition overflows to a value smaller than sizeof(struct LIST), causing a heap allocation smaller than required. The subsequent strcpy of the full string into the undersized allocation produces a heap buffer overflow. In the current implementation this overflow is bounded by the HTTP receive buffer size (WI_RXBUFSIZE = 153600 bytes, well below SIZE_MAX on 32-bit builds), limiting practical exploitability to a partial heap write. A remote unauthenticated attacker can trigger the theoretical overflow path by sending a maximally-sized URI in an HTTP request to the repeater HTTP port.

CVE-2026-7828network-securityinput-validationdenial-of-servicememory-corruption

Updated Jul 15, 2026