VulnFeed
Showing 3108 of 3108 CVEs modified in the last 7 days
CVE-2026-56290
CRITICAL 10

Joomla Extension - joomlack.fr - Unauthenticated file upload in Page Builder CK extension < 3.6.0

CVE-2026-49869
CRITICAL 10

Kestra: Unauthenticated Remote Code Execution via Authentication Bypass in `AuthenticationFilter`

CVE-2026-57331
CRITICAL 9.9

WordPress Paid Videochat Turnkey Site plugin <= 7.4.8 - Arbitrary File Deletion vulnerability

CVE-2026-52782
CRITICAL 9.9

OpenProject: IDOR through /projects/<A>/settings/project_storages/<A_ps_id> via PATCH parameter "storages_project_storage[project_folder_id]" leads to Access to Unauthorized Resources

CVE-2026-48584
CRITICAL 9.9

Microsoft Azure Synapse Elevation of Privilege Vulnerability

CVE-2026-46386
CRITICAL 9.9

OpenProject: Pre-authentication RCE in openproject/openproject Docker image via default `SECRET_KEY_BASE=OVERWRITE_ME` and `cookies_serializer = :marshal`

CVE-2026-20186
CRITICAL 9.9

Cisco Identity Services Engine Multiple Authenticated Remote Code Execution Vulnerability

CVE-2026-52955
CRITICAL 9.8

libceph: Fix potential out-of-bounds access in crush_decode()

CVE-2026-26142
CRITICAL 9.8

Nuance PowerScribe Remote Code Execution Vulnerability

CVE-2026-22778
CRITICAL 9.8

vLLM leaks a heap address when PIL throws an error

CVE-2026-12415
CRITICAL 9.8

Invoice Generator <= 1.0.0 - Unauthenticated Privilege Escalation via Account Takeover via 'user_id' Parameter

CVE-2026-3256
CRITICAL 9.8

HTTP::Session versions before 0.54 for Perl defaults to using insecurely generated session ids

CVE-2026-33646
CRITICAL 9.6

mise: Arbitrary Code Execution via Tera Templates in .tool-versions Files (Trust Bypass)

CVE-2026-2587
CRITICAL 9.6

A critical Remote Code Execution (RCE) vulnerability was identified in the server-side template rendering mechanism used by the Glassfish gadget handler. The application processes .xml files and evaluates user-supplied values within a context where Expression Language (EL) “expressions” are processed without proper sanitization or escaping. By injecting expressions such as #{7*7}, the server returns 49, confirming server-side EL evaluation. This issue allows a remote attacker to fully compromise the underlying host, enabling capabilities as reading/modifying data, executing arbitrary commands, persistence, and lateral movement. This issue affects Eclipse GlassFish: from 8.0.0 to 8.0.1, fixed in 8.0.2; 7.1.0, fixed in 7.1.1; from 7.0.0 to 7.0.25, fixed in 7.0.26. Impact on versions from 5.1.0 to 6.2.5 is unknown.

CVE-2026-53131
CRITICAL 9.4

netfilter: require Ethernet MAC header before using eth_hdr()

CVE-2026-56068
CRITICAL 9.3

WordPress JetEngine plugin <= 3.8.10.2 - SQL Injection vulnerability

CVE-2026-31928
CRITICAL 9.3

Daktronics Controller Firmware Use of Hard-coded Credentials

CVE-2026-28701
CRITICAL 9.3

Daktronics Controller Firmware Path Traversal

CVE-2026-12048
CRITICAL 9.3

pgAdmin 4: Stored XSS via untrusted error and plan-node text rendered through html-react-parser

CVE-2026-2586
CRITICAL 9.1

An authenticated Remote Code Execution (RCE) vulnerability was identified in GlassFish's Administration Console. A user with access to the panel can send crafted requests that allow the execution of arbitrary operating system commands with the privileges of the application service user. This issue affects Eclipse GlassFish: from 8.0.0 to 8.0.1, fixed in 8.0.2; 7.1.0, fixed in 7.1.1; from 7.0.0 to 7.0.25, fixed in 7.0.26. Impact on versions from 5.1.0 to 6.2.5 is unknown.

CVE-2026-54636
CRITICAL 9

Dokku: OS Command Injection via app.json managed Cron

CVE-2025-40949
HIGH 8.9

A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1500 (All versions < V2.17.1), RUGGEDCOM ROX RX1501 (All versions < V2.17.1), RUGGEDCOM ROX RX1510 (All versions < V2.17.1), RUGGEDCOM ROX RX1511 (All versions < V2.17.1), RUGGEDCOM ROX RX1512 (All versions < V2.17.1), RUGGEDCOM ROX RX1524 (All versions < V2.17.1), RUGGEDCOM ROX RX1536 (All versions < V2.17.1), RUGGEDCOM ROX RX5000 (All versions < V2.17.1). Affected devices do not properly sanitize user-supplied input in the Scheduler functionality of the Web UI, allowing commands to be injected into the task scheduling backend. This could allow an authenticated remote attacker to execute arbitrary commands with root privileges on the underlying operating system.

CVE-2026-58049
HIGH 8.8

FFmpeg - Out-of-Bounds Write in RASC Decoder decode_dlta()

CVE-2026-53198
HIGH 8.8

ksmbd: fix use-after-free of a deferred file_lock on double SMB2_CANCEL

CVE-2026-25707
HIGH 8.8

Handcrafted repo metadata may cause arbitrary local files to be overwritten by libzypp

CVE-2026-22924
HIGH 8.8

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application does not properly restrict unauthenticated connections and is susceptible to resource exhaustion conditions. This could allow an attacker to disrupt normal operations or perform unauthorized actions, potentially impacting system availability and integrity.

CVE-2026-12856
HIGH 8.8

Vscode-java: vscode: command injection vulnerability in the javadoc hover provider of the vscode-java extension

CVE-2026-56124
HIGH 8.7

phpUploader < 2.0.2 Unauthenticated Database Exposure via index model

CVE-2026-56115
HIGH 8.7

Bootimus 0.1.70 Broken Access Control via JWTMiddleware Authorization Bypass

CVE-2026-55069
HIGH 8.7

Kestra BasicAuth Password Stored as SHA-512 Enables Offline Brute-Force Attack

CVE-2026-49048
HIGH 8.7

Joomla Extension - joomcoder.com - Unauthenticated SQL Injection in JoomCCK extension for Joomla < 6.4.1

CVE-2026-40629
HIGH 8.7

BIG-IP SSL/TLS vulnerability

CVE-2026-40618
HIGH 8.7

BIG-IP SSL/TLS vulnerability

CVE-2026-40521
HIGH 8.7

FrontAccounting < 2.4.20 Path Traversal RCE via attachment upload

CVE-2026-40423
HIGH 8.7

BIG-IP SIP profile vulnerability

CVE-2026-40067
HIGH 8.7

BIG-IP APM Vulnerability

CVE-2026-40060
HIGH 8.7

BIG-IP Advanced WAF and ASM vulnerability

CVE-2026-39458
HIGH 8.7

BIG-IP DNS Cache vulnerability

CVE-2026-39455
HIGH 8.7

BIG-IP Configuration utility vulnerability

CVE-2026-32833
HIGH 8.7

Cudy LT300 3.0 OS Command Injection via NTP Configuration

CVE-2026-28368
HIGH 8.7

Undertow: undertow: request smuggling via inconsistent header parsing

CVE-2026-28367
HIGH 8.7

Undertow: undertow: request smuggling via `\r\r\r` as a header block terminator

CVE-2026-22925
HIGH 8.7

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application is susceptible to resource exhaustion when subjected to high volume of TCP SYN packets This could allow an attacker to render the service unavailable and cause denial-of-service conditions by overwhelming system resources.

CVE-2026-10643
HIGH 8.7

Out-of-bounds heap write in Zephyr `recvmsg()` ancillary-data path (`insert_pktinfo` undersizes the control-buffer capacity check)

CVE-2026-58054
HIGH 8.6

MyBB - Privilege Escalation from Limited ACP User Management to Administrator

CVE-2026-56414
HIGH 8.6

H.VIEW HV-500S6 IP Camera Unrestricted Upload of File with Dangerous Type

CVE-2026-55975
HIGH 8.6

H.VIEW HV-500S6 IP Camera OS Command Injection

CVE-2026-49991
HIGH 8.6

RustFS Snowball Auto-Extract: Path Traversal allows cross-bucket object injection

CVE-2026-47907
HIGH 8.6

Dreamweaver Desktop | Improper Access Control (CWE-284)

CVE-2026-20224
HIGH 8.6

Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability

CVE-2026-13165
HIGH 8.6

Remote Code Execution in SzafirHost

CVE-2026-57667
HIGH 8.5

WordPress Groundhogg plugin <= 4.5 - SQL Injection vulnerability

CVE-2026-54353
HIGH 8.5

Budibase: Potential SSRF DNS rebinding bypass in outbound fetch validation

CVE-2026-40698
HIGH 8.5

iControl REST and TMSH vulnerability

CVE-2026-40631
HIGH 8.5

BIG-IP iControl SOAP vulnerability

CVE-2026-32673
HIGH 8.5

BIG-IP scripted monitor vulnerability

CVE-2026-32643
HIGH 8.5

BIG-IP and BIG-IQ privilege escalation vulnerability

CVE-2026-54371
HIGH 8.4

attr < 2.6.0 Symlink Traversal Privilege Escalation via getfattr/setfattr

CVE-2026-54369
HIGH 8.4

acl < 2.4.0 Symlink Traversal Privilege Escalation via libacl Functions

CVE-2026-33560
HIGH 8.4

Daktronics Controller Firmware Unrestricted Upload of File with Dangerous Type

CVE-2026-58051
HIGH 8.3

libssh2 - Free of Uninitialized Pointer in publickey List Cleanup

CVE-2026-58050
HIGH 8.3

libssh2 - Integer Overflow in publickey Subsystem Attribute Allocation

CVE-2025-2902
HIGH 8.3

Improper Authorization Vulnerability of Maintenance Utility in Hitachi Virtual Storage Platform

CVE-2026-52783
HIGH 8.2

OpenProject: Information Disclosure (cleartext storage of data) on localhost through memcached via Others "storage.<id>.httpx_access_token" leads to Sensitive Data Exposure

CVE-2026-50137
HIGH 8.2

Budibase: POST /api/attachments/:datasourceId/url is unauthenticated and lets anonymous callers mint S3 PUT pre-signed URLs using stored datasource IAM credentials

CVE-2026-42013
HIGH 8.2

Gnutls: gnutls: certificate validation bypass due to oversized subject alternative name

CVE-2026-5260
HIGH 8.2

Gnutls: gnutls: information disclosure via heap overread in rsa key exchange

CVE-2026-41855
HIGH 8.1

Spring Framework Unsafe Deserialization via Jackson JMS Converters

CVE-2026-10820
HIGH 8.1

ProfilePress < 4.16.17 - Subscriber+ Subscription Cancellation via IDOR

CVE-2026-8095
HIGH 8.1

Frontend File Manager Plugin <= 23.6 - Authenticated (Subscriber+) Arbitrary File Deletion

CVE-2025-30398
HIGH 8.1

Nuance PowerScribe 360 Information Disclosure Vulnerability

CVE-2026-53406
HIGH 7.8

Insufficient Verification of Data Authenticity in Remote Control for Zoom Contact Center for Windows before version 7.0.0 may allow an authenticated user to enable an escalation of privilege via local access.

CVE-2026-53192
HIGH 7.8

ALSA: timer: Fix UAF at snd_timer_user_params()

CVE-2026-52884
HIGH 7.8

Notepad++: CVE-2026-48800 Bypass

CVE-2026-49414
HIGH 7.8

ASLR bypass for setuid executables via procctl(2)

CVE-2026-49412
HIGH 7.8

Use-after-free bug in the IPV6_MSFILTER socket option handler

CVE-2026-48778
HIGH 7.8

Notepad++: Arbitrary Code Execution via config.xml commandLineInterpreter

CVE-2026-46331
HIGH 7.8

net/sched: fix pedit partial COW leading to page cache corruption

CVE-2026-45258
HIGH 7.8

Multiple vulnerabilities in the sound(4) mmap path

CVE-2026-24082
HIGH 7.8

Use After Free in Automotive GPU

CVE-2026-55607
HIGH 7.7

Claude Code: Sandbox Escape via Git Worktree Path Confusion Allows Unsandboxed Code Execution

CVE-2026-54033
HIGH 7.7

LibreChat: SSRF via User-Provided Custom Endpoint baseURL — no private IP validation on user-configured API base URLs

CVE-2026-47937
HIGH 7.7

Acrobat Reader | Uncontrolled Search Path Element (CWE-427)

CVE-2026-45807
HIGH 7.7

Kestra: Path traversal via URL-encoded "%2E%2E" in execution and namespace file endpoints allows arbitrary file read

CVE-2025-40947
HIGH 7.7

A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1500 (All versions < V2.17.1), RUGGEDCOM ROX RX1501 (All versions < V2.17.1), RUGGEDCOM ROX RX1510 (All versions < V2.17.1), RUGGEDCOM ROX RX1511 (All versions < V2.17.1), RUGGEDCOM ROX RX1512 (All versions < V2.17.1), RUGGEDCOM ROX RX1524 (All versions < V2.17.1), RUGGEDCOM ROX RX1536 (All versions < V2.17.1), RUGGEDCOM ROX RX5000 (All versions < V2.17.1). Affected devices do not properly sanitize user-supplied input during the feature key installation process. This could allow an authenticated remote attacker to inject arbitrary commands, resulting in remote code execution with root privileges on the underlying operating system.

CVE-2023-37524
HIGH 7.7

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to vulnerabilities due to .NET Framework 4.5 being out of service

CVE-2026-56208
HIGH 7.6

Libaom: libaom: heap buffer overflow in av1 encoder first-pass stats buffer via lap mode

CVE-2026-55844
HIGH 7.5

Home Assistant: iOS Companion App ignores internal SSID allowlist for connections – possible leak of access token and sensor data

CVE-2026-53284
HIGH 7.5

btrfs: only release the dirty pages io tree after successful writes

CVE-2026-52960
HIGH 7.5

ceph: put folios not suitable for writeback

CVE-2026-52957
HIGH 7.5

libceph: Fix potential null-ptr-deref in decode_choose_args()

CVE-2026-52954
HIGH 7.5

libceph: handle rbtree insertion error in decode_choose_args()

CVE-2026-52946
HIGH 7.5

fs/fcntl: fix SOFTIRQ-unsafe lock order in fasync signaling

CVE-2026-52885
HIGH 7.5

Notepad++ TOCTOU: HMAC Checks Disk, Executes from Memory

CVE-2026-48042
HIGH 7.5

Envoy: Stack overflow in destructor of highly nested JSON

CVE-2026-47220
HIGH 7.5

Envoy: Segmentation fault when using %REQUESTED_SERVER_NAME% in log format

CVE-2026-46710
HIGH 7.5

Notepad++: Privilege Escalation in the Installer via Uncontrolled Executable Search Path

CVE-2026-46604
HIGH 7.5

Panic decoding image with out-of-bounds strip offset in x/image/tiff in golang.org/x/image

CVE-2026-42009
HIGH 7.5

Gnutls: gnutls: denial of service via dtls packet reordering vulnerability

CVE-2026-38641
HIGH 7.5

An issue in the DSO::mmap_and_copy function of relibc commit 61f42d allows attackers to cause a Denial of Service (DoS) via loading a crafted shared library.

CVE-2026-38639
HIGH 7.5

An issue in the parse_month function (/time/strptime.rs) of relibc commit ab6a2e allows attackers to cause a Denial of Service (DoS) via parsing a crafted input.

CVE-2026-36478
HIGH 7.5

An issue in Technitium DNS Server v.14.3 and before allows a remote attacker to cause a denial of service via the DnsServerApp.exe, DnsServerApp.dll, TechnitiumLibrary.Net/Dns/DnsClient.cs components

CVE-2026-33846
HIGH 7.5

Gnutls: gnutls: denial of service via heap buffer overflow in dtls handshake fragment reassembly

CVE-2026-33845
HIGH 7.5

Gnutls: gnutls: denial of service via dtls zero-length fragment

CVE-2026-13676
HIGH 7.5

fast-uri vulnerable to host confusion via failed IDN canonicalization

CVE-2026-10083
HIGH 7.5

APCu Manager < 4.5.0 - Unauthenticated Stored XSS via Cache Key Pollution

CVE-2026-5757
HIGH 7.5

There exists an unauthenticated remote information disclosure vulnerability in Ollama's model quantization engine

CVE-2026-42011
HIGH 7.4

Gnutls: gnutls: security bypass due to incorrect name constraint handling

CVE-2026-13564
HIGH 7.4

Edimax EW-7478APC POST Request formPPPoESetup stack-based overflow

CVE-2026-13563
HIGH 7.4

Edimax EW-7478APC POST Request formL2TPSetup stack-based overflow

CVE-2026-13562
HIGH 7.4

Edimax EW-7478APC POST Request formiNICSiteSurvey buffer overflow

CVE-2026-13545
HIGH 7.4

D-Link DCS-935L POST Parameter setconf.cgi sub_400E40 os command injection

CVE-2026-13539
HIGH 7.4

Wavlink WL-NU516U1-A POST Parameter wireless.cgi sub_407504 stack-based overflow

CVE-2026-13519
HIGH 7.4

Tenda JD12L NatStaticSetting fromNatStaticSetting stack-based overflow

CVE-2026-13518
HIGH 7.4

Tenda JD12L addressNat fromAddressNat stack-based overflow

CVE-2026-13517
HIGH 7.4

Tenda JD12L WifiBasicSet formWifiBasicSet stack-based overflow

CVE-2026-13516
HIGH 7.4

Tenda JD12L WifiGuestSet fromSetWifiGusetBasic stack-based overflow

CVE-2026-13515
HIGH 7.4

Tenda JD12L SetPptpServerCfg formSetPPTPServer stack-based overflow

CVE-2026-10646
HIGH 7.4

Use-after-return in `zsock_getaddrinfo()` when a timed-out DNS query is retried without cancellation

CVE-2026-44411
HIGH 7.3

A vulnerability has been identified in Solid Edge SE2026 (All versions < V226.0 Update 5). The affected application is vulnerable to uninitialized pointer access while parsing specially crafted PAR files. An attacker could leverage this vulnerability to execute code in the context of the current process.

CVE-2026-22078
HIGH 7.3

O+ Connect's lack of authentication for IPC channels led to a local privilege escalation vulnerability.

CVE-2026-58056
HIGH 7.2

RustDesk - FileTransfer Session Authorization Scope Bypass

CVE-2026-54370
HIGH 7.2

acl < 2.4.0 TOCTOU Symlink Traversal via getfacl/setfacl/chacl

CVE-2026-40524
HIGH 7.2

FrontAccounting < 2.4.20 SQL Injection via get_gl_transactions()

CVE-2026-40523
HIGH 7.2

FrontAccounting < 2.4.20 SQL Injection via reporting/rep710.php

CVE-2026-13372
HIGH 7.2

Incorrect link resolution by display name in the custom PowerShell VPN editor in Devolutions Remote Desktop Manager 2026.2.5 through 2026.2.11 allows an authenticated attacker with write access to a shared workspace to execute a PowerShell script in another user's context via a display name collision with an existing VPN script link.

CVE-2026-57346
HIGH 7.1

WordPress Embed Privacy plugin <= 1.12.3 - Arbitrary File Deletion vulnerability

CVE-2026-57338
HIGH 7.1

WordPress ARForms plugin <= 7.1.2 - Reflected Cross Site Scripting (XSS) vulnerability

CVE-2026-57337
HIGH 7.1

WordPress Landing Page Builder plugin <= 1.5.3.5 - Cross Site Scripting (XSS) vulnerability

CVE-2026-57336
HIGH 7.1

WordPress Jobify theme <= 4.3.2 - Cross Site Scripting (XSS) vulnerability

CVE-2026-57333
HIGH 7.1

WordPress Link Whisper Free plugin <= 0.9.4 - Reflected Cross Site Scripting (XSS) vulnerability

CVE-2026-57332
HIGH 7.1

WordPress Wallet System for WooCommerce plugin <= 2.7.6 - Broken Access Control vulnerability

CVE-2026-57320
HIGH 7.1

WordPress BEAR plugin <= 1.1.8 - Cross Site Scripting (XSS) vulnerability

CVE-2026-56211
HIGH 7.1

Libaom: libaom: remote code execution via svc layer context handling with attacker-controlled frames

CVE-2026-56210
HIGH 7.1

Libaom: libaom: heap-buffer-overflow read via missing bounds check in ctrl_set_layer_id

CVE-2026-56209
HIGH 7.1

Libaom: libaom: arbitrary address write via svc layer context oob and cyclic refresh map pointer hijack

CVE-2026-49413
HIGH 7.1

Flaw in Linuxulator execution of setugid binaries

CVE-2026-42012
HIGH 7.1

Gnutls: gnutls: certificate validation bypass due to improper handling of uri and srv sans

CVE-2026-42010
HIGH 7.1

Gnutls: gnutls: authentication bypass via nul character in username

CVE-2026-40522
HIGH 7.1

FrontAccounting < 2.4.20 SQL Injection via rep601.php

CVE-2026-13601
HIGH 7.1

Yelp: yelp-xsl: overly permissive content security policy in yelp allows host file disclosure from flatpak applications

CVE-2026-5720
HIGH 7.1

miniupnpd Integer Underflow SOAPAction Header Parsing

CVE-2026-54230
HIGH 7

Abrt: event handler scripts follow symlinks when writing output files, allowing arbitrary file overwrites

CVE-2026-49417
HIGH 7

Multiple vulnerabilities in the sound(4) mmap path

CVE-2026-41992
MEDIUM 6.9

Global Buffer Overflow in GNU gzip

CVE-2026-40460
MEDIUM 6.9

NGINX ngx_quic_module vulnerability

CVE-2026-40435
MEDIUM 6.9

BIG-IP httpd access control vulnerability

CVE-2026-12616
MEDIUM 6.9

The /v1/upload/sbom endpoint extracts the iss claim from the attacker-supplied JWT with signature verification disabled, then interpolates that string into three log statements before any validation gate. Because the configured log format ("%(asctime)s - %(name)s - %(levelname)s - %(message)s") renders newlines literally, an unauthenticated attacker can forge log records that are byte-for-byte indistinguishable from PIA's genuine "Successfully authenticated project" message. PIA is an authentication broker whose logs are explicitly relied upon for incident response (DESIGN.md §5.4 lists "Token verifications" and "Errors" as events to log), so the ability to plant fake auth-success entries directly undermines the audit trail the service exists to produce.

CVE-2026-9267
MEDIUM 6.9

Eclipse tinydtls before commit b3efd41ad111a4920f599f51ffa4f5e9f1e72221 contains an out-of-bounds read vulnerability in the check_server_certificate() function that allows unauthenticated attackers to trigger reads beyond valid buffer boundaries by crafting a Certificate handshake message with a specific fragment_length value. Attackers can exploit missing buffer length validation before uint24 reads, memcmp, and memcpy operations during DTLS epoch 0 on both client and server paths to cause denial of service on memory-constrained devices.

CVE-2026-13595
MEDIUM 6.8

Util-linux: util-linux: heap use-after-free in libblkid nested partition probing

CVE-2025-61821
MEDIUM 6.8

ColdFusion | Improper Restriction of XML External Entity Reference ('XXE') (CWE-611)

CVE-2025-7386
MEDIUM 6.8

Information exposure vulnerability in Hitachi Storage Navigator

CVE-2024-23581
MEDIUM 6.7

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to an application modification vulnerability

CVE-2026-42014
MEDIUM 6.6

Gnutls: gnutls: use-after-free in gnutls_pkcs11_token_set_pin

CVE-2026-57654
MEDIUM 6.5

WordPress Affiliates Manager plugin <= 2.9.49 - Broken Access Control vulnerability

CVE-2026-57635
MEDIUM 6.5

WordPress FunnelKit Payment Gateway for Stripe WooCommerce plugin <= 1.14.0.3 - Cross Site Request Forgery (CSRF) vulnerability

CVE-2026-57431
MEDIUM 6.5

WordPress Featured Image plugin <= 2.1 - Cross Site Scripting (XSS) vulnerability

CVE-2026-57341
MEDIUM 6.5

WordPress Colissimo Officiel : Méthodes de livraison pour WooCommerce plugin <= 2.9.0 - Insecure Direct Object References (IDOR) vulnerability

CVE-2026-57340
MEDIUM 6.5

WordPress Japanized For WooCommerce plugin <= 2.9.12 - Broken Access Control vulnerability

CVE-2026-57339
MEDIUM 6.5

WordPress Business Directory plugin <= 6.4.23 - Broken Access Control vulnerability

CVE-2026-57335
MEDIUM 6.5

WordPress Ads by WPQuads plugin <= 3.0.3 - Broken Access Control vulnerability

CVE-2026-57334
MEDIUM 6.5

WordPress WP User Frontend plugin <= 4.3.7 - Broken Access Control vulnerability

CVE-2026-57330
MEDIUM 6.5

WordPress MasterStudy LMS plugin <= 3.7.27 - Cross Site Scripting (XSS) vulnerability

CVE-2026-57329
MEDIUM 6.5

WordPress WooCommerce Designer Pro plugin <= 1.9.34 - Cross Site Scripting (XSS) vulnerability

CVE-2026-57328
MEDIUM 6.5

WordPress Business Directory plugin <= 6.4.22 - Cross Site Scripting (XSS) vulnerability

CVE-2026-50519
MEDIUM 6.5

Microsoft Visual Studio Code CoPilot Chat Security Feature Bypass Vulnerability

CVE-2026-48710
MEDIUM 6.5

Starlette has missing Host header validation that poisons request.url.path, bypassing path-based security checks

CVE-2026-47204
MEDIUM 6.5

Envoy: grpc_stats filter segfault on Connect protocol requests to direct_response routes

CVE-2026-45259
MEDIUM 6.5

sigqueue(2) missing capability mode restriction

CVE-2026-13333
MEDIUM 6.5

Groundhogg <= 4.5.5 - Authenticated (Sales Rep+) SQL Injection via 'query[select]' Parameter

CVE-2026-10593
MEDIUM 6.5

Remotely triggerable NULL-pointer dereference in Bluetooth LE Audio BAP unicast client QoS-state handling

CVE-2026-3833
MEDIUM 6.5

Gnutls: gnutls: policy bypass due to case-sensitive nameconstraints comparison

CVE-2026-3462
MEDIUM 6.5

Frisbii Pay <= 1.8.9 - Missing Authorization to Authenticated (Subscriber+) Payment Token Modification

CVE-2026-52781
MEDIUM 6.4

OpenProject: Stored XSS on openproject.example.com through /api/v3/projects/{project}/work_packages via POST parameter "description"

CVE-2026-13295
MEDIUM 6.4

Page Builder by SiteOrigin <= 2.34.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via panels_data Parameter

CVE-2026-11783
MEDIUM 6.4

Dokan: AI Powered WooCommerce Multivendor Marketplace Solution <= 5.0.4 - Authenticated (Custom+) Stored Cross-Site Scripting via Product SKU

CVE-2026-58055
MEDIUM 6.3

nghttp2 nghttpx - HTTP Request/Response Smuggling via Upgrade Request with Content-Length

CVE-2026-57327
MEDIUM 6.3

WordPress MainWP plugin <= 6.1.1 - Broken Access Control vulnerability

CVE-2026-34019
MEDIUM 6.3

BIG-IP BFD vulnerability

CVE-2025-40745
MEDIUM 6.3

A vulnerability has been identified in Siemens Software Center (All versions < V3.5.8.2), Simcenter 3D (All versions < V2506.6000), Simcenter Femap (All versions < V2506.0002), Simcenter STAR-CCM+ (All versions < V2602), Solid Edge SE2025 (All versions < V225.0 Update 13), Solid Edge SE2026 (All versions < V226.0 Update 04), Tecnomatix Plant Simulation (All versions < V2504.0008). Affected applications do not properly validate client certificates to connect to Analytics Service endpoint. This could allow an unauthenticated remote attacker to perform man in the middle attacks.

CVE-2026-57326
MEDIUM 6.1

WordPress Business Directory plugin <= 6.4.22 - Cross Site Scripting (XSS) vulnerability

CVE-2026-50765
MEDIUM 6.1

Cross-Site Scripting (XSS) vulnerability in the patron restriction type administration page of Koha Library Management System through 25.11 allows an authenticated remote attacker with administrator privileges to inject arbitrary web scripts via the restriction type label (display_text field)

CVE-2026-13245
MEDIUM 6.1

MaxButtons <= 9.8.5 - Reflected Cross-Site Scripting via 'view' Parameter

CVE-2025-40948
MEDIUM 6.1

A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1500 (All versions < V2.17.1), RUGGEDCOM ROX RX1501 (All versions < V2.17.1), RUGGEDCOM ROX RX1510 (All versions < V2.17.1), RUGGEDCOM ROX RX1511 (All versions < V2.17.1), RUGGEDCOM ROX RX1512 (All versions < V2.17.1), RUGGEDCOM ROX RX1524 (All versions < V2.17.1), RUGGEDCOM ROX RX1536 (All versions < V2.17.1), RUGGEDCOM ROX RX5000 (All versions < V2.17.1). Affected devices do not properly validate input in the web server's JSON-RPC interface. This could allow an authenticated remote attacker to read arbitrary files from the underlying operating system's filesystem with root privileges.

CVE-2026-44733
MEDIUM 5.9

OpenProject: Business Logic Error on OpenProject through PATCH request to /api/v3/users/me permits to bypass password requirements

CVE-2026-54231
MEDIUM 5.5

Abrt: unsanitized systemd journal content written to dump directory files enables content injection

CVE-2026-39031
MEDIUM 5.5

Lansweeper lsrunase 2.0 and lsencrypt 2.0 use RC4 encryption with a hardcoded 142-byte static key array to encrypt credentials. An 8-character prefix is stored in cleartext alongside the ciphertext. This allows an attacker with local access to recover any encrypted password to plaintext using a single SHA-1 hash and RC4 decryption operation, with no brute force required.

CVE-2026-36908
MEDIUM 5.5

A stack overflow in the AP4_Array<AP4_TrunAtom::Entry>::EnsureCapacity component of axiomatic-systems Bento4 before v1.8.9allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.

CVE-2026-36907
MEDIUM 5.5

A stack overflow in the AP4_StsdAtom::AP4_StsdAtom component of axiomatic-systems Bento4 before v1.8.9allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.

CVE-2026-34662
MEDIUM 5.5

Illustrator | NULL Pointer Dereference (CWE-476)

CVE-2026-13571
MEDIUM 5.5

SourceCodester Simple Food Ordering System cart.php logic error

CVE-2026-13568
MEDIUM 5.5

SourceCodester Inventory Management System User Registration Endpoint users_handler.php access control

CVE-2026-13566
MEDIUM 5.5

SourceCodester Class and Exam Timetabling System preview3.php sql injection

CVE-2026-13565
MEDIUM 5.5

SourceCodester Class and Exam Timetabling System edit_class1.php sql injection

CVE-2026-13559
MEDIUM 5.5

code-projects Real State Services single-list_sale.php add sql injection

CVE-2026-13555
MEDIUM 5.5

itsourcecode Online Hotel Management System controller.php add sql injection

CVE-2026-13553
MEDIUM 5.5

itsourcecode Online Hotel Management System controller.php add unrestricted upload

CVE-2026-13552
MEDIUM 5.5

itsourcecode Online Hotel Management System controller.php edit sql injection

CVE-2026-13551
MEDIUM 5.5

itsourcecode Baptism Information Management System editBaptism.php sql injection

CVE-2026-13550
MEDIUM 5.5

itsourcecode Baptism Information Management System delbaptism.php sql injection

CVE-2026-13547
MEDIUM 5.5

Hanwang e-Face General Management Platform upload.do unrestricted upload

CVE-2026-13546
MEDIUM 5.5

Feehi CMS REST API Endpoint articles missing authentication

CVE-2026-13533
MEDIUM 5.5

agentejo Cockpit CMS htaccess config.yaml YAMLLoad file access

CVE-2026-13528
MEDIUM 5.5

YunaiV/zhijiantianya ruoyi-vue-pro AppFileController File Upload Endpoint FileServiceImpl.java generateUploadPath path traversal

CVE-2026-13527
MEDIUM 5.5

SourceCodester Class and Exam Timetabling System preview4.php sql injection

CVE-2026-13526
MEDIUM 5.5

SourceCodester Class and Exam Timetabling System edit_class.php sql injection

CVE-2026-13521
MEDIUM 5.5

SourceCodester Class and Exam Timetabling System preview5.php sql injection

CVE-2026-13503
MEDIUM 5.5

antlr ANTLR4 tokenVocab Grammar Option TokenVocabParser.java getImportedVocabFile path traversal

CVE-2026-13500
MEDIUM 5.5

antlr ANTLR4 Grammar Action Block OutputFile.java code injection

CVE-2026-13488
MEDIUM 5.5

SourceCodester Class and Exam Timetabling System preview7.php sql injection

CVE-2026-13486
MEDIUM 5.5

SourceCodester Class and Exam Timetabling System preview6.php sql injection

CVE-2026-13485
MEDIUM 5.5

SourceCodester Class and Exam Timetabling System preview.php sql injection

CVE-2025-59868
MEDIUM 5.5

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to sensitive data exposure

CVE-2025-10911
MEDIUM 5.5

Libxslt: use-after-free with key data stored cross-rvt

CVE-2026-50767
MEDIUM 5.4

A stored cross-site scripting (XSS) vulnerability in the item type administration page of Koha Library Management System through 25.11 allows an authenticated remote attacker with administrator privileges to inject arbitrary web scripts via the item type check-in message field (checkinmsg)

CVE-2026-50766
MEDIUM 5.4

A stored cross-site scripting (XSS) vulnerability in the OPAC item detail page of Koha Library Management System through 25.11 allows an authenticated remote attacker with edit_items permission to inject arbitrary web scripts via the item public notes field (items.itemnotes).

CVE-2026-57660
MEDIUM 5.3

WordPress Booking and Rental Manager plugin <= 2.7.1 - Broken Access Control vulnerability

CVE-2026-54515
MEDIUM 5.3

jackson-databind: Case-insensitive deserialization bypasses per-property @JsonIgnoreProperties

CVE-2026-54029
MEDIUM 5.3

LibreChat: IDOR in Message Deletion — Incomplete Fix for CVE-2024-41703 Leaves deleteMessages() Without User Filter

CVE-2026-42015
MEDIUM 5.3

Gnutls: gnutls: memory corruption due to off-by-one error in pkcs#12 bag handling

CVE-2026-20195
MEDIUM 5.3

Cisco Identity Services Engine Observable Response Discrepancy Vulnerability

CVE-2026-12432
MEDIUM 5.3

Stripe Payment Forms by WP Full Pay <= 8.4.3 - Missing Authorization to Unauthenticated Payment Record Manipulation via 'paymentIntentId' Parameter

CVE-2026-12050
MEDIUM 5.3

pgAdmin 4: SQL injection in named restore point endpoint

CVE-2026-12049
MEDIUM 5.3

pgAdmin 4: Open redirect in multi-factor authentication flow via unvalidated 'next' parameter

CVE-2026-9242
MEDIUM 5.3

RegistrationMagic <= 6.0.8.6 - Authenticated (Subscriber+) Authentication Bypass via Forged PayPal IPN Request

CVE-2025-64898
MEDIUM 5.3

ColdFusion | Insufficiently Protected Credentials (CWE-522)

CVE-2025-32423
MEDIUM 5.3

AutoGPT: There is a DoS vulnerability in ExtractTextInformationBlock

CVE-2025-14831
MEDIUM 5.3

Gnutls: gnutls: denial of service via excessive resource consumption during certificate verification

CVE-2024-12133
MEDIUM 5.3

Libtasn1: inefficient der decoding in libtasn1 leading to potential remote dos

CVE-2026-49983
MEDIUM 5.2

Deno: process.loadEnvFile() bypasses env permission checks and mutates process.env with only read access

CVE-2026-49860
MEDIUM 5.2

Deno: WebSocket API sandbox bypass via missing post-DNS check

CVE-2026-49859
MEDIUM 5.2

Deno: `fetch()` API sandbox bypass via missing DNS resolution check

CVE-2026-57965
MEDIUM 5.1

Spice-vdagent: integer overflow in udscs_write() leading to heap buffer overflow

CVE-2026-48770
MEDIUM 5

Notepad++ WM_COPYDATA COPYDATA_FULL_CMDLINE local DoS crash

CVE-2026-34694
MEDIUM 4.8

Adobe Experience Manager Forms JEE | Cross-site Scripting (Stored XSS) (CWE-79)

CVE-2026-12047
MEDIUM 4.8

pgAdmin 4: HTML injection in cloud verify_credentials / deploy endpoints via unsanitised SDK exception text

CVE-2026-9677
MEDIUM 4.8

Shariff for WordPress <= 1.0.11 - Admin+ Stored Cross-Site Scripting

CVE-2025-31976
MEDIUM 4.8

HCL BigFix Service Management (SM) is vulnerable to insufficiently protected credentials

CVE-2026-38571
MEDIUM 4.6

Cleartext storage and exposure of WPA2 credentials, and missing authentication on the rr/wr memory read/write commands, in the unauthenticated UART debug console of the Tenda N300 F3 (V603) allow a physically proximate attacker to obtain stored WPA2 credentials in cleartext and to read or write arbitrary memory via the serial console.

CVE-2025-31978
MEDIUM 4.6

HCL BigFix Service Management (SM) does not adequately sanitize or safely render

CVE-2026-57966
MEDIUM 4.4

Spice-vdagent: path traversal in file transfer via unsanitized filename

CVE-2026-46406
MEDIUM 4.4

Claude Code: Insecure Temporary File in /copy Command Enables Response Disclosure and Symlink-Based File Write

CVE-2026-12399
MEDIUM 4.4

Gutenverse <= 3.8.0 - Authenticated (Editor+) Stored Cross-Site Scripting via 'fonts[].font.font.value' Parameter

CVE-2026-57676
MEDIUM 4.3

WordPress Simple User Avatar plugin <= 4.9 - Insecure Direct Object References (IDOR) vulnerability

CVE-2026-57648
MEDIUM 4.3

WordPress Nelio Content plugin <= 4.3.4 - Broken Access Control vulnerability

CVE-2026-56457
MEDIUM 4.3

HCL DevOps Deploy / HCL Launch is susceptible to an exposure of sensitive information

CVE-2026-55517
MEDIUM 4.3

Deno: Denial of service via non-ASCII bytes in WebSocket response headers

CVE-2026-49355
MEDIUM 4.3

OpenProject: Private work package data disclosure through single meeting agenda item API

CVE-2026-48934
MEDIUM 4.3

A flaw in Node.js TLS host verification can cause an attacker to bypass certification validation. This vulnerability affects all supported release lines: **Node.js 22**, **Node.js 24**, and **Node.js 26**.

CVE-2026-44732
MEDIUM 4.3

OpenProject: IDOR on OpenProject through /api/v3/documents/{id} via PATCH parameter "project_id" leads to Unauthorized Modification of Resources

CVE-2026-44731
MEDIUM 4.3

OpenProject: Improper Access Control on OpenProject through /projects/[projectName]/meetings via "invited_user_id" in GET parameter "filters" leads to user names disclosure

CVE-2026-13422
MEDIUM 4.3

HD Quiz 2.2.0 - 2.2.1 - Cross-Site Request Forgery via Multiple AJAX Handlers

CVE-2026-11773
MEDIUM 4.3

Masteriyo LMS <= 2.2.1 - Missing Authorization to Authenticated (Student+) Arbitrary Course Announcement Modification

CVE-2026-11364
MEDIUM 4.3

Product Specifications for Woocommerce <= 0.8.9 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Attribute/Group Creation, Modification, and Deletion via 'dwps_modify_groups' and 'dwps_modify_attributes' AJAX Actions

CVE-2026-9676
MEDIUM 4.3

f4 Post Tree < 2.0.5 - Subscriber+ Arbitrary Post Parent/Menu Order Modification

CVE-2021-22769
MEDIUM 4.3

A CWE-552: Files or Directories Accessible to External Parties vulnerability exists in Easergy T300 with firmware V2.7.1 and older that could expose files or directory content when access from an attacker is not restricted or incorrectly restricted.

CVE-2026-10644
MEDIUM 4.2

Out-of-bounds write in Microchip SERCOM-G1 (PIC32CM-JH) async UART RX with 1-byte buffer

CVE-2026-33555
MEDIUM 4

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVE-2026-5419
LOW 3.7

Gnutls: gnutls: information disclosure via timing side-channel in pkcs#7 padding removal

CVE-2025-0824
LOW 3.7

lack of validation for firmware update in Hitachi Virtual Storage

CVE-2026-13543
LOW 2.9

Documenso Google OAuth Login handle-oauth-callback-url.ts improper authentication

CVE-2026-13529
LOW 2.9

YzmCMS index.php sql injection

CVE-2026-13524
LOW 2.9

CherryHQ cherry-studio MCP OAuth Local Callback Server callback.ts improper authorization

CVE-2026-13510
LOW 2.9

SimStudioAI sim Password Protection deployment.ts weak hash

CVE-2026-13491
LOW 2.9

78 xiaozhi-esp32 MQTT Goodbye mqtt_protocol.cc GetInstance denial of service

CVE-2026-13482
LOW 2.9

skypilot-org skypilot User ID server.py username.encode weak hash

CVE-2026-12755
LOW 2.7

Improper input validation in the PAM AD discovery endpoints in Devolutions Server 2026.2.4.0 through 2026.2.7.0 allows an authenticated user with the UserGroupsView permission to coerce server-side authentication to an attacker-controlled host, exposing PAM provider credentials as a NTLMv2 challenge-response, via a crafted DomainName parameter.

CVE-2026-58057
LOW 2.3

Flowise - Custom MCP Environment Variable Denylist Bypass via Case Sensitivity

CVE-2026-13507
LOW 2.3

volcengine OpenViking Local VectorDB Primary-key Label str_to_uint64.py str_to_uint64 data authenticity

CVE-2026-13579
LOW 2.1

itsourcecode Hospital Management System patientchangepassword.php sql injection

CVE-2026-13578
LOW 2.1

itsourcecode Hospital Management System patientdetail.php sql injection

CVE-2026-13572
LOW 2.1

itsourcecode Hospital Management System insertbillingrecord.php sql injection

CVE-2026-13567
LOW 2.1

code-projects Online Music Site POST Request Feedback.php cross site scripting

CVE-2026-13561
LOW 2.1

Edimax EW-7478APC POST Request formiNICbasic os command injection

CVE-2026-13560
LOW 2.1

Edimax EW-7478APC POST Request formAccept os command injection

CVE-2026-13557
LOW 2.1

itsourcecode Online Hotel Management System POST Request controller.php add cross site scripting

CVE-2026-13556
LOW 2.1

itsourcecode Online Hotel Management System POST Request controller.php edit cross site scripting

CVE-2026-13554
LOW 2.1

itsourcecode Online Hotel Management System POST Request controller.php add cross site scripting

CVE-2026-13549
LOW 2.1

CodeAstro Complaint Management System Report Endpoint Report.php deletereport authorization

CVE-2026-13548
LOW 2.1

itsourcecode Hospital Management System doctortimings.php sql injection

CVE-2026-13544
LOW 2.1

Feehi CMS API users access control

CVE-2026-13542
LOW 2.1

itsourcecode Hospital Management System doctorprofile.php sql injection

CVE-2026-13541
LOW 2.1

itsourcecode Hospital Management System doctorchangepassword.php sql injection

CVE-2026-13540
LOW 2.1

GitBucket RepositoryCreationService.scala Git.cloneRepository.setURI server-side request forgery

CVE-2026-13538
LOW 2.1

Wavlink WL-NU516U1-A POST Parameter wireless.cgi sub_401D68 command injection

CVE-2026-13537
LOW 2.1

CodeAstro Human Resource Management System cross-site request forgery

CVE-2026-13536
LOW 2.1

GotoHTTP reg.12x cross site scripting

CVE-2026-13535
LOW 2.1

CodeAstro Human Resource Management System View Endpoint Employee_model.php GetFileInfo sql injection

CVE-2026-13532
LOW 2.1

itsourcecode Hospital Management System departmentDoctor.php sql injection

CVE-2026-13531
LOW 2.1

itsourcecode Hospital Management System department.php sql injection

CVE-2026-13530
LOW 2.1

itsourcecode Hospital Management System Appointment appointmentdetail.php sql injection

CVE-2026-13525
LOW 2.1

CodeAstro Human Resource Management System Update_Earn_Leave Endpoint Employee_model.php emselectByCode sql injection

CVE-2026-13522
LOW 2.1

Investintech SlimPDFReader PDF File SlimPDFReader.exe TeighaDo+0x25cde0 out-of-bounds

CVE-2026-13520
LOW 2.1

itsourcecode Hospital Management System Appointment appointmentapproval.php sql injection

CVE-2026-13499
LOW 2.1

yashpokharna2555 restaurent-management-system Registration login_register.php cross site scripting

CVE-2026-13497
LOW 2.1

itsourcecode Hospital Management System appointment.php sql injection

CVE-2026-13496
LOW 2.1

itsourcecode Hospital Management System ajaxmedicine.php sql injection

CVE-2026-41991
LOW 2

Predictable Temporary File in GNU gzip

CVE-2026-13570
LOW 2

SourceCodester Inventory Management System User Registration Endpoint users_handler.php cross site scripting

CVE-2026-13569
LOW 2

weng-xianhu EyouCMS API index.php sql injection

CVE-2026-13558
LOW 2

CodeAstro Complaint Management System Report addreport cross site scripting

CVE-2026-13508
LOW 2

khoj-ai khoj Conversation Sharing api_chat.py authorization

CVE-2026-13574
LOW 1.9

llvm llvm-project Bitcode File IntrinsicInst.cpp getBasePtr heap-based overflow

CVE-2026-13573
LOW 1.9

llvm llvm-project ValueSymbolTable ValueSymbolTable.cpp insert stack-based overflow

CVE-2026-13523
LOW 1.9

GPAC ISOBMFF base_encoding.c data amplification

CVE-2026-11979
LOW 1.8

Stack-Based Buffer Overflow in libxml2

CVE-2026-13534
LOW 1.3

CherryHQ cherry-studio CherryIN Preload API MemoryService.ts sha256 authorization

CVE-2026-13513
LOW 1.3

MyScale MyScaleDB SegmentId.h getCacheKey data authenticity

CVE-2026-13511
LOW 1.3

VoltAgent Memory REST API memory.handlers.ts handleGetMemoryConversation improper authorization

CVE-2026-13493
LOW 1.3

AIDC-AI ComfyUI-Copilot Workflow Checkpoint Restore conversation_api.py resource injection

CVE-2026-13489
LOW 1.3

78 xiaozhi-esp32 MCP Response mcp_server.cc ParseMessage improper synchronization

CVE-2026-13483
LOW 1.3

arc53 DocsGPT Credential Storage encryption.py encrypt_credentials data authenticity

CVE-2026-13502
LOW 1.1

antlr ANTLR4 Maven Plugin GrammarDependencies.java ObjectInputStream.readObject toctou

CVE-2026-13514
LOW 0.9

Chess Play and Learn App com.chess AndroidManifest.xml backup

CVE-2026-53325
NONE

agp/amd64: Fix broken error propagation in agp_amd64_probe()

CVE-2026-53208
NONE

Bluetooth: L2CAP: reject BR/EDR signaling packets over MTUsig

CVE-2026-53136
NONE

drm/amd/display: Clamp VBIOS HDMI retimer register count to array size

CVE-2026-52972
NONE

crypto: af_alg - Cap AEAD AD length to 0x80000000

CVE-2026-52962
NONE

ceph: fix a buffer leak in __ceph_setxattr()

CVE-2026-52948
NONE

i2c: dev: prevent integer overflow in I2C_TIMEOUT ioctl

CVE-2026-49049
NONE

Joomla Extension - joomshaper.com - Unauthenticated access to Helix3 template ajax handler