VulnSea

Tagged “cve.org”

CVEs tagged cve.org, newest first.

18479 CVEsRSS

CVE-2026-15923Medium· 4.6
2w ago

The Zephyr SDIO subsystem function sdio_io_rw_extended_helper() in subsys/sd/sdio.c finishes transfers with a byte-I/O loop that uses size = MIN(remaining, func->cis.max_blk_size) as the per-iteration step

The Zephyr SDIO subsystem function sdio_io_rw_extended_helper() in subsys/sd/sdio.c finishes transfers with a byte-I/O loop that uses size = MIN(remaining, func->cis.max_blk_size) as the per-iteration step. The value func->cis.max_blk_si…

▾ Sunlitzephyrproject · zephyrEPSS 0.17%via NVD
CVE-2026-49400Low· 3.3
2w ago

October System provides the system module for October Content Management System

October System provides the system module for October Content Management System. Prior to versions 3.7.17 and 4.2.21, the backend `SessionMaker` trait stored widget session state as `base64(serialize(...))` and consumed it with `unserial…

▾ Sunlitoctobercms · octoberEPSS 0.24%via NVD
CVE-2026-90996Medium· 4.0
2w ago

A flaw was found in sssd

A flaw was found in sssd. A local unprivileged user could send a specially crafted request with a zero-length body to the Network Security Services (NSS) responder. This could lead to a denial-of-service condition, causing the NSS respon…

▾ SunlitRed Hat · sssdEPSS 0.16%via NVD
CVE-2026-90995Medium· 5.5
2w ago

A flaw was found in SSSD (System Security Services Daemon)

A flaw was found in SSSD (System Security Services Daemon). A local attacker with privileges to connect to the PAM (Pluggable Authentication Modules) responder socket can send a specially crafted protocol request. If the `pam_app_service…

▾ SunlitRed Hat · sssdEPSS 0.15%via NVD
CVE-2026-90994Medium· 4.0
2w ago

A flaw was found in sssd, specifically within the PAM (Pluggable Authentication Modules) responder's protocol v1 parser, pam_parse_in_data()

A flaw was found in sssd, specifically within the PAM (Pluggable Authentication Modules) responder's protocol v1 parser, pam_parse_in_data(). A local client with access to the PAM responder's UNIX socket can exploit this by negotiating p…

▾ SunlitRed Hat · sssdEPSS 0.17%via NVD
CVE-2026-90947High· 7.8
2w ago

A flaw was found in GIMP

A flaw was found in GIMP. When processing a specially crafted lighting preset file, the Lighting Effects filter does not properly validate the number of light sources. This can lead to an out-of-bounds write, corrupting memory. An attack…

▾ TwilightRed Hat · gimpEPSS 0.13%via NVD
CVE-2026-90943High· 8.7
2w ago

parallax filament-comments through 3.0.0 contains a stored cross-site scripting vulnerability in comment body rendering that allows authenticated panel users to inject malicious scripts

parallax filament-comments through 3.0.0 contains a stored cross-site scripting vulnerability in comment body rendering that allows authenticated panel users to inject malicious scripts. Attackers can store XSS payloads in comment bodies…

▾ Twilightparallax · parallax/filament-commentsEPSS 0.43%via NVD
CVE-2026-90795Medium· 4.3PoC
2w ago

A vulnerability was determined in itsourcecode Loan Management System 1.0

A vulnerability was determined in itsourcecode Loan Management System 1.0. The impacted element is an unknown function of the file navbar.php. Executing a manipulation of the argument page can lead to cross site scripting. It is possible…

▾ Twilightitsourcecode · Loan Management SystemEPSS 0.47%via NVD
CVE-2026-90794Medium· 6.3PoC
2w ago

A vulnerability was found in GPAC up to f1219cde

A vulnerability was found in GPAC up to f1219cde. The affected element is the function gf_sg_script_load of the file scenegraph/vrml_tools.c of the component MP4Box. Performing a manipulation results in use after free. It is possible to …

▾ TwilightEPSS 0.51%via NVD
CVE-2026-90793Medium· 5.4PoC
2w ago

A vulnerability has been found in GPAC up to f1219cde

A vulnerability has been found in GPAC up to f1219cde. Impacted is the function gf_node_get_name of the file scenegraph/base_scenegraph.c of the component MP4Box. Such manipulation leads to use after free. The attack may be performed fro…

▾ TwilightEPSS 0.58%via NVD
CVE-2026-90463Medium· 4.0
2w ago

A flaw was found in the sssd NSS responder

A flaw was found in the sssd NSS responder. This input validation vulnerability allows a local attacker, by sending specially crafted service lookup requests to the NSS responder's UNIX socket, to cause an out-of-bounds read. This out-of…

▾ SunlitRed Hat · sssdEPSS 0.15%via NVD
CVE-2026-88819Medium· 6.3
2w ago

In Siglet current and past versions the refresh token handler do not enforce proof of possession of the issuer DID.

In Siglet current and past versions the refresh token handler do not enforce proof of possession of the issuer DID.

▾ SunlitEclipse Foundation · Eclipse Data Plane CoreEPSS 0.17%via NVD
CVE-2026-81301High· 8.5
2w ago

Ekia File Manager 1.2.7 exposes com.ekia.filecontrolmanager.OpenFileProvider as an exported Android ContentProvider without requiring caller permissions. The provider maps the caller-controlled URI path directly to a filesystem path and…

Ekia File Manager 1.2.7 exposes com.ekia.filecontrolmanager.OpenFileProvider as an exported Android ContentProvider without requiring caller permissions. The provider maps the caller-controlled URI path directly to a filesystem path and…

▾ TwilightEkia · File ManagerEPSS 0.16%via NVD
CVE-2026-4103Medium· 6.4
2w ago

Insufficient HTML sanitization in the Publisher Portal and Developer Portal allows untrusted user input to be rendered without proper encoding or neutralization

Insufficient HTML sanitization in the Publisher Portal and Developer Portal allows untrusted user input to be rendered without proper encoding or neutralization. This enables the injection and execution of malicious JavaScript when affec…

▾ SunlitWSO2 · WSO2 API Control PlaneEPSS 0.30%via NVD
CVE-2026-76461Critical· 9.8CISA KEV0dayPoC
2w ago

A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system. This …

A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system. This …

▾ Hadalcisco · asyncosEPSS 28%via NVD
CVE-2026-76443Critical· 9.8
2w ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review r…

▾ MidnightCisco · Cisco Secure EmailEPSS 0.53%via NVD
CVE-2026-76441Critical· 9.8
2w ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review r…

▾ MidnightCisco · Cisco Secure Email and Web ManagerEPSS 0.53%via NVD
CVE-2026-76440Critical· 9.8
2w ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review r…

▾ MidnightCisco · Cisco Secure EmailEPSS 0.62%via NVD
CVE-2026-76442High· 7.5
2w ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review r…

▾ TwilightCisco · Cisco Secure EmailEPSS 0.47%via NVD
CVE-2026-20353Critical· 9.8
2w ago

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review r…

▾ MidnightCisco · Cisco Secure EmailEPSS 0.40%via NVD
CVE-2026-46696Low· 3.3
2w ago

October System provides the system module for October Content Management System

October System provides the system module for October Content Management System. Versions prior to 3.7.17 and 4.2.21 have a vulnerability in the Twig sandbox security policy that allowed a chained bypass when `cms.safe_mode` is enabled. …

▾ Sunlitoctobercms · systemEPSS 0.27%via NVD
CVE-2026-90704Medium· 6.6PoC
2w ago

A vulnerability was found in D-Link DWR-M921 1.1.52

A vulnerability was found in D-Link DWR-M921 1.1.52. The impacted element is the function system of the file /boafrm/formDiskPartition. Performing a manipulation of the argument devicename results in command injection. Remote exploitatio…

▾ TwilightD-Link · DWR-M921EPSS 2.3%via NVD
CVE-2026-90703Critical· 9.1PoC
2w ago

A vulnerability has been found in D-Link DWR-M921 1.1.52

A vulnerability has been found in D-Link DWR-M921 1.1.52. The affected element is the function system of the file /boafrm/formDiskCreateShare. Such manipulation of the argument folderpath leads to os command injection. The attack may be …

▾ AbyssalD-Link · DWR-M921EPSS 3.6%via NVD
CVE-2026-90608Critical· 9.9PoC
2w ago

A flaw has been found in Totolink A3002MU Hh-B20211125.1046

A flaw has been found in Totolink A3002MU Hh-B20211125.1046. The affected element is the function formPortFw of the file /boafrm/formPortFw of the component boa. This manipulation of the argument service_type causes buffer overflow. It i…

▾ AbyssalTotolink · A3002MUEPSS 0.85%via NVD
CVE-2026-90606Critical· 9.9PoC
2w ago

A security vulnerability has been detected in Totolink A3002MU Hh-B20211125.1046

A security vulnerability has been detected in Totolink A3002MU Hh-B20211125.1046. This issue affects the function formIpv6Setup of the file /boafrm/formIpv6Setup of the component boa. The manipulation of the argument static_ipv6 leads to…

▾ AbyssalTotolink · A3002MUEPSS 0.85%via NVD
CVE-2026-90605Critical· 9.9PoC
2w ago

A weakness has been identified in Totolink A3002MU Hh-B20211125.1046

A weakness has been identified in Totolink A3002MU Hh-B20211125.1046. This vulnerability affects the function formFilter of the file /boafrm/formFilter of the component boa. Executing a manipulation of the argument ip6addr can lead to bu…

▾ AbyssalTotolink · A3002MUEPSS 0.85%via NVD
CVE-2026-90604Low· 3.5PoC
2w ago

A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046

A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046. This affects an unknown part of the component Anchor Tag Handler. Performing a manipulation results in cross site scripting. Remote exploitation of the attack is …

▾ TwilightTotolink · A3002MUEPSS 0.35%via NVD
CVE-2024-53922Medium· 5.7
2w ago

An issue was discovered in the buffer queue driver in Samsung Automotive Processor Exynos Auto 8890, V7, V9, and V920

An issue was discovered in the buffer queue driver in Samsung Automotive Processor Exynos Auto 8890, V7, V9, and V920. Lack of a length check leads to a Denial of Service in the kernel.

▾ SunlitSamsung · Exynos 8890 firmwareEPSS 0.16%via NVD
CVE-2022-42917Medium· 6.7
2w ago

In FRRouting FRR before 8.5, the service user (usually frr) can escalate its privileges to root by monitoring the configuration directory (/etc/frr) and replacing config files upon creation with, for example, symlinks to change the owner…

In FRRouting FRR before 8.5, the service user (usually frr) can escalate its privileges to root by monitoring the configuration directory (/etc/frr) and replacing config files upon creation with, for example, symlinks to change the owner…

▾ SunlitFRRouting · FRRoutingEPSS 0.13%via NVD
CVE-2026-90623Low· 3.7PoC
2w ago

A weakness has been identified in andreashappe cochise up to 0.4.1

A weakness has been identified in andreashappe cochise up to 0.4.1. Affected is the function asyncssh.connect of the file src/cochise/ssh_connection.py of the component SSH Host Key Handler. Executing a manipulation can lead to improper …

▾ Twilightandreashappe · cochiseEPSS 0.28%via NVD
CVEs tagged “cve.org” — page 326 · VulnSea