VulnSea

Tagged “exploit-available”

CVEs tagged exploit-available, newest first.

3547 CVEsRSS

CVE-2026-86517Medium· 6.3PoC
2w ago

A flaw has been found in itsourcecode Sales and Inventory System 1.0

A flaw has been found in itsourcecode Sales and Inventory System 1.0. The impacted element is the function mysqli_query of the file /pages/us_searchfrm.php. Executing a manipulation of the argument ID can lead to sql injection. It is pos…

▾ Twilightitsourcecode · Sales and Inventory SystemEPSS 0.33%via NVD
CVE-2026-86515Medium· 4.3PoC
2w ago

A security vulnerability has been detected in vgmstream up to r2117

A security vulnerability has been detected in vgmstream up to r2117. Impacted is the function add_entry of the file src/meta/txtp_parser.c of the component txtp. Such manipulation of the argument range_start/range_end leads to resource c…

▾ TwilightEPSS 0.59%via NVD
CVE-2026-86514Medium· 6.3PoC
2w ago

A weakness has been identified in vgmstream up to r2117

A weakness has been identified in vgmstream up to r2117. This issue affects the function sscanf of the file src/meta/txth.c of the component txth-txtp. This manipulation causes stack-based buffer overflow. The attack is possible to be ca…

▾ TwilightEPSS 0.47%via NVD
CVE-2026-86513Medium· 5.3PoC
2w ago

A security flaw has been discovered in java-json-tools jackson-coreutils 2.0

A security flaw has been discovered in java-json-tools jackson-coreutils 2.0. This vulnerability affects the function TreePointer.tokensFromInput of the file src/main/java/com/github/fge/jackson/jsonpointer/TreePointer.java of the compon…

▾ Twilightjava-json-tools · jackson-coreutilsEPSS 0.70%via NVD
CVE-2026-86512Medium· 6.3PoC
2w ago

A vulnerability was identified in java-json-tools json-patch up to 1.13

A vulnerability was identified in java-json-tools json-patch up to 1.13. This affects the function CopyOperation.apply/MoveOperation.apply of the file src/main/java/com/github/fge/jsonpatch/CopyOperation.java of the component Copy Move O…

▾ Twilightjava-json-tools · json-patchEPSS 0.37%via NVD
CVE-2026-86511Medium· 5.3PoC
2w ago

A vulnerability was found in java-json-tools jackson-coreutils 2.0

A vulnerability was found in java-json-tools jackson-coreutils 2.0. Affected by this vulnerability is the function BigDecimal.toPlainString of the file src/main/java/com/github/fge/jackson/JacksonUtils.java. Performing a manipulation res…

▾ Twilightjava-json-tools · jackson-coreutilsEPSS 0.70%via NVD
CVE-2026-86509Critical· 9.6PoC
2w ago

A flaw has been found in D-Link DIR-895L A1_102b07

A flaw has been found in D-Link DIR-895L A1_102b07. This impacts the function sendOffer/sendACK of the file udhcpcd/serverpacket.c of the component udhcpcd. This manipulation causes stack-based buffer overflow. The attack can only be don…

▾ AbyssalD-Link · DIR-895LEPSS 0.72%via NVD
CVE-2026-86274Medium· 5.3PoC
2w ago

A security vulnerability has been detected in projeto-siga siga up to 11.0.2.10/11.0.2.13/11.1.1

A security vulnerability has been detected in projeto-siga siga up to 11.0.2.10/11.0.2.13/11.1.1. This affects the function ExAutenticacaoController.autenticar of the file sigaex/src/main/java/br/gov/jfrj/siga/vraptor/ExAutenticacaoContr…

▾ Twilightprojeto-siga · sigaEPSS 0.74%via NVD
CVE-2026-86540High· 7.8PoC
2w ago

knowns versions before 0.30.0 fail to validate the settings.lsp.languages binary field in project configuration files, allowing attackers to execute arbitrary binaries by crafting a malicious .knowns/config.json file

knowns versions before 0.30.0 fail to validate the settings.lsp.languages binary field in project configuration files, allowing attackers to execute arbitrary binaries by crafting a malicious .knowns/config.json file. When a repository w…

▾ Midnightknowns-dev · knownsEPSS 0.21%via NVD
CVE-2026-86437High· 7.2PoC
2w ago

Lara Dashboard before 1.3.2 authorizes the POST /admin/settings/core-upgrades/upload endpoint with only the settings.edit permission, allowing non-Superadmin administrators to upload and extract arbitrary zip archives over the live appli…

Lara Dashboard before 1.3.2 authorizes the POST /admin/settings/core-upgrades/upload endpoint with only the settings.edit permission, allowing non-Superadmin administrators to upload and extract arbitrary zip archives over the live appli…

▾ Midnightlaradashboard · laradashboardEPSS 0.71%via NVD
CVE-2026-86436Medium· 5.4PoC
2w ago

Lara Dashboard before 1.3.2 fails to authorize access to the post-builder image and video upload endpoints, allowing authenticated accounts without content permissions to upload files

Lara Dashboard before 1.3.2 fails to authorize access to the post-builder image and video upload endpoints, allowing authenticated accounts without content permissions to upload files. Attackers can upload polyglot files with attacker-ch…

▾ Twilightlaradashboard · laradashboardEPSS 0.53%via NVD
CVE-2026-75650Critical· 10.0CISA KEV0dayPoC
2w ago

Adobe Commerce is affected by an Improper Neutralization of Special Elements Used in a Template Engine vulnerability that could result in arbitrary code execution in the context of the current user

Adobe Commerce is affected by an Improper Neutralization of Special Elements Used in a Template Engine vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnera…

▾ Hadaladobe · commerceEPSS 3.9%via NVD
CVE-2026-86469Medium· 5.3PoC
2w ago

A flaw was found in GLib2

A flaw was found in GLib2. When g_file_replace() is used with G_FILE_CREATE_REPLACE_DESTINATION and creating the .goutputstream-XXXXXX temporary file fails, the library unlinks the destination and recreates it without exclusive creation …

▾ TwilightRed Hat · glib2EPSS 0.14%via NVD
CVE-2026-86321Medium· 5.3PoC
2w ago

A vulnerability was found in java-json-tools jackson-coreutils 2.0

A vulnerability was found in java-json-tools jackson-coreutils 2.0. Affected by this issue is the function JsonLoader.fromURL of the file src/main/java/com/github/fge/jackson/JsonLoader.java of the component URL Validation. The manipulat…

▾ Twilightjava-json-tools · jackson-coreutilsEPSS 0.66%via NVD
CVE-2026-86319Medium· 5.3PoC
2w ago

A vulnerability has been found in java-json-tools json-patch up to 1.13

A vulnerability has been found in java-json-tools json-patch up to 1.13. Affected by this vulnerability is the function JsonPatch.apply of the file src/main/java/com/github/fge/jsonpatch/JsonPatch.java of the component Patch Operation Ha…

▾ Twilightjava-json-tools · json-patchEPSS 0.70%via NVD
CVE-2026-86318Medium· 5.3PoC
2w ago

A flaw has been found in java-json-tools json-patch up to 1.13

A flaw has been found in java-json-tools json-patch up to 1.13. Affected is the function JsonMergePatch.fromJson of the file JsonMergePatchDeserializer.java. Executing a manipulation can lead to stack-based buffer overflow. The attack ma…

▾ Twilightjava-json-tools · json-patchEPSS 0.76%via NVD
CVE-2026-86310Medium· 6.3PoC
2w ago

A vulnerability has been found in itsourcecode Sales and Inventory System 1.0

A vulnerability has been found in itsourcecode Sales and Inventory System 1.0. The affected element is an unknown function of the file /pages/cust_edit1.php. Such manipulation of the argument ID leads to sql injection. The attack can be …

▾ Twilightitsourcecode · Sales and Inventory SystemEPSS 0.33%via NVD
CVE-2026-86309Medium· 6.3PoC
2w ago

A flaw has been found in itsourcecode Sales and Inventory System 1.0

A flaw has been found in itsourcecode Sales and Inventory System 1.0. Impacted is an unknown function of the file /pages/pro_searchfrm.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. …

▾ Twilightitsourcecode · Sales and Inventory SystemEPSS 0.33%via NVD
CVE-2026-86308Medium· 5.3PoC
2w ago

A vulnerability was detected in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930

A vulnerability was detected in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. This issue affects some unknown processing of the file App/Common/Conf/config.php of the component Debug Mod…

▾ Twilightlight0011 · cmsEPSS 0.54%via NVD
CVE-2026-86307Medium· 4.3PoC
2w ago

A security vulnerability has been detected in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930

A security vulnerability has been detected in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.…

▾ Twilightlight0011 · cmsEPSS 0.23%via NVD
CVE-2026-19843High· 8.4PoC
2w ago

A flaw was found in 389-ds-base

A flaw was found in 389-ds-base. The Cockpit 389 Console's LDAP editor constructs an ldapsearch command by embedding an LDAP entry's distinguished name (DN) into a shell command string without proper escaping. An LDAP user with delegated…

▾ MidnightRed Hat · redhat-ds:11EPSS 0.48%via NVD
CVE-2026-86426Critical· 9.8PoC
2w ago

LibreNMS before 26.8.0 contains an authentication bypass vulnerability in the REST API that allows unauthenticated attackers to access protected endpoints by sending numeric values instead of string tokens

LibreNMS before 26.8.0 contains an authentication bypass vulnerability in the REST API that allows unauthenticated attackers to access protected endpoints by sending numeric values instead of string tokens. Attackers can exploit MySQL ty…

▾ Abyssallibrenms · librenmsEPSS 3.9%via NVD
CVE-2026-86306High· 7.3PoC
2w ago

A weakness has been identified in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930

A weakness has been identified in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. This affects an unknown part of the file App/Home/Model/UserModel.class.php of the component Cookie Helper…

▾ Midnightlight0011 · cmsEPSS 0.69%via NVD
CVE-2026-86305High· 7.3PoC
2w ago

A security flaw has been discovered in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930

A security flaw has been discovered in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. Affected by this issue is the function Upload::upload of the file ThinkPHP/Library/Think/Upload.class…

▾ Midnightlight0011 · cmsEPSS 0.50%via NVD
CVE-2026-86303High· 7.3PoC
2w ago

A vulnerability was determined in 92181 markdown up to 058cab0cb7fb245a0ccc6b8446963ff8d573558f

A vulnerability was determined in 92181 markdown up to 058cab0cb7fb245a0ccc6b8446963ff8d573558f. Affected by this issue is the function lds of the file md.c. Executing a manipulation can lead to out-of-bounds read. The attack can be exec…

▾ Midnight92181 · markdownEPSS 0.54%via NVD
CVE-2026-86302Medium· 5.3PoC
2w ago

A vulnerability was found in code-projects Hospital Information System 1.0

A vulnerability was found in code-projects Hospital Information System 1.0. Affected by this vulnerability is an unknown functionality of the file /HIS/his.sql of the component SQL Database Backup File Handler. Performing a manipulation …

▾ Twilightcode-projects · Hospital Information SystemEPSS 0.53%via NVD
CVE-2026-76578Critical· 9.8PoC
2w ago

A flaw was found in FreeIPA

A flaw was found in FreeIPA. The self-managed OTP token ACI does not require authentication and does not restrict which attributes may be added alongside the token entry. An unauthenticated LDAP client can exploit this, combined with a r…

▾ AbyssalRed Hat · ipaEPSS 0.96%via NVD
CVE-2026-86301Low· 3.5PoC
2w ago

A vulnerability has been found in code-projects Hospital Information System 1.0

A vulnerability has been found in code-projects Hospital Information System 1.0. Affected is an unknown function of the file /HIS/src/patients/editPatient.php of the component Patient Management. Such manipulation of the argument ID lead…

▾ Twilightcode-projects · Hospital Information SystemEPSS 0.35%via NVD
CVE-2026-86300High· 7.3PoC
2w ago

A flaw has been found in Tenda AC9 15.03.05.14

A flaw has been found in Tenda AC9 15.03.05.14. This impacts the function R7WebsSecurityHandler of the component Web Management. This manipulation causes improper authentication. The attack may be initiated remotely. The exploit has been…

▾ MidnightTenda · AC9EPSS 0.84%via NVD
CVE-2026-86299Critical· 9.9PoC
2w ago

A vulnerability was detected in Linksys RE7000 2.0.15

A vulnerability was detected in Linksys RE7000 2.0.15. This affects the function platform_event_pingTest of the file /cgi-bin/json.cgi?PingTest of the component PingTest Handler. The manipulation of the argument pingTestIp/pingTestPktSiz…

▾ AbyssalLinksys · RE7000EPSS 3.7%via NVD
CVEs tagged “exploit-available” — page 52 · VulnSea