VulnSea

Tagged “exploit-available”

CVEs tagged exploit-available, newest first.

3548 CVEsRSS

CVE-2026-86298High· 7.3PoC
2w ago

A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0

A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. Impacted is an unknown function of the file /delete_subject.php. Performing a manipulation of the argument ID results in sql injection. It is po…

▾ MidnightSourceCodester · Class and Exam Timetabling SystemEPSS 0.43%via NVD
CVE-2026-86297High· 8.1PoC
2w ago

A vulnerability was identified in D-Link DIR-605 B1v202WWB03

A vulnerability was identified in D-Link DIR-605 B1v202WWB03. This issue affects the function tunnel_set_params of the file progs.gpl/pppd.alpha/l2tp/tunnel.c of the component L2TP Control Message Parser. Such manipulation of the argumen…

▾ MidnightD-Link · DIR-605EPSS 1.1%via NVD
CVE-2026-86296Critical· 10.0PoC
2w ago

A vulnerability was determined in D-Link DIR-822A A_101

A vulnerability was determined in D-Link DIR-822A A_101. This vulnerability affects the function strcpy of the file udhcpcd/serverpacket.c of the component udhcpcd. This manipulation causes stack-based buffer overflow. The attack is poss…

▾ AbyssalD-Link · DIR-822AEPSS 1.7%via NVD
CVE-2026-86295High· 8.3PoC
2w ago

A vulnerability was found in D-Link DIR-895L A1_102b07

A vulnerability was found in D-Link DIR-895L A1_102b07. This affects the function sendACK of the file udhcpcd/serverpacket.c of the component udhcpcd. The manipulation of the argument Hostname results in command injection. The attack can…

▾ MidnightD-Link · DIR-895LEPSS 2.3%via NVD
CVE-2026-86294Medium· 4.3PoC
2w ago

A vulnerability has been found in SourceCodester Simple Traffic Offense System 1.0

A vulnerability has been found in SourceCodester Simple Traffic Offense System 1.0. Affected by this issue is some unknown functionality of the file save-settings.php of the component Settings Update Endpoint. The manipulation of the arg…

▾ TwilightSourceCodester · Simple Traffic Offense SystemEPSS 0.47%via NVD
CVE-2026-86293Medium· 6.5PoC
2w ago

A flaw has been found in SourceCodester Simple Traffic Offense System 1.0

A flaw has been found in SourceCodester Simple Traffic Offense System 1.0. Affected by this vulnerability is an unknown functionality of the file delete-user.php of the component Deletion Endpoint. Executing a manipulation of the argumen…

▾ TwilightSourceCodester · Simple Traffic Offense SystemEPSS 0.76%via NVD
CVE-2026-86292High· 7.3PoC
2w ago

A vulnerability was detected in SourceCodester Simple Traffic Offense System 1.0

A vulnerability was detected in SourceCodester Simple Traffic Offense System 1.0. Affected is an unknown function of the file saveuser.php of the component User Creation. Performing a manipulation of the argument position results in miss…

▾ MidnightSourceCodester · Simple Traffic Offense SystemEPSS 0.69%via NVD
CVE-2026-86291Medium· 6.3PoC
2w ago

A security vulnerability has been detected in itsourcecode Sales and Inventory System 1.0

A security vulnerability has been detected in itsourcecode Sales and Inventory System 1.0. This impacts an unknown function of the file /pages/us_edit1.php. Such manipulation of the argument ID leads to sql injection. The attack can be l…

▾ Twilightitsourcecode · Sales and Inventory SystemEPSS 0.33%via NVD
CVE-2026-84173High· 8.3PoC
2w ago

In Eclipse Ankaios versions v0.5.1 through v1.0.1, the agent-side Control Interface authorizer incorrectly evaluates multi-segment allow rules whose first path segment is a wildcard

In Eclipse Ankaios versions v0.5.1 through v1.0.1, the agent-side Control Interface authorizer incorrectly evaluates multi-segment allow rules whose first path segment is a wildcard. An authenticated workload with access restricted by su…

▾ MidnightEclipse Foundation · Eclipse AnkaiosEPSS 0.16%via NVD
CVE-2026-86290High· 7.3PoC
2w ago

A weakness has been identified in SourceCodester Online Voting System 1.0

A weakness has been identified in SourceCodester Online Voting System 1.0. This affects an unknown function of the file /voting/ajax.php?action=save_category. This manipulation of the argument Category causes sql injection. The attack ca…

▾ MidnightSourceCodester · Online Voting SystemEPSS 0.43%via NVD
CVE-2026-86289Medium· 4.3PoC
2w ago

A vulnerability was found in Ollama up to 0.31.1

A vulnerability was found in Ollama up to 0.31.1. This issue affects the function readGGUFV1String of the file fs/ggml/gguf.go of the component GGUF Decoder. Performing a manipulation results in integer overflow. The attack is possible t…

▾ TwilightRed Hat · OllamaEPSS 0.69%via NVD
CVE-2026-86288Medium· 6.3PoC
2w ago

A vulnerability has been found in ModelCloud GPTQModel up to 7.2.0

A vulnerability has been found in ModelCloud GPTQModel up to 7.2.0. This vulnerability affects unknown code of the file gptqmodel/nn_modules/qlinear/tritonv2.py of the component Triton dequantization kernel. Such manipulation of the argu…

▾ TwilightModelCloud · GPTQModelEPSS 0.51%via NVD
CVE-2026-86285Medium· 4.3PoC
2w ago

A vulnerability was detected in BookStack up to 26.05.2

A vulnerability was detected in BookStack up to 26.05.2. Affected by this issue is the function AttachmentController::getUpdateForm of the file app/Uploads/Controllers/AttachmentController.php of the component Attachment Edit Endpoint. T…

▾ TwilightEPSS 0.39%via NVD
CVE-2026-86284Medium· 5.3PoC
2w ago

A security vulnerability has been detected in jaychouchannel Tourism-Management-System up to 8122bf020d91199eddfff3ee02d1632a70a9a132

A security vulnerability has been detected in jaychouchannel Tourism-Management-System up to 8122bf020d91199eddfff3ee02d1632a70a9a132. Affected by this vulnerability is the function getOption of the file travel/src/main/java/com/controll…

▾ Twilightjaychouchannel · Tourism-Management-SystemEPSS 0.55%via NVD
CVE-2026-86282High· 7.3PoC
2w ago

A weakness has been identified in jaychouchannel Tourism-Management-System up to 8122bf020d91199eddfff3ee02d1632a70a9a132

A weakness has been identified in jaychouchannel Tourism-Management-System up to 8122bf020d91199eddfff3ee02d1632a70a9a132. Affected is an unknown function of the file travel/src/main/java/com/controller/CommonController.java of the compo…

▾ Midnightjaychouchannel · Tourism-Management-SystemEPSS 0.45%via NVD
CVE-2026-86281Medium· 4.3PoC
2w ago

A security flaw has been discovered in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0

A security flaw has been discovered in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This impacts an unknown function. Performing a manipulation results in cross-site request forgery. The attack can be ini…

▾ TwilightSourceCodester · Syllabus-Aligned Learning Management & Examination SystemEPSS 0.23%via NVD
CVE-2026-86280Medium· 5.3PoC
2w ago

A vulnerability was identified in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0

A vulnerability was identified in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This affects an unknown function of the file cict_portal.sql. Such manipulation leads to cleartext storage of sensitive infor…

▾ TwilightSourceCodester · Syllabus-Aligned Learning Management & Examination SystemEPSS 0.35%via NVD
CVE-2026-86279Medium· 6.3PoC
2w ago

A vulnerability was determined in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0

A vulnerability was determined in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. The impacted element is an unknown function of the file auth_process.php of the component Login. This manipulation causes ses…

▾ TwilightSourceCodester · Syllabus-Aligned Learning Management & Examination SystemEPSS 0.40%via NVD
CVE-2026-86278Medium· 4.3PoC
2w ago

A vulnerability was found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0

A vulnerability was found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. The affected element is an unknown function of the file manage_subjects.php. The manipulation of the argument msg/title/content re…

▾ TwilightSourceCodester · Syllabus-Aligned Learning Management & Examination SystemEPSS 0.47%via NVD
CVE-2026-86277High· 7.3PoC
2w ago

A vulnerability has been found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0

A vulnerability has been found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. Impacted is an unknown function of the file delete_exam.php. The manipulation of the argument ID leads to authorization bypas…

▾ MidnightSourceCodester · Syllabus-Aligned Learning Management & Examination SystemEPSS 0.52%via NVD
CVE-2026-86276High· 7.3PoC
2w ago

A flaw has been found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0

A flaw has been found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This issue affects some unknown processing of the file db.php. Executing a manipulation can lead to hard-coded credentials. The attack…

▾ MidnightSourceCodester · Syllabus-Aligned Learning Management & Examination SystemEPSS 0.50%via NVD
CVE-2026-86275Medium· 5.3PoC
2w ago

A vulnerability was detected in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0

A vulnerability was detected in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This vulnerability affects the function register of the file auth.php. Performing a manipulation of the argument role results i…

▾ TwilightSourceCodester · Syllabus-Aligned Learning Management & Examination SystemEPSS 0.48%via NVD
CVE-2026-86273High· 7.3PoC
2w ago

A weakness has been identified in projeto-siga siga up to 11.1.1

A weakness has been identified in projeto-siga siga up to 11.1.1. Affected by this issue is the function DownloadExterno.getUrl of the file sigaex/src/main/java/br/gov/jfrj/siga/vraptor/ExUtilController.java of the component HTML-to-PDF …

▾ Midnightprojeto-siga · sigaEPSS 0.50%via NVD
CVE-2026-86272High· 7.3PoC
2w ago

A vulnerability was determined in Beijing Meite Software Technology U+Smart Enjoyment WebSite 18.6001.1096.1000

A vulnerability was determined in Beijing Meite Software Technology U+Smart Enjoyment WebSite 18.6001.1096.1000. This impacts an unknown function of the file /Report/Upload/UploadFormImg.ashx. Executing a manipulation of the argument Fil…

▾ MidnightBeijing Meite Software Technology · U+Smart Enjoyment WebSiteEPSS 0.51%via NVD
CVE-2026-86271Medium· 4.7PoC
2w ago

A vulnerability was found in FluentCMS up to 0.0.5

A vulnerability was found in FluentCMS up to 0.0.5. This affects the function GetAccessible of the file src/Backend/FluentCMS.Services/Permissions/PermissionManager.cs. Performing a manipulation results in missing authorization. It is po…

▾ TwilightEPSS 0.40%via NVD
CVE-2026-86270Medium· 6.3PoC
2w ago

A vulnerability has been found in itsourcecode Sales and Inventory System 1.0

A vulnerability has been found in itsourcecode Sales and Inventory System 1.0. The impacted element is an unknown function of the file /pages/settings_edit.php. Such manipulation of the argument ID leads to sql injection. The attack may …

▾ Twilightitsourcecode · Sales and Inventory SystemEPSS 0.33%via NVD
CVE-2026-79698Critical· 9.9PoC
2w ago

A vulnerability was identified in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-6610-EL-JB, WISE-6610-EL-CB, WISE-6610P-DEA, WISE-6610P-DNA and WIS…

A vulnerability was identified in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-6610-EL-JB, WISE-6610-EL-CB, WISE-6610P-DEA, WISE-6610P-DNA and WIS…

▾ AbyssalAdvantech · WISE-6610-NBEPSS 3.2%via NVD
CVE-2026-79697Critical· 9.9PoC
2w ago

A vulnerability was determined in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-6610-EL-JB, WISE-6610-EL-CB, WISE-6610P-DEA, WISE-6610P-DNA and WIS…

A vulnerability was determined in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-6610-EL-JB, WISE-6610-EL-CB, WISE-6610P-DEA, WISE-6610P-DNA and WIS…

▾ AbyssalAdvantech · WISE-6610-NBEPSS 4.9%via NVD
CVE-2026-86269Medium· 6.3PoC
2w ago

A flaw has been found in itsourcecode Sales and Inventory System 1.0

A flaw has been found in itsourcecode Sales and Inventory System 1.0. The affected element is an unknown function of the file /pages/emp_edit1.php. This manipulation of the argument ID causes sql injection. The attack is possible to be c…

▾ Twilightitsourcecode · Sales and Inventory SystemEPSS 0.33%via NVD
CVE-2026-86268High· 7.3PoC
2w ago

A vulnerability was detected in itsourcecode School Management System 1.0

A vulnerability was detected in itsourcecode School Management System 1.0. Impacted is an unknown function of the file User_Login.php. The manipulation of the argument email results in sql injection. The attack can be executed remotely. …

▾ Midnightitsourcecode · School Management SystemEPSS 0.43%via NVD
CVEs tagged “exploit-available” — page 53 · VulnSea