VulnSea

Tagged “nvd”

CVEs tagged nvd, newest first.

25441 CVEsRSS

CVE-2026-94103Medium· 4.7PoC
1w ago

A vulnerability has been found in RooCMS up to 1.2.2/1.3.4/1.4RC2

A vulnerability has been found in RooCMS up to 1.2.2/1.3.4/1.4RC2. This impacts the function eval of the file roocms/site_pagePHP.php of the component Frontend Rendering. Such manipulation of the argument content leads to code injection.…

▾ TwilightEPSS 0.41%via NVD
CVE-2026-94100Critical· 9.9PoC
1w ago

A weakness has been identified in Netcore NBR200V2 1.3.241127.071246

A weakness has been identified in Netcore NBR200V2 1.3.241127.071246. Impacted is the function wan_config_set_vlan of the file /usr/bin/routerd of the component WAN VLAN Reconfiguration. Executing a manipulation of the argument vlan_wanX…

▾ AbyssalNetcore · NBR200V2EPSS 0.80%via NVD
CVE-2026-94099Critical· 9.9PoC
1w ago

A security flaw has been discovered in Netcore NBR200V2 1.3.241127.071246

A security flaw has been discovered in Netcore NBR200V2 1.3.241127.071246. This issue affects some unknown processing of the file restore.cgi of the component Backup Restore. Performing a manipulation of the argument QUERY_STRING results…

▾ AbyssalNetcore · NBR200V2EPSS 1.7%via NVD
CVE-2026-94098Critical· 9.1PoC
1w ago

A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246

A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246. This vulnerability affects unknown code of the file /www/cgi-bin/upgrade of the component Firmware Upgrade CGI Endpoint. Such manipulation of the argument QUERY_STRING…

▾ AbyssalNetcore · NBR200V2EPSS 2.4%via NVD
CVE-2026-94097Critical· 10.0
1w ago

A vulnerability was determined in Netcore NBR200V2 1.3.241127.071246

A vulnerability was determined in Netcore NBR200V2 1.3.241127.071246. This affects an unknown part of the file /www/cgi-bin/network_tools of the component CGI Diagnostic Endpoint. This manipulation of the argument param/key/val causes co…

▾ MidnightNetcore · NBR200V2EPSS 2.9%via NVD
CVE-2026-94096Critical· 9.9PoC
1w ago

A vulnerability was found in Netcore NBR200V2 1.3.241127.071246

A vulnerability was found in Netcore NBR200V2 1.3.241127.071246. Affected by this issue is some unknown functionality of the file /usr/bin/network_tools of the component LAN IP Configuration Handler. The manipulation of the argument ipv4…

▾ AbyssalNetcore · NBR200V2EPSS 2.0%via NVD
CVE-2026-94095Critical· 9.9PoC
1w ago

A vulnerability has been found in Netcore NBR200V2 1.3.241127.071246

A vulnerability has been found in Netcore NBR200V2 1.3.241127.071246. Affected by this vulnerability is an unknown functionality of the file /usr/bin/network_tools of the component Traceroute Diagnostic Feature. The manipulation of the a…

▾ AbyssalNetcore · NBR200V2EPSS 2.4%via NVD
CVE-2026-55074High· 8.2
1w ago

Ansible FreeBSD Jail Connection Plugin is an Ansible connection plugin for FreeBSD Jails via jexec

Ansible FreeBSD Jail Connection Plugin is an Ansible connection plugin for FreeBSD Jails via jexec. Through version 1.3.0, the jailexec connection plugin's put_file resolved a transfer's destination to a path on the jail host ( + ) and r…

▾ Twilightchofstede · ansible_jailexecEPSS 0.44%via NVD
CVE-2026-55071High· 8.4PoC
1w ago

MCP-for-Stata is a MCP server for integrating Stata into agent loops with a safety-first design

MCP-for-Stata is a MCP server for integrating Stata into agent loops with a safety-first design. Prior to version 1.19.0, the ado_package_install MCP tool in stata-mcp concatenates user-controlled input directly into a Stata command stri…

▾ MidnightSepineTam · mcp-for-stataEPSS 0.25%via NVD
CVE-2026-94094Medium· 4.3PoC
1w ago

A flaw has been found in OpenClaw up to 2026.9.5

A flaw has been found in OpenClaw up to 2026.9.5. Affected is the function createCanvasHostHandler of the file extensions/canvas/src/host/server.ts of the component Canvas Host Route. Executing a manipulation can lead to denial of servic…

▾ TwilightEPSS 0.47%via NVD
CVE-2026-94093Medium· 6.3PoC
1w ago

A security vulnerability has been detected in DLR-RM stable-baselines3 up to 2.9.0

A security vulnerability has been detected in DLR-RM stable-baselines3 up to 2.9.0. This affects the function PPO.load/load_replay_buffer/VecNormalize.load of the file save_util.py. Such manipulation leads to deserialization. It is possi…

▾ TwilightDLR-RM · stable-baselines3EPSS 0.45%via NVD
CVE-2026-94092Medium· 5.5PoC
1w ago

A vulnerability was detected in dmlc dgl up to 2.1.0

A vulnerability was detected in dmlc dgl up to 2.1.0. This impacts the function load_info/_read_torch_data of the file utils.py. Performing a manipulation of the argument path results in deserialization. The attack can be initiated remot…

▾ Twilightdmlc · dglEPSS 0.34%via NVD
CVE-2026-94091Medium· 5.5PoC
1w ago

A weakness has been identified in piskvorky gensim up to 4.4.0

A weakness has been identified in piskvorky gensim up to 4.4.0. The impacted element is the function Load of the file gensim/utils.py of the component Model Loader. This manipulation of the argument fname causes deserialization. It is po…

▾ Twilightpiskvorky · gensimEPSS 0.34%via NVD
CVE-2026-94090Medium· 6.3
1w ago

A security flaw has been discovered in JusticeRage Manalyze 1.0.0

A security flaw has been discovered in JusticeRage Manalyze 1.0.0. The affected element is the function PE::_parse_debug of the file manape/pe.cpp of the component PE Parser. The manipulation of the argument misc.Length results in intege…

▾ SunlitJusticeRage · ManalyzeEPSS 0.42%via NVD
CVE-2026-94089Critical· 10.0PoC
1w ago

A vulnerability was determined in D-Link DIR-868L 2.01b05

A vulnerability was determined in D-Link DIR-868L 2.01b05. This issue affects the function strcpy of the file /webfa_authentication.cgi of the component Authentication Handler. Executing a manipulation of the argument id/password can lea…

▾ AbyssalD-Link · DIR-868LEPSS 0.98%via NVD
CVE-2026-94050Medium· 4.3
1w ago

A vulnerability has been found in D-Link DIR-X1860Z up to 1.0.2.220120.165402

A vulnerability has been found in D-Link DIR-X1860Z up to 1.0.2.220120.165402. Affected is the function routerd.wificfg_get/routerd.get_rand_key of the component ubus JSON-RPC interface. Such manipulation leads to information disclosure.…

▾ SunlitD-Link · DIR-X1860ZEPSS 0.38%via NVD
CVE-2026-94051Medium· 6.3PoC
1w ago

A vulnerability was found in 0717376 cowork_bench up to d943e75bc0fc8e3b27141979300cd8cbcd1e890d

A vulnerability was found in 0717376 cowork_bench up to d943e75bc0fc8e3b27141979300cd8cbcd1e890d. Affected by this vulnerability is the function ControlFlowNode of the file local_servers/pdf-tools-mcp/pdf_tools_mcp/server.py of the compo…

▾ Twilight0717376 · cowork_benchEPSS 0.37%via NVD
CVE-2026-94049Medium· 4.3PoC
1w ago

A flaw has been found in 06ketan slideshot up to 4.4.0

A flaw has been found in 06ketan slideshot up to 4.4.0. This impacts the function render_slides of the file packages/cli/src/renderer.ts. This manipulation of the argument htmlPath causes path traversal. The attack is possible to be carr…

▾ Twilight06ketan · slideshotEPSS 0.47%via NVD
CVE-2026-94048Medium· 6.6PoC
1w ago

A vulnerability was detected in CodeAstro QR Code Attendance Management System 1.0

A vulnerability was detected in CodeAstro QR Code Attendance Management System 1.0. This affects the function Save of the file app/Controllers/UserController.php. The manipulation of the argument role_id results in improper privilege man…

▾ TwilightCodeAstro · QR Code Attendance Management SystemEPSS 0.40%via NVD
CVE-2026-94047Medium· 6.3PoC
1w ago

A security vulnerability has been detected in samanhappy MCPHub up to 1.0.32

A security vulnerability has been detected in samanhappy MCPHub up to 1.0.32. The impacted element is the function importTemplate of the file src/services/templateService.ts of the component Template Import Endpoint. The manipulation lea…

▾ Twilightsamanhappy · MCPHubEPSS 0.43%via NVD
CVE-2026-94046Medium· 4.3PoC
1w ago

A weakness has been identified in 0215AndrewFeng ACE-MCP up to 4.10.8

A weakness has been identified in 0215AndrewFeng ACE-MCP up to 4.10.8. The affected element is the function get_file_snippet of the file getFileSnippet.ts of the component MCP Tool. Executing a manipulation of the argument projectRootPat…

▾ Twilight0215AndrewFeng · ACE-MCPEPSS 0.47%via NVD
CVE-2026-94045Low· 3.5PoC
1w ago

A security flaw has been discovered in newbee-ltd newbee-mall up to 1.0.0

A security flaw has been discovered in newbee-ltd newbee-mall up to 1.0.0. Impacted is an unknown function of the file controller/common/UploadController.java of the component Goods Save Endpoint. Performing a manipulation of the argumen…

▾ Twilightnewbee-ltd · newbee-mallEPSS 0.41%via NVD
CVE-2026-94044High· 7.3
1w ago

A vulnerability was identified in 03-lovepreetSingh MCP up to f95d035c5317fad81af9828286631053ccb23546

A vulnerability was identified in 03-lovepreetSingh MCP up to f95d035c5317fad81af9828286631053ccb23546. This issue affects the function create_file of the file app/api/mcp/route.ts. Such manipulation of the argument filePath/content lead…

▾ Twilight03-lovepreetSingh · MCPEPSS 0.61%via NVD
CVE-2026-94043Medium· 5.3PoC
1w ago

A vulnerability was determined in Free5GC up to 4.2.3

A vulnerability was determined in Free5GC up to 4.2.3. This vulnerability affects unknown code of the file /corefuzzer_deps/free5gc/NFs/amf/internal/gmm/handler.go of the component Gmm Handler. This manipulation causes race condition. Th…

▾ TwilightEPSS 0.57%via NVD
CVE-2026-94042Medium· 6.3PoC
1w ago

A vulnerability was found in AdithyaYelloju Restaurant Management System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c

A vulnerability was found in AdithyaYelloju Restaurant Management System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c. This affects the function mysqli_query of the file admin/add_table.php. The manipulation of the argument table/membe…

▾ TwilightAdithyaYelloju · Restaurant Management SystemEPSS 0.32%via NVD
CVE-2026-88857Critical· 9.4
1w ago

Joomla Extension - OrdaSoft.com - Authenticated, Privileged Remote Code Execution in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 - The extensions saveWatermark() copied an uploaded file into a web-accessible directory using the …

Joomla Extension - OrdaSoft.com - Authenticated, Privileged Remote Code Execution in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 - The extensions saveWatermark() copied an uploaded file into a web-accessible directory using the …

▾ MidnightOrdaSoft.com · com_osgallery_lightEPSS 0.64%via NVD
CVE-2026-88856Critical· 9.4
1w ago

Joomla Extension - OrdaSoft.com - Authenticated, Privileged Remote Code Execution in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 - The extensions updateOSGallery(), reached via task=update_osgallery, read a JSON request body and…

Joomla Extension - OrdaSoft.com - Authenticated, Privileged Remote Code Execution in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 - The extensions updateOSGallery(), reached via task=update_osgallery, read a JSON request body and…

▾ MidnightOrdaSoft.com · com_osgallery_lightEPSS 0.67%via NVD
CVE-2026-88855High· 8.6
1w ago

Joomla Extension - OrdaSoft.com - Authenticated, Privileged SQL Injection in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 - The extensions saveGallery() passes form data through a hand-rolled parser into Joomla’s Input object, th…

Joomla Extension - OrdaSoft.com - Authenticated, Privileged SQL Injection in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 - The extensions saveGallery() passes form data through a hand-rolled parser into Joomla’s Input object, th…

▾ TwilightOrdaSoft.com · com_osgallery_lightEPSS 0.37%via NVD
CVE-2026-88854Critical· 9.3PoC
1w ago

Joomla Extension - OrdaSoft.com - Unauthenticated SQL Injection in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 - The extensions showSearchResult() and showSearchResultAjax() read the textsearch/searchText request parameter with …

Joomla Extension - OrdaSoft.com - Unauthenticated SQL Injection in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 - The extensions showSearchResult() and showSearchResultAjax() read the textsearch/searchText request parameter with …

▾ AbyssalOrdaSoft.com · com_osgallery_lightEPSS 0.39%via NVD
CVE-2026-94041Medium· 6.3PoC
1w ago

A vulnerability has been found in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c

A vulnerability has been found in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c. Affected by this issue is some unknown functionality of the file admin/add_menu.php. The manipulation of the ar…

▾ TwilightAdithyaYelloju · Restaurant-Management-SystemEPSS 0.33%via NVD
CVEs tagged “nvd” — page 105 · VulnSea