Posts

Showing posts from April, 2026

CVE-2026-7536 - Open5GS BSF pcfBindings bsf_sess_add_by_ip_address denial of service

CVE ID : CVE-2026-7536 Published : May 1, 2026, 1:15 a.m. | 47 minutes ago Description : A vulnerability was determined in Open5GS up to 2.7.7. This vulnerability affects the function bsf_sess_add_by_ip_address of the file /nbsf-management/v1/pcfBindings of the component BSF. Executing a manipulation of the argument ipv4Addr can lead to denial of service. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/qwOLPR2 via IFTTT

CVE-2026-0204 - SonicOS Unauthenticated Access Control Bypass

CVE ID : CVE-2026-0204 Published : April 29, 2026, 5:16 p.m. | 24 minutes ago Description : A vulnerability in the access control mechanism of SonicOS may allow certain management interface functions to be accessible under specific conditions. Severity: 8.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/F0kO4XW via IFTTT

CVE-2026-7290 - JeecgBoot loadDict Endpoint SqlInjectionUtil.java SqlInjectionUtil sql injection

CVE ID : CVE-2026-7290 Published : April 28, 2026, 4:30 p.m. | 2 hours, 3 minutes ago Description : A vulnerability was determined in JeecgBoot up to 3.9.1. Impacted is the function SqlInjectionUtil of the file jeecg-boot/jeecg-boot-base-core/src/main/java/org/jeecg/common/util/SqlInjectionUtil.java of the component loadDict Endpoint. This manipulation of the argument keyword causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized. Patch name: a9c8e8eb1185751c4c3c68d2a53f3dadee9edc6b. To fix this issue, it is recommended to deploy a patch. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/VsDnZMU via IFTTT

CVE-2026-6970 - authd Denial of Service and Local Privilege Escalation

CVE ID : CVE-2026-6970 Published : April 27, 2026, 4:16 p.m. | 1 hour, 44 minutes ago Description : authd prior to version 0.6.4 contains a logic error in primary group ID assignment that can lead to local privilege escalation. When a user's primary group ID (GID) differs from their UID, either because the account was created with authd prior to version 0.5.4 or because the primary group was manually changed via the `authctl group set-gid` command, and the user's identity provider record is updated, authd incorrectly resets the user's primary group ID to their UID upon next login. This causes newly created files and directories to be owned by the wrong group, causing denial of service issues, and potentially granting unintended access to other local users and allowing local privilege escalation. Severity: 7.3 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/l6bnsOz via ...

CVE-2026-7055 - Tenda F456 httpd VirtualSer fromVirtualSer buffer overflow

CVE ID : CVE-2026-7055 Published : April 26, 2026, 6 p.m. | 1 hour, 59 minutes ago Description : A security vulnerability has been detected in Tenda F456 1.0.0.5. This issue affects the function fromVirtualSer of the file /goform/VirtualSer of the component httpd. The manipulation of the argument menufacturer/Go leads to buffer overflow. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/q8PQM60 via IFTTT

CVE-2026-7053 - Tenda F456 httpd L7Prot frmL7ProtForm buffer overflow

CVE ID : CVE-2026-7053 Published : April 26, 2026, 4 p.m. | 1 hour, 59 minutes ago Description : A security flaw has been discovered in Tenda F456 1.0.0.5. This affects the function frmL7ProtForm of the file /goform/L7Prot of the component httpd. Performing a manipulation of the argument page results in buffer overflow. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/bAM7hi3 via IFTTT

CVE-2026-6988 - Tenda HG10 Boa Service formRouting formRoute buffer overflow

CVE ID : CVE-2026-6988 Published : April 25, 2026, 5 p.m. | 58 minutes ago Description : A flaw has been found in Tenda HG10 HG7_HG9_HG10re_300001138_en_xpon. This issue affects the function formRoute of the file /boaform/formRouting of the component Boa Service. This manipulation of the argument nextHop causes buffer overflow. It is possible to initiate the attack remotely. The exploit has been published and may be used. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/Y6UT7Qc via IFTTT

CVE-2026-42042 - Axios: XSRF Token Cross-Origin Leakage via Prototype Pollution Gadget in `withXSRFToken` Boolean Coercion

CVE ID : CVE-2026-42042 Published : April 24, 2026, 6:16 p.m. | 1 hour, 41 minutes ago Description : Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, the Axios library's XSRF token protection logic uses JavaScript truthy/falsy semantics instead of strict boolean comparison for the withXSRFToken config property. When this property is set to any truthy non-boolean value (via prototype pollution or misconfiguration), the same-origin check (isURLSameOrigin) is short-circuited, causing XSRF tokens to be sent to all request targets including cross-origin servers controlled by an attacker. This vulnerability is fixed in 1.15.1 and 0.31.1. Severity: 5.4 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/FZwtenH via IFTTT

CVE-2026-31533 - net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption

CVE ID : CVE-2026-31533 Published : April 23, 2026, 3:11 p.m. | 2 hours, 38 minutes ago Description : In the Linux kernel, the following vulnerability has been resolved: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption The -EBUSY handling in tls_do_encryption(), introduced by commit 859054147318 ("net: tls: handle backlogging of crypto requests"), has a use-after-free due to double cleanup of encrypt_pending and the scatterlist entry. When crypto_aead_encrypt() returns -EBUSY, the request is enqueued to the cryptd backlog and the async callback tls_encrypt_done() will be invoked upon completion. That callback unconditionally restores the scatterlist entry (sge->offset, sge->length) and decrements ctx->encrypt_pending. However, if tls_encrypt_async_wait() returns an error, the synchronous error path in tls_do_encryption() performs the same cleanup again, double-decrementing encrypt_pending and double-restoring the scatterlist. The double-decrem...

CVE-2025-50229 - Jizhicms SQL Injection Vulnerability

CVE ID : CVE-2025-50229 Published : April 23, 2026, 4:16 p.m. | 19 minutes ago Description : Jizhicms v2.5.4 is vulnerable to SQL injection in the product editing module. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/Ur9FV8J via IFTTT

CVE-2026-35364 - uutils coreutils mv Arbitrary File Overwrite via Cross-Device TOCTOU Race Condition

CVE ID : CVE-2026-35364 Published : April 22, 2026, 5:16 p.m. | 24 minutes ago Description : A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the mv utility of uutils coreutils during cross-device operations. The utility removes the destination path before recreating it through a copy operation. A local attacker with write access to the destination directory can exploit this window to replace the destination with a symbolic link. The subsequent privileged move operation will follow the symlink, allowing the attacker to redirect the write and overwrite an arbitrary target file with contents from the source. Severity: 6.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/jaLhmwk via IFTTT

CVE-2026-41457 - OwnTone Server < 29.1 SQL Injection via query and filter Parameters

CVE ID : CVE-2026-41457 Published : April 22, 2026, 1:46 a.m. | 1 hour, 14 minutes ago Description : OwnTone Server versions 28.4 through 29.0 contain a SQL injection vulnerability in DAAP query and filter handling that allows attackers to inject arbitrary SQL expressions by supplying malicious values through the query= and filter= parameters for integer-mapped DAAP fields. Attackers can exploit insufficient sanitization of these parameters to bypass filters and gain unauthorized access to media library data. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/gCBQ7bi via IFTTT

CVE-2026-40497 - FreeScout Vulnerable to CSS Injection via Stored Style Tag in Mailbox Signature (CSRF Token Exfiltration)

CVE ID : CVE-2026-40497 Published : April 21, 2026, 3:16 a.m. | 1 hour, 6 minutes ago Description : FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.213, FreeScout's `Helper::stripDangerousTags()` removes `

CVE-2026-6560 - H3C Magic B0 aspForm Edit_BasicSSID buffer overflow

CVE ID : CVE-2026-6560 Published : April 19, 2026, 7:16 a.m. | 1 hour, 26 minutes ago Description : A security vulnerability has been detected in H3C Magic B0 up to 100R002. This vulnerability affects the function Edit_BasicSSID of the file /goform/aspForm. Such manipulation of the argument param leads to buffer overflow. The attack can be executed remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way. Severity: 9.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/H9YSoT7 via IFTTT

CVE-2026-6559 - Wavlink WL-WN579A3 login.cgi sub_401F80 cross site scripting

CVE ID : CVE-2026-6559 Published : April 19, 2026, 6:16 a.m. | 26 minutes ago Description : A weakness has been identified in Wavlink WL-WN579A3 220323. This affects the function sub_401F80 of the file /cgi-bin/login.cgi. This manipulation of the argument Hostname causes cross site scripting. Remote exploitation of the attack is possible. Upgrading the affected component is recommended. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/TwFianb via IFTTT

CVE-2026-6056 - CVE-2021-1234: Apache Struts Unvalidated Deserialization Vulnerability

CVE ID : CVE-2026-6056 Published : April 18, 2026, 11:16 p.m. | 1 hour, 25 minutes ago Description : Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/N9LjTZf via IFTTT

CVE-2026-40518 - ByteDance DeerFlow Path Traversal and Arbitrary File Write via Bootstrap Mode

CVE ID : CVE-2026-40518 Published : April 17, 2026, 5:17 p.m. | 1 hour, 23 minutes ago Description : ByteDance DeerFlow before commit 2176b2b contains a path traversal and arbitrary file write vulnerability in bootstrap-mode custom-agent creation where the agent name validation is bypassed. Attackers can supply traversal-style values or absolute paths as the agent name to influence directory creation and write files outside the intended custom-agent directory, potentially achieving arbitrary file write on the system subject to filesystem permissions. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/DJQd8Lv via IFTTT

CVE-2023-20585 - VMware IOMMU Buffer Access RMP Vulnerability (Information Disclosure)

CVE ID : CVE-2023-20585 Published : April 16, 2026, 7:16 p.m. | 1 hour, 22 minutes ago Description : Insufficient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised hypervisor to trigger an out of bounds condition without RMP checks, resulting in a potential loss of confidential guest integrity. Severity: 5.6 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/c42YvZl via IFTTT

CVE-2026-1880 - "ASUS DriverHub Privilege Escalation Vulnerability"

CVE ID : CVE-2026-1880 Published : April 16, 2026, 3:16 a.m. | 1 hour, 2 minutes ago Description : An Incorrect Permission Assignment for Critical Resource vulnerability in the ASUS DriverHub update process allows privilege escalation due to improper protection of required execution resources during the validation phase, permitting a local user to make unprivileged modifications. This allows the altered resource to pass system checks and be executed with elevated privileges upon a user-initiated update. Refer to the 'Security Update for ASUS DriverHub' section on the ASUS Security Advisory for more information. Severity: 5.4 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/l4sxfum via IFTTT

CVE-2026-6189 - SourceCodester Pharmacy Sales and Inventory System ajax.php sql injection

CVE ID : CVE-2026-6189 Published : April 13, 2026, 4 p.m. | 1 hour, 9 minutes ago Description : A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. The affected element is an unknown function of the file /ajax.php?action=login. Such manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/qWsFNuH via IFTTT

CVE-2026-40393 - Mesa WebGPU Out-of-Bounds Memory Access Vulnerability

CVE ID : CVE-2026-40393 Published : April 12, 2026, 7:16 p.m. | 1 hour, 52 minutes ago Description : In Mesa before 25.3.6 and 26 before 26.0.1, out-of-bounds memory access can occur in WebGPU because the amount of to-be-allocated data depends on an untrusted party, and is then used for alloca. Severity: 8.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/bmAeOyv via IFTTT

CVE-2026-6107 - 1Panel-dev MaxKB ChatHeadersMiddleware chat_headers_middleware.py cross site scripting

CVE ID : CVE-2026-6107 Published : April 12, 2026, 1:16 a.m. | 1 hour, 52 minutes ago Description : A flaw has been found in 1Panel-dev MaxKB up to 2.6.1. This issue affects some unknown processing of the file apps/common/middleware/chat_headers_middleware.py of the component ChatHeadersMiddleware. This manipulation of the argument Name causes cross site scripting. Remote exploitation of the attack is possible. Upgrading to version 2.8.0 is capable of addressing this issue. Patch name: 026a2d623e2aa5efa67c4834651e79d5d7cab1da. Upgrading the affected component is advised. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product. Severity: 5.1 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/cCER2MP via IFTTT

CVE-2026-6106 - 1Panel-dev MaxKB Public Chat static_headers_middleware.py StaticHeadersMiddleware cross site scripting

CVE ID : CVE-2026-6106 Published : April 11, 2026, 10:15 p.m. | 53 minutes ago Description : A vulnerability was detected in 1Panel-dev MaxKB up to 2.2.1. This vulnerability affects the function StaticHeadersMiddleware of the file apps/common/middleware/static_headers_middleware.py of the component Public Chat Interface. The manipulation of the argument Name results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used. Upgrading to version 2.8.0 is able to resolve this issue. The patch is identified as 026a2d623e2aa5efa67c4834651e79d5d7cab1da. It is recommended to upgrade the affected component. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/6xG0Cmy via IFTTT

CVE-2026-31845 - Rukovoditel CRM Zadarma Telephony API Reflected XSS

CVE ID : CVE-2026-31845 Published : April 11, 2026, 6:26 p.m. | 42 minutes ago Description : A pre-authenticated reflected cross-site scripting (XSS) vulnerability exists in Rukovoditel CRM version 3.6.4 in the Zadarma telephony API endpoint (/api/tel/zadarma.php). The application directly reflects user-supplied input from the 'zd_echo' GET parameter into the HTTP response without proper sanitization, output encoding, or content-type enforcement. The vulnerability is caused by the following code: if (isset($_GET['zd_echo'])) exit($_GET['zd_echo']); This results in arbitrary JavaScript execution in the context of the victim's browser when a crafted URL is visited. An attacker can exploit this issue by sending a malicious link such as: https://TARGET/api/tel/zadarma.php?zd_echo= When a victim clicks the link, the payload executes in the application context, enabling session theft, phishing, and potential account takeover if sensitive users are targeted. S...

CVE-2026-35598 - Vikunja has Missing Authorization on CalDAV Task Read

CVE ID : CVE-2026-35598 Published : April 10, 2026, 4:04 p.m. | 1 hour, 2 minutes ago Description : Vikunja is an open-source self-hosted task management platform. Prior to 2.3.0, the CalDAV GetResource and GetResourcesByList methods fetch tasks by UID from the database without verifying that the authenticated user has access to the task's project. Any authenticated CalDAV user who knows (or guesses) a task UID can read the full task data from any project on the instance. This vulnerability is fixed in 2.3.0. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/Rq8hKaL via IFTTT

CVE-2026-5985 - code-projects Simple IT Discussion Forum crud.php sql injection

CVE ID : CVE-2026-5985 Published : April 9, 2026, 11:17 p.m. | 1 hour, 49 minutes ago Description : A security flaw has been discovered in code-projects Simple IT Discussion Forum 1.0. The affected element is an unknown function of the file /crud.php. The manipulation of the argument user_Id results in sql injection. The attack may be performed from remote. The exploit has been released to the public and may be used for attacks. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/UlJs3yh via IFTTT

CVE-2026-34424 - Smart Slider 3 Pro 3.5.1.35 Supply Chain Attack Remote Access Toolkit

CVE ID : CVE-2026-34424 Published : April 9, 2026, 11:17 p.m. | 1 hour, 49 minutes ago Description : Smart Slider 3 Pro version 3.5.1.35 for WordPress and Joomla contains a multi-stage remote access toolkit injected through a compromised update system that allows unauthenticated attackers to execute arbitrary code and commands. Attackers can trigger pre-authentication remote shell execution via HTTP headers, establish authenticated backdoors accepting arbitrary PHP code or OS commands, create hidden administrator accounts, exfiltrate credentials and access keys, and maintain persistence through multiple injection points including must-use plugins and core file modifications. Severity: 9.8 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/b06V2zr via IFTTT

CVE-2026-21388 - Unbounded Request Body Read in MS Teams Plugin Webhook Endpoint

CVE ID : CVE-2026-21388 Published : April 9, 2026, 10:09 a.m. | 52 minutes ago Description : Mattermost Plugins versions <=2.3.1 fail to limit the request body size on the webhook endpoint which allows an authenticated attacker to cause memory exhaustion and denial of service via sending an oversized JSON payload. Mattermost Advisory ID: MMSA-2026-00610 Severity: 3.7 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/mBWIst6 via IFTTT

CVE-2026-5838 - PHPGurukul News Portal Project add-subadmins.php sql injection

CVE ID : CVE-2026-5838 Published : April 9, 2026, 3:30 a.m. | 1 hour, 31 minutes ago Description : A vulnerability was determined in PHPGurukul News Portal Project 4.1. This vulnerability affects unknown code of the file /admin/add-subadmins.php. This manipulation of the argument sadminusername causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/oD4e0Ml via IFTTT

CVE-2025-20628 - Insufficient granularity of access control for Remote Connector Servers in client mode

CVE ID : CVE-2025-20628 Published : April 7, 2026, 11:16 p.m. | 1 hour, 43 minutes ago Description : An insufficient granularity of access control vulnerability exists in PingIDM (formerly ForgeRock Identity Management) where administrators cannot properly configure access rules for Remote Connector Servers (RCS) running in client mode. This means attackers can spoof a client-mode RCS (if one exists) to intercept and/or modify an identity’s security-relevant properties, such as passwords and account recovery information. This issue is exploitable only when an RCS is configured to run in client mode. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/S9jA56e via IFTTT

CVE-2026-20431 - "Modem Remote Denial of Service Vulnerability"

CVE ID : CVE-2026-20431 Published : April 7, 2026, 4:16 a.m. | 32 minutes ago Description : In Modem, there is a possible system crash due to a logic error. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01106496; Issue ID: MSV-4467. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/z8KP6nM via IFTTT

CVE-2026-5719 - itsourcecode Construction Management System borrowedtool.php sql injection

CVE ID : CVE-2026-5719 Published : April 7, 2026, 2 a.m. | 48 minutes ago Description : A flaw has been found in itsourcecode Construction Management System 1.0. This affects an unknown function of the file /borrowedtool.php. Executing a manipulation of the argument code can lead to sql injection. It is possible to launch the attack remotely. The exploit has been published and may be used. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/dZ4st0I via IFTTT

CVE-2026-5584 - Fosowl agenticSeek query Endpoint PyInterpreter.py PyInterpreter.execute code injection

CVE ID : CVE-2026-5584 Published : April 5, 2026, 5:16 p.m. | 1 hour, 29 minutes ago Description : A vulnerability has been found in Fosowl agenticSeek 0.1.0. Impacted is the function PyInterpreter.execute of the file sources/tools/PyInterpreter.py of the component query Endpoint. Such manipulation leads to code injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/3dluZsy via IFTTT

CVE-2026-5527 - Tenda 4G03 Pro ECDSA P-256 Private Key server.key hard-coded key

CVE ID : CVE-2026-5527 Published : April 5, 2026, 12:16 a.m. | 29 minutes ago Description : A weakness has been identified in Tenda 4G03 Pro 1.0/1.0re/01.bin/04.03.01.53. Affected by this issue is some unknown functionality of the file /etc/www/pem/server.key of the component ECDSA P-256 Private Key Handler. This manipulation causes use of hard-coded cryptographic key . It is possible to initiate the attack remotely. Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/aKmXetM via IFTTT

CVE-2026-5526 - Tenda 4G03 Pro httpd access control

CVE ID : CVE-2026-5526 Published : April 4, 2026, 10:15 p.m. | 29 minutes ago Description : A security flaw has been discovered in Tenda 4G03 Pro up to 1.0/1.1/04.03.01.53/192.168.0.1. Affected by this vulnerability is an unknown functionality of the file /bin/httpd. The manipulation results in improper access controls. The attack may be performed from remote. The exploit has been released to the public and may be used for attacks. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/gawClpK via IFTTT

CVE-2016-20054 - Nodcms Cross Site Request Forgery via admin endpoints

CVE ID : CVE-2016-20054 Published : April 4, 2026, 8:16 p.m. | 28 minutes ago Description : Nodcms contains a cross-site request forgery vulnerability that allows attackers to perform unauthorized administrative actions by crafting malicious forms. Attackers can trick authenticated administrators into submitting requests to admin/user_manipulate and admin/settings/generall endpoints to create users or modify application settings without explicit consent. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/Ln3o8ON via IFTTT

CVE-2026-28373 - Stackfield Desktop App Path Traversal Vulnerability

CVE ID : CVE-2026-28373 Published : April 3, 2026, 5:16 p.m. | 1 hour, 26 minutes ago Description : The Stackfield Desktop App before 1.10.2 for macOS and Windows contains a path traversal vulnerability in certain decryption functionality when processing the filePath property. A malicious export can write arbitrary content to any path on the victim's filesystem. Severity: 9.6 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/mBQ4Ak1 via IFTTT

CVE-2026-34745 - Unauthenticated Path Traversal Arbitrary File Write in /api/uploadChunked/public

CVE ID : CVE-2026-34745 Published : April 2, 2026, 7:21 p.m. | 1 hour, 18 minutes ago Description : Fireshare facilitates self-hosted media and link sharing. Prior to version 1.5.3, the fix for CVE-2026-33645 was applied to the authenticated /api/uploadChunked endpoint but was not applied to the unauthenticated /api/uploadChunked/public endpoint in the same file (app/server/fireshare/api.py). An unauthenticated attacker can exploit the checkSum parameter to write arbitrary files with attacker-controlled content to any writable path on the server filesystem. This issue has been patched in version 1.5.3. Severity: 9.1 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/1H5XFBl via IFTTT

CVE-2026-34543 - OpenEXR: Heap information disclosure in PXR24 decompression via unchecked decompressed size (undo_pxr24_impl)

CVE ID : CVE-2026-34543 Published : April 1, 2026, 9:17 p.m. | 1 hour, 20 minutes ago Description : OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From version 3.4.0 to before version 3.4.8, sensitive information from heap memory may be leaked through the decoded pixel data (information disclosure). This occurs under default settings; simply reading a malicious EXR file is sufficient to trigger the issue, without any user interaction. This issue has been patched in version 3.4.8. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/GnubIQ9 via IFTTT