VYPR

CVEs

378,518 total · page 127 of 7,571

  • CVE-2026-71614HigSep 9, 2026
    risk 0.48cvss 8.4epss 0.00

    An issue in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the src/media_tools/dvb_mpe.c, descriptorTime_slice_fec_identifier() and gf_m2ts_ipdatagram_reader() components. Fixed in 0e4093392e1f847c90d20e031e893cd942fef938.

  • CVE-2026-71613HigSep 9, 2026
    risk 0.44cvss 7.8epss 0.00

    Buffer Overflow vulnerability in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the j2kdec_process() function. Fixed in 9a253a07fd3f6b48022bba74302bf39388dda859.

  • CVE-2026-71612HigSep 9, 2026
    risk 0.48cvss 8.4epss 0.00

    Buffer Overflow vulnerability in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the nhntdmx_process() function. Fixed in fac50e6a12ac27ffabdd5d3080b51afcc44ad8d6.

  • CVE-2026-61915MedSep 9, 2026
    risk 0.20cvss 4.2epss 0.00

    An issue was discovered in Cyrus IMAP before 3.12.4. There is a VPATCH BYPARAM double-free. An authenticated calendar user could crash a Cyrus CalDAV worker with a PATCH containing PATCH-ACTION="BYPARAM@..." against a resource with two or more properties of the matched kind. The…

  • CVE-2026-61911MedSep 9, 2026
    risk 0.21cvss 4.3epss 0.00

    An issue was discovered in Cyrus IMAP before 3.12.4. There is a Sieve mailbox existence oracle. An authenticated user could install a Sieve script that probed whether another user's private mailbox existed, or read the value of shared mailbox annotations, by observing which…

  • CVE-2026-61910LowSep 9, 2026
    risk 0.16cvss 3.5epss 0.00

    An issue was discovered in Cyrus IMAP before 3.12.4. Mailbox/set let a sharee change a special-use role on shared mailboxes. An authenticated user with maySetKeywords on another user's mailbox could change that mailbox's specialuse annotation. This could allow the sharee to…

  • CVE-2026-61909LowSep 9, 2026
    risk 0.16cvss 3.5epss 0.00

    An issue was discovered in Cyrus IMAP before 3.12.4. CalDAV/CardDAV multiget bypasses a per-href ACL. An authenticated DAV user with some shared access to another user's calendar or address book could read even unshared events or contacts by including the target hrefs in a…

  • CVE-2026-61908LowSep 9, 2026
    risk 0.13cvss 3.1epss 0.00

    An issue was discovered in Cyrus IMAP before 3.12.4. A JMAP email-header blob ID can reference an out-of-bounds index. An authenticated user could attempt to download a crafted JMAP blob ID of the form H-, which could read past the end of the internal…

  • CVE-2026-38998MedSep 9, 2026
    risk 0.42cvss 6.5epss 0.00

    A use-after-free in the SocketDescriptor::tcpReadHandler1 function (liveMedia/RTPInterface.cpp) of LIVE555 Streaming Media (version 2026.02.26) allows attackers to cause a Denial of Service (DoS) via sending a series of crafted RTSP and HTTP requests to the server.

  • CVE-2026-79323HigSep 9, 2026
    risk 0.49cvss 7.5epss 0.00

    Information disclosure in the blogComments GraphQL query in Magefan Blog GraphQL for Magento 2 (magefan/module-blog-graph-ql) through 2.2.1 allows remote unauthenticated attackers to obtain blog commenter email addresses and internal customer and admin identifiers via a POST…

  • CVE-2026-79322HigSep 9, 2026
    risk 0.56cvss 8.6epss 0.00

    SQL injection in the RelatedProduct block in Mageplaza Blog for Magento 2 (mageplaza/magento-2-blog-extension) through 4.3.2 allows remote unauthenticated attackers to execute arbitrary SQL commands and read arbitrary database contents via the id parameter to /mpblog/post/view.

  • CVE-2026-61907MedSep 9, 2026
    risk 0.21cvss 4.3epss 0.00

    An issue was discovered in Cyrus IMAP before 3.12.4. JMAP snooze bypasses the destination-mailbox ACL. An authenticated user with insert permissions on another user's snoozed mailbox could cause insertion of mail to that user's inbox, or any other of their mailboxes whose id was…

  • CVE-2026-54694CriSep 9, 2026
    risk 0.55cvss 9.6epss 0.00

    SkillTree is a micro-learning gamification platform. Prior to version 4.4.2, two independent code flaws combine into a single exploitable attack chain, with three distinct exploitation paths of escalating impact. `StringHighlighter.js` builds an HTML string by interpolating raw…

  • CVE-2026-52482HigSep 9, 2026
    risk 0.49cvss 7.5epss 0.00

    An issue in SJRC F11 SJ-GPS-PRO firmware build 2019-09-17 allows a remote attacker to obtain sensitive information via the inetd service spawns /app/sh_for_telnet

  • CVE-2026-39020MedSep 9, 2026
    risk 0.36cvss 5.5epss 0.00

    An issue in WIngs3D v.2.4.1 allows a local attacker to cause a denial of service via a crafted Wavefront OBJ file

  • CVE-2025-51619MedSep 9, 2026
    risk 0.36cvss 5.5epss 0.00

    A vulnerability in the Thesycon DPC Latency Checker driver (dpc.sys) thru 1.4.0 allows local unprivileged users to cause a denial-of-service (BSOD) condition on Windows systems. The driver exposes an IOCTL interface (0x81772008) that accepts user-controlled input without…

  • CVE-2025-58363Sep 9, 2026
    risk 0.00cvss epss

    ### Summary A path traversal vulnerability in eKuiper's administrative management endpoints allows privileged users or attackers with access to management APIs to delete arbitrary files or directories on the host system. ### Details In `internal/plugin/native/manager.go`, the…

  • CVE-2025-24979Sep 9, 2026
    risk 0.00cvss epss

    ### Summary Server-side request forgery (SSRF) vulnerability in eKuiper allows an attacker with permissions to register external services or create rules to induce the eKuiper server to make requests to unintended network locations, such as internal services, loopback interfaces…

  • CVE-2025-24978lowSep 9, 2026
    risk 0.00cvss epss

    ### Summary A Cross-Site Scripting (XSS) vulnerability in external service creation allows an authenticated attacker to inject HTML/script payloads into external service names, which may execute in a user's browser when rendered by administrative web interfaces. ### Details…

  • CVE-2026-87946Sep 9, 2026
    risk 0.00cvss epss

    Mentioned in Drupal. See https://www.drupal.org/security for vendor details.

  • CVE-2026-87947Sep 9, 2026
    risk 0.00cvss epss

    Mentioned in Drupal. See https://www.drupal.org/security for vendor details.

  • CVE-2026-87948Sep 9, 2026
    risk 0.00cvss epss

    Mentioned in Drupal. See https://www.drupal.org/security for vendor details.

  • CVE-2026-87949Sep 9, 2026
    risk 0.00cvss epss

    Mentioned in Drupal. See https://www.drupal.org/security for vendor details.

  • CVE-2026-87950Sep 9, 2026
    risk 0.00cvss epss

    Mentioned in Drupal. See https://www.drupal.org/security for vendor details.

  • CVE-2026-87951Sep 9, 2026
    risk 0.00cvss epss

    Mentioned in Drupal. See https://www.drupal.org/security for vendor details.

  • CVE-2026-87952Sep 9, 2026
    risk 0.00cvss epss

    Mentioned in Drupal. See https://www.drupal.org/security for vendor details.

  • CVE-2026-87953Sep 9, 2026
    risk 0.00cvss epss

    Mentioned in Drupal. See https://www.drupal.org/security for vendor details.

  • CVE-2026-87954Sep 9, 2026
    risk 0.00cvss epss

    Mentioned in Drupal. See https://www.drupal.org/security for vendor details.

  • CVE-2026-87955Sep 9, 2026
    risk 0.00cvss epss

    Mentioned in Drupal. See https://www.drupal.org/security for vendor details.

  • CVE-2026-8044HigSep 9, 2026
    risk 0.56cvss epss 0.00

    CWE-88: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability exists that could cause remote code execution by an attacker with a privileged account when malicious arguments are provided as backup configuration parameters.

  • CVE-2026-87930HigSep 9, 2026
    risk 0.53cvss 8.1epss 0.00

    MaxSite CMS through 109.6 passes the ci_session cookie to unserialize() without class restrictions, allowing unauthenticated attackers to inject PHP objects. Attackers can forge valid session cookies using the hardcoded encryption key to trigger magic methods and corrupt…

  • CVE-2026-87929CriSep 9, 2026
    risk 0.64cvss 9.8epss 0.00

    MaxSite CMS through 109.6 ships with a hardcoded session encryption key in application/config/config.php that is never changed during installation, allowing unauthenticated attackers to forge administrator session cookies. Attackers can mint a malicious ci_session cookie with…

  • CVE-2026-87928MedSep 9, 2026
    risk 0.35cvss 5.4epss 0.00

    MaxSite CMS versions 0.94 through 109.6 contain a cross-site scripting vulnerability in the admin_page upload handler that allows any logged-in user to upload HTML files. Attackers can upload HTML containing malicious scripts to the uploads/_pages/ directory, which executes in…

  • CVE-2026-87927HigSep 9, 2026
    risk 0.53cvss 8.2epss 0.00

    MaxSite CMS through 109.6 contains a local file inclusion vulnerability in the ajax and require-maxsite dispatchers that allows unauthenticated attackers to execute privileged handler files by supplying base64-encoded path traversal sequences. Attackers can bypass path…

  • CVE-2026-87876LowSep 9, 2026
    risk 0.13cvss 3.0epss 0.00

    Two case-insensitive comparisons on request-derived usernames outside the main authorization path in CUPS's scheduler (printer ACL validation and private-attribute filtering) could allow bypass of username-based access controls in certain configurations.

  • CVE-2026-87875MedSep 9, 2026
    risk 0.21cvss 4.3epss 0.00

    The cupsUTF32ToUTF8() function in CUPS's cups/transcode.c lacks a source-length bound and can read past the end of the source buffer, resulting in a heap out-of-bounds read. This is reachable via SNMP supply-description parsing in backend/snmp-supplies.c with attacker-controlled…

  • CVE-2026-87874HigSep 9, 2026
    risk 0.53cvss 8.1epss 0.00

    A flaw was found in the memcached cache plugin of the community.general Ansible collection. Although its documentation states that records are stored in JSON format, the plugin performs no explicit serialization and relies on python-memcached, which pickles values on write and…

  • CVE-2026-87872MedSep 9, 2026
    risk 0.44cvss 6.8epss 0.00

    A flaw was found in the OCAPI modules (ocapi_command, ocapi_info) of the community.general Ansible collection. The shared OCAPI request helper disables TLS certificate validation on every request and the modules expose no parameter to re-enable it, while sending HTTP Basic-Auth…

  • CVE-2026-87853HigSep 9, 2026
    risk 0.42cvss 7.5epss 0.00

    A flaw was found in SSSD's IdP authentication provider. The eval_access_token_buf() function compares the OIDC subject identifier using strncmp() with the authenticated user's identifier length, performing a prefix comparison instead of an exact match. An attacker whose IdP…

  • CVE-2026-85788MedSep 9, 2026
    risk 0.29cvss 5.5epss 0.00

    Incomplete list of disallowed inputs in the mutable SQL detector component in Amazon awslabs mysql-mcp-server might allow context-dependent actors to bypass the read-only enforcement gate and reach file-read and file-write SQL sinks via SQL inline comments that the regex engine…

  • CVE-2026-80925Sep 9, 2026
    risk 0.00cvss epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: vlan: fix skb_under_panic and races when toggling HW VLAN offload Toggling hardware VLAN TX offload (NETIF_F_HW_VLAN_CTAG_TX or NETIF_F_HW_VLAN_STAG_TX) on a lower device invokes vlan_transfer_features(),…

  • CVE-2026-80924HigSep 9, 2026
    risk 0.42cvss 7.5epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: crypto: krb5 - use kfree_sensitive() for derived key buffers crypto_krb5_prepare_encryption() and crypto_krb5_prepare_checksum() free the buffer holding the freshly derived keys with plain kfree(), leaving the…

  • CVE-2026-80923Sep 9, 2026
    risk 0.00cvss epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: xhci: dbgtty: Fix unregister on tty_register_driver() failure If tty_register_driver() fails, it drops the reference, but fails to set the global dbc_tty_driver to NULL, causing the unregister to be called…

  • CVE-2026-80922Sep 9, 2026
    risk 0.00cvss epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - Allow zero as a random number Zero is a valid random number and needs to be allowed. Otherwise the output is distinguishable from random.

  • CVE-2026-80921HigSep 9, 2026
    risk 0.50cvss 8.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: KVM: s390: vsie: zero stale crypto bits When shadowing crypto access bits from a format0 apcb (crycb 0 or 1), the bits 64..255 are unchanged from whatever is in the vsie page in the crycb and thus in the apcb.…

  • CVE-2026-80920Sep 9, 2026
    risk 0.00cvss epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: io_uring: defer eventfd signaling when queued from a wakeup handler io_req_local_work_add() signals the CQ ring eventfd inline when it is the one to push the first entry onto ->work_list. For DEFER_TASKRUN…

  • CVE-2026-80919Sep 9, 2026
    risk 0.00cvss epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix recursive ww_mutex acquire in amdgpu_devcoredump_format When dumping IB contents from a hung job, amdgpu_devcoredump_format() acquired the VM root PD's reservation via amdgpu_vm_lock_by_pasid()…

  • CVE-2026-80918Sep 9, 2026
    risk 0.00cvss epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: HID: core: fix number/pointer type confusion on long items When fetch_item() is called by hid_scan_report() on an item with HID_ITEM_TAG_LONG, it stores a pointer to the item data in item->data.longdata…

  • CVE-2026-80917Sep 9, 2026
    risk 0.00cvss epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: PCI: host-generic: Fix NULL pointer dereference on 32-bit CAM systems On 32-bit systems the config space is too large to ioremap in one go, so pci_ecam_create() maps each bus segment separately and relies on…

  • CVE-2026-80916Sep 9, 2026
    risk 0.00cvss epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: kcov: fix data corruption and race conditions on PREEMPT_RT syzbot is reporting KCOV state corruption on PREEMPT_RT kernels, for the temporary storage used for saving/restoring remote KCOV state is currently…